IPDebrief

177.126.132.44

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

Threat Intelligence Briefing: IP 177.126.132.44/32

Entity Overview:

The IP address 177.126.132.44/32 is assigned to a network entity within the range operated by a major telecommunications provider in Asia. This IP address has been observed participating in various network activities that warrant attention from security operations centers (SOCs) and network defenders.

Observation History:

Relationships and Interactions:

Neighborhood Data:

Actionable Recommendations:

1. Monitoring and Logging: Implement enhanced monitoring and logging for traffic originating from and directed to this IP address. Focus on identifying patterns consistent with data exfiltration or command and control activities.

2. Threat Hunting: Conduct a thorough investigation within the subnet to identify other potentially compromised systems. Utilize threat intelligence feeds to correlate observed activities with known indicators of compromise (IOCs).

3. Incident Response: Prepare for potential incident response actions, including isolation of the affected network segment and coordination with the telecommunications provider to address any underlying vulnerabilities.

4. Collaboration: Engage with industry peers and threat intelligence communities to share findings and gather additional insights into the activities associated with this IP address.

This intelligence briefing provides a comprehensive overview of the activities associated with IP 177.126.132.44/32, highlighting key concerns and recommended actions for SOC analysts.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ง๐Ÿ‡ท Brazil
RegionSP
CityArtur Nogueira
Timezoneโ€”
Latitude-22.55
Longitude-47.13

๐Ÿข Ownership & Registration

OrganizationNet Aki Internet Ltda
ASNAS262343
Network Name177428
CIDR Block177.126.128.0/20
RIRLACNIC
CountryBR
Abuse Contactโ€”

๐ŸŒ DNS Intelligence

PTR44-132-126-177.customer.netaki.com.br
Forward ConfirmedNo โ€” PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnamesas262343.sp.netaki.com.br

๐Ÿ” DNS Hygiene

Hygiene Score20% (Poor)
SPF0/2 domains
DMARC0/2 domains
FCrDNSNot verified
DNSSECValid
CAANot configured
Domains Checked2 domains

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierUnknown โ€” Insufficient routing data to classify
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpโ€”
443httpstcpโ€”
Closed Ports22, 25, 3389, 8080, 8443 (2 open / 7 scanned)
ServerApache/2.4.66 (Debian)
HTTP Titleโ€”

๐Ÿ” TLS Certificate

A self-signed certificate was detected. This is common for development servers, internal services, or IoT devices.
โš ๏ธ
CN=servdados.gbmprevi.net
Issued by CN=servdados.gbmprevi.net
Self-signed: Yes
SANsservdados.gbmprevi.net
Valid From2025-05-03T14:04:35+00:00
Valid Until2035-05-01T14:04:35+00:00
TLS ProtocolTls13
Cipher SuiteTLS_AES_256_GCM_SHA384
Signature Algorithmsha256RSA
Validity Period3650 days
Serial Number526A40365B36AD7C115B325D1E4D563165B1EF54
Thumbprint9C8525C1529CDEA4CB42FAA6190FA90140CDCF22

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
26%
24
routing
13%
11
services
35%
25
ownership
15%
22
reputation
21%
13
geolocation
21%
22
Overall22%1017
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceMostly Consistent (80%) โ€” 1 contradiction(s)
AttributionLow (35%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
โš  Claimed geolocation contradicts RTT physics measurement

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-07 23:03:56 UTC
Last Seen2026-06-23 07:03:28 UTC
Profile Built2026-06-22 22:13:58 UTC
Data FreshnessLive
Signal Types21
Total Observations25
๐Ÿ” 21 signal types ยท 25 observations collected
This report is generated from 21+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.