# IP Intelligence Briefing: 18.138.211.114
Classification: LOW RISK / CLEAN
Date: Current Analysis
---
## Executive Summary
IP 18.138.211.114 is a clean, legitimate cloud infrastructure asset belonging to Amazon Web Services. No malicious indicators were identified during comprehensive analysis. This IP represents a standard AWS EC2 instance deployed in the Singapore region with no observed security threats.
---
## Asset Profile
| Attribute | Value |
|---|---|
| **Risk Score** | 0/10 (Low Risk) |
| **Organization** | Amazon Data Services Singapore |
| **ASN** | 16509 (Amazon) |
| **Location** | Singapore (SG) |
| **CIDR Block** | 18.138.0.0/15 |
| **Network Role** | Cloud Infrastructure (AWS EC2) |
| **Status** | Active Cloud Instance |
---
## Technical Findings
DNS Resolution:
- PTR Hostname: ec2-18-138-211-114.ap-southeast-1.compute.amazonaws.com
- Forward Resolution: Confirmed
- Hosted Domains: None
Network Services:
- Open Ports: None detected
- TLS Certificate: None
- HTTP Services: None
- Service Classification: Firewalled / No Services
Infrastructure Classification:
- Cloud Provider: Amazon Web Services
- Anycast: No
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Blacklist Count: 0
---
## Risk Assessment
Threat Indicators: None detected
- Abuse Confidence Score: N/A
- Known Campaigns: None
- Threat Feeds: Empty
- Reputation Sources: Clean
Control Plane:
- BGP Prefix: 18.138.0.0/15
- Route Stability: Stable
- RPKI State: Valid
- DNSBL Listings: 0/8
---
## Historical Analysis
Observation Period: 21 signals tracked
- Recent Activity: 2026-06-21
- Ownership Changes: 0 (Stable)
- Threat Persistence Days: 0
- Total Threat Observations: 1 (background noise)
- Persistent Malicious Activity: No
Subnet Analysis (18.138.211.114/24):
- Abuse Density: 0.01 (Low)
- Classification: Mostly Clean
- Threat Siblings: 1
- Active Siblings: 0
---
## Relationship Mapping
Associated Entities:
- DNS Associations: ec2-18-138-211-114.ap-southeast-1.compute.amazonaws.com
- Network Relationships: AMAZON-SIN
- No malicious or suspicious relationships identified
---
## Neighborhood Analysis
Subnet 18.138.211.114/24:
- Total Siblings: 1
- Active Siblings: 0
- Inherited Risk: 2 (minimal)
- Neighbor Risk Distribution: All low-risk
---
## Recommended Actions
Security Posture: No action required
- Firewall Rules: Not recommended
- WAF Rules: Not recommended
- Blocking: Not recommended
Monitoring: Continue standard monitoring. No special attention warranted.
---
## Intelligence Assessment
This IP address represents standard cloud infrastructure with a clean security profile. The single threat observation recorded in historical data does not correlate with current risk indicators and appears to be background noise. The asset demonstrates consistent ownership and stable routing with no evidence of abuse or malicious activity.
SOC Analyst Guidance: No blocking or mitigation actions recommended. Treat as benign cloud infrastructure traffic.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Amazon Data Services Singapore |
| ASN | AS16509 |
| Network Name | AMAZON-SIN |
| CIDR Block | 18.138.0.0/15 |
| RIR | ARIN |
| Country | Singapore |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | ec2-18-138-211-114.ap-southeast-1.compute.amazonaws.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | ec2-18-138-211-114.ap-southeast-1.compute.amazonaws.com |
π DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 27% | 2 | 3 |
| services | 13% | 1 | 1 |
| ownership | 30% | 3 | 4 |
| reputation | 22% | 1 | 3 |
| geolocation | 27% | 2 | 2 |
| Overall | 24% | 11 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-06-08 14:08:27 UTC |
| Last Seen | 2026-06-29 17:10:41 UTC |
| Profile Built | 2026-06-29 17:12:38 UTC |
| Data Freshness | Live |
| Signal Types | 24 |
| Total Observations | 25 |
Full dossier details are available via our API.