INTELLECTUAL BRIEFING: IP 159.89.125.126/32
Date: 2026-06-15 | Classification: CLEAN / LOW RISK
---
EXECUTIVE SUMMARY
Target IP 159.89.125.126 is classified as LOW RISK (Risk Score: 25) with no active threat indicators. Infrastructure is hosted on DigitalOcean cloud compute in Toronto, ON, Canada. No malicious campaigns, blacklisting, or suspicious behavior detected in observation history.
---
OWNERSHIP & GEOLOCATION
| Attribute | Value |
|---|---|
| Organization | DigitalOcean, LLC |
| ASN | 14061 |
| Country/Region | Canada / Ontario |
| City | Toronto |
| BGP Prefix | 159.89.112.0/20 |
| CIDR Block | 159.89.125.126/24 |
---
THREAT ASSESSMENT
Current Risk Profile:
- Risk Score: 25 (Low)
- Abuse Confidence: None detected
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
Threat Indicators:
- Blacklist Count: 0
- Threat Feeds: None
- Known Campaigns: None
- Pulsedive Risk: Not flagged
Network Classification:
- Infrastructure Type: CloudCompute
- Hosting Provider: Yes
- Open Ports: None
- Services: Firewalled / No Services
- Network Role: Cloud infrastructure with no exposed services
---
OBSERVATION HISTORY
Total Observations: 17 signals collected (2026-06-15)
Key Historical Trends:
- Classification: Consistently "clean"
- Abuse Density: 0 (neighborhood)
- Geolocation: Validated to Toronto, ON (6,078.4 km from probe origin)
- ICMP Status: Blocked - unable to validate
- Threat Persistence: 0 days (not persistently malicious)
Recent Observations (2026-06-15):
- 21:42:49 UTC โ Subnet classification: clean, abuse density: 0
- 21:37:30 UTC โ Geolocation validation: plausible, ICMP blocked
- 21:35:26 UTC โ Campaign correlation: none, 0 correlated IPs
- 21:35:17 UTC โ Operator score: Minimal (0.1304)
---
NEIGHBORHOOD ANALYSIS
Subnet: 159.89.125.126/24
- Abuse Density: 0
- Classification: Clean
- Total Siblings: 1
- Active Siblings: 1
- Threat Siblings: 0
- High/Medium Risk IPs: 0
---
RELATIONSHIP GRAPH
Connected Entities: 16 relationships
- All relationships: "Same Network" type
- Target: DIGITALOCEAN-159-89-0-0
No cross-network or organizational relationships detected beyond the immediate DigitalOcean network.
---
RECOMMENDED ACTIONS
Security Recommendations: None required
Firewall Rules: None generated (risk score below action threshold)
Notes:
- IP shows no active threat behavior
- No services exposed (firewalled)
- Legitimate cloud infrastructure profile
- Standard monitoring recommended; no immediate blocking required
---
INTELLIGENCE CONCLUSION
IP 159.89.125.126 represents standard cloud compute infrastructure with no malicious indicators. The address belongs to DigitalOcean's Toronto data center network and exhibits clean historical behavior. No defensive actions required beyond routine network monitoring.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 8% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 18% | 1 | 2 |
| geolocation | 34% | 2 | 3 |
| Overall | 20% | 10 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-24 06:32:38 UTC |
| Last Seen | 2026-06-28 23:41:03 UTC |
| Profile Built | 2026-06-29 05:42:42 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 19 |
Full dossier details are available via our API.