# IP Intelligence Briefing: 180.119.157.137/32
## Executive Summary
IP address 180.119.157.137 is classified as Low Risk (risk score: 25). The address is associated with China Telecom mobile infrastructure under ASN 4134 (CHINANET-BACKBONE) and represents a residential/mobile endpoint in the CHINANET-JS network block (180.96.0.0/11). No active threat indicators or malicious activity observed.
## Ownership & Infrastructure
- ASN: 4134 (CHINANET-BACKBONE - No.31, Jin-rong Street, CN)
- Organization: Chinanet Hostmaster
- Netname: CHINANET-JS
- RIR: APNIC
- Registration: 2009-07-23 (allocated)
- CIDR Block: 180.96.0.0/11
## Geolocation
- Country: China (CN)
- Coordinates: 34.77°N, 113.72°E
- Timezone: Asia/Shanghai
- Source Consensus: Confirmed (1 source)
## Network Classification
- Mobile Carrier: China Telecom (MCC: 460, MNC: 03)
- Connection Type: LTE/5G
- Infrastructure Type: Mobile/Residential endpoint
- Service Status: Firewalled / No Services
- Open Ports: None detected
- DNS Records: No PTR, no forward resolution, no hosted domains
## Threat Assessment
- Risk Score: 25 (Low)
- Abuse Confidence: Not applicable
- Known Attacker: No
- Tor Exit Node: No
- Spam Source: No
- Blacklist Status: 0 lists
- Known Campaigns: None
- Threat Feeds: No matches
## Control Plane Data
- Origin ASN: 4134
- BGP Prefix: 180.96.0.0/11
- Route Stability: Unstable (false)
- DNSBL Listed: 1 of 8 total lists
- RPKI State: Not validated
- IRR Consistency: N/A
## Observation History (10 observations)
Recent signal activity indicates:
- DNSSEC validation confirmed
- Geographic signals consistently point to China
- ASN attribution stable at 4134
- No persistent malicious activity observed
- Threat persistence days: 0
## Network Neighborhood (180.119.157.0/24)
- Total Siblings: 7 active IPs
- Abuse Density: 0
- Risk Distribution:
- Low Risk: 6 IPs
- Medium Risk: 0 IPs
- High Risk: 0 IPs
- Notable Siblings:
- 180.119.157.68, .71, .117, .129 (risk score: 25)
- 180.119.157.33, .89 (risk score: 0)
## Recommended Actions
No specific firewall rules or mitigation actions required. The IP presents a low-risk profile consistent with legitimate mobile/residential usage. Standard network monitoring practices are sufficient.
## Intelligence Assessment
The target IP is a mobile endpoint within China Telecom's CHINANET-JS infrastructure. The low risk score, absence of open services, and clean threat profile indicate legitimate residential use. The subnet shows minimal abuse density (0), and the IP's relationships confirm it as part of a stable China Telecom mobile network segment. No immediate threat action recommended.
---
*Generated: 2026-07-29*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Chinanet Hostmaster |
| ASN | AS4134 |
| Network Name | CHINANET-JS |
| CIDR Block | 180.96.0.0/11 |
| RIR | APNIC |
| Country | CN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 25% | 1 | 2 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 4% | 1 | 2 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-23 01:41:04 UTC |
| Last Seen | 2026-07-29 16:10:59 UTC |
| Profile Built | 2026-07-29 16:22:52 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 17 |
Full dossier details are available via our API.