IP Intelligence Briefing: 36.132.36.9
Date: 2026-06-18
---
**Risk Assessment**
- Overall Risk Score: Low (25/100)
- Provider/Authority Scores: 0/100 (no authoritative risk indicators)
- Stability: Unstable (route changes detected in 30 days)
- Threat Indicators: Clean (no malware, phishing, or spam associations)
---
**Ownership & Geolocation**
- ASN: 56044 (CMNET)
- Organization: Haijun Li (linked to China Mobile, APNIC registry)
- Geolocation:
- Country: China (CN)
- City: Beijing (latitude 35.86, longitude 104.2)
- ISP: China Mobile
- Accuracy: 50 km radius
---
**Network Role & Services**
- Network Classification: Firewalled / No Services
- No open ports, TLS certificates, or HTTP services detected.
- No CDN, VPN, or proxy indicators.
- DNS: No PTR records or domain associations.
---
**Observation History**
- Last Activity: June 18, 2026 (moderate confidence).
- Trend: Single observation; no persistent threat activity.
- Routing Stability: Route instability detected (30-day window).
---
**Relationships & Subnet**
- Network Relationships:
- Linked to CMNET (same ASN/organization).
- Subnet Analysis:
- /24 Network: 36.132.36.0/24
- Abuse Density: 1 (low-risk subnet).
- Neighbors:
- 36.132.36.77: Low risk (0/100).
- 36.132.36.134: Medium risk (25/100).
---
**Threat & Abuse Indicators**
- DNSBL Listings: 1/8 total lists (minimal risk).
- Honeypot Activity: No hits.
- Email Reputation: No SPF/DMArC records detected.
---
**Recommended Actions**
- Firewall Rules: No actionable rules generated (low risk).
- Monitoring: Monitor subnet for emerging threats (notable neighbor 36.132.36.134).
- Investigation: Verify ownership legitimacy (Haijun Li/APNIC).
Note: This IP appears benign but should be reviewed in context of its subnet's mixed risk profile.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | haijun li |
| ASN | AS56044 |
| Network Name | CMNET |
| CIDR Block | 36.128.0.0/10 |
| RIR | APNIC |
| Country | CN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 3 |
| routing | 17% | 1 | 1 |
| services | 18% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 24% | 1 | 3 |
| geolocation | 21% | 2 | 2 |
| Overall | 22% | 10 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:04:17 UTC |
| Last Seen | 2026-06-23 10:52:23 UTC |
| Profile Built | 2026-06-23 10:53:53 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 18 |
Full dossier details are available via our API.