IPDebrief

167.172.133.108

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

INTELLIGENCE BRIEFING: 167.172.133.108

Classification: LOW RISK / INFORMATIONAL

Date of Analysis: [Current Date]

Analyst: SOC Operations

---

EXECUTIVE SUMMARY

IP address 167.172.133.108 is a DigitalOcean cloud infrastructure endpoint with a low risk profile (Risk Score: 25/100). The IP is associated with legitimate cloud computing infrastructure in North Bergen, NJ, US, showing minimal threat indicators and standard cloud provider characteristics. No malicious campaigns or persistent attacker activity detected.

---

NETWORK OWNERSHIP & GEOLOCATION

---

THREAT ASSESSMENT

Overall Risk Score: 25 (Low Risk)

Reputation: Low Risk

Threat Indicators:

DNSBL Status: Listed on 1 of 8 threat feeds (dnsblListedCount: 1)

---

DNS & HOSTNAME ANALYSIS

---

SERVICE FINGERPRINTING

Open Ports:

No HTTP/HTTPS services detected. Single-SSH host profile consistent with cloud infrastructure management endpoints.

---

NEIGHBORHOOD ANALYSIS (167.172.133.0/24)

Assessment: Subnet shows minimal abuse density. Neighbor 167.172.133.85 maintains similar low-risk profile.

---

TEMPORAL OBSERVATIONS

Total Historical Observations: 22

Threat Observation Count: 1

Threat Persistence Days: 0

Ownership Changes: 0

Key Historical Signals:

---

NETWORK RELATIONSHIPS

---

SECURITY RECOMMENDATIONS

Current Risk Level: LOW

Action Required: Standard monitoring

No immediate blocking or mitigation actions recommended. The IP exhibits characteristics of legitimate cloud infrastructure:

1. Firewall Policy: Allow standard SSH traffic if operational requirements exist

2. Monitoring: Continue standard traffic logging and anomaly detection

3. Blocklisting: Not recommended based on current risk profile

4. Geolocation: No geo-blocking required (legitimate US-based cloud provider)

Note: This IP is part of DigitalOcean's binaryedge.ninja infrastructure, which may be used for legitimate security tooling and monitoring services.

---

CONCLUSION

IP 167.172.133.108 represents low-risk cloud infrastructure with no evidence of malicious activity. The IP maintains consistent ownership history and standard cloud provider characteristics. No defensive action required beyond routine network monitoring.

END OF BRIEFING

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionNJ
CityNorth Bergen
Timezoneβ€”
Latitude40.80
Longitude-74.02

🏒 Ownership & Registration

Organizationdigitalocean
ASNAS14061
Network NameDigitalOcean
CIDR Block167.172.0.0/16
RIRARIN
CountryUS
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTRprod-bromine-nyc1-192.do.binaryedge.ninja
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnamesprod-bromine-nyc1-192.do.binaryedge.ninja

πŸ” DNS Hygiene

Hygiene Score60% (Good)
SPFPresent
DMARCNot configured
FCrDNSVerified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeSingle-Service Host
Network TierTier 3 β€” Basic operator with some routing infrastructure
CloudHosting

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
22sshtcp
Closed Ports25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”
SSH VersionSSH-2.0-OpenSSH_8.9p1 Ubuntu-3ubuntu0.15

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
31%
24
routing
13%
11
services
19%
22
ownership
30%
23
reputation
28%
13
geolocation
19%
22
Overall23%1015
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-06-03 12:21:03 UTC
Last Seen2026-06-21 10:14:39 UTC
Profile Built2026-06-21 10:20:46 UTC
Data FreshnessLive
Signal Types22
Total Observations25
πŸ” 22 signal types Β· 25 observations collected
This report is generated from 22+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.