IP Intelligence Briefing: 192.140.189.15
*Generated via IPDebrief tools: Profile, History, Relationships, Neighbors*
---
**Risk Profile**
- Overall Risk: Low (Risk Score: 25)
- Ownership: Registered to Nan Shang (ASN 146817) in China (CN).
- Geolocation: China (CN), no city/region specified.
- Threat Indicators: No active threats, malware, or known attacker associations.
- Network Role: Firewalled with no open services or TLS certificates detected.
---
**Observation History**
- Recent Activity:
- June 17, 2026: Minimal risk detected (operator score 0.2174).
- June 2, 2026: Threat pulse identified (13 pulses) with no specific campaign links.
- Traceroute: ICMP blocked; geolocation inferred as ~8,000 km from probe, but no valid RTT data.
- DNS: No resolvable PTR records; DNS queries timed out (likely internal/privacy-focused).
---
**Network Relationships**
- Linked Entities:
- Repeated associations with network FXNET (same network).
- Failed DNS resolution attempts (e.g., `192.168.2.108`βinternal IP range).
- Subnet: 192.140.189.15/24. No active neighbors or abuse density data.
---
**Actionable Insights**
1. Monitor Threat Pulses: The IP showed a threat pulse (13 signals) on June 2, 2026, though no specific campaigns were linked. Investigate further for potential false positives or emerging threats.
2. Network Isolation: The IPβs firewalled state and lack of open services suggest it may be a non-public host, but the repeated FXNET associations warrant closer inspection.
3. DNS Anomalies: Failed DNS resolution attempts and internal IP ranges (e.g., 192.168.x.x) indicate potential misconfiguration or privacy measures.
4. Geolocation Discrepancy: Traceroute ICMP blockage raises questions about network segmentation or spoofing. Verify if the IP is part of a larger infrastructure.
---
Conclusion: 192.140.189.15 appears low-risk with no direct malicious indicators. However, its network relationships and DNS anomalies suggest further investigation is warranted to rule out indirect compromises or misconfigurations.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Nan Shang |
| ASN | AS146817 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 26% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 24% | 2 | 3 |
| ownership | 20% | 2 | 3 |
| reputation | 23% | 1 | 3 |
| geolocation | 30% | 2 | 3 |
| Overall | 23% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-07 23:04:03 UTC |
| Last Seen | 2026-06-23 02:38:47 UTC |
| Profile Built | 2026-06-23 02:41:13 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 24 |
Full dossier details are available via our API.