# IP Intelligence Briefing: 64.226.91.56/32
## Executive Summary
IP 64.226.91.56/32 is a cloud infrastructure endpoint associated with DigitalOcean, LLC, operating from Frankfurt am Main, Germany. Current risk assessment is Low Risk (Score: 25). The IP shows no active threat indicators, maintains stable ownership, and exhibits no behavioral anomalies requiring immediate escalation.
## Infrastructure Profile
- Organization: DigitalOcean, LLC (ASN 14061)
- Network: DIGITALOCEAN-64-226-64-0 (64.226.64.0/18)
- Location: Frankfurt am Main, Hesse, Germany (DE)
- Infrastructure Type: CloudCompute
- Geolocation Consensus: Plausible (2 sources, 400km accuracy radius)
- RTT Performance: Average 116.2ms, Minimum 111ms
## Threat Assessment
- Overall Risk Score: 25/100 (Low Risk)
- Blacklist Status: Not listed (0 entries)
- Threat Indicators: None detected
- Tor/Proxy/VPN: No (confirmed)
- Known Attacker: No
- Spam Source: No
- Abuse Confidence Score: Not applicable
- Threat Persistence: 0 days
## Service & Network Activity
- Open Ports: None detected
- TLS Certificates: None observed
- HTTP Services: No active web services
- DNS Resolution: No PTR hostnames, no forward resolution
- Email Authentication: No SPF/DMARC records (expected for cloud compute)
## Neighborhood Analysis (64.226.91.0/24)
- Abuse Density: 1 (Low)
- Classification: Mostly Clean
- Inherited Risk: 2/100
- Total Siblings: 1
- Active Siblings: 0
- Threat Siblings: 1
## Control Plane Data
- Route Stability: Stable (0 changes in 30 days)
- DNSSEC: Valid
- DNSBL Listed: 1 of 8 total lists
- Operator Score: 0.1304 (Minimal)
- BGP Prefix: 64.226.80.0/20
## Historical Observations
- Total Signals: 17 observations
- Observation Period: Through 2026-06-21
- Ownership Changes: 0
- Threat Events: 1 observed (non-persistent)
- Recent Signal Types: Geolocation inference, subnet classification, operator scoring, blacklist verification
- Trend: Consistent low-risk profile across all observation windows
## Relationship Graph
- Network Associations: DIGITALOCEAN-64-226-64-0 (13 instances)
- Organizational Links: None
- Hostname Associations: None
- Certificate Associations: None
## Behavioral Indicators
- Honeypot Hits: 0
- Enumeration Strikes: 0
- Campaign Correlations: 0
- Cert Matches: 0
## Recommended Actions
- Traffic Policy: No blocking recommended
- Monitoring: Standard cloud infrastructure monitoring sufficient
- Escalation: Not required
- Firewall Rules: No specific rules generated (low-risk profile)
---
Intel Summary: This IP represents standard cloud infrastructure activity with no malicious indicators. The single threat sibling in the subnet does not correlate to this specific endpoint. SOC teams may treat as benign cloud traffic requiring standard network monitoring.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | DIGITALOCEAN-64-226-64-0 |
| CIDR Block | 64.226.64.0/18 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 32% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 30% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 35% | 2 | 3 |
| Overall | 25% | 9 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-06-03 12:22:20 UTC |
| Last Seen | 2026-06-21 10:33:06 UTC |
| Profile Built | 2026-06-21 10:41:29 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 20 |
Full dossier details are available via our API.