IP Intelligence Briefing: 183.207.45.105
Date: 2026-06-12
Risk Profile:
- Risk Score: 50 (Moderate Risk)
- Provider: China Mobile (AS9808)
- Geolocation: Beijing, China (latitude 35.86, longitude 104.2)
- Network Role: Mobile device (LTE/5G)
Threat Indicators:
- No active threats, malware, or malicious campaigns detected.
- No DNS or email reputation issues.
- BGP routing is stable, with no recent route changes.
Observation History:
- Geolocation inferred via multi-signal methods (accuracy ±2500 km).
- Historical data shows consistent China Mobile ownership.
- ICMP validation failed, limiting geolocation certainty.
Network Relationships:
- Linked to CMNET (China Mobileβs public network).
- No connections to known malicious entities or subnets.
Subnet Analysis:
- /24 Subnet: 183.207.45.0/24
- Abuse Density: 0% (mostly clean)
- Neighbor IPs:
- 183.207.45.91 (0 risk)
- 183.207.45.102 (25 risk)
- 183.207.45.110 (25 risk)
- 183.207.45.115 (25 risk)
Actionable Insights:
1. Monitor Mobile Traffic: The IPβs mobile carrier (China Mobile) and LTE/5G technology suggest potential for dynamic IP reuse. Track for unusual traffic patterns or lateral movement.
2. Verify Geolocation: ICMP validation failed, so geolocation accuracy is limited. Cross-check with other signals (e.g., DNS, BGP) for confirmation.
3. Subnet Context: While the subnet has low abuse density, the presence of medium-risk neighbors warrants closer scrutiny.
4. No Immediate Threat: No malicious indicators detected, but the IPβs mobile nature and network ownership suggest it could be a legitimate user with potential for evasion.
Recommendation:
- Add to watchlist for persistent monitoring, especially given mobile network characteristics.
- Validate geolocation using alternative methods (e.g., DNS or TLS fingerprints) if further investigation is needed.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | haijun li |
| ASN | AS9808 |
| Network Name | CMNET |
| CIDR Block | 183.192.0.0/10 |
| RIR | APNIC |
| Country | CN |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 23% | 2 | 2 |
| routing | 13% | 1 | 1 |
| services | 19% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 13% | 1 | 2 |
| geolocation | 27% | 2 | 3 |
| Overall | 20% | 10 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-31 10:47:45 UTC |
| Last Seen | 2026-06-12 06:45:22 UTC |
| Profile Built | 2026-06-12 06:51:02 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 18 |
Full dossier details are available via our API.