# IP INTELLIGENCE BRIEFING
Target: 116.18.42.218/32
Report Date: 2026-07-29
Classification: LOW RISK / INFRASTRUCTURE
---
## EXECUTIVE SUMMARY
IP 116.18.42.218 is a low-risk infrastructure address associated with China Telecom's CHINANET-GD network. The IP exhibits minimal threat indicators with a risk score of 25/100. No active malicious activity, campaign affiliations, or attack patterns have been identified.
---
## GEOGRAPHIC & NETWORK ATTRIBUTES
- Location: Dongguan, Guangdong Province, China (23.0177°N, 113.7506°E)
- ASN: AS4134 (Chinanet)
- BGP Prefix: 116.16.0.0/12
- RIR: APNIC
- Provider: IPMASTER CHINANET-GD
- Contact: anti-spam@chinatelecom.cn
---
## THREAT ASSESSMENT
- Overall Risk Score: 25/100 (LOW)
- Reputation: Low Risk
- DNSBL Status: Listed on 1 of 8 DNSBLs
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
Threat Indicators: None detected. No associated threat feeds, campaigns, or reputation sources flagged.
---
## NETWORK ROLE & SERVICES
- Infrastructure Type: Firewalled / No Services
- Open Ports: None detected
- TLS Certificates: None
- Hosted Domains: 0
- Cloud/CDN/Proxy: No
---
## SUBNET ANALYSIS (116.18.42.0/24)
- Abuse Density: 0.5 (Moderate)
- Total Siblings: 2
- Active Siblings: 1
- Threat Siblings: 1
- Neighbor Risk: 116.18.42.177 (Risk Score: 0)
- Classification: Mostly Clean
---
## OBSERVATION HISTORY (12 Observations)
Recent signals indicate stable infrastructure with occasional threat flagging:
- Abuse Density: 0.5 (consistent)
- Subnet Classification: Mostly Clean
- Geolocation: Consistent Dongguan, Guangdong attribution
- Organization: IPMASTER CHINANET-GD (consistent)
---
## RELATIONSHIP ANALYSIS
- Direct Relationships: None identified
- Certificate Correlations: 0 matches
- Correlated IPs: 0
- Campaign Likelihood: Not applicable
---
## SECURITY RECOMMENDATIONS
Based on the low-risk profile (25/100), no immediate blocking is recommended. The IP shows:
- Stable ownership with no recent changes
- No persistent malicious activity
- Minimal operator score (0.1304)
Suggested Actions:
- Monitor for escalation in risk scores
- Review DNSBL listing for context
- Continue standard traffic logging
---
## INTELLIGENCE CONCLUSION
116.18.42.218 is a legitimate, low-risk infrastructure IP within China Telecom's CHINANET-GD network. The single DNSBL listing warrants awareness but does not indicate active threat behavior. No defensive action required at this time, but maintain monitoring for risk score escalation.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IPMASTER CHINANET-GD |
| ASN | AS4134 |
| Network Name | CHINANET-GD |
| CIDR Block | 116.16.0.0/12 |
| RIR | APNIC |
| Country | CN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 12% | 3 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-23 01:40:34 UTC |
| Last Seen | 2026-07-29 15:54:35 UTC |
| Profile Built | 2026-07-29 16:08:28 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 19 |
Full dossier details are available via our API.