# IP INTELLIGENCE BRIEFING
Target: 162.243.103.246/32
Classification: LOW RISK / CLEAN
Date: 2026-06-26
Analyst: IPDebrief Intelligence System
---
## EXECUTIVE SUMMARY
IP 162.243.103.246 is a low-risk cloud infrastructure address belonging to DigitalOcean, LLC. The IP demonstrates stable routing, clean neighborhood classification, and no active threat indicators. Recommended disposition: Allow with standard monitoring.
---
## OWNERSHIP & INFRASTRUCTURE
| Attribute | Value |
|---|---|
| **Organization** | DigitalOcean, LLC (ASN: 14061) |
| **Geolocation** | New York, NY, US |
| **Network Role** | Cloud/Web Server |
| **Infrastructure Type** | Cloud Hosting |
| **BGP Prefix** | 162.243.0.0/17 |
| **Route Stability** | Stable |
The IP is hosted on DigitalOcean's cloud infrastructure. Control plane analysis confirms stable BGP routing with origin ASN 14061. RIR registry shows ARIN registration with valid delegation age.
---
## THREAT ASSESSMENT
| Metric | Status |
|---|---|
| **Overall Risk Score** | 30 (Low Risk) |
| **Known Attacker** | No |
| **Spam Source** | No |
| **Tor Exit Node** | No |
| **Blacklist Count** | 0 |
| **Threat Feeds** | None |
| **Known Campaigns** | None |
Threat analysis returned no positive indicators. The IP is not classified as a known attacker, spam source, or malicious infrastructure. No associations with active threat campaigns detected.
---
## NETWORK SERVICES & FINGERPRINTING
Open Ports:
- 80/TCP (HTTP)
- 443/TCP (HTTPS)
- 22/TCP (SSH) - OpenSSH_6.6.1p1 Ubuntu-2ubuntu2.8
- 8080/TCP (HTTP-Alt)
DNS Resolution:
- Hosted Domain: dionysianhangover.com
- Forward Resolution: None detected
SSL/TLS Certificate:
- Subject: CN=wearoddball.com
- Issuer: Starfield Secure Certificate Authority - G2
- Status: Valid (not self-signed)
- SANs: wearoddball.com, www.wearoddball.com
Server Banner: Apache/2.4.7 (Ubuntu) PHP/5.5.9-1ubuntu4.20 OpenSSL/1.0.1f
---
## OBSERVATION HISTORY
Total signals observed: 77
Recent Activity (June 26, 2026):
- Multiple routing/geolocation signals with low confidence scores (0.30-0.33)
- BGP community signals showing minimal risk classification
- Location consensus: New York, US
Temporal Analysis:
- Threat persistence days: 0
- Ownership changes: 0
- Classification: Not persistently malicious
The observation history indicates stable, benign behavior with no escalation in threat signals over the monitoring period.
---
## RELATIONSHIP ANALYSIS
Total Relationships: 422
Network Associations:
- Primary network: DIGITALOCEAN-162-243-0-0
- All relationships map to the same organizational network
No cross-domain or cross-organizational relationships detected. The IP's relationship graph is contained within the DigitalOcean infrastructure network.
---
## NEIGHBORHOOD ANALYSIS
Subnet: 162.243.103.246/24
Metrics:
- Abuse Density: 0 (Clean)
- Neighbor Count: 0
- Active Siblings: 1
- Threat Siblings: 0
- Classification: Clean
The immediate /24 subnet shows no abuse activity. This IP operates in isolation within its neighborhood with no correlated malicious activity in adjacent addresses.
---
## ACTIONABLE INTELLIGENCE
Recommended Actions:
1. Default Allow - No blocking required based on current risk profile
2. Standard Monitoring - No elevated monitoring required
3. DNSBL Check - One DNSBL listing detected among 8 total lists; verify if relevant
4. Certificate Validation - SSL certificate valid and properly issued
Firewall Rules: No specific allow/deny rules recommended. Standard cloud security policies apply.
---
## CONCLUSION
IP 162.243.103.246 represents benign cloud infrastructure hosted on DigitalOcean. The address shows:
- β Low risk classification (score: 30)
- β No threat indicators
- β Clean neighborhood classification
- β Stable routing and ownership
- β Standard web server services
Disposition: LOW RISK - No action required beyond routine monitoring.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | β |
| CIDR Block | 162.243.0.0/17 |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
| Hosted Domain | dionysianhangover.com |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | β |
| 443 | https | tcp | β |
| 22 | ssh | tcp | |
| 8080 | http-alt | tcp | β |
| Closed Ports | 25, 3389, 8443 (4 open / 7 scanned) | ||
| Server | Apache/2.4.7 (Ubuntu) PHP/5.5.9-1ubuntu4.20 OpenSSL/1.0.1f |
| HTTP Title | β |
| SSH Version | SSH-2.0-OpenSSH_6.6.1p1 Ubuntu-2ubuntu2.8 |
π TLS Certificate
CN=wearoddball.com, OU=Domain Control Validated was found on this IP. This may indicate a previously hosted website, a decommissioned service, or stale infrastructure.| SANs | wearoddball.comwww.wearoddball.com |
| Valid From | 2014-08-03T03:00:01+00:00 |
| Valid Until | 2015-04-21T15:58:28+00:00 (expired) |
| TLS Protocol | Tls12 |
| Cipher Suite | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 |
| Signature Algorithm | sha256RSA |
| Validity Period | 261 days |
| Serial Number | 27C0C24CBF6B96 |
| Thumbprint | C12825105FB80A7E670F71E9265EC642BD368F52 |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 28% | 2 | 4 |
| routing | 27% | 4 | 5 |
| services | 25% | 2 | 3 |
| ownership | 41% | 3 | 18 |
| reputation | 27% | 1 | 3 |
| geolocation | 26% | 2 | 3 |
| Overall | 29% | 14 | 36 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-07 23:02:59 UTC |
| Last Seen | 2026-06-26 21:56:07 UTC |
| Profile Built | 2026-06-27 18:02:50 UTC |
| Data Freshness | Live |
| Signal Types | 34 |
| Total Observations | 76 |
Full dossier details are available via our API.