IPDebrief

34.249.98.13

IP Intelligence Dossier
Your IP: 216.73.217.34
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

IP address 34.249.98.13 was identified as Amazon Web Services infrastructure, specifically an EC2 instance under Amazon Data Services Ireland Limited (ASN 16509). During the observation window, the asset presented a low-risk profile with a risk score of 0 and was not associated with known attack campaigns, spam, or abuse lists. DNS resolution confirmed the hostname ec2-34-249-98-13.eu-west-1.compute.amazonaws.com, while TLS certificate analysis indicated usage by Samsung Electronics (CN=*.push.samsungosp.com). Open ports 80 and 443 were active, consistent with web server infrastructure.

Intelligence gathering identified signal contradictions regarding geolocation and certificate origin. While the primary location was Dublin, Ireland, other geo sources cited Korea and the United Kingdom, and the TLS certificate subject country (KR) conflicted with the server's hosted region (IE). Neighborhood analysis classified the subnet as mostly clean, though one threat sibling was recorded. No persistent malicious activity or incidents were observed during the monitoring period. Consequently, the recommendation was to monitor the asset at low severity due to data inconsistencies, despite the absence of active attacker behavior.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฎ๐Ÿ‡ช Ireland
RegionD
CityDublin
TimezoneEurope/Dublin
Latitude53.35
Longitude-6.26

๐Ÿข Ownership & Registration

OrganizationAmazon Data Services Ireland Limited
ASNAS16509
Network NameAMAZON-DUB
CIDR Block34.248.0.0/13
RIRARIN
CountryIreland
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRec2-34-249-98-13.eu-west-1.compute.amazonaws.com
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnamesec2-34-249-98-13.eu-west-1.compute.amazonaws.com

๐Ÿ” DNS Hygiene

Hygiene Score60% (Good)
SPF4/4 domains
DMARC2/4 domains
FCrDNSVerified
DNSSECNot signed
CAANot configured
Domains Checked4 domains

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierHosting โ€” Infrastructure provider without advanced routing
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpโ€”
443httpstcpโ€”
Closed Ports22, 25, 3389, 8080, 8443 (2 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
CN=*.push.samsungosp.com, O="SAMSUNG ELECTRONICS CO,.LTD", S=Gyeonggi-do, C=KR
Issued by CN=Sectigo RSA Organization Validation Secure Server CA, O=Sectigo Limited, L=Salford, S=Greater Manchester, C=GB
Self-signed: No
SANs*.push.samsungosp.compush.samsungosp.com
Valid From2025-11-17T00:00:00+00:00
Valid Until2026-12-18T23:59:59+00:00
TLS ProtocolTls12
Cipher SuiteTLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Signature Algorithmsha256RSA
Validity Period396 days
Serial Number163F914E35AFA5204EAE5DC0D06733D3
Thumbprint1565E26D89D47C1A2980DCF56D0FCD39AC1E4E91

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
42%
26
routing
13%
11
services
27%
24
ownership
27%
24
reputation
22%
14
geolocation
27%
22
Overall26%1021
Coverage: 5/6 dimensions ยท Data sufficiency: partial
Data CoherenceMixed Signals (68%) โ€” 2 contradiction(s)
AttributionModerate (55%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
โš  Geo sources disagree on country: US, KR, IE
โš  TLS certificate claims KR but primary geo says IE

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-09-07 04:29:29 UTC
Last Seen2026-09-22 22:43:02 UTC
Profile Built2026-09-23 00:06:19 UTC
Data FreshnessLive
Signal Types26
Total Observations45
๐Ÿ” 26 signal types ยท 45 observations collected
This report is generated from 26+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.