IP Intelligence Briefing: 180.76.170.245
Date: 2026-06-02
---
**Overview**
- Reputation: Moderate Risk (Risk Score: 65)
- Ownership: Baidu Noc (ASN: 38365), China (CN)
- Geolocation: China (CN), inferred with 2500km accuracy radius.
- Threat Indicators: No malicious activity detected; no indicators in threat feeds or blacklists.
- Network Role: Firewalled / No Services; infrastructure type unspecified.
---
**Key Findings**
1. Ownership & Network Context:
- Belongs to Baidu Noc (Beijing Baidu Netcom Science and Technology Co., Ltd.), registered under APNIC.
- Subnet 180.76.170.245/24 has 2 active IPs, with 1 sibling flagged at moderate risk (65). Subnet abuse density is low (0.5).
2. Observation History:
- Last 30 days: 15 observations, primarily geolocation and network metadata.
- No spikes in threat signals; consistent benign activity.
3. Relationships:
- Linked to Baidu across multiple signals (network, ownership).
- No connections to Tor, CDN, or cloud infrastructure.
4. Behavioral & Technical Data:
- No open ports, TLS certificates, or HTTP services detected.
- DNSSEC valid, no CAA records, and 3 DNSBL listings (low impact).
- BGP prefix 180.76.128.0/18 shows stable routing with no recent changes.
---
**Threat Assessment**
- Risk Profile: Moderate risk due to public IP exposure and inferred geolocation, but no direct malicious activity.
- Neighbor Analysis: Subnet includes 1 high-risk IP (65), suggesting potential for lateral movement or shared infrastructure risks.
- Historical Trends: Stable over time; no persistent malicious behavior detected.
---
**Recommended Actions**
1. Monitor Subnet: Track activity on 180.76.170.0/24 for unusual traffic patterns.
2. Validate Ownership: Confirm Baiduβs control over the IP to rule out spoofing or misattribution.
3. Check Neighbor IPs: Investigate the high-risk neighbor (180.76.170.111) for potentialε ³θ threats.
4. Maintain Baseline: Use IPDebriefβs history tool to detect future anomalies.
---
Note: This IP is part of a legitimate organizationβs infrastructure but should be monitored due to public exposure and subnet risk density.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Baidu Noc |
| ASN | AS38365 |
| Network Name | Baidu |
| CIDR Block | 180.76.0.0/16 |
| RIR | APNIC |
| Country | CN |
| Abuse Contact | β |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 29% | 2 | 4 |
| routing | 25% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 19% | 2 | 2 |
| reputation | 24% | 1 | 3 |
| geolocation | 21% | 2 | 2 |
| Overall | 22% | 10 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-07 23:03:58 UTC |
| Last Seen | 2026-06-22 23:11:53 UTC |
| Profile Built | 2026-06-22 23:25:31 UTC |
| Data Freshness | Live |
| Signal Types | 16 |
| Total Observations | 20 |
Full dossier details are available via our API.