# Threat Intelligence Briefing: 45.172.109.65/32
Date: 2026-07-24
IP Address: 45.172.109.65
Risk Classification: Low Risk
## Executive Summary
The IP address 45.172.109.65 presents a low-risk threat profile with a risk score of 25. The address is geolocated to New York, US, and is currently firewalled with no active services. The IP maintains a stable operational posture with DNSSEC validation and exhibits no persistent malicious behavior.
## Technical Profile
Risk Metrics:
- Overall Risk Score: 25 (Low Risk)
- Provider Score: 0
- Authority Score: 0
- Stability Score: 0
- Reputation: Low Risk
Network Classification:
- Country: US (New York)
- Origin ASN: 267804
- BGP Prefix: 45.172.109.0/24
- Network Role: Firewalled / No Services
- Open Ports: None detected
- Service Purpose: No active services
Infrastructure Indicators:
- Route Stability: False
- DNSSEC Validation: Valid
- DNSBL Listings: 1 (of 8 total lists)
- Geo Plausibility: False (data inconsistency noted)
- Traceroute: 30 hops to Comcast network
## Threat Indicators
Blacklist Status:
- Total Blacklist Listings: 8
- Listed Count: 1
- Maximum Severity: High
- Source: Historical observation from 2026-07-24T02:02:12
Threat Feeds:
- Known Attacker: False
- Spam Source: False
- Tor Exit Node: False
- Known Campaigns: None identified
- Threat Feeds: Empty
Behavioral Analysis:
- Honeypot Hits: 0
- Enumeration Strikes: 0
- WAF Violations: 0
- Total Incidents: 0
- Active Attacker Status: False
- Persistently Malicious: False
## Observation History
Fifteen signal observations were recorded as of 2026-07-24T02:04:33. Key historical signals include:
- Subnet Abuse Density: 1 (mostly_clean classification with 1 threat sibling observed)
- Ownership Changes: 0 (no ownership transitions)
- HTTP Status: 429 responses observed
- DNSSEC: Valid validation confirmed
- Threat Persistence Days: 0
- Threat Observation Count: 1
The IP exhibits minimal threat persistence with no persistent malicious activity detected over the observation period.
## Relationship Analysis
No relationships were identified for this IP address. The relationship graph returned zero connections to related entities including subnets, hostnames, organizations, and certificates.
## Neighborhood Analysis
Subnet: 45.172.109.0/24
- Abuse Density: 0
- Classification: Clean
- Inherited Risk: 0
- Total Siblings: 1 (including target IP)
- Active Siblings: 0
- Threat Siblings: 0
- Neighbor Risk Distribution: All categories (high/medium/low) at 0
The surrounding /24 subnet demonstrates a clean classification with no inherited risk or active threat siblings.
## Recommended Actions
No specific firewall rules or security actions were recommended by the system. The low risk score (25) and absence of active threat indicators support continued monitoring rather than immediate blocking.
## Intelligence Assessment
IP 45.172.109.65 demonstrates characteristics of a low-risk infrastructure address. The combination of zero open ports, firewalled status, and absence of active threat indicators suggests this is either a dormant infrastructure address or legitimate service endpoint with no malicious activity. The single DNSBL listing represents historical data but does not indicate current active abuse.
Recommendation: Monitor but do not block. The address poses minimal threat and may represent legitimate infrastructure. Continue observation for changes in service activity or threat indicators.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | MORAN DOLORES GRACIELA |
| ASN | AS267804 |
| Network Name | 45.172.108.0 - 45.172.111.255 |
| CIDR Block | 45.172.108.0/22 |
| RIR | ARIN |
| Country | AR |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS267804 |
| Network Prefix | 45.172.109.0/24 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 13% | 1 | 1 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 0% | 0 | 0 |
| reputation | 13% | 1 | 1 |
| geolocation | 25% | 1 | 1 |
| Overall | 8% | 3 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-06 06:01:47 UTC |
| Last Seen | 2026-08-27 04:20:13 UTC |
| Profile Built | 2026-08-29 06:01:27 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 20 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 45.172.109.65
Who owns the IP address 45.172.109.65?
45.172.109.65 is registered to MORAN DOLORES GRACIELA. The address falls within the 45.172.108.0/22 network block. Registration is held at ARIN.
Where is 45.172.109.65 located?
Geolocation data places 45.172.109.65 in Caucete, San Juan, Argentina. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 45.172.109.65 malicious or safe?
45.172.109.65 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.