# IP Intelligence Briefing: 51.75.74.185
## Executive Summary
Intellectual property analysis confirms 51.75.74.185 as a low-risk cloud computing infrastructure endpoint operating within OVH GmbH's German data center network. The address presents minimal threat indicators and operates as a standard web hosting service with no malicious activity detected during the assessment period.
## Technical Profile
- Risk Score: 25/100 (Low Risk)
- ASN: 16276 (OVH GmbH)
- Organization: OVH GmbH, VPS-DE2 network
- CIDR Block: 51.75.64.0/20
- Geolocation: Deutschland, St. Johanner Str., Europe/Berlin timezone
- Infrastructure Type: CloudCompute/Hosting
- Network Classification: Cloud-based web server infrastructure
## Network Services & Configuration
The endpoint exposes three services:
- Port 80/tcp: HTTP service
- Port 443/tcp: HTTPS service
- Port 22/tcp: SSH (OpenSSH_9.2p1 Debian)
SSL/TLS Configuration:
- Certificate issuer: Let's Encrypt (CN=YE2, O=Let's Encrypt, C=US)
- Subject: CN=app.juncker.net
- Server: nginx/1.22.1
DNS Resolution:
- PTR hostname: vps-2724adfb.vps.ovh.net
- Forward resolution confirmed to app.juncker.net
- SPF record configured: v=spf1 a mx include:spf.febas.net ~all
- DMARC: Not configured
## Threat Intelligence Assessment
Current Threat Indicators:
- No blacklist entries detected
- No known campaign affiliations
- Not identified as Tor exit node, known attacker, or spam source
- Abuse confidence score: Unavailable (no malicious indicators)
- DNSBL listed on 1 of 8 total lists
Control Plane Observations:
- Route stability: False
- Operator score: 0.2609 (Basic classification)
- DNSSEC: Valid
## Historical Analysis
Review of 25 signal observations spanning the observation period indicates:
- Consistent cloud infrastructure classification (OVH hosting)
- No emergence of malicious threat indicators
- Stable service configuration (nginx/1.22.1)
- HTTP response times averaging 337ms
- SPF record maintained throughout observation period
## Network Neighborhood
- Subnet: 51.75.74.185/24
- Abuse density: 0.0
- Classification: Clean
- Active sibling IPs: 1
- Threat-associated siblings: 0
## Relationship Graph
Analysis identified 28 relationship entries:
- 14 instances of "Same Network" relationship to VPS-DE2
- 14 instances of DNS Association to vps-2724adfb.vps.ovh.net
- No external organization or certificate correlations beyond expected OVH infrastructure
## Recommended Security Actions
Based on the low-risk profile, no immediate blocking or mitigation actions are recommended. The endpoint represents legitimate cloud hosting infrastructure with standard configurations.
Monitoring Recommendations:
- Monitor for changes in DNS configuration (DMARC currently absent)
- Track for any emergence of threat indicators
- Maintain awareness of app.juncker.net domain associations
Classification: LOW RISK - Legitimate hosting infrastructure
Assessment Date: [Current Date]
Analyst: IPDebrief Intelligence System
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | OVH GmbH |
| ASN | AS16276 |
| Network Name | VPS-DE2 |
| CIDR Block | 51.75.64.0/20 |
| RIR | ARIN |
| Country | DE |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | vps-2724adfb.vps.ovh.net |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | vps-2724adfb.vps.ovh.net |
๐ DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | 2/2 domains |
| DMARC | 1/2 domains |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
| Domains Checked | 2 domains |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | โ |
| 443 | https | tcp | โ |
| 22 | ssh | tcp | |
| Closed Ports | 25, 3389, 8080, 8443 (3 open / 7 scanned) | ||
| Server | nginx/1.22.1 |
| HTTP Title | โ |
| SSH Version | SSH-2.0-OpenSSH_9.2p1 Debian-2+deb12u10 |
๐ TLS Certificate
| SANs | app.juncker.net |
| Valid From | 2026-05-30T04:25:00+00:00 |
| Valid Until | 2026-08-28T04:24:59+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha384ECDSA |
| Validity Period | 89 days |
| Serial Number | 06B9BF611EC96CC380FF32E0DD7BC87FEB19 |
| Thumbprint | C7406798A79AF557584778E9D232F90C19D79BC5 |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 30% | 2 | 3 |
| ownership | 27% | 2 | 3 |
| reputation | 15% | 1 | 2 |
| geolocation | 19% | 2 | 2 |
| Overall | 22% | 10 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-31 11:14:56 UTC |
| Last Seen | 2026-06-21 06:27:44 UTC |
| Profile Built | 2026-06-21 06:34:23 UTC |
| Data Freshness | Live |
| Signal Types | 25 |
| Total Observations | 27 |
Full dossier details are available via our API.