# IPDEBRIEF INTELLIGENCE BRIEFING
Target: 121.237.11.123/32
Classification: Low Risk
Date: 2026-07-30
Analysis Scope: Full profile, observation history, relationships, neighborhood
---
## EXECUTIVE SUMMARY
IP 121.237.11.123 is a low-risk residential mobile endpoint located in Nanjing, China, associated with China Telecom (ASN 4134). No active threat indicators, blacklists, or malicious campaigns detected. The IP operates within a predominantly clean subnet with minimal abuse density. No security action required at this time.
---
## TECHNICAL PROFILE
Ownership & Network Classification
| Field | Value |
|---|---|
| ASN | 4134 |
| Organization | Chinanet Hostmaster |
| Network | CHINANET-JS |
| CIDR Block | 121.224.0.0/12 |
| RIR | APNIC |
| Country | China (CN) |
| Region | Jiangsu (JS) |
| City | Nanjing |
Network Role & Services
- Infrastructure Type: Mobile endpoint (China Telecom, LTE/5G)
- Connection Technology: LTE/5G mobile network
- Carrier: China Telecom Corp. Ltd. (MCC: 460, MNC: 03)
- Open Ports: None detected (Firewalled / No Services)
- DNS Resolution: No PTR hostnames, no forward resolution
- HTTP Services: None detected
Threat Assessment
| Metric | Value |
|---|---|
| Risk Score | 0 |
| Abuse Confidence Score | Not applicable |
| Blacklist Count | 0 |
| Known Attacker | False |
| Spam Source | False |
| Tor Exit Node | False |
| Known Campaigns | None |
---
## NEIGHBORHOOD ANALYSIS (121.237.11.0/24)
- Abuse Density: 0.1333 (Low)
- Classification: Mostly clean
- Total Siblings: 15
- Active Siblings: 5
- Threat Siblings: 2
- Risk Distribution: 0 High / 0 Medium / 14 Low
Notable high-risk siblings in neighborhood:
- 121.237.11.53 (Risk: 25)
- 121.237.11.102 (Risk: 25)
- 121.237.11.133 (Risk: 25)
- 121.237.11.135 (Risk: 25)
- 121.237.11.167 (Risk: 25)
- 121.237.11.169 (Risk: 15)
- 121.237.11.201 (Risk: 25)
- 121.237.11.211 (Risk: 25)
- 121.237.11.251 (Risk: 25)
---
## OBSERVATION HISTORY (15 Signals)
Recent activity shows consistent low-risk behavior:
- Subnet Classification: 0.75 confidence "mostly_clean"
- Geolocation: Multi-signal inference for China (35.86°N, 104.2°E) at 2,500km accuracy
- Traceroute: 30 hops, target reached
- Ownership Stability: 0 changes, 0 threat observation days
- Threat Persistence: Not persistently malicious
---
## RELATIONSHIP GRAPH
- Same Network: CHINANET-JS (2 entries)
- No additional relationships to hostnames, organizations, or certificates detected
---
## CONTROL PLANE
- Origin ASN: 4134
- BGP Prefix: 121.224.0.0/12
- Route Stability: Unstable (0 route changes in 30 days)
- RPKI State: Not evaluated
- DNSSEC: Valid
- DNSBL Status: Not listed (0/8 lists)
- Operator Score: 0.1304 (Minimal)
---
## SECURITY ACTIONS
No specific firewall rules or mitigation actions required. The IP presents no active threat indicators and is classified as low-risk. Standard network policies apply.
---
## RECOMMENDATION
Monitor as background traffic. No immediate threat detected. The IP is a legitimate mobile endpoint within a Chinese telecom network with minimal risk profile.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Chinanet Hostmaster |
| ASN | AS4134 |
| Network Name | CHINANET-JS |
| CIDR Block | 121.224.0.0/12 |
| RIR | APNIC |
| Country | CN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 25% | 1 | 2 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 16% | 4 | 5 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-28 04:02:26 UTC |
| Last Seen | 2026-07-30 15:00:46 UTC |
| Profile Built | 2026-07-30 15:09:37 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 19 |
Full dossier details are available via our API.