# IP Intelligence Briefing: 178.128.46.239/32
Classification: Low Risk
Date of Analysis: 2026-06-16
Risk Score: 25/100
Status: Clean / No Active Threat Indicators
---
## Executive Summary
IP address 178.128.46.239 is a DigitalOcean cloud compute endpoint located in London, GB. Current intelligence indicates minimal risk with no active threat indicators, blacklist listings, or known malicious associations. The IP is associated with a cloud hosting infrastructure and shows stable ownership patterns consistent with legitimate cloud provider operations.
---
## Technical Profile
Ownership & Infrastructure:
- Organization: DigitalOcean LLC
- ASN: AS14061 (DIGITALOCEAN)
- CIDR Block: 178.128.32.0/20
- RIR: RIPE
- Infrastructure Type: Cloud Compute
- Service Purpose: Firewalled / No Services Detected
Geolocation:
- Country: GB (United Kingdom)
- Region: ENG (England)
- City: London
- Accuracy Radius: 750 km
- Geo-Consensus: Validated
DNS Resolution:
- PTR Hostname: 700735.cloudwaysapps.com
- Forward Resolution: 700735.cloudwaysapps.com
- Email Authentication: SPF/DMARC not configured
- DNSSEC: Valid
Network Role:
- Is Cloud: Yes
- Is Hosting: Yes
- Is CDN/Proxy/VPN: No
- Is Tor Exit Node: No
- Is Mobile/Residential: No
---
## Threat Intelligence
Current Threat Indicators:
- Blacklist Count: 0
- Abuse Confidence Score: Not applicable (low risk)
- Known Campaigns: None
- Threat Feeds: No indicators
- DNSBL Listings: 1 of 8 total (minimal impact)
Risk Assessment:
- Overall Reputation: Low Risk
- Provider Score: 0 (neutral)
- Authority Score: 0
- Stability: Stable ownership
- Threat Persistence: 0 days
- Persistently Malicious: No
---
## Observation History
Recent signal observations (18 total) indicate consistent, low-risk patterns:
| Timestamp | Signal Type | Key Finding |
|---|---|---|
| 2026-06-16 21:28 | Subnet Analysis | Clean classification, 0 abuse density |
| 2026-06-16 21:23 | Geolocation | GB, London (55.38°N, -3.44°W) |
| 2026-06-16 21:22 | Threat Reputation | AS14061 DigitalOcean, reputation 0 |
| 2026-06-16 21:21 | Ownership | No changes, stable |
| 2026-06-16 21:20 | RIR/Org | RIPE, DigitalOcean abuse@digitalocean.com |
Temporal analysis confirms no persistent malicious behavior with threat observation count at 0.
---
## Relationship Graph
Connected Entities:
- Network: DIGITALOCEAN (4 instances)
- Hostname: 700735.cloudwaysapps.com (4 DNS associations)
The IP resolves to a Cloudways application hostname, indicating hosting within a managed cloud platform environment.
---
## Neighborhood Analysis
Subnet: 178.128.46.0/24
- Abuse Density: 0 (clean)
- Total Siblings: 2
- Active Siblings: 0
- Threat Siblings: 0
- Classification: Clean
- Inherited Risk: 0
Neighbor IP: 178.128.46.151 (Risk Score: 25, Authority Score: 60)
The /24 subnet shows no elevated abuse activity, consistent with DigitalOcean's cloud infrastructure classification.
---
## Recommended Actions
Firewall Policy: No specific blocking rules recommended due to low risk profile.
SOC Analyst Guidance:
- Monitor for any changes in DNS resolution patterns
- No immediate action required; maintain standard cloud provider allowlist status
- Consider reviewing associated hostname (700735.cloudwaysapps.com) if inbound traffic observed
---
## Conclusion
IP 178.128.46.239 represents a standard DigitalOcean cloud compute endpoint with no malicious indicators. The clean subnet classification, stable ownership, and lack of threat associations support classification as low-risk infrastructure. No immediate defensive actions are warranted beyond standard cloud provider traffic handling procedures.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | digitalocean |
| ASN | AS14061 |
| Network Name | DIGITALOCEAN |
| CIDR Block | 178.128.32.0/20 |
| RIR | RIPE |
| Country | GB |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 700735.cloudwaysapps.com |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | 700735.cloudwaysapps.com |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | โ |
| 443 | https | tcp | โ |
| 22 | ssh | tcp | |
| Closed Ports | 25, 3389, 8080, 8443 (3 open / 7 scanned) | ||
| Server | nginx |
| HTTP Title | โ |
| SSH Version | SSH-2.0-OpenSSH_8.4p1 Debian-5+deb11u6 |
๐ TLS Certificate
| SANs | *.cloudwaysapps.comcloudwaysapps.com |
| Valid From | 2026-03-24T00:00:00+00:00 |
| Valid Until | 2026-09-08T23:59:59+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha256RSA |
| Validity Period | 168 days |
| Serial Number | 009B708F987840C872F8BA3107B1BE80B7 |
| Thumbprint | 6C279C136F317BAEDEEEEA2E6CD5AABC7627E2E2 |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 2 |
| routing | 17% | 1 | 1 |
| services | 17% | 1 | 1 |
| ownership | 35% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 17% | 1 | 1 |
| Overall | 21% | 8 | 10 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-06-14 01:58:20 UTC |
| Last Seen | 2026-06-21 21:15:26 UTC |
| Profile Built | 2026-06-21 21:29:53 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 23 |
Full dossier details are available via our API.