# IP Intelligence Briefing: 165.22.100.172/32
Classification: Cloud Infrastructure / Low Risk
Date: June 2026
Analyst: IPDebrief Intelligence Team
---
## Executive Summary
IP 165.22.100.172 is a DigitalOcean cloud compute instance located in Singapore (SG) operating within the 165.22.96.0/20 BGP prefix. The IP maintains a risk score of 25 (Low Risk) with no active threat indicators, minimal DNSBL presence (1 of 8 lists), and no evidence of malicious activity. Infrastructure appears to serve Cloudways application hosting based on PTR record resolution.
---
## Infrastructure Profile
| Attribute | Value |
|---|---|
| **Organization** | DigitalOcean, LLC (ASN 14061) |
| **Location** | Singapore (1.35°N, 103.82°E) |
| **CIDR Block** | 165.22.100.0/24 |
| **Infrastructure Type** | CloudCompute |
| **Network Role** | Firewalled / No Services |
| **ISP Classification** | Hosting Provider |
---
## Threat Assessment
Risk Score: 25 (Low Risk)
Threat Indicators:
- No known attacker signatures
- No Tor exit node activity
- No spam source classification
- Zero blacklist entries on major threat feeds
- Pulsedive risk: Not applicable
Control Plane Analysis:
- Route stability: Unstable
- DNSSEC: Valid
- DNSBL Listed: 1 of 8 lists
- Operator Score: 0.1304 (Minimal)
- RPKI State: Not available
- IRR Consistency: Not available
---
## Network Context
Neighborhood Analysis (165.22.100.0/24):
- Subnet Classification: Mostly Clean
- Abuse Density: 0
- Total Sibling IPs: 2
- Active Siblings: 0
- Threat Siblings: 2
- Inherited Risk Score: 5
Notable Neighbor:
- 165.22.100.247 (Risk Score: 40, Authority Score: 50)
- This neighbor exhibits elevated risk compared to the subject IP.
Relationship Graph:
- 33 total relationships detected
- Primary connections: Same Network (DIGITALOCEAN-165-22-0-0)
- No organizational or certificate-based relationships identified
---
## Historical Observation Trends
Observation Count: 23 signals over analysis period
Temporal Analysis:
- Most Recent Signal: 2026-06-18T23:09:25Z
- Threat Persistence Days: 0
- Ownership Changes: 0
- Is Persistently Malicious: False
Signal Evolution:
- Operator Score maintained at 0.1304 across observations
- Consistent "Minimal" classification in recent signals
- No significant risk trajectory changes detected
- Data sufficiency: High (6 of 6 dimensions covered)
---
## DNS & Service Analysis
DNS Resolution:
- PTR Hostname: 1627131.cloudwaysapps.com
- Forward Resolution: 1627131.cloudwaysapps.com (Forward confirmed: false)
- Hosted Domains: 0
- Email Authentication: None detected (No SPF, No DMARC)
Service Enumeration:
- Open Ports: None detected
- TLS Certificate: None
- HTTP Title: None
- Server Banner: None
Fingerprinting:
- HTTP/2: Not available
- HSTS: Not configured
- CSP: Not configured
- Referrer Policy: Not configured
---
## Recommended Security Actions
Current Risk Level: Low Risk
Recommendations:
- No immediate blocking or filtering required
- Standard cloud provider traffic monitoring applies
- Monitor neighbor IP 165.22.100.247 for elevated activity
- Continue baseline observation for threat persistence
Firewall Rules: None required at this time
---
## Intelligence Narrative
The IP 165.22.100.172 presents as legitimate cloud infrastructure hosting DigitalOcean services in Singapore. The lack of open ports, combined with Cloudways application hosting indicators, suggests this IP serves as a firewalled compute instance. Historical data indicates stable operational characteristics with no escalation in threat profile.
The subnet's abuse density remains minimal (0), though one neighboring IP (165.22.100.247) shows elevated risk scoring of 40. This neighbor warrants monitoring but does not immediately correlate with the subject IP's clean profile.
Threat Confidence: Low
Recommended Action: Continue monitoring; no immediate threat response required.
---
Report Generated: IPDebrief Intelligence Platform
Data Freshness: Real-time analysis
Classification: Defensive Security Intelligence
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 1627131.cloudwaysapps.com |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | 1627131.cloudwaysapps.com |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 30% | 2 | 3 |
| routing | 8% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 20% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 21% | 2 | 2 |
| Overall | 19% | 9 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-07 23:03:51 UTC |
| Last Seen | 2026-06-27 01:13:03 UTC |
| Profile Built | 2026-06-27 15:26:05 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 27 |
Full dossier details are available via our API.