IPDebrief

128.1.132.84

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP Intelligence Briefing: 128.1.132.84/32

Date: 2026-07-30

Classification: Low Risk

Risk Score: 25/100

## Executive Summary

IP address 128.1.132.84 belongs to UCLOUD (ASN 135377), registered under the network block ZL-HKG-UCLOUD-0041. The IP exhibits low-risk characteristics with no active threat indicators. The address is classified as firewalled with no services exposed.

## Ownership and Infrastructure

The IP is owned by UCLOUD (unoc@ucloud.cn) under RIR ARIN. Network registration shows CIDR block 128.1.132.0/24. Control plane analysis indicates BGP prefix 128.1.132.0/24 with origin ASN 135377. Route stability is marked as false, with zero route changes observed in the past 30 days.

## Geolocation Analysis

Geographic data presents conflicting indicators. The primary profile indicates United States (Central region), while historical observations from AlienVault OTX show Hong Kong (HCW region, coordinates 22.2908, 114.1501). GeoPlausible validation failed. Traceroute analysis recorded 25 hops with 11 timed-out hops, with Comcast appearing in transit networks.

## Threat Intelligence

Threat assessment returned no active indicators:

One DNSBL listing was identified out of 8 total lists checked.

## Network Activity and Services

Network reconnaissance revealed no open ports and no TLS certificates. The IP is classified as "Firewalled / No Services." No email authentication records (SPF, DMARC) were detected.

## Neighborhood Analysis

The /24 subnet 128.1.132.0/24 contains 256 potential IPv4 addresses. Two neighboring IPs were identified:

Subnet abuse density registers at 0. No high-risk neighbors were observed.

## Historical Observations

Signal history contains 13 observations. Recent signals (2026-07-30) indicate:

## Recommended Actions

No automated firewall rules or security actions were generated due to the low-risk profile (score 25). The IP is not currently flagged for blocking.

## Intelligence Notes

The IP presents a typical cloud infrastructure profile with no observable malicious activity. Geographic discrepancies between profile data and historical feeds warrant monitoring but do not currently indicate compromise. The presence of two higher-risk neighbors (score 40) in the same /24 subnet suggests some localized abuse activity, though this IP remains below threshold for action.

Status: Monitor – No immediate action required.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionHCW
CityCentral
Timezoneβ€”
Latitude30.55
Longitude-91.04

🏒 Ownership & Registration

OrganizationUCLOUD
ASNAS135377
Network NameZL-HKG-UCLOUD-0041
CIDR Block128.1.132.0/24
RIRARIN
CountryHong Kong
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)

πŸ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown β€” Insufficient routing data to classify
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
11
routing
25%
11
services
25%
11
ownership
0%
00
reputation
0%
00
geolocation
0%
00
Overall12%33
Coverage: 3/6 dimensions Β· Data sufficiency: partial
Data CoherenceMostly Consistent (80%) β€” 1 contradiction(s)
AttributionLow (35%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Geo sources disagree on country: HK, US

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-07-25 14:52:27 UTC
Last Seen2026-08-04 05:42:15 UTC
Profile Built2026-07-30 04:20:04 UTC
Data FreshnessLive
Signal Types18
Total Observations18
πŸ” 18 signal types Β· 18 observations collected
This report is generated from 18+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.