IPDebrief

52.35.118.240

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

IP INTELLIGENCE BRIEFING: 52.35.118.240/32

Classification: LOW RISK

1. IP Identity & Ownership

The IP address 52.35.118.240 resolves to Amazon Technologies Inc. (ASN 16509). The address belongs to AWS Cloud Compute infrastructure deployed in the US region, specifically Portland, OR. The IP operates as an AWS EC2 instance with hostname ec2-52-35-118-240.us-west-2.compute.amazonaws.com.

2. Risk Assessment

Current risk score: 25 (Low Risk). The IP exhibits no active threat indicators. Abuse confidence scoring was not triggered. The IP is not listed on major threat feeds, is not a known attacker, does not originate spam traffic, and is not a Tor exit node.

3. Network Classification

The address classifies as cloud infrastructure with the following flags:

4. Control Plane & Routing

Origin ASN: 16509 (Amazon.com, Inc.)

BGP Prefix: 52.32.0.0/11

The IP has been observed with 1 DNSBL listing out of 8 total lists checked. Route stability has not been maintained. RPKI validation state was not determined.

5. DNS & Email Reputation

Reverse DNS resolves to: ec2-52-35-118-240.us-west-2.compute.amazonaws.com

Forward DNS resolution: Confirmed

Email authentication (SPF/DMARC): Not evaluated

Total hosted domains: 0

6. Neighborhood Analysis

The /24 subnet (52.35.118.0.0/24) shows 0 abuse density. No neighboring IPs were flagged as high or medium risk. The classification indicates the subnet is mostly clean.

7. Historical Behavior

Signal observation history contains 23 observations across multiple timestamps. The IP consistently resolves to ASN 16509 (Amazon). Operator score remained at 0.2609 (Basic) in historical signals. No persistent malicious activity or threat campaigns were observed.

8. Related Entities

The IP maintains 78 relationships in the relationship graph, including DNS associations and multiple same-network links. No certificate relationships or organization-specific links were identified beyond the AWS network.

9. Recommended Actions

No specific firewall rules or blocking actions recommended. The IP presents no active threat indicators and operates within expected AWS infrastructure parameters. Standard egress/ingress rules for cloud compute traffic apply.

10. Intelligence Summary

52.35.118.240 is a legitimate AWS EC2 instance with no evidence of malicious activity. The IP shows stable ownership, clean neighborhood metrics, and no historical threat indicators. No SOC alert or blocking action required.

Analyst Notes: Monitor for changes in risk score or emergence of threat indicators. The IP should be treated as standard cloud infrastructure traffic.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionOR
CityPortland
TimezoneAmerica/Los_Angeles
Latitude45.59
Longitude-122.60

🏒 Ownership & Registration

OrganizationAmazon Technologies Inc.
ASNAS16509
Network Nameβ€”
CIDR Blockβ€”
RIRARIN
Countryβ€”
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTRec2-52-35-118-240.us-west-2.compute.amazonaws.com
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnamesec2-52-35-118-240.us-west-2.compute.amazonaws.com

πŸ” DNS Hygiene

Hygiene Score80% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeFirewalled / No Services
Network TierHosting β€” Infrastructure provider without advanced routing
CloudHosting

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
24
routing
20%
11
services
12%
22
ownership
20%
23
reputation
26%
13
geolocation
23%
22
Overall21%1015
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-05-13 12:13:36 UTC
Last Seen2026-06-27 23:28:45 UTC
Profile Built2026-06-28 23:33:43 UTC
Data FreshnessLive
Signal Types21
Total Observations26
πŸ” 21 signal types Β· 26 observations collected
This report is generated from 21+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.