# INTELLIGENCE BRIEFING: IP 122.247.10.24/32
Classification: Moderate Risk (Score: 40)
Date: July 2026
Analyst: IPDebrief Intelligence Team
---
## EXECUTIVE SUMMARY
Target IP 122.247.10.24 is associated with CHINANET ZHEJIANG (ASN 4134) under APNIC registration. Risk assessment indicates moderate risk level with no active threat indicators. The IP operates on a mobile carrier network (China Telecom) with no observed services or open ports.
---
## OWNERSHIP & GEOLOCATION
| Attribute | Value |
|---|---|
| Organization | CHINANET ZHEJIANG |
| ASN | 4134 |
| CIDR Block | 122.247.0.0/16 |
| Country | China (CN) |
| Provider | China Telecom |
| Abuse Contact | antispam_zjnoc@163.com |
Geolocation confidence is low (accuracy radius: 2,500 km). Geographic validation marked implausible.
---
## THREAT ASSESSMENT
Risk Score: 40/100 (Moderate)
Abuse Confidence: Not applicable
Threat Indicators: None detected
Blacklist Status: Clean (0 lists)
Tor/Proxy/VPN: Negative indicators
Campaign correlation: No matches. No known attacker or spam source designation.
---
## NETWORK PROFILE
- Services: Firewalled / No Services
- Open Ports: None observed
- DNS Records: No PTR hostnames, no forward resolution
- Email Authentication: SPF/DMARC absent
- Certificate Status: No TLS certificates
Control Plane: Route stability flagged as false; 0 route changes in 30-day window. Operator score 0.1304 (Minimal).
---
## OBSERVATION HISTORY
13 historical observations recorded. Recent activity includes geolocation validation attempts with conflicting data (claimed latitude 34.7732N, longitude 113.722E, 8,033 km from reference point). ICMP validation attempts resulted in blocked responses.
---
## SUBNET ANALYSIS (122.247.10.0/24)
- Abuse Density: 0 (Clean)
- Threat Siblings: 0
- Active Siblings: 0
- Classification: Clean
No neighboring IPs exhibit threat activity.
---
## RELATIONSHIPS
Single relationship identified: Same network association with CHINANET-ZJ-NB. No connections to external hostnames, organizations, or certificates.
---
## RECOMMENDED ACTIONS
Given the moderate risk score and mobile carrier association:
```bash
# iptables
iptables -A INPUT -s 122.247.10.24 -j DROP
# nftables
nft add rule inet filter input ip saddr 122.247.10.24 drop
# Cloudflare WAF
Expression: ip.src eq 122.247.10.24 โ Block
# AWS WAF
Address: 122.247.10.24/32 โ Block
```
Note: These recommendations are probabilistic and should be combined with other signals before taking action.
---
## ANALYST NOTES
This IP exhibits characteristics of a residential/mobile connection from Chinese infrastructure. The absence of open ports and threat indicators suggests benign or low-risk activity. The moderate risk score (40) may warrant monitoring but does not require immediate blocking without corroborating evidence.
---
*Intel generated by IPDebrief Intelligence Platform*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | CHINANET ZHEJIANG |
| ASN | AS4134 |
| Network Name | CHINANET-ZJ-NB |
| CIDR Block | 122.247.0.0/16 |
| RIR | APNIC |
| Country | CN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 25% | 1 | 1 |
| Overall | 16% | 4 | 4 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-29 10:33:19 UTC |
| Last Seen | 2026-08-01 04:24:56 UTC |
| Profile Built | 2026-07-30 20:57:59 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 17 |
Full dossier details are available via our API.