# IP Intelligence Briefing: 14.152.91.206/32
Classification: Low Risk / Provider Infrastructure
Date: 2026-07-28
Analysis Status: Complete
## Executive Summary
IP 14.152.91.206 is a low-risk (Score: 25/100) China-based provider infrastructure address under CHINANET-GD. The IP demonstrates no active threat indicators, no open services, and minimal neighborhood activity. No immediate defensive action required.
## Ownership & Geolocation
- ASN: 134763 (IPMASTER CHINANET-GD)
- Organization: IPMASTER CHINANET-GD
- Country: China (CN)
- CIDR Block: 14.144.0.0/12 (APNIC RIR)
- BGP Prefix: 14.152.80.0/20
- Abuse Contact: Available via RDAP
## Threat Assessment
Current Risk Profile:
- Risk Score: 25 (Low)
- Blacklist Count: 0
- DNSBL Listed: 1/8 lists
- Known Attacker: False
- Spam Source: False
- Tor Exit Node: False
Threat Indicators: None detected
- No active campaigns correlated
- No threat feeds triggered
- Zero enumeration strikes or honeypot hits observed
## Network Behavior
Service Analysis:
- Open Ports: None detected
- TLS Certificate: None
- HTTP Title: None
- Service Purpose: Firewalled / No Services
Temporal Analysis:
- Ownership Changes: 0
- Threat Observation Count: 0
- Threat Persistence Days: 0
- Is Persistently Malicious: False
Control Plane:
- Route Stability: Not stable (0 route changes in 30d)
- RPKI State: Not evaluated
- DNSSEC Valid: True
- Operator Score: 0.1304 (Minimal)
## Neighborhood Analysis (14.152.91.0/24)
- Total Siblings: 7 IPs
- Active Siblings: 2
- Abuse Density: 0 (Clean)
- Threat Siblings: 0
Neighbor Risk Distribution:
| IP Address | Risk Score | Authority Score |
|---|---|---|
| 14.152.91.139 | 25 | 50 |
| 14.152.91.159 | 0 | 50 |
| 14.152.91.194 | 25 | 50 |
| 14.152.91.232 | 0 | 50 |
| 14.152.91.244 | 25 | 50 |
| 14.152.91.249 | 25 | 50 |
## Observation History
Total Observations: 13 signals
Timeframe: Recent activity (2026-07-28)
- Geolocation signals consistently map to CN (35.86°N, 104.2°E)
- Ownership signals stable with APNIC RIR classification
- No significant behavioral changes detected
## Security Actions
Recommended Actions: None
- Risk score below action threshold
- No firewall rules generated
- No blocking or filtering recommended
Status: Monitor passively; no immediate defensive action required
---
Analyst Notes: This IP represents standard provider infrastructure with no malicious activity indicators. The subnet shows low abuse density and no threat siblings. The IP is firewalled with no open services, typical of upstream provider routing infrastructure.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | IPMASTER CHINANET-GD |
| ASN | AS134763 |
| Network Name | CHINANET-GD |
| CIDR Block | 14.144.0.0/12 |
| RIR | APNIC |
| Country | CN |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS134763 |
| Network Prefix | 14.152.80.0/20 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 30% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 34% | 2 | 6 |
| reputation | 22% | 1 | 3 |
| geolocation | 20% | 2 | 3 |
| Overall | 21% | 10 | 19 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-17 11:03:51 UTC |
| Last Seen | 2026-09-04 17:18:40 UTC |
| Profile Built | 2026-09-04 17:22:58 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 25 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 14.152.91.206
Who owns the IP address 14.152.91.206?
14.152.91.206 is registered to IPMASTER CHINANET-GD. The address falls within the 14.144.0.0/12 network block. Registration is held at APNIC.
Where is 14.152.91.206 located?
Geolocation data places 14.152.91.206 in China. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 14.152.91.206 malicious or safe?
14.152.91.206 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.