IPDebrief

16.52.2.22

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP Intelligence Briefing: 16.52.2.22/32

## Executive Summary

IP address 16.52.2.22 is a cloud-hosted infrastructure endpoint belonging to Amazon Web Services Canada (CA-central-1 region). The IP presents moderate risk primarily due to DNSBL listings, with no active malicious indicators. The address is associated with a legitimate AWS EC2 instance in Montreal, Quebec, with a clean neighborhood profile and stable ownership history.

## Infrastructure Profile

## DNS Analysis

## Service Analysis

## Threat Intelligence Assessment

## Control Plane Data

## Observation History (Last 17 Signals)

Recent signal observations indicate:

## Relationship Graph Analysis

The IP has 9 relationships, all benign:

## Neighborhood Analysis (16.52.2.0.0/24)

## Recommended Actions

Based on the IP's risk profile, the following actions are recommended:

1. Monitoring: Continue monitoring due to DNSBL listings, but maintain low-priority status given AWS ownership

2. Blocking: No blocking required; this is a legitimate cloud infrastructure IP

3. Firewall Rules: No specific firewall rules needed; standard cloud security policies apply

4. WAF Configuration: If using WAF, monitor for unusual traffic patterns but no specific rules required

## Threat Assessment

Overall Risk Level: LOW-MODERATE

The IP address represents legitimate AWS cloud infrastructure with no active threat indicators. The moderate risk score (50) is primarily attributable to DNSBL listings, which are common for cloud infrastructure and may result from historical scanning activity or false positives. No malicious behavior, campaigns, or suspicious network activity have been detected.

Recommendation: Allow traffic with standard monitoring. No blocking or special handling required.

---

*Generated: [Current Date]*

*Data Source: IPDebrief Intelligence Platform*

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡จ๐Ÿ‡ฆ Canada
RegionQC
CityMontreal
TimezoneAmerica/Toronto
Latitude45.50
Longitude-73.57

๐Ÿข Ownership & Registration

OrganizationAmazon Data Services Canada
ASNAS16509
Network NameAMAZON-YUL
CIDR Block16.52.0.0/16
RIRARIN
CountryCanada
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRec2-16-52-2-22.ca-central-1.compute.amazonaws.com
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnamesec2-16-52-2-22.ca-central-1.compute.amazonaws.com

๐Ÿ” DNS Hygiene

Hygiene Score80% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeFirewalled / No Services
Network TierTier 3 โ€” Basic operator with some routing infrastructure
CloudHosting

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
36%
24
routing
13%
11
services
21%
22
ownership
30%
23
reputation
28%
13
geolocation
27%
23
Overall26%1016
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-07-29 16:41:26 UTC
Last Seen2026-08-12 23:41:50 UTC
Profile Built2026-08-12 23:50:28 UTC
Data FreshnessLive
Signal Types23
Total Observations24
๐Ÿ” 23 signal types ยท 24 observations collected
This report is generated from 23+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.