IPDebrief

34.250.121.148

IP Intelligence Dossier
Your IP: 216.73.217.34
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

The asset 34.250.121.148/32 was identified within the AMAZON-DUB network, owned by Amazon Data Services Ireland Limited (ASN 16509). A risk assessment yielded a Low Risk score of 25. Geolocation data placed the host in Dublin, Ireland, though a TLS certificate subject indicated South Korea, creating a contradiction in geographic origin. Network services included TCP ports 80 and 443 with an Apache server banner. While the neighborhood analysis returned clean results with zero threat siblings, the threat actor classification labeled the host as Suspicious. Monitoring was recommended due to conflicting signal data regarding country of origin and certificate claims, despite no specific malicious indicators or active campaigns being detected during the observation window.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฎ๐Ÿ‡ช Ireland
RegionD
CityDublin
TimezoneEurope/Dublin
Latitude53.35
Longitude-6.26

๐Ÿข Ownership & Registration

OrganizationAmazon Data Services Ireland Limited
ASNAS16509
Network NameAMAZON-DUB
CIDR Block34.248.0.0/13
RIRARIN
CountryIreland
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRec2-34-250-121-148.eu-west-1.compute.amazonaws.com
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnamesec2-34-250-121-148.eu-west-1.compute.amazonaws.com

๐Ÿ” DNS Hygiene

Hygiene Score60% (Good)
SPF3/6 domains
DMARC3/6 domains
FCrDNSVerified
DNSSECNot signed
CAANot configured
Domains Checked6 domains

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierTier 3 โ€” Basic operator with some routing infrastructure
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpโ€”
443httpstcpโ€”
Closed Ports22, 25, 3389, 8080, 8443 (2 open / 7 scanned)
ServerApache
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
CN=*.samsungapps.com, O="SAMSUNG ELECTRONICS CO,.LTD", S=Gyeonggi-do, C=KR
Issued by CN=Sectigo RSA Organization Validation Secure Server CA, O=Sectigo Limited, L=Salford, S=Greater Manchester, C=GB
Self-signed: No
SANs*.samsungapps.comsamsungapps.com
Valid From2026-01-27T00:00:00+00:00
Valid Until2027-02-27T23:59:59+00:00
TLS ProtocolTls12
Cipher SuiteTLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Signature Algorithmsha256RSA
Validity Period396 days
Serial Number064772DF706B47674722C1834FCBB1A6
ThumbprintEAD7059B63800BE769A6AE97EBE740532E38D9C9

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
38%
25
routing
38%
45
services
38%
25
ownership
35%
35
reputation
22%
14
geolocation
27%
23
Overall33%1427
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceMixed Signals (68%) โ€” 2 contradiction(s)
AttributionHigh (85%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
โš  Geo sources disagree on country: US, KR, IE
โš  TLS certificate claims KR but primary geo says IE

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-08-29 10:38:19 UTC
Last Seen2026-09-22 14:52:36 UTC
Profile Built2026-09-22 15:04:46 UTC
Data FreshnessLive
Signal Types33
Total Observations55
๐Ÿ” 33 signal types ยท 55 observations collected
This report is generated from 33+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.