## INTELLIGENCE BRIEFING: 68.183.225.224
Classification: LOW RISK | Date: 2026-06-19 | Status: ACTIVE
EXECUTIVE SUMMARY
IP address 68.183.225.224 is a DigitalOcean cloud compute host located in Singapore with a low-risk profile (Risk Score: 25). The asset operates as a web server (nginx) with standard HTTP/HTTPS/SSH services and has no active threat indicators. No firewall blocking is recommended at this time.
INFRASTRUCTURE PROFILE
- Organization: DigitalOcean, LLC (ASN 14061)
- Location: Singapore (1.35°N, 103.82°E)
- Infrastructure Type: CloudCompute / Web Hosting
- CIDR Block: 68.183.224.0/20
- Registration: ARIN (abuse contact available via RDAP)
NETWORK SERVICES
- Open Ports: 80/tcp (HTTP), 443/tcp (HTTPS), 22/tcp (SSH)
- Server Fingerprint: nginx/1.24.0 (Ubuntu)
- TLS Certificate: Issued by Let's Encrypt (CN=chillweb.io)
- Subject: chillweb.io, www.chillweb.io
- Certificate Status: Valid, not self-signed
- Security Headers: HSTS enabled (max-age=31536000; includeSubDomains; preload)
THREAT INDICATORS
- Threat Status: Clean
- Blacklist Count: 0
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Active Campaigns: None detected
- Abuse Confidence Score: Not applicable
OBSERVATION HISTORY
The IP accumulated 23 observations over the monitoring period. Recent signals (2026-06-19) include:
- DNS blacklist listings: 8 total lists with 1 listed entry (high severity)
- HTTP response codes: 200 (normal)
- Response time: 1,456ms
- Network classification consistently identified as cloud infrastructure (DigitalOcean)
- Operator score: 0.2174 (Minimal)
GEOGRAPHIC VALIDATION
- Consensus Location: Singapore
- Geo Plausibility: False (distance variance detected)
- Minimum Possible RTT: Not computed
- Route Stability: False (route changes observed within 30 days)
NEIGHBORHOOD ANALYSIS (68.183.225.0/24)
- Subnet Classification: Mostly clean
- Abuse Density: 1 (low)
- Active Siblings: 1
- Threat Siblings: 1
- Inherited Risk Score: 2
RELATIONSHIP GRAPH
42 relationships identified, primarily network-level associations with DIGITALOCEAN-68-183-0-0 subnet.
SECURITY ACTIONS
Recommended Actions: None required at this time
- Risk score (25) falls below actioning threshold
- No active threat indicators present
- Standard monitoring recommended for cloud hosting infrastructure
INTELLIGENCE NOTES
This IP represents legitimate cloud hosting infrastructure on DigitalOcean's Singapore platform. The single threat sibling in the /24 subnet warrants awareness but does not elevate risk for this specific address. Historical data shows consistent cloud infrastructure classification with no evidence of persistent malicious activity.
Clearance: SOC analysts may classify as LOW PRIORITY with standard monitoring.
---
*Report generated from IPDebrief intelligence platform. Data sourced from public threat feeds, network scanning, and relationship analysis.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | β |
| 443 | https | tcp | β |
| 22 | ssh | tcp | |
| Closed Ports | 25, 3389, 8080, 8443 (3 open / 7 scanned) | ||
| Server | nginx/1.24.0 (Ubuntu) |
| HTTP Title | β |
| SSH Version | SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.16 |
π TLS Certificate
| SANs | chillweb.iowww.chillweb.io |
| Valid From | 2026-05-25T11:15:16+00:00 |
| Valid Until | 2026-08-23T11:15:15+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha384ECDSA |
| Validity Period | 89 days |
| Serial Number | 0635EA332028CE4A84C740EDB0270DDE8AF4 |
| Thumbprint | 2F085AAFFA2513E3E42D125C4DB4FEFDE7350182 |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 29% | 2 | 4 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 25% | 2 | 2 |
| Overall | 24% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-13 12:13:43 UTC |
| Last Seen | 2026-06-27 23:31:43 UTC |
| Profile Built | 2026-06-28 17:37:03 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 26 |
Full dossier details are available via our API.