# IP INTELLIGENCE BRIEFING: 167.71.31.15/32
## EXECUTIVE SUMMARY
IP address 167.71.31.15 is a DigitalOcean cloud infrastructure endpoint classified as LOW RISK with a risk score of 20. The IP operates as a web server in North Bergen, NJ, US, and shows no malicious activity indicators.
## INFRASTRUCTURE PROFILE
- Provider: DigitalOcean, LLC (ASN 14061)
- Network Block: 167.71.0.0/16
- Classification: CloudCompute / Web Server
- Ownership: Legitimate cloud hosting provider
- Registration: ARIN registry
## THREAT ASSESSMENT
- Risk Score: 20 (Low Risk)
- Abuse Confidence: None detected
- Blacklist Status: Clean (0 blacklist hits)
- Known Campaigns: None
- Tor/VPN/Proxy: Negative
- Malicious Activity: No evidence of attacks, spam, or known threat actor activity
## NETWORK SERVICES
| Port | Protocol | Service | Status |
|---|---|---|---|
| 22 | TCP | SSH | Open |
| 80 | TCP | HTTP | Open |
| 443 | TCP | HTTPS | Open |
TLS Certificate: Traefik default certificate (CN=TRAEFIK DEFAULT CERT)
HTTP Response: 404 Not Found
## GEOLOCATION DATA
- Country: US
- Region: New Jersey
- City: North Bergen
- Coordinates: 39.83°N, -98.58°W
- Geo Confidence: Low confidence geolocation data
- RTT Anomaly: 22ms measured vs 119.3ms minimum for stated distance (5,963km) β indicates potential geolocation data inconsistency
## NEIGHBORHOOD ANALYSIS
- Subnet: 167.71.31.0/24
- Abuse Density: 0.3333 (moderate)
- Subnet Classification: Mostly Clean
- Total Siblings: 3
- Active Siblings: 2
- Threat Siblings: 1
- Neighbor IPs:
- 167.71.31.76: Risk Score 25
- 167.71.31.191: Risk Score 25
## OBSERVATION HISTORY
- Total Observations: 21
- Recent Activity: 2026-06-21
- Threat Persistence: None detected
- Ownership Changes: 0
- Signal Types: Multi-signal inference, HTTP analysis, network classification, DNS resolution
## NETWORK RELATIONSHIPS
- Primary Network: DIGITALOCEAN-167-71-0-0
- Relationship Count: 18 (same network associations)
- Network Classification: Cloud infrastructure
## RECOMMENDATIONS FOR SOC
1. No immediate action required β IP shows no malicious indicators
2. Monitor subnet 167.71.31.0/24 β One threat sibling detected in neighborhood
3. Standard cloud hosting traffic β Treat as legitimate infrastructure
4. No firewall rules recommended β Low risk profile
5. Verify geolocation consistency β RTT discrepancy noted; may require additional validation
## CONCLUSION
IP 167.71.31.15 represents a standard DigitalOcean cloud web server endpoint with no malicious activity. The IP exhibits normal cloud infrastructure characteristics and maintains a clean threat profile. No blocking or restriction measures are warranted at this time.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | DIGITALOCEAN-167-71-0-0 |
| CIDR Block | 167.71.0.0/16 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Single-Service Host |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 22 | ssh | tcp | |
| Closed Ports | 25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
| SSH Version | SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.16 |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 27% | 2 | 3 |
| ownership | 27% | 2 | 3 |
| reputation | 22% | 1 | 3 |
| geolocation | 24% | 2 | 3 |
| Overall | 23% | 10 | 17 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-30 00:19:38 UTC |
| Last Seen | 2026-06-29 06:57:37 UTC |
| Profile Built | 2026-06-29 07:12:25 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 22 |
Full dossier details are available via our API.