IP Intelligence Briefing: 187.191.48.23
*Generated via IPDebrief Analysis*
---
**Core Profile**
- Risk Score: 25 (Low Risk)
- Ownership: Owned by TOTAL PLAY TELECOMUNICACIONES, S.A.P.I. DE C.V. (ASN 22884)
- Geolocation: Tijuana, Mexico (Baja California)
- Network Role: Residential / Unknown Infrastructure
- Threat Indicators: No malicious activity detected (no indicators, blacklist entries, or campaigns).
---
**Observation History**
- Recent Signals:
- DNS resolution confirmed for `fixed-187-191-48-23.totalplay.net`.
- Network ownership tied to ASN 22884 (Mexico).
- Residential classification (infrastructure type).
- Abuse Context: No abuse confidence score, no DNSBL listings.
---
**Relationships**
- DNS Associations: Linked to `fixed-187-191-48-23.totalplay.net` (repeated entries).
- Network Context: Part of the subnet `187.191.0.0/18`, shared with 6 sibling IPs.
- No Malicious Connections: No ties to known malicious entities, campaigns, or certificates.
---
**Neighborhood Analysis**
- Subnet: `187.191.48.0/24`
- Abuse Density: 0% (clean subnet).
- Neighbor Risk:
- 3 IPs with medium risk (50โ70 score).
- 2 IPs with low risk (0โ25 score).
- No immediate lateral threats.
---
**SOC Actionable Insights**
1. Monitor Subnet Activity: While the IP itself is low risk, the subnet contains mixed-risk neighbors. Watch for anomalies in the `187.191.48.0/24` range.
2. Verify DNS Configuration: Confirm that `fixed-187-191-48-23.totalplay.net` is legitimate and not a spoofed or malicious hostname.
3. Maintain Baseline: No active threats detected; continue standard monitoring.
---
*No immediate mitigation required. Use network telemetry tools to validate DNS and traffic patterns for this residential IP.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | TOTAL PLAY TELECOMUNICACIONES, S.A.P.I. DE C.V. |
| ASN | AS22884 |
| Network Name | 187.191.0.0 - 187.191.63.255 |
| CIDR Block | 187.191.0.0/18 |
| RIR | LACNIC |
| Country | MX |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | fixed-187-191-48-23.totalplay.net |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | fixed-187-191-48-23.totalplay.net |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Residential |
| Service Purpose | Residential Endpoint |
| Network Tier | End-User โ Residential ISP endpoint |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 19% | 2 | 2 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 30% | 2 | 3 |
| reputation | 13% | 1 | 1 |
| geolocation | 13% | 1 | 1 |
| Overall | 17% | 8 | 9 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-21 20:59:47 UTC |
| Last Seen | 2026-06-26 18:10:56 UTC |
| Profile Built | 2026-06-16 12:26:37 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 19 |
Full dossier details are available via our API.