IP Intelligence Briefing: 177.93.213.57
Date: 2026-06-12
---
**1. Core Profile**
- Risk Score: 55 (Moderate Risk)
- Ownership:
- ASN: 53075 (Holistica Provedor Internet Ltda, Brazil)
- CIDR Block: 177.93.192.0/19
- Geolocation:
- Country: US (New York)
- ASN Registry: LACNIC (Brazil)
- Conflict: Geolocation claims US but ASN is Brazilian. Potential spoofing or misattribution.
- Threat Indicators:
- Listed on 3/8 DNSBLs (blacklists).
- No active malware campaigns or known attacker associations.
---
**2. Network Behavior**
- Services:
- No open ports or TLS services detected.
- Firewalled / No Services (network role).
- BGP/Route Stability:
- BGP Prefix: 177.93.208.0/21
- Route Stability: Unstable (route changes in last 30 days).
- RPKI State: Not validated.
- DNS:
- DNSSEC Valid: Yes.
- PTR Records: Missing.
- Domain Resolution: No confirmed PTR or domain associations.
---
**3. Observation History**
- Recent Activity (Last 30 Days):
- 11 observations, including DNSBL listings, network metadata, and geolocation probes.
- High-Severity Signals: 0 (no active threats).
- DNSBL Listings: 3/8 (e.g., Spamhaus, OpenBL, etc.).
- Geolocation Discrepancy: Multiple probes flagged as "plausible" but inconsistent with ASN origin.
---
**4. Relationships & Subnet**
- Network Affiliation:
- Subnet: 177.93.192.0/19 (CIDR Block).
- Linked to AS53075 (Holistica Provedor Internet Ltda).
- Neighbor Analysis:
- No Neighbors Found in /24 subnet (177.93.213.0/24).
- Subnet abuse density: 0% (no malicious activity detected in sibling IPs).
---
**5. Recommended Actions**
1. Verify Geolocation Discrepancy: Investigate why the IP claims US location despite Brazilian ASN.
2. Monitor DNSBL Listings: Confirm if the IP is flagged for spam or abuse (e.g., Spamhaus, OpenBL).
3. Check ISP Reputation: Assess Holistica Provedor Internet Ltdaβs trustworthiness and network security practices.
4. Block DNSBL Listings: Add to firewall rules (e.g., iptables, Cloudflare WAF) to mitigate potential spam or abuse.
5. Monitor Route Stability: Track BGP changes for 177.93.208.0/21 to detect network misconfigurations.
---
Conclusion:
The IP exhibits mixed dataβmoderate risk score, DNSBL listings, and geolocation conflicts. While no active threats are detected, the DNSBL flags and geolocation inconsistency warrant further investigation. SOC teams should prioritize monitoring DNSBL status and validating the IPβs origin to mitigate potential spoofing or abuse.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Holistica Provedor Internet Ltda |
| ASN | AS53075 |
| Network Name | 229295 |
| CIDR Block | 177.93.192.0/19 |
| RIR | LACNIC |
| Country | BR |
| Abuse Contact | β |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 19% | 2 | 2 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 5% | 3 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-06-03 00:12:46 UTC |
| Last Seen | 2026-06-12 18:26:18 UTC |
| Profile Built | 2026-06-12 18:32:57 UTC |
| Data Freshness | Live |
| Signal Types | 15 |
| Total Observations | 15 |
Full dossier details are available via our API.