# IP Intelligence Briefing: 123.245.85.121/32
Classification: Low Risk | Risk Score: 25 | Report Date: 2026-06-26
## Executive Summary
IP 123.245.85.121 is a residential endpoint associated with China Telecom's Liaoning Branch (ASN 4134) in Heping, China. The IP demonstrates low-risk characteristics with no active threat indicators. Classification as residential infrastructure with mobile carrier connection (China Telecom, mcc: 460, mnc: 03, LTE/5G) indicates legitimate consumer use.
## Ownership & Geolocation
- Organization: CHINANET-LN Network Administrater Chinatelecom Liaoning Branch
- ASN: 4134 (China Telecom)
- Network: JunQu2 (123.245.64.0/19)
- Location: Heping, China (Region: LN)
- Geolocation Confidence: 52% via multi-signal inference
- RIR: APNIC
## Threat Assessment
Risk Indicators: None detected
- Blacklist Count: 0
- Known Attacker: No
- Tor Exit Node: No
- Spam Source: No
- Active Campaigns: None identified
DNS/Email: No forward resolution, no PTR records, no hosted domains, no SPF/DMARC records.
Services: No open ports detected. No TLS certificates, HTTP titles, or service banners observed.
## Neighborhood Analysis (123.245.85.0/24)
- Total Subnet Size: 33 IP addresses
- Active Siblings: 6
- Threat Siblings: 4
- Abuse Density: 12.12%
- Classification: Mostly Clean
- Risk Distribution: 30 Low, 1 Medium, 0 High
The subnet exhibits moderate baseline activity with 4 threat-identified siblings, but the target IP remains low-risk.
## Observation History
Thirteen signals observed. Most recent activity recorded on 2026-06-26. Historical data indicates stable residential classification with minimal ownership changes. Threat persistence duration: 0 days. The IP is not classified as persistently malicious.
## Network Control Plane
- BGP Prefix: 123.244.0.0/14
- Route Stability: Unstable
- DNSBL Status: Listed on 1 of 8 checked lists
- RPKI State: Not available
- IRR Consistency: Not available
## Relationships
Ten relationship entries identified, all mapping to network "JunQu2" within the China Telecom infrastructure.
## Recommended Actions
No specific firewall rules or blocking actions recommended. Risk score of 25 falls within acceptable operational thresholds for residential IP addresses.
---
Analyst Notes: This IP represents normal residential traffic from China Telecom's Liaoning Branch. No immediate security concerns identified. Monitoring recommended for subnet-level activity patterns given the 4 threat-identified siblings in the /24 range.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | CHINANET-LN Network Administrater Chinatelecom Liaoning Branch |
| ASN | AS4134 |
| Network Name | JunQu2 |
| CIDR Block | 123.245.64.0/19 |
| RIR | APNIC |
| Country | CN |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Residential |
| Service Purpose | Residential Endpoint |
| Network Tier | End-User โ Residential ISP endpoint |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 19% | 2 | 2 |
| reputation | 22% | 1 | 3 |
| geolocation | 19% | 2 | 2 |
| Overall | 17% | 9 | 12 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-11 21:09:51 UTC |
| Last Seen | 2026-06-26 11:42:21 UTC |
| Profile Built | 2026-06-26 11:48:33 UTC |
| Data Freshness | Live |
| Signal Types | 15 |
| Total Observations | 15 |
Full dossier details are available via our API.