IP Intelligence Briefing: 43.226.45.82
Date: 2026-06-10
---
**1. Core Profile**
- Risk Score: Moderate (50/100)
- Ownership:
- ASN: 134762
- Organization: *Lifen zhang* (Xiaoniaoyun)
- Registry: APNIC
- Geolocation: Nanshan District, Shenzhen, China (34.77°N, 113.72°E)
- Threat Indicators:
- No malicious activity detected (no blacklists, campaigns, or DNS threats).
- DNSSEC validation confirmed.
- No Tor, VPN, or proxy associations.
---
**2. Network Behavior**
- Subnet: 43.226.45.0/24
- Neighbor Risk:
- 2 sibling IPs in subnet:
- 43.226.45.110: Risk Score 50 (Moderate)
- 43.226.45.124: Risk Score 25 (Low)
- Subnet abuse density: 0% (no malicious activity detected in neighbors).
- Network Role:
- No public services (no open ports, TLS certs, or HTTP banners).
- Likely internal or firewalled infrastructure.
---
**3. Temporal Observations**
- Recent Activity (Last 30 Days):
- 13 observations, including DNSSEC validation and routing data.
- No persistent threats or repeated malicious signals.
- Operator score: 0.1304 (Minimal risk).
- Historical Trends:
- No significant changes in risk profile.
- DNS resolution and geolocation data consistent over time.
---
**4. Relationships**
- Linked Entities:
- Subnet: *Xiaoniaoyun* (APNIC)
- No hostname, certificate, or organizational links.
- BGP Context:
- Origin ASN: 134762 (CHINANET-LIAONING-DALIAN-MAN)
- BGP prefix: 43.226.32.0/20
- Route stability: Unstable (route changes detected).
---
**5. Recommendations**
- Monitoring:
- Track DNSSEC validation and routing stability for anomalies.
- Monitor neighbors (43.226.45.110) for potential lateral movement.
- Firewall:
- Block IP if it becomes active in public services or shows malicious behavior.
- Consider rate-limiting DNS queries to mitigate abuse risks.
Conclusion: This IP is owned by a Chinese organization with no direct threat indicators. While the subnet has mixed risk neighbors, the IP itself shows no malicious activity. Continuous monitoring is advised for unexpected changes.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Lifen zhang |
| ASN | AS134762 |
| Network Name | Xiaoniaoyun |
| CIDR Block | 43.226.44.0/22 |
| RIR | APNIC |
| Country | CN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 13% | 1 | 1 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 13% | 6 | 7 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-22 18:17:49 UTC |
| Last Seen | 2026-06-10 02:55:11 UTC |
| Profile Built | 2026-06-10 03:29:48 UTC |
| Data Freshness | Live |
| Signal Types | 16 |
| Total Observations | 17 |
Full dossier details are available via our API.