IPDebrief

184.192.85.144

IP Intelligence Dossier
Your IP: 216.73.217.34
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

IP 184.192.85.144 was registered to Amazon.com, Inc. (ASN 14618) and identified as a Web Server on Amazon Web Services infrastructure. The address received a Low Risk score of 25 with no known attacker, spam source, or Tor exit node designation. Geolocation data indicated Ashburn, Virginia, United States, though geo sources disagreed on country and TLS certificates claimed affiliation with netvue in China. Open port 443 (HTTPS) was observed with an awselb/2.0 server banner and HTTP/2.0 support. Behavioral analysis showed zero honeypot hits, enumeration strikes, or WAF violations, with a blacklist count of zero. Control plane data indicated minimal operator score with one DNSBL listing out of eight total lists. The analysis recommended a Monitor action with Low severity due to signal contradictions regarding geolocation and certificate attribution. Data freshness remained Live as of 2026-09-07.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionVA
CityAshburn
TimezoneAmerica/New_York
Latitude39.04
Longitude-77.49

🏒 Ownership & Registration

OrganizationAmazon.com, Inc.
ASNAS14618
Network NameAMAZO-4
CIDR Block184.192.0.0/10
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTRec2-184-192-85-144.compute-1.amazonaws.com
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnamesec2-184-192-85-144.compute-1.amazonaws.com

πŸ” DNS Hygiene

Hygiene Score60% (Good)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECNot signed
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierUnknown β€” Insufficient routing data to classify
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
443httpstcpβ€”
Closed Ports22, 25, 80, 3389, 8080, 8443 (1 open / 7 scanned)
Serverawselb/2.0
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
CN=*.nvts.co, O=netvue, S=gd, C=cn
Issued by E=info@netvue.com, O=netvue, L=shenzhen, S=gd, C=cn
Self-signed: No
SANsNone
Valid From2025-11-13T03:59:33+00:00
Valid Until2125-10-20T03:59:33+00:00
TLS ProtocolTls12
Cipher SuiteTLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Signature Algorithmsha256RSA
Validity Period36500 days
Serial Number160041944C
ThumbprintD2F0DB75A13D9DCCF59C833B30BC2E0D954229B9

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
38%
24
routing
17%
11
services
38%
24
ownership
35%
23
reputation
32%
13
geolocation
40%
23
Overall33%1018
Coverage: 5/6 dimensions Β· Data sufficiency: partial
Data CoherenceMixed Signals (68%) β€” 2 contradiction(s)
AttributionModerate (55%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Geo sources disagree on country: US, CN
⚠ TLS certificate claims cn but primary geo says US

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-09-07 17:26:41 UTC
Last Seen2026-09-12 06:55:37 UTC
Profile Built2026-09-12 07:23:57 UTC
Data FreshnessLive
Signal Types29
Total Observations35
πŸ” 29 signal types Β· 35 observations collected
This report is generated from 29+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.