IPDebrief

3.5.128.80

IP Intelligence Dossier
Your IP: 216.73.217.34
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

The assessment identified 3.5.128.80 as an Amazon Web Services (AWS) resource associated with the AMAZON-S3 organization (ASN 16509). The address resolved to s3-w.us-east-2.amazonaws.com. Network scanning observed open ports 80, 443, and 8080, with a TLS certificate issued for Amazon RSA 2048 M01.

The asset carried a Low Risk reputation score of 25 and a blacklist count of zero. Control plane data indicated one DNSBL listing across eight total lists. Neighborhood analysis classified the subnet as mostly clean with an abuse density of 0.0741, though two sibling addresses were marked as threats. Behavioral metrics recorded zero honeypot hits, enumeration strikes, or WAF violations.

Validation data presented a contradiction regarding geolocation, noting that the claimed Columbus, OH location conflicted with RTT physics (6580.9km distance versus 39.0ms minimum possible RTT). The profile classified the host as a Suspicious

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionOH
CityColumbus
TimezoneAmerica/New_York
Latitude39.96
Longitude-83.00

🏒 Ownership & Registration

OrganizationAmazon Data Services Northern Virginia
ASNAS16509
Network NameAMAZON-S3
CIDR Block3.5.0.0/16
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTRs3-w.us-east-2.amazonaws.com
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnamess3-w.us-east-2.amazonaws.com
s3-w.us-east-2.amazonaws.com

πŸ” DNS Hygiene

Hygiene Score60% (Good)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECNot signed
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierHosting β€” Infrastructure provider without advanced routing
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpβ€”
443httpstcpβ€”
8080http-alttcpβ€”
Closed Ports22, 25, 3389, 8443 (3 open / 7 scanned)
ServerAmazonS3
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
CN=*.s3.us-east-2.amazonaws.com
Issued by CN=Amazon RSA 2048 M01, O=Amazon, C=US
Self-signed: No
SANs*.s3.us-east-2.amazonaws.coms3.us-east-2.amazonaws.com*.s3.amazonaws.com*.s3-accesspoint.dualstack.us-east-2.amazonaws.com*.s3-control.us-east-2.amazonaws.coms3.dualstack.us-east-2.amazonaws.coms3-control.dualstack.us-east-2.amazonaws.com*.s3-deprecated.us-east-2.amazonaws.com*.s3.dualstack.us-east-2.amazonaws.coms3-control.us-east-2.amazonaws.com
Valid From2026-07-12T00:00:00+00:00
Valid Until2027-01-25T23:59:59+00:00
TLS ProtocolTls13
Cipher SuiteTLS_AES_128_GCM_SHA256
Signature Algorithmsha256RSA
Validity Period197 days
Serial Number075F79C2B32303609A25DE8583D1F8E2
Thumbprint3DBB9A8EA89C1DD8DF473C1CF9666DAEB2C21F70

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
33%
24
routing
58%
117
services
33%
24
ownership
27%
23
reputation
13%
12
geolocation
19%
22
Overall30%1032
Coverage: 5/6 dimensions Β· Data sufficiency: partial
Data CoherenceMostly Consistent (80%) β€” 1 contradiction(s)
AttributionModerate (55%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Claimed geolocation contradicts RTT physics measurement

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-09-05 16:28:55 UTC
Last Seen2026-09-18 14:52:30 UTC
Profile Built2026-09-18 15:10:34 UTC
Data FreshnessLive
Signal Types23
Total Observations48
πŸ” 23 signal types Β· 48 observations collected
This report is generated from 23+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.