IPDebrief

15.164.242.197

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

IP INTELLIGENCE BRIEFING: 15.164.242.197/32

Summary

The IP address 15.164.242.197 was identified as a low-risk infrastructure endpoint belonging to Amazon Web Services Asia Pacific (Seoul) Region. Risk scoring returned 25/100 with no active threat indicators. The address resolved to an EC2 instance hostname (ec2-15-164-242-197.ap-northeast-2.compute.amazonaws.com) with proper DNSSEC validation and email authentication (SPF/DMARC) enabled.

Ownership and Geolocation

ASN 16509 (AMAZON-ICN) assigned the IP to AWS Asia Pacific (Seoul) Region. Geolocation data indicated Seoul, South Korea (KR) with coordinates 37.57°N, 126.98°E and 150km accuracy radius. The CIDR block 15.164.0.0/15 registered under ARIN.

Threat Assessment

No threat indicators were observed. The IP scored zero across blacklist counts, known attacker flags, spam source classification, and campaign correlation. Abuse confidence score remained null. No known campaigns or correlated IPs were detected.

Network Services

No open ports or active services were detected. The address classification indicated "Firewalled / No Services" with null TLS certificates, HTTP titles, and server banners. Infrastructure type remained classified as unknown.

DNS and Email Reputation

DNS resolution confirmed forward and reverse mappings to ec2-15-164-242-197.ap-northeast-2.compute.amazonaws.com. The domain amazonaws.com maintained valid SPF and DMARC records. DNSSEC validation returned true with one DNSBL listing across eight total lists checked.

Neighborhood Analysis

Subnet 15.164.242.197/24 showed zero abuse density with classification "clean." One active sibling IP was present with no threat siblings detected. Inherited risk score was 0.

Temporal Indicators

Eighteen signal observations were recorded with no ownership changes, threat persistence days, or persistent malicious activity flags. Threat observation count remained zero.

Relationship Graph

Seven relationship entries documented DNS associations to the EC2 hostname and same-network classifications to AMAZON-ICN.

Recommendations

No blocking actions recommended. Standard AWS infrastructure filtering applies. Monitor for service activation or threat indicator emergence.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฐ๐Ÿ‡ท South Korea
Region11
CitySeoul
TimezoneAsia/Seoul
Latitude37.57
Longitude126.98

๐Ÿข Ownership & Registration

OrganizationAWS Asia Pacific (Seoul) Region
ASNAS16509
Network NameAMAZON-ICN
CIDR Block15.164.0.0/15
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRec2-15-164-242-197.ap-northeast-2.compute.amazonaws.com
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnamesec2-15-164-242-197.ap-northeast-2.compute.amazonaws.com

๐Ÿ” DNS Hygiene

Hygiene Score80% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierTier 3 โ€” Basic operator with some routing infrastructure
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
31%
24
routing
13%
11
services
19%
22
ownership
30%
23
reputation
28%
13
geolocation
27%
23
Overall24%1016
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-07-27 15:46:14 UTC
Last Seen2026-08-12 21:33:45 UTC
Profile Built2026-08-12 21:39:02 UTC
Data FreshnessLive
Signal Types24
Total Observations27
๐Ÿ” 24 signal types ยท 27 observations collected
This report is generated from 24+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.