# IP Intelligence Briefing: 168.144.120.210/32
## Executive Summary
The IP address 168.144.120.210 is classified as Low Risk (risk score: 25) with a reputation profile indicating minimal malicious activity. The address is associated with DigitalOcean cloud infrastructure in Bengaluru, India, operating within a moderately dense subnet environment. No active threat indicators or known campaign correlations were identified.
## Network Profile
| Attribute | Value |
|---|---|
| **ASN** | 14061 (DigitalOcean, LLC) |
| **Organization** | DigitalOcean, LLC |
| **Network Block** | 168.144.0.0/16 |
| **CIDR Classification** | 168.144.120.210/24 |
| **Infrastructure Type** | CloudCompute |
| **Hosting Status** | Active Hosting |
| **Country** | India (IN) |
| **Region/City** | Karnataka, Bengaluru |
## Risk Assessment
- Overall Risk Score: 25 (Low Risk)
- Provider Score: 0
- Authority Score: 0
- DNSBL Listings: 1 (out of 8 total lists)
- Abuse Confidence Score: Null
- Blacklist Count: 0
- Known Attacker: No
- Tor Exit Node: No
- Spam Source: No
- Persistent Malicious Activity: No
## Service Exposure
The IP address shows no active service exposure:
- Open Ports: None detected
- TLS Certificates: None
- HTTP Services: None
- PTR Records: None
- DNS Resolution: Not confirmed
- Forward Hostnames: None
## Neighborhood Analysis
The /24 subnet (168.144.120.0/24) exhibits moderate abuse density:
- Subnet Abuse Density: 0.6667
- Classification: Mostly Clean
- Total Siblings: 3
- Active Siblings: 0
- Threat Siblings: 2
- Inherited Risk: 5
Identified Neighbors:
| IP Address | Risk Score | Authority Score |
|---|---|---|
| 168.144.120.108 | 25 | 50 |
| 168.144.120.120 | 25 | 50 |
## Relationship Graph
Fourteen relationship records link exclusively to the network block NET-168-144-0-0-1, indicating consistent network-level association with DigitalOcean infrastructure. No organizational or hostname-level relationships were identified.
## Observation History
Fifteen historical observations recorded through 2026-06-21, revealing:
- Cloud infrastructure classification (DigitalOcean) consistently identified
- Geolocation signals pointing to India (Bengaluru) with 0.35 confidence
- One alienvault-otx signal indicated US location (37.751°N, -97.822°W) with 0.75 confidence
- Operator score signals ranging from 0.1304 to 0.15
- No persistent malicious behavior observed
- Threat observation count: 1
## Control Plane Analysis
- BGP Prefix: 168.144.112.0/20
- Route Stability: False
- RPKI State: Not validated
- DNSSEC: Valid
- Operator Score: 0.1304 (Minimal)
- Route Changes (30d): 0
## Recommendations
Based on the risk profile and lack of active threat indicators:
1. Monitoring: Standard monitoring protocols apply; no immediate blocking required
2. Firewall Rules: No specific action rules generated
3. Investigation Priority: Low
4. Context: Cloud-based infrastructure in India; investigate if associated with known threat actors or campaigns
## Intelligence Notes
This IP represents standard cloud hosting infrastructure with no evidence of malicious activity. The subnet shows moderate abuse density, suggesting some neighboring addresses may warrant periodic review. The geolocation inconsistency between India signals and one US signal may warrant further investigation if this IP is observed in suspicious contexts.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | NET-168-144-0-0-1 |
| CIDR Block | 168.144.0.0/16 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 22% | 1 | 3 |
| geolocation | 19% | 2 | 2 |
| Overall | 20% | 9 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-28 06:15:55 UTC |
| Last Seen | 2026-06-29 05:08:18 UTC |
| Profile Built | 2026-06-29 05:17:47 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 17 |
Full dossier details are available via our API.