IPDebrief

52.208.44.166

IP Intelligence Dossier
Your IP: 216.73.217.34
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

Intelligence Briefing: IP 52.208.44.166

Infrastructure and Ownership

The IP address 52.208.44.166 was identified as part of Amazon Web Services infrastructure (AS16509, AMAZON-DUB). Ownership registration indicated Amazon Data Services Ireland Limited. DNS reverse resolution confirmed the hostname `ec2-52-208-44-166.eu-west-1.compute.amazonaws.com`.

Technical Profile

Open ports included TCP/80 (HTTP) and TCP/443 (HTTPS). TLS certificate analysis indicated a subject organization of Samsung Electronics (`*.push.samsungosp.com`), issued by Sectigo RSA Organization Validation.

Threat Assessment

The IP was categorized as Low Risk with a risk score of 25. It was not flagged as a known attacker or spam source. However, evidence showed the IP was listed on one DNS blacklist out of eight sources checked. No active threat indicators or known campaign associations were observed.

Data Quality and Anomalies

Contradictions were recorded regarding geolocation. While primary registration and infrastructure data pointed to Dublin (IE), TLS certificates indicated South Korea (KR), and additional geo sources suggested the United Kingdom (GB). The IP neighborhood classification remained "clean" with zero threat siblings.

Recommendation

Analysts were advised to Monitor the IP. This recommendation was based on signal contradictions present in the geo- and certificate data, despite the low overall threat severity.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฎ๐Ÿ‡ช Ireland
RegionD
CityDublin
TimezoneEurope/Dublin
Latitude53.35
Longitude-6.26

๐Ÿข Ownership & Registration

OrganizationAmazon Data Services Ireland Limited
ASNAS16509
Network NameAMAZON-DUB
CIDR Block52.208.0.0/13
RIRARIN
CountryIreland
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRec2-52-208-44-166.eu-west-1.compute.amazonaws.com
Forward ConfirmedYes โ€” FCrDNS verified
Hosted Domainec2-52-208-44-166.eu-west-1.compute.amazonaws.com
Forward Hostnamesec2-52-208-44-166.eu-west-1.compute.amazonaws.com

๐Ÿ” DNS Hygiene

Hygiene Score60% (Good)
SPF4/4 domains
DMARC2/4 domains
FCrDNSVerified
DNSSECNot signed
CAANot configured
Domains Checked4 domains

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierHosting โ€” Infrastructure provider without advanced routing
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpโ€”
443httpstcpโ€”
Closed Ports22, 25, 3389, 8080, 8443 (2 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
CN=*.push.samsungosp.com, O="SAMSUNG ELECTRONICS CO,.LTD", S=Gyeonggi-do, C=KR
Issued by CN=Sectigo RSA Organization Validation Secure Server CA, O=Sectigo Limited, L=Salford, S=Greater Manchester, C=GB
Self-signed: No
SANs*.push.samsungosp.compush.samsungosp.com
Valid From2025-11-17T00:00:00+00:00
Valid Until2026-12-18T23:59:59+00:00
TLS ProtocolTls12
Cipher SuiteTLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Signature Algorithmsha256RSA
Validity Period396 days
Serial Number163F914E35AFA5204EAE5DC0D06733D3
Thumbprint1565E26D89D47C1A2980DCF56D0FCD39AC1E4E91

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
42%
26
routing
13%
11
services
27%
24
ownership
27%
23
reputation
22%
13
geolocation
27%
23
Overall26%1020
Coverage: 5/6 dimensions ยท Data sufficiency: partial
Data CoherenceMixed Signals (68%) โ€” 2 contradiction(s)
AttributionModerate (55%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
โš  Geo sources disagree on country: US, IE, KR
โš  TLS certificate claims KR but primary geo says IE

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-09-05 17:25:03 UTC
Last Seen2026-09-22 09:04:37 UTC
Profile Built2026-09-22 09:19:56 UTC
Data FreshnessLive
Signal Types27
Total Observations46
๐Ÿ” 27 signal types ยท 46 observations collected
This report is generated from 27+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.