IP Intelligence Briefing: 177.44.96.143
Date: 2026-06-17
---
**1. Core Profile**
- Risk Score: 80 (High Risk)
- Ownership:
- ASN: 28202 (MASTER S/A, Brazil)
- Netname: 160458
- Registration: LACNIC
- Geolocation:
- Country: Brazil (SP, Lorena)
- Geo-Plausibility: False (RTT anomalies suggest geographic inconsistency)
- Threat Indicators:
- No direct malicious indicators (no malware, phishing, or C2 activity).
- DNS: Resolves to `177-44-96-143.srs-wr.mastercabo.com.br` (Mastercabo, Brazil).
- Network Role: Firewalled / No Services (no open ports, TLS, or HTTP detected).
---
**2. Historical Observations**
- 22 Observations (Last 30 Days):
- Threat Listings: 4/8 threat feeds flag the IP (e.g., DNSBL listings).
- Operator Score: Minimal (0.13), suggesting low infrastructure risk.
- Stability: Route instability detected (fluctuating BGP prefixes).
- DNSSEC: Valid, but CAA records absent.
---
**3. Network Relationships**
- Subnet: 177.44.96.0/23 (part of larger 177.44.0.0/17 block).
- Key Relationships:
- Linked to ASN 28202 (MASTER S/A).
- No direct ties to known malicious organizations or campaigns.
---
**4. Subnet Neighborhood**
- /24 Subnet: 177.44.96.0/24 (59 IPs).
- Risk Distribution:
- High Risk: 9 IPs (e.g., 177.44.96.16, 177.44.96.103).
- Low Risk: 5 IPs.
- Abuse Density: 15.3% (moderate risk).
---
**5. Actionable Insights**
- SOC Recommendations:
- Monitor traffic to/from this subnet for anomalies (e.g., unexpected DNS queries or BGP changes).
- Investigate high-risk neighbors (e.g., 177.44.96.16) for potential lateral movement or shared infrastructure.
- Validate geolocation discrepancies (RTT vs. distance) to confirm IP legitimacy.
- Mitigation:
- Consider blocking the IP if it persists in threat feeds or shows suspicious behavior.
- Use DNS filtering to mitigate risks from associated domains (e.g., `mastercabo.com.br`).
---
Note: No direct malicious activity detected, but the IPโs high risk score and subnet abuse density warrant further investigation.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | MASTER S/A |
| ASN | AS28202 |
| Network Name | 160458 |
| CIDR Block | 177.44.0.0/17 |
| RIR | LACNIC |
| Country | BR |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR | 177-44-96-143.srs-wr.mastercabo.com.br |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | 177-44-96-143.srs-wr.mastercabo.com.br |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 36% | 2 | 4 |
| routing | 25% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 19% | 2 | 2 |
| reputation | 26% | 1 | 3 |
| geolocation | 30% | 2 | 3 |
| Overall | 25% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:03:56 UTC |
| Last Seen | 2026-06-22 22:19:23 UTC |
| Profile Built | 2026-06-22 22:27:07 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 23 |
Full dossier details are available via our API.