IP Intelligence Briefing: 119.98.2.95
Date: 2026-06-08
---
**1. Core Profile**
- Risk Rating: Low Risk (Risk Score: 0 / Provider Score: 0 / Authority Score: 0)
- Ownership: Registered to CHINANET HB ADMIN (APNIC RIR), netname CHINANET-HB.
- Geolocation: China (P.R. China), coordinates 34.77°N, 113.72°E (Asia/Shanghai timezone).
- Network Role: Unknown infrastructure; no services (HTTP, TLS, etc.) or public DNS records detected.
- Threat Indicators: No malicious activity, abuse confidence, or known campaigns linked.
---
**2. Historical Observations**
- Signal Stability: No threat-related changes over time (0 threat observations).
- Key Trends:
- Geolocation data consistently points to China.
- Network ownership and DNSSEC validity remain stable.
- No DNS resolution or enumeration attempts recorded.
---
**3. Relationships & Network Context**
- Subnet: 119.98.2.95/24.
- Neighboring IPs: No active or risky sibling IPs in the subnet (abuse density: 0).
- Associations:
- Linked to CHINANET-HB network.
- DNS queries timed out for internal hosts (e.g., 192.168.2.108), suggesting potential misconfiguration or private network issues.
---
**4. Control Plane & Security**
- DNSSEC: Validated.
- CAA Records: Present.
- BGP: No origin ASN or route data available.
- Routing Stability: No recent route changes; stability score: 0.
---
**5. Recommendations**
- Monitor DNS Configuration: Investigate recurring DNS timeout errors for internal hosts.
- Network Segmentation: Ensure 119.98.2.95/24 is isolated from public-facing services.
- Threat Hunting: No immediate action required; continue baseline monitoring for anomalies.
---
Conclusion: 119.98.2.95 is a legitimate, low-risk IP associated with a Chinese ISP. No malicious activity detected. Focus on resolving DNS misconfigurations and maintaining network segmentation.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | CHINANET HB ADMIN |
| ASN | AS137266 |
| Network Name | CHINANET-HB |
| CIDR Block | 119.96.0.0/13 |
| RIR | APNIC |
| Country | CN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 13% | 1 | 1 |
| geolocation | 13% | 1 | 1 |
| Overall | 13% | 6 | 7 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-16 20:59:19 UTC |
| Last Seen | 2026-06-08 01:05:49 UTC |
| Profile Built | 2026-06-08 01:41:42 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 20 |
Full dossier details are available via our API.