IP Intelligence Briefing: 165.22.248.57
Date: 2026-06-13
---
**1. Core Profile**
- Risk Score: 40 (Moderate Risk)
- Provider: DigitalOcean (ASN 14061)
- Geolocation: Singapore (SG), Latitude 1.35, Longitude 103.82
- Network Role: Cloud Compute (DigitalOcean Hosting)
- Threat Indicators: No direct malicious activity detected (no malware, phishing, or exploit campaigns).
---
**2. Observation History**
- Recent Activity (2026-06-13):
- Listed on 8 threat intelligence feeds (2 high-severity threats).
- Geolocation inferred with 0.35 confidence (Singapore).
- Operator score: Minimal (0.13).
- No active services or DNS anomalies detected.
---
**3. Network Relationships**
- Linked to:
- Subnet DIGITALOCEAN-165-22-0-0 (shared network).
- No direct connections to known malicious domains, organizations, or certificates.
---
**4. Subnet Analysis**
- Subnet: 165.22.248.0/24
- Neighbor Risk:
- 1 sibling IP (165.22.248.213) with a risk score of 25 (low risk).
- Subnet abuse density: 0% (mostly clean).
---
**5. Actionable Insights**
- Monitor: The IPβs association with 8 threat feeds warrants closer scrutiny for potential misuse.
- Investigate: Verify if the DigitalOcean instance is compromised or misconfigured.
- Network Context: Given the low-risk subnet and cloud provider context, the IP is likely legitimate but should be monitored for anomalous traffic patterns.
---
Conclusion: 165.22.248.57 is a DigitalOcean cloud instance in Singapore with no direct malicious activity. However, its presence on multiple threat feeds suggests potential risks that require further investigation.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 34% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 20% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 21% | 2 | 2 |
| Overall | 20% | 9 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-07 23:03:51 UTC |
| Last Seen | 2026-06-27 01:14:54 UTC |
| Profile Built | 2026-06-27 21:26:58 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 24 |
Full dossier details are available via our API.