IP Intelligence Briefing: 138.255.207.156
Date: 2026-06-12
---
**Overview**
- Risk Profile: Low Risk (Risk Score: 0/100). No malicious indicators, no blacklist entries, and no active threats detected.
- Network Role: Firewalled / No Services. No open ports, TLS certificates, or HTTP services observed.
- Ownership: Registered to CIT INFORMATICA (ASN: null, RIR: ARIN, CIDR: 138.255.204.0/22).
- Geolocation: Brazil (Santa Catarina, Ituporanga), latitude -27.48, longitude -49.49.
---
**Threat Indicators**
- No Malicious Activity: No indicators of spam, attacker activity, or Tor exit nodes.
- Subnet Abuse Context: Neighboring IPs in the 138.255.207.0/24 subnet show 8 medium-risk and 1 low-risk IPs. Abuse density is low (0%), but 55% of neighbors have medium risk scores.
---
**Observation History**
- Recent Activity: Minimal observations (confidence < 30%). No persistent threats or ownership changes detected.
- Stability: Stable network configuration with no recent route changes or ownership shifts.
---
**Relationships**
- Network Links: Directly tied to CIDR 138.255.204.0/22 (CIT INFORMATICA). No other organizational or domain relationships identified.
---
**Actionable Insights**
1. Monitor Subnet: While the IP itself is low risk, the broader subnet contains medium-risk neighbors. Investigate potential lateral movement or shared infrastructure risks.
2. Verify Network Role: Confirm the firewalled nature of the host, as no services or DNS records were observed.
3. Check for Anomalies: Track changes in the subnetβs abuse density, as neighboring IPs may indicate broader network compromise risks.
---
Recommended Tools: Use IPDebriefβs bulk lookup for adjacent IPs to assess subnet-level risks.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | CIT INFORMATICA |
| ASN | AS263983 |
| Network Name | 263089 |
| CIDR Block | 138.255.204.0/22 |
| RIR | ARIN |
| Country | BR |
| Abuse Contact | β |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 19% | 2 | 2 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 5% | 3 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-06-03 12:20:48 UTC |
| Last Seen | 2026-06-12 20:46:38 UTC |
| Profile Built | 2026-06-12 20:53:38 UTC |
| Data Freshness | Live |
| Signal Types | 13 |
| Total Observations | 13 |
Full dossier details are available via our API.