INTELLIGENCE BRIEFING: IP 3.236.58.91/32
Classification: LOW RISK β Legitimate Cloud Infrastructure
Date: 2026-06-28
Subject: 3.236.58.91/32
---
EXECUTIVE SUMMARY
IP address 3.236.58.91 is a low-risk Amazon Web Services (AWS) cloud compute instance located in Ashburn, Virginia. The asset demonstrates no malicious indicators and operates within clean cloud infrastructure parameters.
---
TECHNICAL PROFILE
| Attribute | Value |
|---|---|
| **Risk Score** | 25 (Low) |
| **ASN** | 16509 (Amazon.com, Inc.) |
| **Organization** | Amazon Data Services Northern Virginia |
| **Geolocation** | US, Virginia, Ashburn (39.04°N, -77.49°W) |
| **Infrastructure Type** | CloudCompute (AWS EC2) |
| **Reverse DNS** | ec2-3-236-58-91.compute-1.amazonaws.com |
| **Network Role** | Provider / Cloud Infrastructure |
---
THREAT INDICATORS
- Malicious Activity: None detected
- Blacklist Status: Not listed on any major feeds
- Threat Feeds: No matches
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Abuse Confidence Score: N/A (No abuse signals)
---
SERVICE OBSERVATIONS
- Open Ports: None detected
- Active Services: No services running (firewalled/no services)
- HTTP/HTTPS: No web services exposed
- TLS Certificates: None detected
---
NETWORK CONTEXT
| Metric | Value |
|---|---|
| **Subnet** | 3.236.58.0/24 |
| **Abuse Density** | 0 (Clean) |
| **Neighbor IPs** | 0 (Single EC2 instance) |
| **Network Classification** | mostly_clean |
| **BGP Prefix** | 3.192.0.0/10 |
---
TEMPORAL ANALYSIS
- Observation History: 23 historical signals recorded
- Threat Persistence: None (0 threat observation days)
- Ownership Stability: Stable (AWS infrastructure)
- Last Activity: 2026-06-19 (Intelligence briefing generated)
---
RELATIONSHIP MAPPING
- Total Relationships: 69 entities linked
- Primary Associations:
- Same Network: AMAZON-IAD (Ashburn, VA)
- DNS Association: ec2-3-236-58-91.compute-1.amazonaws.com
- Origin ASN: 16509
- Campaign Correlation: None detected
---
RECOMMENDED ACTIONS
| Action | Priority |
|---|---|
| **Monitor** | LOW β Standard cloud infrastructure monitoring |
| **Block** | N/A β Not malicious |
| **Investigate** | N/A β Legitimate AWS asset |
| **Firewall Rules** | Not required |
---
ASSESSMENT
IP 3.236.58.91 represents legitimate AWS cloud infrastructure. No threat indicators, malicious activity, or suspicious behavior detected. The IP resolves to a standard Amazon EC2 instance with proper DNS configuration and no exposed services. No defensive actions required beyond standard cloud infrastructure monitoring practices.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Amazon Data Services Northern Virginia |
| ASN | AS14618 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | ec2-3-236-58-91.compute-1.amazonaws.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | ec2-3-236-58-91.compute-1.amazonaws.com |
π DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 22% | 2 | 4 |
| routing | 54% | 1 | 13 |
| services | 12% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 28% | 10 | 28 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-14 19:29:08 UTC |
| Last Seen | 2026-06-28 01:26:06 UTC |
| Profile Built | 2026-06-28 19:30:03 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 39 |
Full dossier details are available via our API.