# IP Intelligence Briefing: 3.113.23.15/32
Classification: AWS EC2 Instance โ Low Risk Infrastructure
Report Date: Based on data as of 2026-07-30
Risk Score: 25/100 (Low Risk)
---
## Executive Summary
IP address 3.113.23.15 is a low-risk AWS EC2 instance hosted in the Tokyo region (ap-northeast-1). The address belongs to Amazon Data Services Japan (ASN 16509) and is properly firewalled with no active services exposed. No threat indicators, blacklists, or malicious campaigns associated. The /24 subnet (3.113.23.0/24) shows zero abuse density and contains no neighboring threats.
---
## Technical Profile
| Attribute | Value |
|---|---|
| **Risk Score** | 25 (Low Risk) |
| **Provider** | Amazon Web Services (ASN 16509) |
| **Organization** | Amazon Data Services Japan |
| **Network Block** | 3.112.0.0/14 (AMAZON-NRT) |
| **Geolocation** | Tokyo, Japan (ap-northeast-1) |
| **DNS Resolution** | ec2-3-113-23-15.ap-northeast-1.compute.amazonaws.com |
| **Forward Confirmed** | Yes |
| **Open Ports** | None detected |
| **Service Status** | Firewalled / No Services |
---
## Threat Indicators
- Blacklist Status: Clean (0/8 DNSBL listings; operator score 0.2609 โ Basic)
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Campaign Associations: None identified
- Threat Feeds: No matches
---
## Historical Observations
Analysis of 15 historical signals reveals stable ownership with Amazon Data Services Japan. Geolocation data shows minor provider inconsistencies (some sources indicate US coordinates with 2500km accuracy radius), which is common for AWS infrastructure. No changes in risk posture observed; the IP has maintained a low-risk classification throughout the observation period. No evidence of persistent malicious activity.
---
## Network Relationships
- DNS Associations: ec2-3-113-23-15.ap-northeast-1.compute.amazonaws.com (AWS compute endpoint)
- Network Affiliation: AMAZON-NRT (Tokyo AWS region)
- Total Relationships: 3 (all benign)
---
## Subnet Neighborhood Assessment
Subnet: 3.113.23.0/24
Abuse Density: 0 (Clean)
Threat Siblings: 0
Active Siblings: 0
Classification: Clean
No neighboring IPs in the /24 subnet show malicious indicators.
---
## Recommended Actions
1. Firewall Policy: Standard AWS egress/ingress rules apply. No blocking required.
2. Monitoring: No special monitoring needed; IP is clean infrastructure.
3. Threat Intelligence: No indicators of compromise or malicious activity.
4. Classification: Treat as trusted AWS infrastructure resource.
---
## SOC Analyst Notes
This is legitimate AWS cloud infrastructure with no security concerns. The IP resolves to a standard EC2 hostname in the Tokyo region. No action required beyond standard AWS network monitoring practices. The /24 subnet is clean with no abuse activity.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Amazon Data Services Japan |
| ASN | AS16509 |
| Network Name | AMAZON-NRT |
| CIDR Block | 3.112.0.0/14 |
| RIR | ARIN |
| Country | Japan |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | ec2-3-113-23-15.ap-northeast-1.compute.amazonaws.com |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | ec2-3-113-23-15.ap-northeast-1.compute.amazonaws.com |
๐ DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 40% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 21% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 30% | 2 | 3 |
| Overall | 25% | 10 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-29 10:34:10 UTC |
| Last Seen | 2026-08-12 23:24:34 UTC |
| Profile Built | 2026-08-12 23:50:29 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 31 |
Full dossier details are available via our API.