Your IP: 216.73.216.123
π€ Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.
IP Intelligence Briefing: 47.128.119.140
Date: 2026-06-16
---
**1. Core Profile**
- Reputation: Moderate Risk (Risk Score: 40)
- Ownership: Owned by Amazon Data Services Singapore (ASN 16509, Netname: AMAZON-SIN).
- Geolocation: Singapore (City: Singapore, Latitude: 1.35, Longitude: 103.82).
- Network Role: AWS Cloud Compute infrastructure (firewalled, no open services).
- Threat Indicators: No malicious activity detected (no indicators, blacklists, or campaigns).
---
**2. Neighborhood Analysis**
- Subnet: 47.128.119.140/24
- Abuse Density: 64.77% (classified as "high_abuse").
- Neighbor Risk:
- 81 IPs rated medium risk (40 score), 7 IPs rated low risk (60 score).
- Siblings include IPs like 47.128.119.2, 47.128.119.12, and 47.128.119.13 (all with moderate risk).
---
**3. Observation History**
- Geolocation Consistency: Stable (Singapore, 150km accuracy radius).
- Network Stability:
- BGP route stability: stable (0 route changes in 30 days).
- DNSSEC and CAA records validated.
- Threat Signals: No persistent malicious activity or campaign correlations.
---
**4. Relationships**
- DNS: Linked to ec2-47-128-119-140.ap-southeast-1.compute.amazonaws.com (AWS EC2 instance).
- Network: Same subnet as AMAZON-SIN (AWS infrastructure).
- Ownership: No abuse confidence scores or spam indicators.
---
**5. Actionable Insights**
- Monitor Subnet: The high abuse density in the subnet (47.128.119.140/24) suggests potential for lateral movement or compromised neighbors.
- Verify Cloud Configuration: Ensure AWS resource (EC2 instance) has strict access controls and is not exposed to public internet.
- Block High-Risk Neighbors: Consider isolating or blocking traffic from medium-risk IPs in the same subnet.
- No Immediate Mitigation: The IP itself is legitimate, but subnet-level risks warrant closer scrutiny.
---
Recommended Tools: Use AWS WAF to restrict access to the EC2 instance and monitor subnet traffic anomalies.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Amazon Data Services Singapore |
| ASN | AS16509 |
| Network Name | AMAZON-SIN |
| CIDR Block | 47.128.0.0/14 |
| RIR | ARIN |
| Country | Singapore |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | ec2-47-128-119-140.ap-southeast-1.compute.amazonaws.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | ec2-47-128-119-140.ap-southeast-1.compute.amazonaws.com |
π DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
No certificate
Issued by β
N/A
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 27% | 2 | 3 |
| services | 19% | 2 | 2 |
| ownership | 30% | 3 | 4 |
| reputation | 13% | 1 | 2 |
| geolocation | 27% | 2 | 3 |
| Overall | 24% | 12 | 17 |
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-28 06:16:38 UTC |
| Last Seen | 2026-06-29 05:15:12 UTC |
| Profile Built | 2026-06-29 05:23:31 UTC |
| Data Freshness | Live |
| Signal Types | 29 |
| Total Observations | 29 |
π 29 signal types Β· 29 observations collected
This report is generated from 29+ independent intelligence signals including
ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds,
behavioral fingerprinting, and more.
Full dossier details are available via our API.
Full dossier details are available via our API.
βΉοΈ About This Report
All data shown is publicly available network metadata β IP addresses do not reliably identify individuals.
Assessments are probabilistic and should not be used as sole basis for access control decisions.
To report an issue or request data review, contact admin@ipdebrief.com.