IP Intelligence Briefing: 187.17.166.62
Date: 2026-06-08
---
**1. Core Profile**
- Risk Score: 55 (Moderate Risk)
- Ownership:
- ASN: 28263 (VERO S.A, Brazil)
- Network: 187.17.160.0/20
- Geolocation: Penápolis, São Paulo, Brazil (Latitude: -21.39, Longitude: -50.12)
- Threat Indicators:
- No malicious activity, spam, or known attacker associations detected.
- No DNSBL listings or TLS certificate anomalies.
- Network Role:
- Classified as "Firewalled / No Services" with no open ports or active services.
- BGP prefix: 187.17.166.0/23 (AS28263).
---
**2. Observation History**
- Recent Activity (30 Days):
- Minimal risk signals (confidence: 0.15โ0.85).
- No persistent threats or ownership changes.
- DNSSEC validation confirmed, but no SPF/DMARC email authentication records.
- Key Trends:
- Stable ownership with no abrupt routing changes.
- No correlation with known campaigns or honeypot hits.
---
**3. Relationships**
- Network Associations:
- Linked to AS28263 (VERO S.A) and subnet 187.17.160.0/20.
- Domain/Service Links:
- No associated hostnames, certificates, or email domains.
- No TLS/HTTP services or server banners detected.
---
**4. Neighborhood Analysis**
- Subnet: 187.17.166.62/24
- Neighbor Risk:
- 0 active siblings in the subnet.
- Abuse density: 0% (no malicious neighbors).
- Isolated host with no adjacent IPs reported.
---
**5. Recommendations**
- Monitoring:
- Track for unexpected service openings or subnet changes.
- Monitor DNSSEC and BGP integrity for routing anomalies.
- Mitigation:
- No immediate firewall rules required.
- Consider long-term monitoring for potential network expansion.
Conclusion: 187.17.166.62 is a static, low-risk host owned by VERO S.A in Brazil. No malicious activity detected; however, its isolated nature and lack of services warrant continued observation for behavioral changes.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | VERO S.A |
| ASN | AS28263 |
| Network Name | 124341 |
| CIDR Block | 187.17.160.0/20 |
| RIR | LACNIC |
| Country | BR |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 13% | 1 | 1 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 19% | 2 | 2 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 12% | 6 | 6 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-17 03:08:07 UTC |
| Last Seen | 2026-06-19 17:40:51 UTC |
| Profile Built | 2026-06-08 04:09:16 UTC |
| Data Freshness | Live |
| Signal Types | 13 |
| Total Observations | 14 |
Full dossier details are available via our API.