IP Intelligence Briefing: 13.207.150.221
Date: 2026-06-17
---
**1. Core Profile**
- Risk Score: Moderate (50/100)
- Ownership: Amazon Technologies Inc. (AS16509)
- Geolocation:
- Primary: United States (arin registry)
- Secondary: India (Mumbai, proxycheck.io signal)
- Network Role: AWS EC2 instance (firewalled, no open services)
- Threat Indicators:
- Proxy Signal: Confirmed as a VPN/proxy (66 risk score) via proxycheck.io.
- DNSSEC Valid: Yes; no DNSBL listings.
- No Malicious Activity: No known campaigns, spam, or abuse reports.
---
**2. Observation History**
- Recent Signals (Last 30 Days):
- Proxy Activity: Detected as a "VPN" proxy (confidence: 85%).
- Operator Score: Basic (0.26), indicating minimal risk.
- Geolocation Discrepancy: Conflicting location data (US vs. India).
- Network Stability: No route changes; stable ASN (AS16509).
---
**3. Relationships**
- Network: Part of AWS subnet `AT-88-Z` (13.200.0.0/13).
- DNS: Linked to `ec2-13-207-150-221.ap-south-1.compute.amazonaws.com` (AWS EC2).
- No Known Threat Associations: No correlated IPs, campaigns, or certificates.
---
**4. Neighborhood Analysis**
- Subnet: 13.207.150.221/24
- Abuse Density: Clean (0% abuse).
- Neighbors: No active or threat-sibling IPs in the subnet.
---
**5. Recommendations**
1. Monitor Proxy Activity: Investigate theVPN/proxy signal, as it may indicate data obfuscation or malicious traffic masking.
2. Verify Geolocation: Cross-check location data with AWS logs to resolve discrepancies.
3. Review AWS Security Groups: Ensure EC2 instance permissions are restricted to trusted networks.
4. No Immediate Action Required: No high-risk indicators, but continuous monitoring is advised.
Conclusion: The IP is an AWS EC2 instance with a moderate risk profile. While no direct threats are detected, the proxy signal and geolocation inconsistencies warrant further investigation.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Amazon Technologies Inc. |
| ASN | AS16509 |
| Network Name | AT-88-Z |
| CIDR Block | 13.200.0.0/13 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | ec2-13-207-150-221.ap-south-1.compute.amazonaws.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | ec2-13-207-150-221.ap-south-1.compute.amazonaws.com |
π DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 2 |
| routing | 17% | 1 | 1 |
| services | 17% | 1 | 1 |
| ownership | 35% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 24% | 2 | 2 |
| Overall | 22% | 9 | 11 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Moderate (55%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-06-17 00:40:56 UTC |
| Last Seen | 2026-06-22 00:54:02 UTC |
| Profile Built | 2026-06-22 01:04:32 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 21 |
Full dossier details are available via our API.