IPDebrief

52.201.37.243

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING

Target: 52.201.37.243/32

Classification: LOW RISK | AWS Cloud Infrastructure

---

## EXECUTIVE SUMMARY

IP address 52.201.37.243 is a low-risk Amazon Web Services EC2 instance located in Ashburn, VA. The address demonstrates stable ownership within the AWS cloud compute infrastructure (AS14618) with no malicious indicators. Historical analysis indicates minimal threat persistence. No immediate security actions required.

---

## RISK PROFILE

MetricValue
Risk Score25 (Low)
Provider Score0
Authority Score0
ReputationLow Risk
Abuse ConfidenceNone Detected
Blacklist Count0

Assessment: Standard cloud compute infrastructure with benign characteristics. No correlation to known threat campaigns or malicious activity.

---

## OWNERSHIP & GEOLLOCATION

AttributeDetails
OrganizationAmazon Technologies Inc.
ASN14618
RIRARIN
CountryUnited States (US)
RegionVirginia (VA)
CityAshburn
Coordinates39.04°N, -77.49°W
Infrastructure TypeCloudCompute

Note: Geolocation data validated through multiple sources with consensus confirmation.

---

## NETWORK CHARACTERISTICS

AttributeDetails
Network RoleSingle-Service Host
Is CloudYes (AWS EC2)
Is CDNNo
Is Proxy/VPNNo
Is TorNo
Open PortsTCP/22 (SSH - OpenSSH 8.9p1 Ubuntu)
DNS PTRec2-52-201-37-243.compute-1.amazonaws.com
BGP Prefix52.200.0.0/13
Route StabilityStable

---

## THREAT INDICATORS

---

## OBSERVATION HISTORY

Total Observations: 28

Recent Activity: 2026-06-25

Threat Persistence: 0 days

Signal Trends: Stable

Historical signals indicate consistent benign behavior across service scans, geolocation updates, and network classification checks. No escalation in threat posture observed.

---

## RELATIONSHIP ANALYSIS

Total Relationships: 83

Key Associations:

---

## NEIGHBORHOOD ANALYSIS

Subnet: 52.201.37.0/24

The /24 subnet demonstrates minimal abuse activity, consistent with AWS cloud infrastructure patterns.

---

## SECURITY ACTIONS

Recommendation: None

Risk-Based Actions: Not Required

The IP address presents no immediate threat requiring firewall rule generation or traffic mitigation. Standard cloud infrastructure monitoring recommended.

---

## INTELLIGENCE CONCLUSION

52.201.37.243 is a benign AWS EC2 instance with standard security posture. The address exhibits characteristics consistent with legitimate cloud computing infrastructure. No indicators of command and control, malware hosting, or abuse activity detected. SOC analysts may treat this as a trusted infrastructure IP for monitoring purposes.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionVA
CityAshburn
TimezoneAmerica/New_York
Latitude39.04
Longitude-77.49

🏒 Ownership & Registration

OrganizationAmazon Technologies Inc.
ASNAS14618
Network Nameβ€”
CIDR Block52.200.0.0/13
RIRARIN
Countryβ€”
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTRec2-52-201-37-243.compute-1.amazonaws.com
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnamesec2-52-201-37-243.compute-1.amazonaws.com

πŸ” DNS Hygiene

Hygiene Score80% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeSingle-Service Host
Network TierHosting β€” Infrastructure provider without advanced routing
CloudHosting

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
22sshtcp
Closed Ports25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned)
Servernginx
HTTP Titleβ€”
SSH VersionSSH-2.0-OpenSSH_8.9p1 Ubuntu-3ubuntu0.15

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
21%
24
routing
17%
23
services
26%
23
ownership
22%
34
reputation
26%
13
geolocation
30%
23
Overall24%1220
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-05-08 23:18:42 UTC
Last Seen2026-06-27 14:40:57 UTC
Profile Built2026-06-28 14:46:41 UTC
Data FreshnessLive
Signal Types29
Total Observations34
πŸ” 29 signal types Β· 34 observations collected
This report is generated from 29+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.