# IP Intelligence Briefing: 159.89.193.35/32
## Executive Summary
IP 159.89.193.35 is classified as Low Risk (Risk Score: 30) and operates on DigitalOcean cloud infrastructure (ASN 14061) in Singapore. The address is associated with Lazada Bangladesh corporate domains and maintains standard web server services. No active threat indicators or known malicious campaigns were observed.
## Risk Assessment
| Metric | Value |
|---|---|
| Overall Risk Score | 30 (Low) |
| Provider Score | 0 |
| Authority Score | 0 |
| Abuse Confidence | Not elevated |
| Blacklist Count | 0 |
| Threat Persistence | None (0 days) |
## Technical Profile
Infrastructure: DigitalOcean cloud hosting (Singapore, SG)
DNS Resolves: lazadabd.lazadabd-oushodhiya
Open Services:
- TCP/80 (HTTP)
- TCP/443 (HTTPS) - TLS cert: CN=cloudpanel.clp
- TCP/22 (SSH) - OpenSSH 9.6p1 Ubuntu
- TCP/8443 (HTTPS-alt)
Control Plane: Route changes observed within 30-day window. Single DNSBL listing among 8 total lists evaluated.
## Observation History
22 signals tracked across the observation period. Recent activity includes:
- Connection failures (June 26, 2026)
- DNS TXT record observations (June 19, 2026)
- No persistent malicious behavior detected
## Network Context
Subnet Analysis (159.89.193.0/24):
- Abuse Density: 50%
- Classification: Mostly clean
- Active Siblings: 2
- Threat Siblings: 1 (159.89.193.174, Risk Score: 25)
Relationship Graph: 48 relationships identified, all linked to the DIGITALOCEAN-159-89-0-0 network block.
## Recommended Actions
No immediate blocking required. Standard monitoring recommended due to:
- Elevated neighborhood abuse density (50%)
- SSH port exposure
- DNSBL listing presence
Firewall Considerations:
- Allow HTTP/HTTPS traffic as per business requirements
- Consider SSH access restrictions if not needed
- Monitor for connection failure patterns indicating service degradation
Investigation Priority: MEDIUM - Neighborhood context warrants monitoring of sibling IP 159.89.193.174 for correlated activity.
---
*Report generated: IPDebrief Intelligence Platform*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | lazadabd.lazadabd-oushodhiya |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | lazadabd.lazadabd-oushodhiya |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | 0/2 domains |
| DMARC | 0/2 domains |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
| Domains Checked | 2 domains |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | β |
| 443 | https | tcp | β |
| 22 | ssh | tcp | |
| 8443 | https-alt | tcp | β |
| Closed Ports | 25, 3389, 8080 (4 open / 7 scanned) | ||
| Server | nginx |
| HTTP Title | β |
| SSH Version | SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.14 |
π TLS Certificate
CN=cloudpanel.clp was found on this IP. This may indicate a previously hosted website, a decommissioned service, or stale infrastructure.| SANs | cloudpanel.clpwww.cloudpanel.clp |
| Valid From | 2019-10-14T13:34:38+00:00 |
| Valid Until | 2020-10-13T13:34:38+00:00 (expired) |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha256RSA |
| Validity Period | 365 days |
| Serial Number | 00 |
| Thumbprint | 3BECE07FF14C8422E15E2D725E47F72289009311 |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 22% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 28% | 2 | 3 |
| ownership | 20% | 2 | 3 |
| reputation | 24% | 1 | 3 |
| geolocation | 25% | 2 | 2 |
| Overall | 21% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-10 16:14:02 UTC |
| Last Seen | 2026-06-27 17:50:39 UTC |
| Profile Built | 2026-06-28 11:56:27 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 26 |
Full dossier details are available via our API.