IP Intelligence Briefing: 18.134.164.70
Date: 2026-06-09
---
**1. Core Profile**
- Risk Assessment:
- Reputation: Low Risk (riskScore: 0, providerScore: 0, authorityScore: 0).
- Network Role: Amazon Web Services (AWS) CloudCompute infrastructure.
- Geolocation: London, England (GB), with coordinates 51.51°N, 0.13°W.
- Ownership: Owned by Amazon Data Services UK (ASN: 16509).
- Threat Indicators:
- No malicious indicators (no blacklists, spam, or known attacker associations).
- No active services or open ports detected.
---
**2. Observation History**
- Recent Activity (2026-06-09):
- Reputation Signals: Clean, with no malicious listings.
- Network Stability: Stable (no route changes in 30 days).
- Geolocation Consensus: Inferred via DNS and routing data, though geo-plausibility is flagged as "false" (potential discrepancy in location accuracy).
---
**3. Network Relationships**
- DNS Associations:
- Linked to ec2-18-134-164-70.eu-west-2.compute.amazonaws.com (AWS EC2 instance).
- Network Context:
- Part of AWS infrastructure (subnet: 18.134.164.70/24).
- No relationships to other IPs, organizations, or subnets.
---
**4. Neighborhood Analysis**
- Subnet: 18.134.164.70/24.
- Abuse Density: 0% (clean subnet).
- Neighbors: No neighboring IPs detected (likely a standalone or isolated AWS instance).
---
**5. Actionable Insights**
- SOC Recommendation:
- Monitor: Track for unexpected DNS changes or service activation, as AWS IPs can be reconfigured.
- Verify: Investigate the geo-plausibility discrepancy to ensure accurate geolocation mapping.
- Allowlist: Confirm this IP is part of legitimate AWS infrastructure before blocking, as it shows no malicious behavior.
- Firewall Rules (Example):
- Allow traffic from trusted sources to AWS subnets (e.g., `18.134.164.0/24`).
- Block all traffic to this IP unless explicitly required for internal AWS connectivity.
---
Conclusion: This IP is a legitimate AWS CloudCompute instance in London, UK. No malicious activity detected. SOC teams should focus on verifying geolocation accuracy and ensuring no unauthorized access to AWS resources.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Amazon Data Services UK |
| ASN | AS16509 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | ec2-18-134-164-70.eu-west-2.compute.amazonaws.com |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | ec2-18-134-164-70.eu-west-2.compute.amazonaws.com |
๐ DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 38% | 2 | 6 |
| routing | 8% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 23% | 10 | 18 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-21 08:54:44 UTC |
| Last Seen | 2026-06-28 13:10:08 UTC |
| Profile Built | 2026-06-29 07:14:44 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 28 |
Full dossier details are available via our API.