# IP INTELLIGENCE BRIEFING
Subject: 159.223.117.138/32
Classification: LOW RISK / ROUTINE MONITORING
Date: Analysis generated from current intelligence
## EXECUTIVE SUMMARY
IP address 159.223.117.138 is a DigitalOcean cloud computing instance with a low-risk profile. The IP demonstrates minimal threat indicators and operates within a clean subnet environment. No active malicious campaigns or threat associations were identified.
## RISK ASSESSMENT
- Overall Risk Score: 25 (LOW RISK)
- Abuse Confidence Score: Not applicable
- Threat Likelihood: NONE
- Persistence Indicator: Not persistently malicious
## OWNERSHIP & INFRASTRUCTURE
- Organization: DigitalOcean, LLC
- ASN: AS14061
- Infrastructure Type: CloudCompute
- Network Role: Single-Service Host
- Registration: ARIN (United States)
- Geolocation: North Bergen, NJ, US
## NETWORK CHARACTERISTICS
- CIDR Block: 159.223.112.0/20
- BGP Prefix: 159.223.112.0/20
- Route Stability: False
- Open Ports: TCP/22 (SSH - OpenSSH_9.6p1 Ubuntu)
- DNS Records: No reverse resolution; no hosted domains
## THREAT INDICATORS
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Blacklist Status: 0 blacklist entries
- DNSBL Listings: 1 listing across 8 total lists
- Threat Campaigns: None identified
- Malware/Exploits: None detected
## NEIGHBORHOOD ANALYSIS (159.223.117.0/24)
- Subnet Classification: Mostly Clean
- Abuse Density: 1 (Low)
- Inherited Risk Score: 5
- Total Sibling IPs: 2
- Active Sibling IPs: 2
- Threat Sibling IPs: 2
- Neighboring IP: 159.223.117.90 (Risk Score: 25)
## OBSERVATION HISTORY
- Total Observations: 20 signals
- Latest Activity: 2026-06-17
- Threat Observation Count: 1
- Temporal Analysis: No ownership changes detected
- Operator Score: 0.1304 (Minimal)
## RELATIONSHIP MAPPING
- Network Association: DO-13 (DigitalOcean network entity)
- Relationship Count: 20 (All network-level associations)
## RECOMMENDED ACTIONS
Standard Operations:
- Continue routine monitoring
- No immediate blocking or mitigation required
- Standard firewall rules for SSH traffic acceptable
Note: The single DNSBL listing warrants awareness but does not indicate active abuse. The low risk score (25) and clean subnet classification support continued operation without intervention.
---
*Intelligence generated from IPDebrief platform data. Suitable for SOC analyst review and operational decision-making.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Single-Service Host |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 22 | ssh | tcp | |
| Closed Ports | 25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
| SSH Version | SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.16 |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 40% | 2 | 5 |
| routing | 8% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 35% | 2 | 3 |
| Overall | 24% | 10 | 17 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-07 23:03:49 UTC |
| Last Seen | 2026-06-27 00:55:16 UTC |
| Profile Built | 2026-06-27 15:07:58 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 28 |
Full dossier details are available via our API.