IP Intelligence Briefing: 167.71.237.44/32
*Generated via IPDebrief Analysis*
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Ownership:
- Provider: DigitalOcean, LLC (ASN 14061)
- Geolocation: Bengaluru, Karnataka, India (IN)
- Network Role: CloudCompute (Virtual Machine)
- Threat Indicators:
- No malicious indicators, spam, or known attacker activity.
- No DNSBL listings or TLS certificate anomalies.
- Control Plane:
- BGP prefix: `167.71.224.0/20` (DigitalOcean)
- DNSSEC validation: Enabled
- Route stability: Unstable (0 route changes in 30 days)
---
**2. Observation History**
- Geolocation Consistency:
- Confirmed via 5 probes (avg RTT: 223ms, ~7,581km distance).
- Plausible inference (2250km accuracy radius).
- DNSBL Activity:
- Listed in 1 of 8 DNSBLs (confidence: 0.85).
- No correlated campaigns or malicious domains.
- Network Stability:
- No recent changes in ownership or routing.
---
**3. Relationships**
- Network Affiliation:
- Part of `DIGITALOCEAN-167-71-0-0` network (same ASN, /20 subnet).
- No connections to known malicious organizations or subnets.
- Services:
- No open ports, TLS certificates, or HTTP services detected.
---
**4. Neighborhood Analysis**
- Subnet: `167.71.237.44/24`
- Abuse Density: 0% (clean subnet).
- Neighbors:
- No sibling IPs found (likely due to /32 prefix).
---
**5. Recommendations**
- Monitoring:
- Track DNSBL listings for potential false positives.
- Monitor geolocation consistency if the IP is used for geographically restricted services.
- Mitigation:
- No immediate firewall rules or actions required.
- Ensure cloud provider (DigitalOcean) has no recent security advisories for this subnet.
Conclusion: This IP is a legitimate DigitalOcean VM with no malicious activity detected. No actionable threats identified, but ongoing monitoring is advised for DNSBL anomalies or network changes.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 29% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 31% | 1 | 3 |
| geolocation | 39% | 2 | 3 |
| Overall | 24% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-15 08:43:22 UTC |
| Last Seen | 2026-06-28 02:00:31 UTC |
| Profile Built | 2026-06-28 20:04:40 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 26 |
Full dossier details are available via our API.