IPDebrief

187.7.133.16

IP Intelligence Dossier
Your IP: 216.73.217.131
{ } JSON 🔧 Full Actions API
🤖 Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IPDEBRIEF INTELLIGENCE BRIEFING

Target IP: 187.7.133.16/32

Date: July 25, 2026

Classification: Moderate Risk

## Executive Summary

IP 187.7.133.16 presents a moderate risk profile (risk score: 40) with mixed threat indicators. The address is associated with V tal (ASN 8167) in Brazil (Paraná/Ponta Grossa), though geolocation validation flags significant discrepancies. No open services or active threat indicators detected. The subnet environment shows clean classification with no sibling abuse activity.

## Ownership and Network Classification

## Geolocation Analysis

Critical Validation Failure: RTT measurement (160ms) is below the minimum physically possible RTT (204.5ms) for the claimed distance of 10,223km. This indicates the geolocation data may be inaccurate or the IP may not be physically located in the reported region.

## Threat Intelligence

## DNS and Network Services

## Neighborhood Assessment

## Relationship Graph

## Recommended Actions

Despite the moderate risk score, no active threat indicators require immediate blocking. However, the following defensive measures are recommended:

```bash

# iptables

iptables -A INPUT -s 187.7.133.16 -j DROP

# nftables

nft add rule inet filter input ip saddr 187.7.133.16 drop

# AWS WAF

"Addresses":["187.7.133.16/32"], "Description":"IPDebrief risk 40"

# Cloudflare WAF

"action":"block", "filter":{"expression":"ip.src eq 187.7.133.16"}

```

## Intelligence Narrative

The IP address 187.7.133.16 is classified as moderate risk (40) with no current active threat indicators. The address belongs to V tal infrastructure in Brazil but exhibits geolocation validation anomalies suggesting the reported location may be incorrect. No open services are detected, and the subnet environment remains clean with no sibling abuse activity. The DNS resolves to a user-specific hostname without associated hosted domains.

Assessment: This IP presents a moderate risk classification but lacks concrete malicious indicators. The primary concern is the geolocation discrepancy, which may indicate spoofed or misconfigured infrastructure. No immediate blocking is required, but monitoring is recommended until the geolocation validation issue is resolved.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

Country🇧🇷 Brazil
RegionParaná
CityPonta Grossa
Timezone—
Latitude-25.09
Longitude-50.17

🏢 Ownership & Registration

OrganizationV tal
ASNAS8167
Network Name516142
CIDR Block187.7.128.0/18
RIRLACNIC
CountryBR
Abuse Contact—

🌐 DNS Intelligence

PTR187-7-133-16.user3p.v-tal.net.br
Forward ConfirmedYes — FCrDNS verified
Forward Hostnames187-7-133-16.user3p.v-tal.net.br

🔐 DNS Hygiene

Hygiene Score40% (Fair)
SPFNot configured
DMARCNot configured
FCrDNSVerified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierTier 3 — Basic operator with some routing infrastructure
No specific classification

🔌 Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Server—
HTTP Title—

🔐 TLS Certificate

🔒
No certificate
Issued by —
N/A
SANsNone
Valid From—
Valid Until—

🛡️ Public Network Snapshot

Origin ASNAS8167
Network Prefix187.7.128.0/21
Route mappingFound

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
11
routing
25%
11
services
25%
11
ownership
0%
00
reputation
0%
00
geolocation
25%
11
Overall16%44
Coverage: 4/6 dimensions · Data sufficiency: partial
Data CoherenceMostly Consistent (80%) — 1 contradiction(s)
AttributionModerate (55%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Claimed geolocation contradicts RTT physics measurement

📅 Observation Timeline 🔄 Live

First Seen2026-07-08 19:11:09 UTC
Last Seen2026-08-26 22:06:42 UTC
Profile Built2026-08-29 07:21:24 UTC
Data FreshnessLive
Signal Types17
Total Observations19
🔍 17 signal types · 19 observations collected
This report is generated from 17+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API 🔧 Actions API 📧 Enterprise Access

❓ Frequently Asked Questions About 187.7.133.16

Who owns the IP address 187.7.133.16?

187.7.133.16 is registered to V tal. The address falls within the 187.7.128.0/18 network block. Registration is held at LACNIC.

Where is 187.7.133.16 located?

Geolocation data places 187.7.133.16 in Ponta Grossa, Paraná, Brazil. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.

Is 187.7.133.16 malicious or safe?

187.7.133.16 currently carries a moderate risk assessment, meaning some indicators warrant caution, but the evidence is mixed. This assessment is generated from continuously collected signals and can change over time.

What is the hostname for 187.7.133.16?

The reverse DNS (PTR) record for 187.7.133.16 is 187-7-133-16.user3p.v-tal.net.br. This hostname is forward-confirmed, meaning it resolves back to the same address.

🏘️ Related IP Addresses

Browse related networks

ℹ️ About This Report

All data shown is publicly available network metadata — IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.