IP Intelligence Briefing: 201.216.81.118
Date: 2026-06-13
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Ownership:
- Organization: Brayo LTDA (Brazil)
- ASN: AS271303
- Subnet: 201.216.80.0/22
- Geolocation:
- Country: United States (US-NY, New York)
- Discrepancy Note: Geolocation conflicts with Brazilian ownership; may require further verification.
- Threat Indicators:
- No malicious activity, spam, or known attacker associations.
- DNSSEC validation confirmed (valid).
---
**2. Network Behavior**
- Services:
- No open ports or active services detected.
- Firewalled infrastructure with no HTTP/TLS signatures.
- Subnet Analysis:
- /24 Subnet: 201.216.81.0/24
- Abuse Density: 0% (clean neighborhood).
- Neighbors: No active or risky sibling IPs found.
---
**3. Threat Observations**
- Historical Signals (Last 30 Days):
- DNSBL Listings: 1/8 total lists (low severity).
- Network Changes: No recent route instability or ownership shifts.
- Geolocation Consensus: Plausibility flagged as false (conflict between US geolocation and Brazilian ownership).
- Threat Feeds: No malicious campaigns or indicators linked.
---
**4. Relationships**
- Network Links:
- Associated with ASN 271303 (Brayo LTDA) and subnet 201.216.81.0/24.
- No direct connections to known malicious entities.
---
**5. Recommendations**
- SOC Actions:
- Monitor geolocation discrepancies and verify ownership legitimacy.
- No firewall rules or security actions recommended due to low risk profile.
- Next Steps:
- Cross-check with internal threat feeds for contextual relevance.
- Validate DNSSEC and subnet stability for potential spoofing risks.
Conclusion: 201.216.81.118 is a low-risk IP with no direct malicious indicators. Focus on resolving geolocation conflicts and ensuring subnet integrity. No immediate mitigation required.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Brayo LTDA |
| ASN | AS271303 |
| Network Name | 521999 |
| CIDR Block | 201.216.80.0/22 |
| RIR | LACNIC |
| Country | BR |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 17% | 1 | 1 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 0% | 0 | 0 |
| reputation | 17% | 1 | 1 |
| geolocation | 0% | 0 | 0 |
| Overall | 5% | 2 | 2 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-06-06 19:45:57 UTC |
| Last Seen | 2026-06-13 15:42:33 UTC |
| Profile Built | 2026-06-13 15:48:08 UTC |
| Data Freshness | Live |
| Signal Types | 14 |
| Total Observations | 14 |
Full dossier details are available via our API.