Reading the mail seems clear enough - your server/droplet was sending traffic. If you think it was just hosting a (static) blog then it has presumably been compromised.
Did you follow the advice link? Did you look for sign of compromise?
On the face of it disabling a compromised server is precisely the right thing to do - to stop it attacking other users, even if that puts your site offline. Or do you disagree?