IP Intelligence Briefing: 43.200.191.125
Date: 2026-06-10
---
**1. Risk Profile**
- Overall Risk Score: 25 (Low Risk)
- Provider Score: 0 (No provider-specific risk indicators)
- Authority Score: 0 (No authoritative abuse reports)
- Stability Score: 0 (No instability detected)
---
**2. Ownership & Network Context**
- ASN: 16509 (IRT-AMAZON-AS-AP1)
- Organization: Amazon Web Services (AWS)
- Geolocation: Seoul, South Korea (KR)
- Network Role: CloudCompute (AWS EC2 instance)
- Subnet: 43.200.191.125/24 (No abuse density; clean classification)
---
**3. Threat Indicators**
- No malicious indicators detected:
- No DNS, email, or TLS threats.
- No known attackers, spam sources, or Tor exit nodes.
- BGP & DNSSEC: Valid DNSSEC and stable BGP routing (no route instability).
---
**4. Observation History**
- Latest Observations (June 10, 2026):
- Basic risk score (0.3) with 3/8 signals analyzed.
- No persistent malicious activity or ownership changes.
- Historical Trends:
- 19 observations over 5 months (June 2026βJune 2025).
- Low confidence in most signals (avg. confidence: 0.4).
---
**5. Relationships & Neighbors**
- Key Associations:
- Linked to AWS hostname: `ec2-43-200-191-125.ap-northeast-2.compute.amazonaws.com`.
- Subnet: 43.200.191.125/24 (no malicious neighbors).
- Network Context:
- Part of AWS infrastructure (cloud compute, no CDN/VPN/proxy).
---
**6. Recommendations**
- No immediate action required:
- Legitimate AWS EC2 instance with no malicious indicators.
- Monitor for unexpected changes in ownership or network behavior.
- Verify context:
- Confirm if this IP is associated with known campaigns or internal assets.
- Ensure no misconfigurations (e.g., open ports, insecure DNS settings).
---
Conclusion: 43.200.191.125 is a low-risk, legitimate AWS cloud instance with no malicious activity detected. No security actions are required unless further anomalies are observed.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | IRT-AMAZON-AS-AP1 |
| ASN | AS16509 |
| Network Name | AMAZON-AS-AP |
| CIDR Block | 43.200.0.0/13 |
| RIR | APNIC |
| Country | US |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | ec2-43-200-191-125.ap-northeast-2.compute.amazonaws.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | ec2-43-200-191-125.ap-northeast-2.compute.amazonaws.com |
π DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 40% | 2 | 3 |
| Overall | 24% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-25 00:41:24 UTC |
| Last Seen | 2026-06-29 00:59:55 UTC |
| Profile Built | 2026-06-29 07:02:10 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 24 |
Full dossier details are available via our API.