IPDebrief

184.32.199.94

IP Intelligence Dossier
Your IP: 216.73.217.34
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

Intelligence analysis of IP 184.32.199.94 identified the address as belonging to Amazon.com, Inc. (ASN 16509) within the 184.32.0.0/14 block. Reverse DNS resolution confirmed the host as an EC2 instance (ec2-184-32-199-94.us-west-2.compute.amazonaws.com) located in Boardman, Oregon. However, geolocation validation presented contradictory signals, with one source identifying the country as South Korea while others reported the United States.

The host operated HTTPS services on port 443. An active TLS certificate linked the IP to `*.samsungcloud.com`, issued by Sectigo Limited. DNS hygiene metrics scored 60, confirming valid SPF and DMARC configurations. Behavioral monitoring detected no honeypot strikes, enumeration attempts, or association with known malicious campaigns. The IP maintained a Low Risk reputation score of 25 and was not flagged as a Tor exit, proxy, or known attacker.

Despite the low-risk classification, control plane data indicated the address was listed on one of eight DNSBLs. Coherence analysis returned a Mixed Signals label due to conflicting geographic data, resulting in a Very Low confidence score (0.1667). The assessment recommendation classified the threat level as low and advised ongoing monitoring due to present signal contradictions. No specific threat actor attribution was established.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionOR
CityBoardman
TimezoneAmerica/Los_Angeles
Latitude45.84
Longitude-119.70

🏒 Ownership & Registration

OrganizationAmazon.com, Inc.
ASNAS16509
Network NameAMAZON-PDX
CIDR Block184.32.0.0/14
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTRec2-184-32-199-94.us-west-2.compute.amazonaws.com
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnamesec2-184-32-199-94.us-west-2.compute.amazonaws.com

πŸ” DNS Hygiene

Hygiene Score60% (Good)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECNot signed
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierUnknown β€” Insufficient routing data to classify
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
443httpstcpβ€”
Closed Ports22, 25, 80, 3389, 8080, 8443 (1 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
CN=*.samsungcloud.com, O="SAMSUNG ELECTRONICS CO,.LTD", S=Gyeonggi-do, C=KR
Issued by CN=Sectigo Public Server Authentication CA OV R36, O=Sectigo Limited, C=GB
Self-signed: No
SANs*.samsungcloud.comsamsungcloud.com
Valid From2026-03-13T00:00:00+00:00
Valid Until2026-09-27T23:59:59+00:00
TLS ProtocolTls13
Cipher SuiteTLS_AES_128_GCM_SHA256
Signature Algorithmsha256RSA
Validity Period198 days
Serial Number00F405307E43CED6E95FD2C2DC61241722
Thumbprint553F19DE95AB398DA86102FC2A332712DBC20858

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
11
routing
25%
11
services
25%
11
ownership
0%
00
reputation
0%
00
geolocation
25%
11
Overall16%44
Coverage: 4/6 dimensions Β· Data sufficiency: partial
Data CoherenceMixed Signals (68%) β€” 2 contradiction(s)
AttributionModerate (55%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Geo sources disagree on country: KR, US
⚠ TLS certificate claims KR but primary geo says US

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-09-16 23:02:42 UTC
Last Seen2026-09-16 23:02:42 UTC
Profile Built2026-09-16 23:18:42 UTC
Data FreshnessLive
Signal Types19
Total Observations19
πŸ” 19 signal types Β· 19 observations collected
This report is generated from 19+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.