# IP Intelligence Briefing: 183.7.135.149/32
## Executive Summary
IP address 183.7.135.149 is a moderate-risk Chinese infrastructure address with no active malicious indicators. The address belongs to the CHINANET-GD network (AS140308) and shows clean neighborhood characteristics with minimal abuse density.
---
## Profile Overview
| Attribute | Value |
|---|---|
| **Risk Score** | 40 (Moderate) |
| **Country** | China (CN) |
| **Region** | Beijing (BJ) |
| **Organization** | IPMASTER CHINANET-GD |
| **ASN** | 140308 |
| **Network Block** | 183.0.0.0/10 |
| **Network Role** | Firewalled / No Services |
## Threat Indicators
- Known Attacker: No
- Tor Exit Node: No
- Spam Source: No
- Blacklist Count: 0
- DNSBL Listed: 2 of 8 total lists
- Active Threat Feeds: None
- Known Campaigns: None
## Network Services
- Open Ports: None detected
- TLS Certificates: None
- Hosted Domains: 0
- Email Authentication: No SPF/DMARC records
## Neighborhood Analysis
- Subnet: 183.7.135.149/24
- Abuse Density: 0 (Clean)
- Total Siblings: 2
- Active Siblings: 0
- Threat Siblings: 0
- Neighbor IP: 183.7.135.38 (risk score not available)
## Temporal Analysis
- Ownership Changes: 0
- Threat Observation Count: 0
- Persistent Malicious Activity: False
- Threat Persistence Days: 0
## Observation History (16 signals)
Recent observations (2026-07-23) indicate stable infrastructure characteristics:
- Consistent ownership attribution to CHINANET-GD
- Subnet classification maintained as "clean"
- Geographic validation limited (ICMP blocked)
- No escalation in threat signals
## Recommended Actions
Based on the moderate risk score of 40, consider the following:
Firewall Rules:
```
iptables -A INPUT -s 183.7.135.149 -j DROP
nft add rule inet filter input ip saddr 183.7.135.149 drop
deny 183.7.135.149; # nginx
```
WAF Configuration:
- Cloudflare WAF: Block with expression `ip.src eq 183.7.135.149`
- AWS WAF: Add `183.7.135.149/32` to rule set with description "IPDebrief risk 40"
Assessment: Blocking is recommended but not mandatory. The IP lacks active threat indicators and belongs to a clean subnet. Monitor for service activation or reputation changes.
---
Analyst Notes: This infrastructure IP shows no evidence of malicious activity. The moderate risk score likely reflects geographic/operational factors rather than active abuse. No immediate threat action required if baseline operations permit.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | IPMASTER CHINANET-GD |
| ASN | AS140308 |
| Network Name | CHINANET-GD |
| CIDR Block | 183.0.0.0/10 |
| RIR | APNIC |
| Country | CN |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS140308 |
| Network Prefix | 183.7.128.0/19 |
| Route mapping | Found |
| Certificates in transparency logs | 0 certificates |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 12% | 3 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-03 23:05:19 UTC |
| Last Seen | 2026-08-22 16:56:00 UTC |
| Profile Built | 2026-08-29 10:21:47 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 20 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 183.7.135.149
Who owns the IP address 183.7.135.149?
183.7.135.149 is registered to IPMASTER CHINANET-GD. The address falls within the 183.0.0.0/10 network block. Registration is held at APNIC.
Where is 183.7.135.149 located?
Geolocation data places 183.7.135.149 in Guangzhou, Guangdong, China. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 183.7.135.149 malicious or safe?
183.7.135.149 currently carries a moderate risk assessment, meaning some indicators warrant caution, but the evidence is mixed. This assessment is generated from continuously collected signals and can change over time.