IPDebrief

108.166.240.12

IP Intelligence Dossier
Your IP: 216.73.217.34
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

Intelligence Briefing: 108.166.240.12

Ownership and Infrastructure

The subject IP, 108.166.240.12, is assigned to Amazon.com, Inc. (AS16509) within the 108.166.224.0/19 block. Geolocation data places the address in Portland, Oregon, United States. The network role is identified as hosting infrastructure with no active cloud, CDN, or proxy functions detected.

Risk Assessment

The IP maintains a Low Risk reputation with a risk score of 25. While general blacklist counts registered as zero, control plane data confirms a listing on one DNSBL among eight total lists. The surrounding subnet is classified as "mostly_clean" with an abuse density of 0.15.

Technical Observations

Port scans revealed no open ports, indicating the host is firewalled or inactive. No TLS certificates, HTTP titles, or server banners were observed. Behavioral analysis recorded zero honeypot hits, WAF violations, or enumeration strikes. The IP is not classified as a known attacker, spam source, or persistent threat actor.

Recommendation

SOC analysts should monitor the address. The combination of a low-risk score, clean neighborhood classification, and lack of active services suggests limited immediate threat, though the single DNSBL listing warrants continued observation.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionOR
CityPortland
TimezoneAmerica/Los_Angeles
Latitude45.59
Longitude-122.60

🏒 Ownership & Registration

OrganizationAmazon.com, Inc.
ASNAS16509
Network NameAMAZO-4
CIDR Block108.166.224.0/19
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)

πŸ” DNS Hygiene

Hygiene Score0% (None)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECNot signed
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierHosting β€” Infrastructure provider without advanced routing
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
33%
25
routing
13%
11
services
19%
22
ownership
27%
24
reputation
27%
15
geolocation
33%
24
Overall25%1021
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-08-30 07:48:35 UTC
Last Seen2026-09-18 16:04:13 UTC
Profile Built2026-09-18 16:21:44 UTC
Data FreshnessLive
Signal Types21
Total Observations33
πŸ” 21 signal types Β· 33 observations collected
This report is generated from 21+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.