IP Intelligence Briefing: 47.128.119.130
Date: 2026-06-08
---
**1. Core Profile**
- Risk Score: 40 (Moderate Risk)
- Ownership: Amazon Data Services Singapore (ASN 16509)
- Geolocation: Singapore (1.35°N, 103.82°E), 150km accuracy radius
- Network Role: AWS cloud infrastructure (no services detected)
- Threat Indicators: No malicious activity, no blacklists, no Tor/VPN/Proxy associations
---
**2. Observation History**
- Recent Activity (2026-06-08):
- DNS resolution confirmed for `ec2-47-128-119-130.ap-southeast-1.compute.amazonaws.com`
- Network classification as "high_abuse" subnet (47.128.119.130/24) with 55.84% abuse density
- No persistent threats or campaign correlations
---
**3. Relationships**
- DNS Associations: Linked to AWS EC2 hostname (`ec2-47-128-119-130.ap-southeast-1.compute.amazonaws.com`)
- Network Peers: Same subnet (`AMAZON-SIN`) with 87 total IPs (35 active, 43 flagged as threats)
- No Correlated Malicious Entities: No known attackers, spam sources, or C2 servers
---
**4. Neighborhood Analysis**
- Subnet (47.128.119.130/24):
- Abuse Density: 55.84% (moderate risk)
- Neighbor Risks: 81 medium-risk IPs, 6 low-risk IPs
- Notable Neighbors: IPs like `47.128.119.2`, `47.128.119.12` (all with 40 risk score)
---
**5. Recommendations**
- Traffic Allowance: Permit AWS traffic (port 443/80) as legitimate cloud infrastructure.
- Subnet Monitoring: Increase scrutiny of the `47.128.119.130/24` subnet due to moderate abuse density.
- DNS Validation: Confirm DNS records for `ec2-47-128-119-130.ap-southeast-1.compute.amazonaws.com` to ensure no spoofing.
- Anomaly Detection: Flag unexpected outbound connections from this subnet for further investigation.
Conclusion: This IP is a legitimate AWS EC2 instance in Singapore with no direct malicious indicators. However, its subnet exhibits moderate abuse activity, warranting closer monitoring.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Amazon Data Services Singapore |
| ASN | AS16509 |
| Network Name | β |
| CIDR Block | 47.128.0.0/14 |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | ec2-47-128-119-130.ap-southeast-1.compute.amazonaws.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | ec2-47-128-119-130.ap-southeast-1.compute.amazonaws.com |
π DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 26% | 2 | 4 |
| routing | 24% | 2 | 3 |
| services | 15% | 2 | 2 |
| ownership | 24% | 3 | 4 |
| reputation | 28% | 1 | 3 |
| geolocation | 25% | 2 | 2 |
| Overall | 24% | 12 | 18 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-19 15:39:12 UTC |
| Last Seen | 2026-06-28 09:22:41 UTC |
| Profile Built | 2026-06-29 03:27:32 UTC |
| Data Freshness | Live |
| Signal Types | 24 |
| Total Observations | 27 |
Full dossier details are available via our API.