IPDebrief

5.135.139.120

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

THREAT INTELLIGENCE BRIEFING: 5.135.139.120/32

CLASSIFICATION: LOW RISK - HOSTING PROVIDER INFRASTRUCTURE

DATE: 2026-06-25

ASSIGNED TO: SOC Operations

---

EXECUTIVE SUMMARY

Target IP 5.135.139.120 is a low-risk cloud hosting endpoint operated by OVH (ASN 16276) in France. The IP supports web server services with minimal threat indicators and maintains stable infrastructure characteristics. No evidence of persistent malicious activity detected.

---

INFRASTRUCTURE PROFILE

Network Classification: Cloud Compute Infrastructure

Provider: OVH (Octave Klaba)

Location: France (FR)

CIDR Block: 5.135.0.0/16

Network Role: Web Server/Hosting

DNS Resolution:

Associated Domains:

TLS Certificate Details:

---

THREAT INDICATORS

Overall Risk Score: 25/100 (Low Risk)

Threat Indicators:

Network Security Flags:

Campaign Correlation: No known malicious campaigns or cert matches identified.

---

NETWORK CONTEXT

Subnet Analysis (5.135.139.0/24):

Control Plane Data:

---

OBSERVATION HISTORY

Total Observations: 25 signals across multiple categories

Recent Activity (2026-06-25):

Temporal Analysis:

---

RELATIONSHIP MAPPING

Direct Associations:

Key Entity Links:

---

SECURITY ACTIONS & RECOMMENDATIONS

Recommended Actions: None (Low Risk Profile)

Firewall Rules:

Threat Mitigation:

---

ANALYST NOTES

The target IP presents as a standard OVH cloud hosting endpoint with legitimate web server operations. The associated domain (clubentreprisespaysdemorlaix.com) appears to be a French business entity based on the domain name structure. While the subnet shows minimal threat presence (1 threat sibling), the target IP itself maintains low-risk characteristics with no active malicious indicators.

Threat Level: LOW

Action Required: NONE

Monitoring Priority: STANDARD

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ซ๐Ÿ‡ท France
Regionโ€”
Cityโ€”
TimezoneEurope/Paris
Latitude48.86
Longitude2.34

๐Ÿข Ownership & Registration

OrganizationOctave Klaba
ASNAS16276
Network Nameโ€”
CIDR Blockโ€”
RIRRIPE
Countryโ€”
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRns319676.ip-5-135-139.eu
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnamesns319676.ip-5-135-139.eu

๐Ÿ” DNS Hygiene

Hygiene Score80% (Excellent)
SPF1/2 domains
DMARC1/2 domains
FCrDNSVerified
DNSSECValid
CAANot configured
Domains Checked2 domains

โ˜๏ธ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeWeb Server
Network TierHosting โ€” Infrastructure provider without advanced routing
CloudHosting

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpโ€”
443httpstcpโ€”
Closed Ports22, 25, 3389, 8080, 8443 (2 open / 7 scanned)
Serverapache
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
CN=clubentreprisespaysdemorlaix.com
Issued by CN=Verokey Secure Web G2, O=Verokey, C=AU
Self-signed: No
SANsclubentreprisespaysdemorlaix.comwww.clubentreprisespaysdemorlaix.com
Valid From2026-02-10T00:00:00+00:00
Valid Until2027-02-10T23:59:59+00:00
TLS ProtocolTls12
Cipher SuiteTLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Signature Algorithmsha256RSA
Validity Period365 days
Serial Number022AF5F9FCFAB514FDEC59FBA42EEFDD
Thumbprint0F5B42DC0C97F1A5AB5BF435102F5D70B7CF2EC8

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
24
routing
13%
11
services
26%
23
ownership
24%
23
reputation
26%
13
geolocation
30%
23
Overall24%1017
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-08 05:02:21 UTC
Last Seen2026-06-27 12:45:44 UTC
Profile Built2026-06-28 06:51:39 UTC
Data FreshnessLive
Signal Types24
Total Observations31
๐Ÿ” 24 signal types ยท 31 observations collected
This report is generated from 24+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.