IP Intelligence Briefing: 18.97.19.163
Date: 2026-06-09
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Provider: Amazon Web Services (AWS)
- Ownership: Amazon Technologies Inc. (ASN 14618)
- Geolocation: Ashburn, Virginia, US (39.04°N, -77.49°E)
- Network Role: Cloud infrastructure (AWS VPC)
- Threat Indicators: No malicious activity detected.
---
**2. Observation History**
- Recent Activity:
- Detected as a cloud-hosted server with no open ports (scanned June 1, 2026).
- DNS resolution linked to `scanner-18-97-19-163.reposify.net` (likely legitimate).
- Subnet abuse density: 36.36% (mixed classification, 4 threat siblings in /24).
---
**3. Relationships**
- DNS Associations:
- `scanner-18-97-19-163.reposify.net` (PTR record).
- Network Peers:
- Shared subnet `18.97.19.163/24` with 11 siblings (4 active, 4 flagged as high-risk).
- Organizational Ties:
- Directly tied to AWS, no anomalous organizational links.
---
**4. Neighborhood Analysis**
- Subnet Risk:
- 4 high-risk neighbors (50% risk score), 8 low-risk neighbors.
- Overall abuse density: 36.36% (moderate risk).
- Key Neighbors:
- `18.97.19.133` (50 risk score), `18.97.19.185` (50 risk score), and `18.97.19.249` (50 risk score).
---
**5. Threat Assessment**
- No Immediate Threats:
- No malicious indicators, spam, or known attacker associations.
- DNS and geolocation data align with AWS infrastructure.
- Monitoring Recommendations:
- Watch subnet neighbors with elevated risk scores (e.g., `18.97.19.133`).
- Validate `reposify.net` domain for potential spoofing or phishing activity.
---
Conclusion:
18.97.19.163 is a legitimate AWS cloud instance with no active threats. While the subnet shows moderate abuse density, the IP itself is low risk. Focus on monitoring neighboring IPs and verifying DNS associations for potential indirect risks.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Amazon Technologies Inc. |
| ASN | AS14618 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | scanner-18-97-19-163.reposify.net |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | scanner-18-97-19-163.reposify.net |
π DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 31% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 31% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 24% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-22 03:08:54 UTC |
| Last Seen | 2026-06-28 17:15:31 UTC |
| Profile Built | 2026-06-29 05:17:48 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 25 |
Full dossier details are available via our API.