IP Intelligence Briefing: 18.225.221.49
Date: 2026-06-13
---
**1. Core Profile**
- Reputation: Moderate Risk (Risk Score: 40)
- Ownership:
- ASN: 16509
- Organization: Amazon Technologies Inc. (AWS)
- Network: AT-88-Z (CIDR: 18.32.0.0/11)
- Geolocation:
- City: Columbus, Ohio, US (39.96°N, -83.01°E)
- ISP: Amazon Web Services
- Geo-Validation: Plausible (6580.9 km from probe, ICMP blocked)
---
**2. Threat Indicators**
- Malicious Activity: None detected (no indicators, blacklists, or campaigns).
- Network Role:
- AWS EC2 Instance: Resolves to `ec2-18-225-221-49.us-east-2.compute.amazonaws.com`.
- Services: No open ports, TLS, or HTTP services detected.
- Historical Trends:
- No threat observations or persistent malicious activity in the last 30 days.
---
**3. Relationships & Network Context**
- DNS Associations:
- Linked to AWS-hosted domain `amazonaws.com` (SPF/DKIM validated).
- Network Subnet:
- Part of `18.225.221.49/24` with 0% abuse density.
- No neighboring IPs flagged in the subnet.
---
**4. Risk Summary**
- Provider Risk: Amazon (AWS) is a trusted infrastructure provider.
- Threat Context:
- No DNSBL listings, spam, or Tor associations.
- Moderate risk score likely reflects AWS's broad infrastructure footprint.
---
**5. Recommendations**
- Monitoring: Track for unexpected DNS changes or port activity.
- Firewall: No immediate blocking required; monitor as part of AWS-managed infrastructure.
- Context: Likely benign, but verify against internal threat feeds for correlation.
Conclusion: This IP is associated with Amazon Web Services and shows no malicious activity. Moderate risk score is attributed to AWS's scale, not direct malicious intent. No action required unless linked to specific threats.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Amazon Technologies Inc. |
| ASN | AS16509 |
| Network Name | AT-88-Z |
| CIDR Block | 18.32.0.0/11 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | ec2-18-225-221-49.us-east-2.compute.amazonaws.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | ec2-18-225-221-49.us-east-2.compute.amazonaws.com |
π DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 19% | 2 | 2 |
| routing | 13% | 1 | 1 |
| services | 21% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 15% | 1 | 2 |
| geolocation | 30% | 2 | 3 |
| Overall | 21% | 10 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-06-07 01:46:15 UTC |
| Last Seen | 2026-06-21 13:32:01 UTC |
| Profile Built | 2026-06-21 13:41:16 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 23 |
Full dossier details are available via our API.