IP Intelligence Briefing: 47.128.16.146/32
Date: 2026-06-01
---
**1. Core Profile**
- Reputation: Moderate Risk (Risk Score: 50)
- Ownership: Amazon Data Services Singapore (ASN: 16509, Netname: AMAZON-SIN)
- Geolocation: US (Chicago, Illinois)
- Network Role: AWS Cloud Compute Instance (Firewalled, No Services)
- Threat Indicators: No malicious indicators, spam, or known attacker activity.
---
**2. Neighborhood Analysis**
- Subnet: 47.128.16.0/24
- Abuse Density: 33.33% (mixed classification)
- Neighbor Risk:
- 2 IPs with medium risk (25β40 score)
- 9 IPs with low risk (0β25 score)
- 3 IPs flagged as threat siblings
- Notable Neighbors:
- 47.128.16.147 (Risk: 40)
- 47.128.16.181 (Risk: 40)
---
**3. Historical Observations**
- Ownership Stability: No changes in ownership (0 changes, 0 persistence days).
- Threat Activity: No observed malicious behavior or persistence.
- Geolocation Consistency: Plausible US location (Chicago) with no anomalies.
---
**4. Relationships & Dependencies**
- Linked Entities:
- DNS: `ec2-47-128-16-146.ap-southeast-1.compute.amazonaws.com`
- Network: AMAZON-SIN (AWS infrastructure)
- Services: No open ports, TLS, or HTTP services detected.
---
**5. Threat & Risk Assessment**
- Direct Risk: Low. No malicious indicators or campaigns linked.
- Indirect Risk: Subnet contains 3 threat siblings, suggesting potential for lateral movement or shared infrastructure compromises.
- DNS Security: SPF/DKIM records present, but no email-related threats detected.
---
**6. Recommendations**
1. Monitor Subnet: Track activity in 47.128.16.0/24 for unusual traffic patterns.
2. Validate Cloud Instance: Confirm AWS instance (47.128.16.146) is legitimate and not compromised.
3. Inspect Neighbors: Focus on high-risk neighbors (e.g., 47.128.16.147, 47.128.16.181) for potential lateral movement.
4. Ensure DNS Security: Verify SPF/DKIM alignment for associated domains.
---
Conclusion: This IP is a legitimate AWS Cloud instance with no direct malicious activity. However, the subnetβs mixed risk profile warrants closer scrutiny to mitigate potential indirect threats.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Amazon Data Services Singapore |
| ASN | AS16509 |
| Network Name | AMAZON-SIN |
| CIDR Block | 47.128.0.0/14 |
| RIR | ARIN |
| Country | Singapore |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | ec2-47-128-16-146.ap-southeast-1.compute.amazonaws.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | ec2-47-128-16-146.ap-southeast-1.compute.amazonaws.com |
π DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 19% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 13% | 1 | 2 |
| geolocation | 27% | 2 | 3 |
| Overall | 21% | 10 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-31 05:08:52 UTC |
| Last Seen | 2026-06-29 08:25:29 UTC |
| Profile Built | 2026-06-29 08:34:05 UTC |
| Data Freshness | Live |
| Signal Types | 24 |
| Total Observations | 24 |
Full dossier details are available via our API.