IP Intelligence Briefing for 112.66.14.230
Date: 2026-06-07
---
**1. Risk Profile**
- Overall Risk: Low (Risk Score: 0)
- Provider Score: 0 | Authority Score: 0 | Stability Score: 0
- Threat Indicators: No malicious activity detected. No indicators of spam, attacks, or Tor exit nodes.
---
**2. Ownership & Geolocation**
- Organization: Hainan-TELECOM (APNIC)
- Country: China (CN)
- Region: Hainan Province
- Coordinates: Latitude 34.77, Longitude 113.72 (Asia/Shanghai timezone)
---
**3. Network & Subnet**
- Subnet: 112.66.0.0/19 (Hainan-TELECOM)
- Neighbor IP: 112.66.14.47 (Risk Score: 80)
- Subnet Abuse Density: 1 (low)
Note: The primary IP is low-risk, but the neighboring IP (112.66.14.47) has a high risk score, suggesting potential compromise or malicious activity within the subnet.
---
**4. Historical Observations**
- Observation Count: 17 (last 30 days)
- Key Signals:
- Linked to Hainan-TELECOM network.
- No recent threats, scans, or DNS anomalies.
- DNS resolution errors (likely internal network issues).
---
**5. Relationships & Associations**
- Network: Hainan-TELECOM (APNIC)
- DNS: No public PTR records or domain associations.
- Certificates/TLS: No TLS certificates or HTTP services detected.
---
**6. Recommendations**
1. Monitor Neighbor IP: 112.66.14.47 (high-risk neighbor) for suspicious activity.
2. Verify Network Segments: Ensure subnet segmentation to limit potential lateral movement.
3. Check DNS Configurations: Investigate recurring DNS resolution errors (e.g., 192.168.2.108).
4. Baseline Traffic: Establish traffic baselines for the subnet to detect anomalies.
---
Conclusion:
The IP 112.66.14.230 is a low-risk, legitimate telecom asset in China. However, its subnet contains a high-risk neighbor (112.66.14.47), warranting closer scrutiny. SOC teams should prioritize monitoring the subnet and validating DNS/internal network health.
Source: IPDebrief Intelligence Platform
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | liuqing zheng |
| ASN | AS4134 |
| Network Name | Hainan-TELECOM |
| CIDR Block | 112.66.0.0/19 |
| RIR | APNIC |
| Country | CN |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 2 |
| routing | 25% | 1 | 1 |
| services | 19% | 1 | 2 |
| ownership | 19% | 2 | 2 |
| reputation | 13% | 1 | 2 |
| geolocation | 27% | 2 | 2 |
| Overall | 21% | 9 | 11 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-16 08:55:39 UTC |
| Last Seen | 2026-06-07 20:19:34 UTC |
| Profile Built | 2026-06-07 20:25:07 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 18 |
Full dossier details are available via our API.