IPDebrief

191.53.128.175

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

## Intelligence Briefing: 191.53.128.175/32

Classification: MODERATE RISK | Generated: 2026-07-29

Executive Summary

Target IP 191.53.128.175 operates on the MASTER S/A network (ASN 28202, CIDR 191.53.0.0/16) with a moderate risk score of 40. The IP presents no active threat indicators, but exhibits moderate DNSBL presence and resides in a subnet with elevated abuse density (13.6%). Geolocation data shows consensus disagreement between US/Florida and Brazil/Montes Claras.

Network Profile

AttributeValue
**ASN**28202 (MASTER S/A)
**Organization**MASTER S/A
**Network Range**191.53.0.0/16 (lacnic)
**Risk Score**40 (Moderate)
**Provider Score**0
**Authority Score**0
**DNSBL Listed**2 of 8 lists
**Operator Score**0.1304 (Minimal)

Observed Services & DNS

Geolocation Analysis

Geolocation consensus is unresolved:

Threat Indicators

Neighborhood Assessment

The /24 subnet (191.53.128.0/24) contains 22 sibling IPs with moderate-to-high abuse density:

Notable: Multiple high-risk IPs in same subnet suggests potential hosting infrastructure with mixed-use patterns.

Observation History

15 observations recorded as of 2026-07-29. Recent signals include:

Recommended Actions

1. Monitoring: No immediate block required; monitor for service activation

2. Firewall Rules: Default allow with logging recommended

3. DNSBL Verification: Review specific blacklist listings if receiving reports

4. Subnet Watch: Monitor 191.53.128.0/24 for coordinated activity given multiple high-risk neighbors

5. Geolocation Validation: Confirm expected geographic location against policy

Confidence Assessment

---

Assessment: This IP represents a moderate-risk infrastructure endpoint with no current malicious activity. However, the subnet context and DNSBL presence warrant continued monitoring. No immediate blocking action recommended.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ง๐Ÿ‡ท Brazil
RegionMinas Gerais
CityMontes Claros
Timezoneโ€”
Latitude-16.59
Longitude-43.90

๐Ÿข Ownership & Registration

OrganizationMASTER S/A
ASNAS28202
Network Name227148
CIDR Block191.53.0.0/16
RIRLACNIC
CountryBR
Abuse Contactโ€”

๐ŸŒ DNS Intelligence

PTR191-53-128-175.pso-wr.mastercabo.com.br
Forward ConfirmedNo โ€” PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnames191-53-128-175.pso-wr.mastercabo.com.br

๐Ÿ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown โ€” Insufficient routing data to classify
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
11
routing
25%
11
services
25%
11
ownership
25%
11
reputation
0%
00
geolocation
0%
00
Overall16%44
Coverage: 4/6 dimensions ยท Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-07-21 06:47:05 UTC
Last Seen2026-07-29 07:17:37 UTC
Profile Built2026-07-29 07:31:13 UTC
Data FreshnessLive
Signal Types21
Total Observations21
๐Ÿ” 21 signal types ยท 21 observations collected
This report is generated from 21+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.