## IP Intelligence Briefing: 164.92.195.203/32
Executive Summary
The IP address 164.92.195.203 was classified as Low Risk (Risk Score: 25) during analysis. The address operates within DigitalOcean cloud infrastructure in Frankfurt am Main, Germany, and maintains a stable operational profile with no active threat indicators.
Ownership and Infrastructure
The IP resolved to ASN 14061 (DigitalOcean, LLC) and was identified as cloud-based infrastructure. Network classification confirmed the address belongs to DigitalOcean's hosting infrastructure with a BGP prefix of 164.92.192.0/20. DNSSEC validation was confirmed as valid. Control plane analysis showed the address as route-stable with minimal operator risk (0.1304).
Geolocation
Geolocation data indicated deployment in Frankfurt am Main, Hesse, Germany (DE). Geographic validation was plausible with an accuracy radius of 600km. ICMP validation was unable to proceed due to ICMP blocking.
Service and Port Analysis
No open ports were detected during service scanning. No TLS certificates, HTTP titles, or server banners were observed. The infrastructure presented as "Firewalled / No Services" with zero forward DNS resolution. No email authentication records (SPF, DMARC) were found.
Threat Indicators
Threat analysis returned no malicious indicators. The IP was not classified as a Tor exit node, known attacker, or spam source. Blacklist enumeration showed zero listings. No active campaigns were correlated with this address. Threat observation count remained at 0 with no persistent malicious behavior detected.
Neighborhood Assessment
The /24 subnet (164.92.195.0/24) showed an abuse density of 1 and was classified as "mostly_clean." One active sibling was identified within the subnet, though no high or medium risk neighbors were detected.
Historical Signals
Observation history from June 2026 showed consistent low-risk scoring patterns. Recent signals (2026-06-19) confirmed minimal operator risk (0.1304). Historical cloud infrastructure classifications remained stable with no ownership changes or threat persistence indicators.
Recommended Actions
No immediate firewall rules or blocking actions were recommended. The IP presents a low-risk profile consistent with legitimate cloud infrastructure operations. SOC teams may monitor for any changes in service exposure or threat indicator emergence, but no current defensive measures are required.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 22% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-12 15:46:55 UTC |
| Last Seen | 2026-06-27 21:35:12 UTC |
| Profile Built | 2026-06-28 15:40:50 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 24 |
Full dossier details are available via our API.