IP Intelligence Briefing: 200.23.126.41
*Generated via IPDebrief tools: Profile, History, Relationships, & Neighborhood Analysis*
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Ownership:
- Organization: Instituto Tecnologico de Aguascalientes (educational institution)
- ASN: AS273250 (assigned to SOLUCIONES DE TECNOLOGIA JAH SA DE CV, MX)
- Geolocation: Aguascalientes, Mexico (latitude 21.89, longitude -102.22)
- Threat Indicators:
- No malicious activity detected (no indicators, blacklists, or campaigns).
- DNSBL listing count: 1/8 (potential false positive or misclassification).
- Network Role: Firewalled / No Services (no open ports, TLS, or HTTP services detected).
---
**2. Observation History**
- Latest 13 Observations:
- Geolocation Inference: Confirmed Mexico (MX), with high confidence (0.52โ0.90).
- DNS Listings: 1/8 DNSBL lists (likely false positive; no malicious domains or email auth).
- BGP Prefix: 200.23.126.0/24 (stable, no route changes in 30 days).
- ICMP Validation: Blocked (unable to confirm geolocation via traceroute).
---
**3. Relationships**
- Network Affiliation:
- Subnet: 200.23.126.0/24 (shared with 19 sibling IPs).
- High-Risk Neighbors: 3 IPs with risk scores โฅ25 (e.g., 200.23.126.3, 200.23.126.28, 200.23.126.95).
- Low-Risk Majority: 16 IPs with risk scores of 0.
- Organizational Links:
- Directly tied to Instituto Tecnologico de Aguascalientes (educational institution).
---
**4. Neighborhood Analysis**
- Subnet Abuse Density: 0% (low risk).
- Neighbor Risk Distribution:
- High Risk: 0 IPs
- Medium Risk: 0 IPs
- Low Risk: 19 IPs (including 200.23.126.41).
- Notable Neighbors:
- 200.23.126.3 (risk 25), 200.23.126.28 (risk 25), 200.23.126.95 (risk 25).
---
**5. Recommendations**
- Monitor DNSBL Listings: Investigate the single DNSBL listing (e.g., Spamhaus, SURBL) to confirm legitimacy.
- Verify Geolocation: ICMP validation failed; consider alternative methods to confirm MX location.
- Subnet Analysis: The subnet has mixed risk but no active threats. Prioritize monitoring high-risk neighbors.
- Network Segmentation: Ensure firewalled subnets are isolated to prevent lateral movement.
Conclusion: 200.23.126.41 is a low-risk IP associated with an educational institution. While no direct threats are detected, the DNSBL listing and geolocation validation issues warrant further investigation. No immediate action required, but continuous monitoring is advised.
---
*Generated by IPDebrief | © 2026 Jason Alberino*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Instituto Tecnologico de Aguascalientes |
| ASN | AS273250 |
| Network Name | 200.23.126.0 - 200.23.126.255 |
| CIDR Block | 200.23.126.0/24 |
| RIR | LACNIC |
| Country | MX |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 27% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 19% | 2 | 2 |
| Overall | 7% | 4 | 5 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-28 18:34:42 UTC |
| Last Seen | 2026-06-11 17:24:26 UTC |
| Profile Built | 2026-06-11 18:07:55 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 17 |
Full dossier details are available via our API.