## IPDEBRIEF INTELLIGENCE BRIEFING
Target: 24.144.115.252/32
Classification: Cloud Infrastructure - Moderate Risk
Report Date: Current
EXECUTIVE SUMMARY
The target IP (24.144.115.252) is a DigitalOcean cloud compute instance located in North Bergen, CO. Risk score of 40 (Moderate Risk) with no active threat indicators. No services detected on this IP. Network neighborhood shows zero abuse density.
OWNERSHIP & INFRASTRUCTURE
- ASN: 14061 (DigitalOcean, LLC)
- Network: DIGITALOCEAN-24-144-64-0 (24.144.64.0/18)
- Infrastructure Type: CloudCompute / Hosting
- Geolocation: US, Colorado (39.55°N, -105.78°W), America/Denver timezone
- Route Stability: Unstable (BGP prefix 24.144.96.0/19)
THREAT INDICATORS
- Threat Confidence: Low
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Blacklist Count: 0
- DNSBL Listed: 2 of 8 lists
- Threat Persistence Days: 0
- Persistent Malicious Behavior: No
NETWORK SERVICES
- Open Ports: None detected
- TLS Certificate: Not observed
- HTTP Services: No active services
- DNS Records: No PTR hostnames; no forward resolution
- Email Auth: No SPF/DMARC records
SIGNAL HISTORY (17 Observations)
Most recent activity recorded 2026-07-23:
- Multiple blacklist listing signals (8 total lists, 1 active listing)
- DNS operator score: 0.1304 (Minimal)
- Previous observation 2026-07-05 confirmed ownership stability
NEIGHBORHOOD ANALYSIS (24.144.115.0/24)
- Abuse Density: 0.00 (Clean)
- Threat Siblings: 0
- Active Siblings: 0
- Risk Classification: Clean
RELATIONSHIP GRAPH
Limited relationships detected:
- Same Network: DIGITALOCEAN-24-144-64-0 (3 entries)
- No associated hostnames, organizations, or certificates identified
RECOMMENDED ACTIONS
Risk Score: 40 (Moderate)
Firewall/Blocking Recommendations:
```bash
# iptables
iptables -A INPUT -s 24.144.115.252 -j DROP
# nftables
nft add rule inet filter input ip saddr 24.144.115.252 drop
# Cloudflare WAF
Expression: ip.src eq 24.144.115.252
Action: Block
# AWS WAF
Addresses: 24.144.115.252/32
Description: IPDebrief risk 40
```
INTELLIGENCE JUDGMENT
This IP represents a standard cloud infrastructure asset with moderate risk scoring driven primarily by DNSBL presence rather than active malicious behavior. No open services detected, suggesting either a dormant instance, internal use, or aggressive egress filtering. The absence of threat indicators, combined with zero abuse density in the subnet, indicates low immediate threat. SOC teams should monitor rather than block, unless contextual indicators (failed authentication, unusual connection patterns) develop. The 2/8 DNSBL listing ratio warrants periodic review but does not indicate active abuse at this time.
Priority: LOW-MONITOR
Action: Standard logging and observation; no immediate blocking required.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | DIGITALOCEAN-24-144-64-0 |
| CIDR Block | 24.144.64.0/18 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting — Infrastructure provider without advanced routing |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | — |
| 443 | https | tcp | — |
| 22 | ssh | tcp | Banner detected |
| Closed Ports | 25, 3389, 8080, 8443 (3 open / 7 scanned) | ||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS14061 |
| Network Prefix | 24.144.96.0/19 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 42% | 2 | 3 |
| routing | 8% | 1 | 1 |
| services | 31% | 2 | 3 |
| ownership | 17% | 2 | 3 |
| reputation | 34% | 1 | 3 |
| geolocation | 35% | 2 | 3 |
| Overall | 28% | 10 | 16 |
| Data Coherence | Mostly Consistent (80%) — 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-04 05:08:52 UTC |
| Last Seen | 2026-08-26 18:39:57 UTC |
| Profile Built | 2026-08-29 07:41:41 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 23 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 24.144.115.252
Who owns the IP address 24.144.115.252?
24.144.115.252 is registered to DigitalOcean, LLC. The address falls within the 24.144.64.0/18 network block. Registration is held at ARIN.
Where is 24.144.115.252 located?
Geolocation data places 24.144.115.252 in North Bergen, New Jersey, United States. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 24.144.115.252 malicious or safe?
24.144.115.252 currently carries a moderate risk assessment, meaning some indicators warrant caution, but the evidence is mixed. This assessment is generated from continuously collected signals and can change over time.
What ports are open on 24.144.115.252?
Responsive ports observed on 24.144.115.252 include 80, 443, 22. Port visibility reflects the most recent scan and may change as the host's configuration or firewall rules change.
Is 24.144.115.252 a VPN, proxy, or data center address?
24.144.115.252 is classified as cloud infrastructure and hosting infrastructure based on network ownership and behavioural analysis.