IP Intelligence Briefing: 177.93.196.72/32
*Generated via IPDebrief tools: Profile, History, Relationships, Neighbors*
---
**1. Core Profile**
- Risk Score: 55 (Moderate Risk)
- Ownership:
- ASN: 53075
- ISP: Holistica Provedor Internet Ltda (Brazil)
- CIDR: 177.93.192.0/19
- Geolocation:
- Primary: Brazil (Irecê, Bahia)
- Conflict: Earlier records show U.S. New York (latitude 40.71, longitude -74.01).
- Threat Indicators:
- No direct malicious activity (no malware, phishing, or C2 indicators).
- DNSBL Listings: 3/8 (potential spam or abuse risk).
- Network Role:
- Firewalled host with no open services (ports, TLS, or HTTP).
- No CDN, cloud, or residential flags.
---
**2. Temporal Observations (Last 30 Days)**
- Geolocation Shift:
- Recent data (June 13, 2026) places the IP in Brazil (Irecê, Bahia).
- Historical records show U.S. New York (latitude 40.71, longitude -74.01).
- Rtt Discrepancy: 180ms latency to U.S. vs. 15ms to Brazil.
- Threat Trends:
- No persistent malicious activity (zero threat observations).
- DNSSEC validation is active (no spoofing risk).
---
**3. Network Relationships**
- Connected Subnet: 177.93.192.0/19 (Holistica Provedor Internet Ltda).
- DNS/Email:
- No SPF/DKIM records detected.
- No email authentication mechanisms (SPF, DMARC).
- BGP:
- Route stability: Unstable (route changes in last 30 days).
- RPKI state: Not validated.
---
**4. Subnet Neighbors**
- Subnet: 177.93.196.0/24
- Neighbor Risk:
- 1 active IP with 15 risk score (low risk).
- Abuse Density: 0% (clean subnet).
- Notable Neighbor: 177.93.196.228 (low risk, no threats).
---
**5. Actionable Insights**
- Monitor Geolocation Shifts: Discrepancies between U.S. and Brazil locations may indicate spoofing or dynamic IP changes.
- Investigate DNSBL Listings: 3/8 DNSBL entries suggest potential spam or abuse activity; verify with upstream providers.
- Block Neighbor IP: 177.93.196.228 has a low risk score but should be monitored for anomalies.
- Check BGP Stability: Unstable routes may indicate network misconfigurations or compromise.
---
Conclusion: 177.93.196.72 is a moderate-risk IP owned by a Brazilian ISP. While no direct threats are detected, geolocation inconsistencies and DNSBL listings warrant further investigation. Neighbors are low-risk, but subnet instability and DNS configuration gaps should be addressed.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Holistica Provedor Internet Ltda |
| ASN | AS53075 |
| Network Name | 229295 |
| CIDR Block | 177.93.192.0/19 |
| RIR | LACNIC |
| Country | BR |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 12% | 3 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-06-05 13:13:52 UTC |
| Last Seen | 2026-06-13 05:28:56 UTC |
| Profile Built | 2026-06-13 05:36:29 UTC |
| Data Freshness | Live |
| Signal Types | 15 |
| Total Observations | 15 |
Full dossier details are available via our API.