IPDebrief

3.113.23.15

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP Intelligence Briefing: 3.113.23.15/32

Classification: AWS EC2 Instance โ€“ Low Risk Infrastructure

Report Date: Based on data as of 2026-07-30

Risk Score: 25/100 (Low Risk)

---

## Executive Summary

IP address 3.113.23.15 is a low-risk AWS EC2 instance hosted in the Tokyo region (ap-northeast-1). The address belongs to Amazon Data Services Japan (ASN 16509) and is properly firewalled with no active services exposed. No threat indicators, blacklists, or malicious campaigns associated. The /24 subnet (3.113.23.0/24) shows zero abuse density and contains no neighboring threats.

---

## Technical Profile

AttributeValue
**Risk Score**25 (Low Risk)
**Provider**Amazon Web Services (ASN 16509)
**Organization**Amazon Data Services Japan
**Network Block**3.112.0.0/14 (AMAZON-NRT)
**Geolocation**Tokyo, Japan (ap-northeast-1)
**DNS Resolution**ec2-3-113-23-15.ap-northeast-1.compute.amazonaws.com
**Forward Confirmed**Yes
**Open Ports**None detected
**Service Status**Firewalled / No Services

---

## Threat Indicators

---

## Historical Observations

Analysis of 15 historical signals reveals stable ownership with Amazon Data Services Japan. Geolocation data shows minor provider inconsistencies (some sources indicate US coordinates with 2500km accuracy radius), which is common for AWS infrastructure. No changes in risk posture observed; the IP has maintained a low-risk classification throughout the observation period. No evidence of persistent malicious activity.

---

## Network Relationships

---

## Subnet Neighborhood Assessment

Subnet: 3.113.23.0/24

Abuse Density: 0 (Clean)

Threat Siblings: 0

Active Siblings: 0

Classification: Clean

No neighboring IPs in the /24 subnet show malicious indicators.

---

## Recommended Actions

1. Firewall Policy: Standard AWS egress/ingress rules apply. No blocking required.

2. Monitoring: No special monitoring needed; IP is clean infrastructure.

3. Threat Intelligence: No indicators of compromise or malicious activity.

4. Classification: Treat as trusted AWS infrastructure resource.

---

## SOC Analyst Notes

This is legitimate AWS cloud infrastructure with no security concerns. The IP resolves to a standard EC2 hostname in the Tokyo region. No action required beyond standard AWS network monitoring practices. The /24 subnet is clean with no abuse activity.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฏ๐Ÿ‡ต Japan
Region13
CityTokyo
TimezoneAsia/Tokyo
Latitude35.68
Longitude139.69

๐Ÿข Ownership & Registration

OrganizationAmazon Data Services Japan
ASNAS16509
Network NameAMAZON-NRT
CIDR Block3.112.0.0/14
RIRARIN
CountryJapan
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRec2-3-113-23-15.ap-northeast-1.compute.amazonaws.com
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnamesec2-3-113-23-15.ap-northeast-1.compute.amazonaws.com

๐Ÿ” DNS Hygiene

Hygiene Score80% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeFirewalled / No Services
Network TierTier 3 โ€” Basic operator with some routing infrastructure
CloudHosting

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
40%
23
routing
13%
11
services
21%
22
ownership
27%
23
reputation
17%
12
geolocation
30%
23
Overall25%1014
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-07-29 10:34:10 UTC
Last Seen2026-08-12 23:24:34 UTC
Profile Built2026-08-12 23:50:29 UTC
Data FreshnessLive
Signal Types22
Total Observations31
๐Ÿ” 22 signal types ยท 31 observations collected
This report is generated from 22+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.