# IP Intelligence Briefing: 64.225.125.82/32
## Executive Summary
IP address 64.225.125.82 is a low-risk infrastructure asset hosted on DigitalOcean cloud infrastructure. No active threat indicators or malicious behavior observed. The IP resolves to security scanning infrastructure (binaryedge.ninja) and presents minimal risk to defensive operations.
## Infrastructure Profile
- Organization: DigitalOcean, LLC (ASN 14061)
- Network Block: 64.225.0.0/17
- Subnet: 64.225.125.0/24 (clean classification, 0% abuse density)
- Location: Santa Clara, California, US
- Infrastructure Type: Cloud Compute (single-service host)
## Threat Assessment
- Risk Score: 25/100 (Low Risk)
- Threat Indicators: None detected
- Blacklist Status: Listed on 1 of 8 DNSBLs
- Known Campaigns: None
- Tor Exit: No
- Known Attacker: No
## DNS and Service Analysis
- PTR Hostname: prod-boron-sfo2-53.do.binaryedge.ninja
- Associated Domain: binaryedge.ninja
- Open Ports: TCP/22 (SSH)
- Email Auth: SPF configured, DMARC not present
- DNSSEC: Valid
## Neighborhood Context
The /24 subnet (64.225.125.0/24) contains minimal activity with no identified threat-sibling IPs. The subnet is classified as "clean" with zero abuse density.
## Historical Observations
22 signal observations recorded, primarily geolocation and DNS resolution events from late August 2026. No persistent malicious activity patterns identified. The IP has remained stable with no ownership changes or threat persistence indicators.
## Recommended Actions
No immediate defensive actions required. The IP represents legitimate cloud infrastructure with security scanning service affiliations. Standard logging and monitoring practices apply.
---
*Report generated: 2026-08-13 | Source: IPDebrief Intelligence Platform*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | DIGITALOCEAN-64-225-0-0 |
| CIDR Block | 64.225.0.0/17 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | prod-boron-sfo2-53.do.binaryedge.ninja |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | prod-boron-sfo2-53.do.binaryedge.ninja |
π DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Single-Service Host |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 22 | ssh | tcp | |
| Closed Ports | 25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
| SSH Version | SSH-2.0-OpenSSH_8.9p1 Ubuntu-3ubuntu0.16 |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 35% | 2 | 3 |
| routing | 17% | 1 | 1 |
| services | 24% | 2 | 2 |
| ownership | 35% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 35% | 2 | 3 |
| Overall | 27% | 10 | 14 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Moderate (55%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-08-01 04:26:04 UTC |
| Last Seen | 2026-08-13 02:27:52 UTC |
| Profile Built | 2026-08-13 02:42:18 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 25 |
Full dossier details are available via our API.