IP Intelligence Briefing: 124.117.194.194
Date: 2026-06-12
---
**1. Core Profile**
- Risk Score: Moderate (40/100)
- Ownership:
- ISP: China Telecom (ASN 4134)
- Network: CHINANET-XJ (apnic)
- Location: China (CN), HUANG HE ROAD 30, latitude 34.77, longitude 113.72
- Network Role: Mobile (LTE/5G), no cloud/CDN/residential indicators.
- Threat Indicators: No malicious activity detected (no DNSBL listings, no campaigns, no open ports).
---
**2. Observation History**
- Recent Activity (30 days):
- 2 DNSBL listings (low severity, 2/8 total lists).
- 10 observations, including DNS records and network prefixes.
- No persistent threats or malicious behavior.
- Risk Trend: Minimal risk score (0/100) over time.
---
**3. Relationships**
- Linked Entities:
- Subnet: 124.117.0.0/16 (CHINANET-BACKBONE).
- No direct associations with known malicious organizations or domains.
- Mobile Carrier: China Telecom (MCC 460, MNC 03).
---
**4. Neighborhood Analysis**
- Subnet: 124.117.194.0/24 (15 total IPs).
- Risk Distribution:
- 1 IP with medium risk (40).
- 14 IPs with low risk (0โ25).
- Notable Neighbors:
- 124.117.194.89: Moderate risk (40).
- 124.117.194.5, 20, 31, 65, 72, 79, 142, 152, 211, 216: Low risk.
---
**5. Recommendations**
- Monitor Subnet: Focus on 124.117.194.89 for potential threats.
- Traffic Analysis: Check for unusual traffic patterns between this IP and high-risk neighbors.
- No Immediate Action: The IP itself shows no malicious activity, but subnet-level monitoring is advised.
SOC Analyst Note: This IP is part of a mobile network in China with no direct threat indicators. Prioritize investigation of neighboring IPs with higher risk scores.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Chinanet Hostmaster |
| ASN | AS4134 |
| Network Name | CHINANET-XJ |
| CIDR Block | 124.117.0.0/16 |
| RIR | APNIC |
| Country | CN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 0% (None) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 27% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 6% | 3 | 4 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-06-01 23:53:34 UTC |
| Last Seen | 2026-06-21 12:22:20 UTC |
| Profile Built | 2026-06-12 13:59:03 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 17 |
Full dossier details are available via our API.