# IP Intelligence Briefing: 43.226.44.36/32
Classification: Low Risk Infrastructure
Report Date: July 27, 2026
Analyst: IPDebrief Intelligence Team
---
## Executive Summary
IP 43.226.44.36 presents a low-risk profile with a risk score of 25. The address is registered to ASN 134762 (Lifen zhang / Xiaoniaoyun) under APNIC in the China region. No active threat indicators, malicious campaigns, or abuse patterns detected. Neighborhood analysis of the /24 subnet shows zero abuse density with all sibling IPs classified as low risk.
---
## Network Ownership & Geolocation
| Attribute | Value |
|---|---|
| **ASN** | 134762 |
| **Organization** | Lifen zhang |
| **Netname** | Xiaoniaoyun |
| **CIDR Block** | 43.226.44.0/22 |
| **Country** | China (CN) |
| **City** | Nanshan District, Shenzhen, Guangdong Province |
| **Coordinates** | 34.77°N, 113.72°E |
| **Timezone** | Asia/Shanghai |
Control Plane: BGP origin 43.226.32.0/20 with stable routing (0 route changes in 30-day window). DNSSEC validation active.
---
## Threat Assessment
Current Risk Profile:
- Risk Score: 25 (Low)
- Reputation: Low Risk
- Abuse Confidence: Not elevated
- Blacklist Count: 0
Threat Indicators:
- Not a Tor exit node
- Not classified as a known attacker
- Not identified as a spam source
- No associated threat campaigns
- No honeypot hits, enumeration strikes, or WAF violations
DNS Reputation:
- Forward resolution: Inactive
- Hosted domains: 0
- Email authentication: No SPF/DMARC records
- DNSBL status: 1 of 8 lists (minimal impact)
---
## Network Role & Services
Classification: Firewalled / No Services
- No open ports detected
- No TLS certificates, HTTP banners, or server fingerprints
- Not categorized as cloud, CDN, VPN, proxy, Tor, hosting, mobile, residential, bogon, or anycast
Behavioral Signals:
- Total threat observation count: 0
- Threat persistence: Inactive
- Not persistently malicious
---
## Relationship Analysis
Connected Entities: 2 relationships identified
- Same Network: Xiaoniaoyun (Xiaoniaoyun)
The IP demonstrates minimal external connectivity patterns beyond its assigned network block.
---
## Neighborhood Analysis (43.226.44.0/24)
| Metric | Value |
|---|---|
| **Total Neighbors** | 7 |
| **Abuse Density** | 0 |
| **High Risk IPs** | 0 |
| **Medium Risk IPs** | 0 |
| **Low Risk IPs** | 7 |
Sibling IP Risk Distribution:
- 43.226.44.4: Risk 25, Authority 50
- 43.226.44.17: Risk 25, Authority 50
- 43.226.44.28: Risk 0, Authority 50
- 43.226.44.76: Risk 0, Authority 50
- 43.226.44.86: Risk 25, Authority 50
- 43.226.44.214: Risk 25, Authority 50
- 43.226.44.238: Risk 0, Authority 50
All sibling IPs exhibit consistent low-risk profiles with no abuse concentration patterns.
---
## Observation History
13 signal observations recorded over the monitoring period. Most recent signals (July 27, 2026) indicate:
- Geolocation inference: China (CN) with 52% confidence
- Ownership stability: No changes detected
- Network classification: Consistent with infrastructure profile
No escalating threat patterns observed over time.
---
## Security Recommendations
Current Status: No firewall rules or blocking recommendations generated.
Rationale: The IP presents a low-risk profile with no active threat indicators, clean neighborhood metrics, and no service exposure. The address is likely legitimate infrastructure.
Monitoring: Routine monitoring is appropriate. No immediate action required.
---
End of Briefing
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | Lifen zhang |
| ASN | AS134762 |
| Network Name | Xiaoniaoyun |
| CIDR Block | 43.226.44.0/22 |
| RIR | APNIC |
| Country | CN |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS134762 |
| Network Prefix | 43.226.32.0/20 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 35% | 2 | 3 |
| routing | 17% | 1 | 1 |
| services | 24% | 2 | 2 |
| ownership | 35% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 35% | 2 | 3 |
| Overall | 27% | 10 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-12 08:51:58 UTC |
| Last Seen | 2026-09-01 00:41:33 UTC |
| Profile Built | 2026-08-29 13:27:25 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 20 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 43.226.44.36
Who owns the IP address 43.226.44.36?
43.226.44.36 is registered to Lifen zhang. The address falls within the 43.226.44.0/22 network block. Registration is held at APNIC.
Where is 43.226.44.36 located?
Geolocation data places 43.226.44.36 in Nanshan District Shenzhen city of Guangdong Province. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 43.226.44.36 malicious or safe?
43.226.44.36 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.