# IP Intelligence Briefing: 51.77.147.214/32
Classification: LOW RISK - Cloud Infrastructure
Date: Current Intelligence Cycle
## Executive Summary
IP 51.77.147.214 is a low-risk cloud computing infrastructure endpoint hosted by OVH SAS in France. The IP serves as a web server with standard HTTP/HTTPS services and SSH access. No active threat indicators were identified, and the IP maintains a stable reputation profile with minimal abuse signals.
## Technical Profile
| Attribute | Value |
|---|---|
| **Risk Score** | 25/100 (Low Risk) |
| **Provider** | OVH SAS (AS16276) |
| **Location** | France (FR) |
| **Infrastructure** | Cloud Compute / Web Hosting |
| **Network Role** | OVH Provider |
| **Geolocation** | Europe/Paris timezone, 500km accuracy |
## Network Services
- Port 80/TCP: HTTP (nginx/1.26.0)
- Port 443/TCP: HTTPS (TLS 1.2/1.3)
- Port 22/TCP: SSH (OpenSSH 9.7p1 Ubuntu)
- Server: nginx/1.26.0 (Ubuntu)
TLS Certificate
- Issuer: Let's Encrypt (US)
- Subject: advisoryhub.ma
- Status: Valid, not self-signed
## DNS Analysis
- PTR Record: advisoryhub.workdns.com
- Forward Resolution: Confirmed
- DNSSEC: Valid
- DNSBL Status: Listed on 1 of 8 threat feeds
- Hosted Domains: 0
## Threat Intelligence
Current Indicators
- Threat Classification: None detected
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Blacklist Count: 0
- Known Campaigns: None
Risk Assessment
- Abuse Confidence Score: Not applicable
- Campaign Likelihood: None
- Cert Matches: 0
- Correlated IPs: 0
## Historical Observations
The IP has been monitored across 25 signal observations with the following trends:
- Infrastructure Type: Consistently identified as Cloud Compute
- Provider: OVH (stable)
- Threat Persistence: 0 days (not persistently malicious)
- Observation Count: 1 threat observation recorded
- Ownership Changes: 0
Recent observations (as of June 25, 2026) show consistent HTTP/HTTPS server behavior with nginx server signatures and standard security headers.
## Relationship Network
The IP maintains 68 documented relationships:
- Network Associations: VPS-SBG6 (same network)
- DNS Associations: advisoryhub.workdns.com
- Infrastructure: Cloud hosting environment
## Neighborhood Analysis (51.77.147.0/24)
- Abuse Density: 0 (mostly clean)
- Total Siblings: 2 active
- Threat Siblings: 2
- Neighbor IP: 51.77.147.122 (Risk Score: 25, Authority Score: 60)
The subnet demonstrates low abuse density with classification as "mostly_clean."
## Control Plane Intelligence
- Origin ASN: 16276 (OVH)
- BGP Prefix: 51.77.0.0/16
- Route Stability: Unstable
- Operator Score: 0.2609 (Basic)
- RPKI State: Not available
- IRR Consistency: Not available
## Recommended Actions
No immediate security actions recommended. The IP presents low risk with no active threat indicators. Standard operational monitoring is appropriate.
Firewall Considerations
- If blocking is required: No specific firewall rules generated
- If allowing: Standard web server ports (80, 443) with SSH monitoring
## Intelligence Assessment
51.77.147.214 operates as a legitimate cloud computing web server within OVH's French infrastructure. The endpoint shows no malicious indicators and maintains standard hosting characteristics. The DNS association with advisoryhub.workdns.com suggests this IP may be part of a hosting or advisory services infrastructure. No correlation with known threat actors or campaigns was identified.
Sensitivity: UNCLASSIFIED
Distribution: SOC Operations
Action Required: None - Standard monitoring
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | OVH SAS |
| ASN | AS16276 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | advisoryhub.workdns.com |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | advisoryhub.workdns.com |
๐ DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | 0/2 domains |
| DMARC | 1/2 domains |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
| Domains Checked | 2 domains |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | โ |
| 443 | https | tcp | โ |
| 22 | ssh | tcp | |
| Closed Ports | 25, 3389, 8080, 8443 (3 open / 7 scanned) | ||
| Server | nginx/1.26.0 (Ubuntu) |
| HTTP Title | โ |
| SSH Version | SSH-2.0-OpenSSH_9.7p1 Ubuntu-7ubuntu4.3 |
๐ TLS Certificate
| SANs | advisoryhub.ma |
| Valid From | 2026-06-13T19:49:33+00:00 |
| Valid Until | 2026-09-11T19:49:32+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha384ECDSA |
| Validity Period | 89 days |
| Serial Number | 069F831174DFFA1FF0D5D6081FB26B9DCFD1 |
| Thumbprint | A43CCFFCE0F58ACA7F7A3BA94731706ACB9884A2 |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 22% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 28% | 2 | 3 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 31% | 2 | 3 |
| Overall | 24% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-10 04:12:10 UTC |
| Last Seen | 2026-06-27 17:12:40 UTC |
| Profile Built | 2026-06-28 11:17:34 UTC |
| Data Freshness | Live |
| Signal Types | 26 |
| Total Observations | 32 |
Full dossier details are available via our API.