IP Intelligence Briefing: 18.201.63.227
Date: 2026-06-09
---
**1. Risk Profile**
- Risk Score: 25 (Low Risk)
- Provider: Amazon Web Services (AWS)
- Ownership: Owned by *Amazon Data Services Ireland Limited* (ASN 16509).
- Geolocation: Dublin, Ireland (53.35°N, -6.26°W).
- Network Role: AWS compute instance (firewalled, no services exposed).
---
**2. Threat Indicators**
- No malicious activity detected:
- No malware, phishing, or exploit indicators.
- No DNS-based threats, spam, or blacklisted activity.
- No known campaigns or abuse:
- Zero threat feeds, spam, or Tor exit node associations.
---
**3. Network Context**
- Subnet: 18.201.63.227/24 (abuse density: 1/100, classified as *mostly_clean*).
- Neighbors: No active or malicious sibling IPs in the subnet.
- AWS Infrastructure:
- Linked to EC2 instance `ec2-18-201-63-227.eu-west-1.compute.amazonaws.com`.
- No suspicious routing or BGP anomalies.
---
**4. Observation History**
- Recent Activity (June 2026):
- DNS resolution confirmed for AWS-hosted domain.
- No port scanning or TLS certificate anomalies.
- No changes in ownership or threat persistence.
---
**5. Recommendations**
- No immediate action required:
- The IP is part of a legitimate AWS infrastructure with no malicious signals.
- Monitor for changes:
- Track for unexpected DNS or network changes, as AWS instances can be repurposed.
- Maintain posture:
- Ensure firewall rules and WAF policies align with known AWS IP ranges.
---
Conclusion: 18.201.63.227 is a low-risk AWS compute instance with no evidence of malicious activity. No further action is required unless new threats emerge.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Amazon Data Services Ireland Limited |
| ASN | AS16509 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | ec2-18-201-63-227.eu-west-1.compute.amazonaws.com |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | ec2-18-201-63-227.eu-west-1.compute.amazonaws.com |
๐ DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 41% | 2 | 5 |
| routing | 8% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 25% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-22 03:08:54 UTC |
| Last Seen | 2026-06-28 17:15:11 UTC |
| Profile Built | 2026-06-29 05:17:48 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 26 |
Full dossier details are available via our API.