IP Intelligence Briefing: 101.36.127.86
Date: 2026-06-12
**Profile Summary**
- Risk Score: 65/100 (Moderate Risk)
- Ownership: UCLOUD INFORMATION TECHNOLOGY HK LIMITED (ASN 135377, Hong Kong)
- Geolocation: Hong Kong, China (22.28°N, 114.18°E)
- Network Role: Firewalled / No Services (No open ports, no TLS certificates)
- Threat Indicators: No malicious activity detected (no indicators, blacklists, or campaigns).
**Observation History**
- Recent Signals (Last 30 Days):
- DNSSEC validation confirmed.
- Routing and ownership data consistent.
- 3 DNSBL listings (out of 8 total lists) with low severity.
- Stability: Route stability flagged as "unstable" (potential routing changes).
**Relationships**
- Linked to UCLOUD-HK network (same ASN, Hong Kong).
- No connections to known malicious entities, Tor, or spam sources.
**Neighborhood Analysis**
- Subnet: 101.36.127.0/24
- Neighbor Count: 0 active IPs (subnet may be underutilized or partially allocated).
- Abuse Density: 0% (no malicious neighbors detected).
**Recommended Actions**
1. Monitoring: Increase logging verbosity and review recent activity from this IP due to elevated risk score (65/100).
2. Firewall Rules:
- iptables: `iptables -A INPUT -s 101.36.127.86 -j DROP`
- Cloudflare WAF: Block IP with rule `ip.src eq 101.36.127.86`
- AWS WAF: Add `101.36.127.86/32` to a new rule with description "IPDebrief risk 65".
**Conclusion**
The IP exhibits moderate risk but shows no active malicious behavior. Ownership by a Hong Kong-based cloud provider (UCLOUD) suggests legitimate infrastructure. While no immediate threats are detected, the moderate risk score and unstable routing warrant closer monitoring. No neighboring IPs were found in the subnet, which may indicate limited network activity or partial allocation.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | UCLOUD INFORMATION TECHNOLOGY HK LIMITED |
| ASN | AS135377 |
| Network Name | UCLOUD-HK |
| CIDR Block | 101.36.116.0/22 |
| RIR | APNIC |
| Country | HK |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 19% | 6 | 7 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-31 23:32:45 UTC |
| Last Seen | 2026-06-19 05:25:24 UTC |
| Profile Built | 2026-06-12 09:11:05 UTC |
| Data Freshness | Live |
| Signal Types | 14 |
| Total Observations | 14 |
Full dossier details are available via our API.