IP Intelligence Briefing: 152.42.249.164
Date: 2026-06-01
---
**1. Core Profile**
- Risk Score: Moderate (50/100)
- Provider: DigitalOcean (ASN 14061)
- Geolocation: Singapore (SG), inferred from 2 sources with 2500km accuracy radius.
- Network Role: Cloud compute infrastructure (hosting, no residential/mobile traffic).
- Threat Indicators: No malicious activity detected (zero threat indicators, spam, or abuse confidence).
- Services: No open ports, TLS certs, or HTTP services identified.
---
**2. Observation History**
- Recent Activity (Last 30 Days):
- 14 observations, including 2 flagged as "US" locations with low confidence (0.3β0.75).
- Conflicting geolocation data: 1 source suggests Singapore, others imply US (AlienVault OTX).
- No persistent threats or malware campaigns linked.
- BGP route stability: Unstable (0 route changes in 30 days, but flagged as "not stable").
---
**3. Network Relationships**
- Linked Entities:
- Subnet: `152.42.249.164/24` (DigitalOcean network DO-13).
- No external hostnames, certificates, or organizations tied to the IP.
- No DNS records or email authentication (SPF/DMArc) detected.
---
**4. Subnet Neighborhood**
- Subnet: `152.42.249.164/24`
- Neighbor Analysis:
- 0 active IPs in the subnet (no siblings or neighbors detected).
- Subnet abuse density: 0% (clean).
---
**5. Control Plane & Security**
- BGP:
- Origin ASN: 14061 (DigitalOcean).
- Route stability: Unstable (no recent changes, but flagged as "not stable").
- DNSSEC: Validated.
- DNSBL: Listed in 2 out of 8 DNSBLs (low confidence, no actionable data).
---
**6. Threat Assessment**
- No direct malicious activity detected (no malware, phishing, or C2 indicators).
- Geolocation anomalies: Conflicting location data (Singapore vs. US) may indicate misconfigured routing or spoofing.
- Cloud Infrastructure: Likely a virtual machine (no residential/mobile traffic).
---
**7. Recommended Actions**
1. Monitor geolocation inconsistencies (Singapore vs. US) for potential spoofing.
2. Check DNS configurations for misrouted traffic or spoofed subnets.
3. Maintain baseline for the IPβs stability, as BGP route stability is flagged as "not stable."
4. No immediate blocking required, but continue monitoring for changes in threat indicators.
---
Conclusion: This IP is a standard DigitalOcean cloud instance with no active threats. The geolocation anomalies and BGP instability warrant further investigation, but no immediate mitigation is required.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | DO-13 |
| CIDR Block | 152.42.128.0/17 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 19% | 2 | 2 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 15% | 1 | 2 |
| geolocation | 21% | 2 | 2 |
| Overall | 18% | 9 | 11 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-06-01 11:43:51 UTC |
| Last Seen | 2026-06-21 07:23:10 UTC |
| Profile Built | 2026-06-21 07:33:26 UTC |
| Data Freshness | Live |
| Signal Types | 16 |
| Total Observations | 17 |
Full dossier details are available via our API.