IP Intelligence Briefing: 3.129.170.86
Date: June 15, 2026
---
**1. Core Profile**
- Risk Assessment: Low Risk (Risk Score: 25). No malicious indicators detected.
- Ownership: Owned by Amazon Technologies Inc. (ASN: 16509).
- Geolocation: Columbus, Ohio, US (latitude: 39.96, longitude: -83).
- Network Role: AWS Cloud infrastructure (EC2 instance).
- Services:
- Open ports: HTTP (80), HTTPS (443), SSH (22).
- TLS certificate for contabilidadvyv.com (issued by Let's Encrypt).
- Server banner: `nginx/1.24.0 (Ubuntu)`.
---
**2. Threat Indicators**
- No malicious activity: Zero threat indicators, blacklist matches, or campaign associations.
- DNS Security: SPF record exists for `contabilidadvyv.com`, but no DMARC record.
- Route Stability: BGP route stability flagged as unstable (likely due to AWS anycast/CDN routing).
---
**3. Observation History**
- Recent Activity (June 2026):
- DNS resolution for `contabilidadvyv.com` with SPF validation.
- AWS infrastructure classification confirmed.
- DNSSEC validation successful, but ICMP probing failed (potential firewall restrictions).
---
**4. Relationships**
- Linked Entities:
- ec2-3-129-170-86.us-east-2.compute.amazonaws.com (DNS hostname).
- Subnet `3.129.170.86/24` classified as mostly clean with low abuse density.
- Network Context: No peer IPs detected in the subnet (neighbors tool returned zero results).
---
**5. Neighborhood Analysis**
- Subnet: `3.129.170.86/24`
- Abuse Density: 0% (no risky neighbors detected).
- Classification: Subnet is isolated with no active malicious hosts.
---
**6. Recommendations**
1. Monitor Associated Domain:
- `contabilidadvyv.com` has an SPF record but no DMARC. Ensure email security configurations are up-to-date.
2. Verify TLS Certificate:
- Confirm validity of the certificate for `contabilidadvyv.com` and ensure it aligns with legitimate business operations.
3. Network Segmentation:
- Given the isolated subnet, consider maintaining current security controls to preserve segmentation.
4. DNS Validation:
- Investigate ICMP blocking for geolocation validation.
---
Conclusion:
The IP is a legitimate AWS EC2 instance with no malicious activity detected. The associated domain (`contabilidadvyv.com`) requires further scrutiny for email security practices. No immediate action is required, but ongoing monitoring is advised.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Amazon Technologies Inc. |
| ASN | AS16509 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | ec2-3-129-170-86.us-east-2.compute.amazonaws.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | ec2-3-129-170-86.us-east-2.compute.amazonaws.com |
π DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | 2/2 domains |
| DMARC | 1/2 domains |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
| Domains Checked | 2 domains |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | β |
| 443 | https | tcp | β |
| 22 | ssh | tcp | |
| Closed Ports | 25, 3389, 8080, 8443 (3 open / 7 scanned) | ||
| Server | nginx/1.24.0 (Ubuntu) |
| HTTP Title | β |
| SSH Version | SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.16 |
π TLS Certificate
| SANs | contabilidadvyv.com |
| Valid From | 2026-05-18T12:43:05+00:00 |
| Valid Until | 2026-08-16T12:43:04+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha384ECDSA |
| Validity Period | 89 days |
| Serial Number | 068C95A6DE2C116F6F2ECD439E91AA89B253 |
| Thumbprint | 1749F4954F4102C95946B778ACEA3FE6FCEE54D8 |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 23% | 2 | 4 |
| ownership | 20% | 2 | 3 |
| reputation | 27% | 1 | 3 |
| geolocation | 31% | 2 | 3 |
| Overall | 22% | 10 | 18 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-10 04:11:55 UTC |
| Last Seen | 2026-06-27 17:02:42 UTC |
| Profile Built | 2026-06-28 11:07:20 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 31 |
Full dossier details are available via our API.