IPDebrief

165.22.85.201

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING: 165.22.85.201

## EXECUTIVE SUMMARY

IP address 165.22.85.201 is classified as Low Risk with an overall risk score of 25. The address is registered to DigitalOcean, LLC and is hosted in Frankfurt am Main, Germany. The IP exhibits minimal threat indicators and shows no evidence of malicious activity across observed signals.

---

## PROFILE OVERVIEW

Risk Assessment

Ownership & Infrastructure

Geolocation

---

## NETWORK CLASSIFICATION

Role Indicators

Network Status

---

## THREAT INTELLIGENCE

Threat Indicators

Control Plane

Behavioral Signals

---

## NEIGHBORHOOD ANALYSIS

Subnet: 165.22.85.201/24

The IP shows no neighboring threat activity within its /24 subnet.

---

## RELATIONSHIP GRAPH

The IP is associated with 13 network relationships, all pointing to the same network block DIGITALOCEAN-165-22-0-0. No external relationships to hostnames, organizations, or certificates were identified beyond the network association.

---

## OBSERVATION HISTORY

Observation Count: 16 signals observed

Most Recent Activity: 2026-06-20

Key historical indicators:

Recent signals indicate:

---

## SERVICES & DNS

Open Ports: None detected

TLS Certificate: None

HTTP Title: None

Server Banner: None

Certificates: None

DNS Resolution

---

## RECOMMENDED ACTIONS

Security Recommendations: None

Firewall Rules: None recommended

The IP address presents a low-risk profile with no actionable threat indicators. No immediate blocking or filtering actions are recommended based on current intelligence.

---

## ASSESSMENT

IP 165.22.85.201 represents a standard DigitalOcean cloud hosting environment with no observable malicious activity. The IP is properly registered, maintains stable ownership, and shows no threat indicators across multiple signal categories. The single DNSBL listing does not correlate with known threat feeds. SOC analysts may treat this IP as benign for operational purposes, though standard monitoring practices should continue.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฉ๐Ÿ‡ช Germany
RegionHesse
CityFrankfurt am Main
TimezoneEurope/Berlin
Latitude51.17
Longitude10.45

๐Ÿข Ownership & Registration

OrganizationDigitalOcean, LLC
ASNAS14061
Network NameDIGITALOCEAN-165-22-0-0
CIDR Block165.22.0.0/16
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo โ€” PTR hostname does not resolve back to this IP (weak signal)

๐Ÿ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeFirewalled / No Services
Network TierHosting โ€” Infrastructure provider without advanced routing
CloudHosting

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
34%
23
routing
8%
11
services
8%
11
ownership
27%
23
reputation
32%
13
geolocation
40%
23
Overall25%914
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-25 18:47:14 UTC
Last Seen2026-06-29 01:58:06 UTC
Profile Built2026-06-29 08:01:26 UTC
Data FreshnessLive
Signal Types18
Total Observations20
๐Ÿ” 18 signal types ยท 20 observations collected
This report is generated from 18+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.