IPDebrief

189.28.91.124

IP Intelligence Dossier
Your IP: 216.73.217.131
{ } JSON 🔧 Full Actions API
🤖 Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# Threat Intelligence Briefing: 189.28.91.124

Classification: LOW RISK

Date: 2026-07-26

Analyst: IPDebrief Intelligence Team

## Executive Summary

IP address 189.28.91.124 presents as a low-risk infrastructure asset with no active threat indicators. The IP is associated with Tigo Bolivia (Admin-IPBroker) and is currently firewalled with no active services. While the broader /24 subnet shows moderate abuse density, this specific address shows no malicious activity.

## Technical Profile

AttributeValue
**IP Address**189.28.91.124/32
**Risk Score**0
**ASN**27882
**Organization**admin-ipbroker
**Network**BO-TIGO-202304-02
**Country**Bolivia (BO)
**City**La Paz
**RIR**LACNIC
**CIDR Block**189.28.80.0/20

## Threat Assessment

Current Risk Status: No active threats detected

Service Analysis:

## Network Context

Subnet Analysis (189.28.91.0/24):

Control Plane:

## DNS & Hostname Associations

## Historical Signals

Observation Count: 17 signals recorded

## Intelligence Observations

1. Infrastructure Asset: IP appears to be part of a residential/corporate ISP allocation (Tigo Bolivia) with no hosting or proxy services configured.

2. Minimal Footprint: No reverse DNS issues, no open services, no historical abuse patterns.

3. Subnet Context: The /24 neighborhood contains one identified threat IP (189.28.91.162). Analysts should monitor this address for potential lateral activity.

4. Route Instability: Route is flagged as unstable, which may warrant monitoring for future infrastructure changes.

## Recommended Actions

Immediate: No blocking or firewall rules recommended. Risk score is zero with no active threat indicators.

Monitoring: Add to watchlist for subnet-level intelligence. Monitor 189.28.91.162 for continued malicious activity.

Long-term: No action required. IP maintains low-risk profile.

---

*Report generated by IPDebrief Intelligence Platform. This briefing is based on collected intelligence signals and should be correlated with additional threat data before operational decisions.*

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

Country🇧🇴 BO
RegionLa Paz Department
CityLa Paz
Timezone—
Latitude-16.50
Longitude-68.15

🏢 Ownership & Registration

Organizationadmin-ipbroker
ASNAS27882
Network NameBO-TIGO-202304-02
CIDR Block189.28.80.0/20
RIRLACNIC
CountryBO
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTRLPZ-189-28-91-00124.tigo.bo
Forward ConfirmedNo — PTR hostname does not resolve back to this IP (weak signal)
Forward HostnamesLPZ-189-28-91-00124.tigo.bo

🔐 DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown — Insufficient routing data to classify
No specific classification

🔌 Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Server—
HTTP Title—

🔐 TLS Certificate

🔒
No certificate
Issued by —
N/A
SANsNone
Valid From—
Valid Until—

🛡️ Public Network Snapshot

Origin ASNAS27882
Network Prefix189.28.91.0/24
Route mappingFound
Certificates in transparency logs0 certificates

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
17%
24
routing
8%
11
services
12%
22
ownership
17%
23
reputation
14%
13
geolocation
12%
22
Overall13%1015
Coverage: 2/6 dimensions · Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

📅 Observation Timeline 🔄 Live

First Seen2026-07-11 02:18:22 UTC
Last Seen2026-09-01 01:49:42 UTC
Profile Built2026-09-01 01:56:09 UTC
Data FreshnessLive
Signal Types22
Total Observations26
🔍 22 signal types · 26 observations collected
This report is generated from 22+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API 🔧 Actions API 📧 Enterprise Access

❓ Frequently Asked Questions About 189.28.91.124

Who owns the IP address 189.28.91.124?

189.28.91.124 is registered to admin-ipbroker. The address falls within the 189.28.80.0/20 network block. Registration is held at LACNIC.

Where is 189.28.91.124 located?

Geolocation data places 189.28.91.124 in La Paz, La Paz Department, BO. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.

Is 189.28.91.124 malicious or safe?

189.28.91.124 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.

What is the hostname for 189.28.91.124?

The reverse DNS (PTR) record for 189.28.91.124 is LPZ-189-28-91-00124.tigo.bo. This hostname is not forward-confirmed, so it should be treated as a weak signal.

🏘️ Related IP Addresses

Nearby addresses in 189.28.80.0/20

Browse related networks

ℹ️ About This Report

All data shown is publicly available network metadata — IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.