IPDebrief

3.218.103.254

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING

Target: 3.218.103.254/32

Date: Current Analysis

Classification: Low Risk – Legitimate AWS Infrastructure

---

## EXECUTIVE SUMMARY

IP 3.218.103.254 is a legitimate Amazon Web Services (AWS) infrastructure address with low-risk profile characteristics. The IP is associated with Amazon's bot crawler service operating from Northern Virginia data center. No malicious indicators, threat campaigns, or abuse patterns detected.

---

## OWNERSHIP & INFRASTRUCTURE

AttributeValue
**Organization**Amazon Data Services Northern Virginia
**ASN**14618
**Network Name**AMAZON-IAD
**CIDR Block**3.208.0.0/12
**Location**Ashburn, VA, US (Latitude: 39.04, Longitude: -77.49)
**RIR**ARIN

---

## RISK PROFILE

MetricValueAssessment
**Risk Score**25/100Low
**Abuse Confidence**N/ANot applicable
**Blacklist Count**0Clean
**Provider Score**0Legitimate provider
**Authority Score**0N/A
**Threat Persistence**0 daysNo persistent threats

---

## NETWORK CLASSIFICATION

---

## DNS & IDENTIFIERS

FieldValue
**PTR Hostname**3-218-103-254.crawl.amazonbot.amazon
**Forward Resolution**3-218-103-254.crawl.amazonbot.amazon
**Email Auth**None configured
**DNSSEC Valid**Yes
**DNSBL Listed**1/8 lists

---

## THREAT INDICATORS

Active Threat Indicators: None

---

## NEIGHBORHOOD ANALYSIS

Subnet: 3.218.103.254/24

The /24 subnet shows no neighboring IPs with malicious activity. This IP exists in a low-density AWS infrastructure block.

---

## OBSERVATION HISTORY

Analysis Period: 20 observations

Recent signals indicate:

---

## RELATIONSHIP GRAPH

All 11 identified relationships map to legitimate AWS infrastructure:

No external or suspicious relationships detected.

---

## RECOMMENDATIONS

Action: Allow / Monitor

The IP exhibits characteristics of legitimate AWS infrastructure serving Amazon's bot crawler operations. No defensive action required. If this IP appears in security alerts, verify against known AWS bot crawler patterns.

---

BRIEFING PREPARED BY: IPDebrief Intelligence

AUTHORIZATION: Defensive Security Operations

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionVA
CityAshburn
TimezoneAmerica/New_York
Latitude39.04
Longitude-77.49

🏒 Ownership & Registration

OrganizationAmazon Data Services Northern Virginia
ASNAS14618
Network NameAMAZON-IAD
CIDR Block3.208.0.0/12
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR3-218-103-254.crawl.amazonbot.amazon
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnames3-218-103-254.crawl.amazonbot.amazon

πŸ” DNS Hygiene

Hygiene Score40% (Fair)
SPFNot configured
DMARCNot configured
FCrDNSVerified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeFirewalled / No Services
Network TierTier 3 β€” Basic operator with some routing infrastructure
CloudHosting

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
30%
23
routing
13%
11
services
19%
22
ownership
27%
23
reputation
17%
12
geolocation
13%
11
Overall20%912
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-07-31 04:22:05 UTC
Last Seen2026-08-13 01:16:19 UTC
Profile Built2026-08-13 01:22:38 UTC
Data FreshnessLive
Signal Types26
Total Observations28
πŸ” 26 signal types Β· 28 observations collected
This report is generated from 26+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.