IP Intelligence Briefing: 175.9.188.159
Date: 2026-06-08
---
**1. Core Profile**
- Risk Score: 0 (Low Risk)
- Ownership:
- ASN: AS4134 (CHINANET-BACKBONE)
- Organization: Chinanet Hostmaster
- Network: CHINANET-HN (Hunan, China)
- Geolocation:
- Country: China (CN)
- Region: Hunan
- City: Changsha
- Coordinates: 28.2°N, 112.96°E
- Network Role: Firewalled / No Services (no open ports, no TLS/HTTP activity)
---
**2. Threat Indicators**
- Malicious Activity: None detected (no malware, phishing, or C2 indicators).
- Threat Feeds: No blacklist entries or campaign associations.
- DNS Security: DNSSEC validated, CAA records present.
- BGP: Stable route with no recent anomalies (AS4134).
---
**3. Observation History**
- Recent Activity (Last 30 Days):
- Minimal changes; no persistent threats or abuse.
- One DNS resolution attempt (timed out), no further signals.
- Risk Trends: Stable, no upward trajectory in threats or scans.
---
**4. Network Relationships**
- Subnet: 175.9.188.159/24 (no active siblings/neighbors).
- Associations:
- Linked to CHINANET-HN (ISP infrastructure).
- DNS queries timed out (potential misconfigured/reserved IP).
---
**5. Recommended Actions**
- Firewall Rules: None required (low risk, no malicious activity).
- Monitoring: Track DNS resolution attempts; verify if IP is reserved or misconfigured.
- Context: Likely part of China Telecom's backbone network (AS4134).
---
Conclusion:
175.9.188.159 is a low-risk, non-malicious IP associated with China Telecom's infrastructure. No indicators of compromise or malicious intent detected. Monitor DNS behavior but no immediate action required.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Chinanet Hostmaster |
| ASN | AS4134 |
| Network Name | CHINANET-HN |
| CIDR Block | 175.0.0.0/12 |
| RIR | APNIC |
| Country | CN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 2 |
| routing | 19% | 1 | 2 |
| services | 19% | 1 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 13% | 1 | 2 |
| geolocation | 27% | 2 | 2 |
| Overall | 22% | 9 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-16 20:59:54 UTC |
| Last Seen | 2026-06-08 01:22:02 UTC |
| Profile Built | 2026-06-08 01:26:54 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 22 |
Full dossier details are available via our API.