IPDebrief

105.174.54.46

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IPDEBRIEF INTELLIGENCE BRIEFING

Target: 105.174.54.46/32

Classification: Low Risk / Monitor

Date: 2026-07-30

## Executive Summary

IP address 105.174.54.46 is assessed as low risk (risk score: 25) with minimal threat indicators. The IP is associated with Nsilu Ferreira (ASN 37119) and appears to be firewalled with no active services. Limited DNSBL presence (1 of 8 lists) with high-severity listing warrants monitoring but does not indicate active malicious behavior.

## Ownership and Network Infrastructure

FieldValue
ASN37119
OrganizationNsilu Ferreira
CIDR Block105.174.0.0/15
RIRAFRINIC
CountryUnited States (NY)
TimezoneAmerica/New_York

The IP operates within a /16 BGP prefix (105.174.0.0/16) with route instability detected (isRouteStable: false). Origin ASN 37119 shows minimal operator scoring.

## Network Role and Services

## Threat Indicators

IndicatorStatus
Is Tor ExitFalse
Is Known AttackerFalse
Is Spam SourceFalse
Blacklist Count0 (total)
DNSBL Listed1 of 8 lists
Known CampaignsNone
Threat FeedsNone
Pulsedive RiskNot available

Abuse confidence score: Null. No active threat indicators detected in current threat feeds.

## Observation History

Nine signal observations recorded, most recent from 2026-07-30T05:57:35Z. Key observations:

## Neighborhood Analysis

Subnet: 105.174.54.0/24

Abuse Density: 0 (clean)

Total Siblings: 1

Neighbor IP: 105.174.54.26

Both IPs in the /24 share similar risk profiles with no inherited threat signals.

## Security Actions

No specific firewall rules or action recommendations generated. The IP's low-risk profile and firewalled state result in minimal immediate action requirements.

## SOC Analyst Recommendations

1. Monitor: Continue passive monitoring for new threat indicators or service activity.

2. No Immediate Block: Risk score of 25 does not warrant proactive blocking.

3. Watch DNSBL: Investigate the single high-severity DNSBL listing to determine specific list and rationale.

4. Verify Route Stability: Route instability may indicate infrastructure changes or hijacking attempts.

5. Correlate: If 105.174.54.26 or other IPs in 105.174.0.0/15 show malicious activity, reassess 105.174.54.46.

Confidence Level: Moderate

Threat Level: Low

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionUS-NY
CityNew York
TimezoneAmerica/New_York
Latitudeβ€”
Longitudeβ€”

🏒 Ownership & Registration

OrganizationNsilu Ferreira
ASNAS37119
Network Name105.174.0.0 - 105.175.255.255
CIDR Block105.174.0.0/15
RIRAFRINIC
CountryAO
Abuse Contactβ€”

🌐 DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)

πŸ” DNS Hygiene

Hygiene Score0% (None)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECNot signed
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown β€” Insufficient routing data to classify
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
0%
00
routing
25%
11
services
0%
00
ownership
25%
11
reputation
0%
00
geolocation
0%
00
Overall8%22
Coverage: 2/6 dimensions Β· Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-07-26 03:08:09 UTC
Last Seen2026-07-30 05:56:52 UTC
Profile Built2026-07-30 06:14:25 UTC
Data FreshnessLive
Signal Types14
Total Observations14
πŸ” 14 signal types Β· 14 observations collected
This report is generated from 14+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.