IP Intelligence Briefing: 189.69.48.184
*Generated via IPDebrief Threat Intelligence Platform*
---
**1. Core Profile**
- Risk Score: 40 (Moderate Risk)
- Ownership:
- ISP: TELEFÔNICA BRASIL S.A (ASN 27699)
- Network: 189.68.0.0/15 (LACNIC registry)
- Geolocation:
- Country: Brazil (BR)
- Region: NY (US) *Conflict detected* โ geolocation data inconsistent with ASN origin.
- Threat Indicators:
- No active malware, phishing, or exploit campaigns.
- DNSBL Listings: 2/8 total lists (low-severity).
---
**2. Network Behavior**
- Firewalled/No Services: No open ports or TLS services detected.
- DNS:
- PTR record: `189-69-48-184.dsl.telesp.net.br`
- No SPF/DKIM records; DNSSEC validated.
- Routing:
- BGP prefix: `189.68.0.0/15`
- Route stability: Unstable (0 changes in 30 days).
---
**3. Observation History**
- Recent Activity (Last 30 Days):
- 12 observations; 0 high-risk signals.
- DNSSEC Valid: Yes; CAA Records: Missing.
- Threat Persistence: No recurring malicious patterns.
- Geolocation Anomaly: IP reported as "US-NY" despite Brazilian ASN. Verify spoofing or data error.
---
**4. Relationships & Neighborhood**
- Linked Entities:
- Subnet: `189.68.0.0/15` (TELEFÔNICA BRASIL S.A)
- DNS hostname: `189-69-48-184.dsl.telesp.net.br`
- Subnet Analysis:
- /24 subnet: No neighboring IPs detected (0 active siblings).
- Abuse Density: 0% (low risk).
---
**5. Actionable Insights**
- SOC Recommendations:
1. Monitor DNS: Investigate geolocation discrepancy; verify IP origin.
2. Subnet Analysis: Confirm 189.68.0.0/15 subnet stability and ownership.
3. Threat Intelligence: Track DNSBL listings for potential spoofing or misconfigurations.
4. Network Segmentation: Ensure firewalled subnets are isolated from internal networks.
---
Conclusion: 189.69.48.184 is owned by a Brazilian ISP with no direct threat indicators. However, geolocation inconsistencies and lack of subnet neighbors warrant further investigation. Monitor DNS and routing anomalies for potential spoofing or misconfigurations.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | TELEFÔNICA BRASIL S.A |
| ASN | AS27699 |
| Network Name | 102037 |
| CIDR Block | 189.68.0.0/15 |
| RIR | LACNIC |
| Country | BR |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR | 189-69-48-184.dsl.telesp.net.br |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | 189-69-48-184.dsl.telesp.net.br |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 12% | 3 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-06-06 07:27:12 UTC |
| Last Seen | 2026-06-13 11:44:46 UTC |
| Profile Built | 2026-06-13 11:53:13 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 17 |
Full dossier details are available via our API.