IPDebrief

2.18.73.120

IP Intelligence Dossier
Your IP: 216.73.217.34
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

Intelligence Briefing: 2.18.73.120/32

Summary

The IP address 2.18.73.120 was assessed as Low Risk with a risk score of 25. Ownership records attributed the address to Akamai Technologies (ASN 16625, Netname AKAMAI-PA). Network role analysis identified the infrastructure as a Content Delivery Network (CDN) functioning as a web server.

Technical Observations

Active network services included TCP port 80 (HTTP) and TCP port 443 (HTTPS). The server banner identified as "AkamaiGHost." DNS resolution resolved to the PTR hostname a2-18-73-120.deploy.static.akamaitechnologies.com within the akamaitechnologies.com domain. TLS configuration utilized a Let's Encrypt certificate. The control plane indicated an origin ASN of 16625 with a BGP prefix of 2.18.72.0/22.

Geolocation and Anomalies

Geolocation data placed the node in Boston, MA, Netherlands, with an accuracy radius of 150km. However, validation checks flagged a contradiction where the claimed geolocation contradicted RTT physics measurements (observed RTT 17.0ms vs. minimum possible 113.3ms for 5663km). The neighborhood classification for the 2.18.73.120/24 subnet remained clean with zero abuse density and no threat siblings.

Threat Assessment

No known campaigns, indicators, or blacklist entries were associated with the IP. Despite the clean neighborhood and CDN infrastructure, the threat actor profile tagged the host as "Suspicious Host." Signal contradictions prompted a recommendation to Monitor due to signal inconsistencies.

Conclusion

The profile remained live with the latest observation recorded on 2026-09-16. While the IP operates within a legitimate CDN infrastructure, the signal contradictions suggest continued monitoring is required until further clarification.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ณ๐Ÿ‡ฑ Netherlands
RegionMA
CityBoston
TimezoneEurope/Amsterdam
Latitude52.13
Longitude5.29

๐Ÿข Ownership & Registration

OrganizationAKAM1-RIPE-MNT
ASNAS16625
Network NameAKAMAI-PA
CIDR Block2.18.64.0/20
RIRRIPE
CountryEU
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRa2-18-73-120.deploy.static.akamaitechnologies.com
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnamesa2-18-73-120.deploy.static.akamaitechnologies.com

๐Ÿ” DNS Hygiene

Hygiene Score60% (Good)
SPF4/6 domains
DMARC4/6 domains
FCrDNSVerified
DNSSECNot signed
CAANot configured
Domains Checked6 domains

โ˜๏ธ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeWeb Server
Network TierHosting โ€” Infrastructure provider without advanced routing
CDN

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpโ€”
443httpstcpโ€”
Closed Ports22, 25, 3389, 8080, 8443 (2 open / 7 scanned)
ServerAkamaiGHost
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
CN=crl.root-x1.letsencrypt.org
Issued by CN=YR1, O=Let's Encrypt, C=US
Self-signed: No
SANscert.int-x1.letsencrypt.orgcert.int-x2.letsencrypt.orgcert.int-x3.letsencrypt.orgcert.int-x4.letsencrypt.orgcert.root-x1.letsencrypt.orgcert.staging-x1.letsencrypt.orgcert.stg-int-x1.letsencrypt.orgcert.stg-root-x1.letsencrypt.orgcrl.root-x1.letsencrypt.orge1.i.lencr.org
Valid From2026-08-14T10:54:14+00:00
Valid Until2026-11-12T10:54:13+00:00
TLS ProtocolTls13
Cipher SuiteTLS_AES_256_GCM_SHA384
Signature Algorithmsha256RSA
Validity Period89 days
Serial Number05C89A8F07EF67B914C593011CB4DCAD61CE
ThumbprintB5D1FE9A110CA1BDBCCC133A5BA71AB47F2DC9BA

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
33%
24
routing
13%
11
services
38%
25
ownership
27%
23
reputation
22%
13
geolocation
38%
25
Overall28%1021
Coverage: 5/6 dimensions ยท Data sufficiency: partial
Data CoherenceMostly Consistent (80%) โ€” 1 contradiction(s)
AttributionModerate (55%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
โš  Claimed geolocation contradicts RTT physics measurement

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-09-01 17:59:31 UTC
Last Seen2026-09-16 19:22:46 UTC
Profile Built2026-09-16 19:36:14 UTC
Data FreshnessLive
Signal Types24
Total Observations43
๐Ÿ” 24 signal types ยท 43 observations collected
This report is generated from 24+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.