Your IP: 216.73.216.123
๐ค Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.
IP Intelligence Briefing: 218.65.4.88
Date: 2026-06-05
---
**1. Risk Profile**
- Risk Score: 50 (Moderate Risk)
- Ownership: China Telecom (AS4134, CHINANET-JX)
- Geolocation: Beijing, China (latitude: 34.7732, longitude: 113.722; accuracy radius: 2500 km).
- Threat Indicators: No malicious activity detected (no indicators, blacklists, or campaigns).
- Network Role: Mobile IP (LTE/5G), likely part of a cellular network.
---
**2. Observation History**
- 18 total observations over 30 days:
- Geolocation: Consistent with China, but coordinates vary (e.g., 35.86, 104.2).
- Network Scans: No open ports or services detected.
- Subnet Analysis: Subnet 218.65.4.88/24 has low abuse density (score: 1), with no active neighbors reported.
---
**3. Relationships**
- Network Links: Strong association with CHINANET-JX (China Telecom).
- DNS Associations: Timed-out attempts to resolve DNS records (likely misconfigured or unreachable).
- No External Threat Links: No connections to known malicious entities, campaigns, or domains.
---
**4. Neighborhood Analysis**
- Subnet: 218.65.4.88/24
- Abuse Density: 1 (mostly clean).
- Neighbors: No active or threatening IPs reported in the subnet.
---
**5. Recommendations**
- Monitor DNS Configuration: Investigate timed-out DNS resolution attempts.
- Verify Network Segmentation: Ensure mobile IP (218.65.4.88/24) is properly isolated from critical assets.
- Track Subnet Changes: Watch for new activity in the 218.65.4.88/24 subnet, though current data shows low risk.
Conclusion: This IP is part of a legitimate ISP network with no direct malicious activity. Moderate risk is likely due to geolocation inconsistencies or network configuration factors. No immediate action required, but ongoing monitoring is advised.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Chinanet Hostmaster |
| ASN | AS4134 |
| Network Name | CHINANET-JX |
| CIDR Block | 218.65.0.0/17 |
| RIR | APNIC |
| Country | CN |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
No certificate
Issued by โ
N/A
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 27% | 2 | 3 |
| ownership | 19% | 2 | 2 |
| reputation | 22% | 1 | 3 |
| geolocation | 23% | 2 | 2 |
| Overall | 22% | 10 | 14 |
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Fresh
| First Seen | 2026-05-12 15:47:55 UTC |
| Last Seen | 2026-06-26 18:11:09 UTC |
| Profile Built | 2026-06-22 08:02:11 UTC |
| Data Freshness | Fresh |
| Signal Types | 18 |
| Total Observations | 19 |
๐ 18 signal types ยท 19 observations collected
This report is generated from 18+ independent intelligence signals including
ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds,
behavioral fingerprinting, and more.
Full dossier details are available via our API.
Full dossier details are available via our API.
โน๏ธ About This Report
All data shown is publicly available network metadata โ IP addresses do not reliably identify individuals.
Assessments are probabilistic and should not be used as sole basis for access control decisions.
To report an issue or request data review, contact admin@ipdebrief.com.