# IP Intelligence Briefing: 39.173.76.6/32
Classification: Low Risk | Reputation: Low Risk | Risk Score: 25/100
---
## Executive Summary
IP address 39.173.76.6 is a China Mobile infrastructure address with low risk characteristics. The IP shows no active threat indicators, no open services, and no known associations with malicious campaigns. Current observation data indicates legitimate network infrastructure usage.
---
## Ownership & Infrastructure
- Organization: IRT-CHINAMOBILE-CN (China Mobile Communications Corporation)
- ASN: AS56041
- BGP Prefix: 39.173.72.0/21
- RIR: APNIC
- Registration: China (CN)
- Contact: abuse@chinamobile.com
---
## Threat Assessment
| Indicator | Status |
|---|---|
| Known Attacker | No |
| Spam Source | No |
| Tor Exit Node | No |
| Blacklist Count | 0 |
| Abuse Confidence | None |
| Active Threats | None |
Threat Indicators: No threat indicators detected across monitored feeds. No known campaign associations or threat feed matches.
---
## Network Classification
- Service Purpose: Firewalled / No Services
- Open Ports: None detected
- Infrastructure Type: None classified
- Cloud/CDN/VPN: No
- Hosting: No
Control Plane: Route stable with 0 changes in the last 30 days. Operator score: 0.1304 (Minimal).
---
## Neighborhood Analysis
Subnet: 39.173.76.0/24
- Total Siblings: 254
- Abuse Density: 0
- Neighboring IPs: 1 (39.173.76.9, Risk Score: 25)
- Threat Siblings: 0
The /24 subnet shows minimal abuse activity, with all sibling IPs classified as low risk.
---
## Observation History
10 signals observed, most recent from 2026-07-30. Consistent ownership with China Mobile (IRT-CHINAMOBILE-CN) across all observations. No ownership changes detected.
---
## Recommended Actions
No immediate firewall rules or security actions recommended.
The IP presents a low-risk profile consistent with legitimate telecommunications infrastructure. However, SOC analysts should:
1. Monitor for service activity changes (currently firewalled)
2. Review traffic patterns if this IP appears in logs
3. No blocking recommended based on current risk assessment
---
Report Generated: Intelligence Summary
Data Source: IPDebrief Threat Intelligence Platform
Confidence Level: 0.1667 (Data sufficiency: 0.6667)
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IRT-CHINAMOBILE-CN |
| ASN | AS56041 |
| Network Name | CMNET |
| CIDR Block | 39.128.0.0/10 |
| RIR | APNIC |
| Country | CN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 25% | 1 | 1 |
| Overall | 16% | 4 | 4 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-29 16:42:07 UTC |
| Last Seen | 2026-07-31 07:31:49 UTC |
| Profile Built | 2026-07-30 23:12:04 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 18 |
Full dossier details are available via our API.