IPDebrief

52.198.46.185

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING

Target: 52.198.46.185/32

Classification: Clean Cloud Infrastructure IP

Assessment Date: Current Analysis

Analyst: IPDebrief Intelligence

---

## EXECUTIVE SUMMARY

52.198.46.185 is a benign AWS cloud computing infrastructure IP address with a risk score of 0. The address is associated with Amazon Data Services Japan (Tokyo region) and exhibits standard cloud service characteristics. No threat indicators, blacklist listings, or malicious activity were detected across all available data sources.

---

## OWNERSHIP & GEOLOCATION

Organization: Amazon Data Services Japan

ASN: 16509 (AMAZON-02)

Country: Japan (JP)

City: Tokyo

Region: 13

CIDR Block: 52.192.0.0/12

Infrastructure Type: CloudCompute (AWS EC2)

Hostname: ec2-52-198-46-185.ap-northeast-1.compute.amazonaws.com

---

## THREAT ANALYSIS

Risk Score: 0 (Low Risk)

Abuse Confidence Score: N/A

Blacklist Count: 0

Threat Indicators: None

Known Campaigns: None

Is Tor Exit: No

Is Known Attacker: No

Is Spam Source: No

Control Plane Assessment:

---

## NETWORK CHARACTERISTICS

Connection Type: Cloud/Infrastructure

Services: No open ports (firewalled/No Services)

TLS Certificate: None exposed

HTTP Title: None detected

PTR Records: ec2-52-198-46-185.ap-northeast-1.compute.amazonaws.com (1 record)

Forward Resolution: Confirmed (1 hostname)

Email Authentication: SPF/DMARC records present on amazonaws.com domain

---

## OBSERVATION HISTORY (25 signals)

Analysis Period: Historical signals indicate consistent AWS infrastructure association

Notable Findings:

---

## RELATIONSHIP GRAPH (92 relationships)

Primary Associations:

No malicious relationships, command-and-control associations, or suspicious entity links detected.

---

## SUBNET ANALYSIS (52.198.46.0/24)

Subnet Classification: mostly_clean

Abuse Density: 0 (no abuse detected)

Risk Distribution: 0 high, 0 medium, 0 low

Neighbor Count: 0

Inherited Risk: 2 (low)

Active Siblings: 1

Threat Siblings: 0

Conclusion: The /24 subnet demonstrates typical AWS cloud infrastructure behavior with no abnormal abuse patterns.

---

## SECURITY ACTIONS & RECOMMENDATIONS

Recommended Actions: None

Firewall Rules: None required

Block Status: Not recommended for blocking

Rationale: The IP address represents legitimate AWS infrastructure with no threat indicators. Blocking would impede legitimate cloud service connectivity. Standard monitoring and logging is sufficient.

---

## FINAL ASSESSMENT

Threat Level: LOW / CLEAN

Action Required: NO

Recommended Handling: Allow traffic with standard logging

This IP address (52.198.46.185) is classified as benign AWS cloud infrastructure hosting infrastructure. The address exhibits all characteristics of legitimate cloud service operation with zero threat indicators across reputation feeds, threat intelligence sources, and network behavior analysis. No defensive actions are required beyond standard traffic monitoring.

---

End of Briefing

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฏ๐Ÿ‡ต Japan
Region13
CityTokyo
TimezoneAsia/Tokyo
Latitude35.68
Longitude139.69

๐Ÿข Ownership & Registration

OrganizationAmazon Data Services Japan
ASNAS16509
Network Nameโ€”
CIDR Blockโ€”
RIRARIN
Countryโ€”
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRec2-52-198-46-185.ap-northeast-1.compute.amazonaws.com
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnamesec2-52-198-46-185.ap-northeast-1.compute.amazonaws.com

๐Ÿ” DNS Hygiene

Hygiene Score80% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeFirewalled / No Services
Network TierHosting โ€” Infrastructure provider without advanced routing
CloudHosting

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
41%
25
routing
34%
14
services
15%
22
ownership
24%
23
reputation
26%
13
geolocation
30%
23
Overall28%1020
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-07 23:04:27 UTC
Last Seen2026-06-27 07:39:19 UTC
Profile Built2026-06-28 01:45:02 UTC
Data FreshnessLive
Signal Types24
Total Observations33
๐Ÿ” 24 signal types ยท 33 observations collected
This report is generated from 24+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.