# IPDEBRIEF INTELLIGENCE BRIEFING
Target: 105.174.54.46/32
Classification: Low Risk / Monitor
Date: 2026-07-30
## Executive Summary
IP address 105.174.54.46 is assessed as low risk (risk score: 25) with minimal threat indicators. The IP is associated with Nsilu Ferreira (ASN 37119) and appears to be firewalled with no active services. Limited DNSBL presence (1 of 8 lists) with high-severity listing warrants monitoring but does not indicate active malicious behavior.
## Ownership and Network Infrastructure
| Field | Value |
|---|---|
| ASN | 37119 |
| Organization | Nsilu Ferreira |
| CIDR Block | 105.174.0.0/15 |
| RIR | AFRINIC |
| Country | United States (NY) |
| Timezone | America/New_York |
The IP operates within a /16 BGP prefix (105.174.0.0/16) with route instability detected (isRouteStable: false). Origin ASN 37119 shows minimal operator scoring.
## Network Role and Services
- Service Purpose: Firewalled / No Services
- Open Ports: None detected
- DNS Activity: No PTR records, no forward resolution
- Email Auth: SPF/DMARC not configured
- Classification: Not cloud, CDN, VPN, proxy, Tor, hosting, mobile, residential, or anycast
## Threat Indicators
| Indicator | Status |
|---|---|
| Is Tor Exit | False |
| Is Known Attacker | False |
| Is Spam Source | False |
| Blacklist Count | 0 (total) |
| DNSBL Listed | 1 of 8 lists |
| Known Campaigns | None |
| Threat Feeds | None |
| Pulsedive Risk | Not available |
Abuse confidence score: Null. No active threat indicators detected in current threat feeds.
## Observation History
Nine signal observations recorded, most recent from 2026-07-30T05:57:35Z. Key observations:
- DNSSEC Validation: False
- Blacklist Listings: 8 total lists queried, 1 listing with high severity
- Scanning Activity: Multiple port scans detected in recent observations
- Overall Confidence: Low (0.08-0.70 across observations)
## Neighborhood Analysis
Subnet: 105.174.54.0/24
Abuse Density: 0 (clean)
Total Siblings: 1
Neighbor IP: 105.174.54.26
- Risk Score: 25
- Authority Score: 50
- Classification: Clean
- DNSSEC Valid: True
- Abuse Density: 0
Both IPs in the /24 share similar risk profiles with no inherited threat signals.
## Security Actions
No specific firewall rules or action recommendations generated. The IP's low-risk profile and firewalled state result in minimal immediate action requirements.
## SOC Analyst Recommendations
1. Monitor: Continue passive monitoring for new threat indicators or service activity.
2. No Immediate Block: Risk score of 25 does not warrant proactive blocking.
3. Watch DNSBL: Investigate the single high-severity DNSBL listing to determine specific list and rationale.
4. Verify Route Stability: Route instability may indicate infrastructure changes or hijacking attempts.
5. Correlate: If 105.174.54.26 or other IPs in 105.174.0.0/15 show malicious activity, reassess 105.174.54.46.
Confidence Level: Moderate
Threat Level: Low
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Nsilu Ferreira |
| ASN | AS37119 |
| Network Name | 105.174.0.0 - 105.175.255.255 |
| CIDR Block | 105.174.0.0/15 |
| RIR | AFRINIC |
| Country | AO |
| Abuse Contact | β |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 0% (None) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 25% | 1 | 1 |
| services | 0% | 0 | 0 |
| ownership | 25% | 1 | 1 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 8% | 2 | 2 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-07-26 03:08:09 UTC |
| Last Seen | 2026-07-30 05:56:52 UTC |
| Profile Built | 2026-07-30 06:14:25 UTC |
| Data Freshness | Live |
| Signal Types | 14 |
| Total Observations | 14 |
Full dossier details are available via our API.