# IP Intelligence Briefing: 102.37.110.74/32
Classification: Moderate Risk β Cloud Infrastructure (Microsoft Azure)
Date: Current Analysis
Status: Active Monitoring Recommended
## Executive Summary
IP address 102.37.110.74 is assigned to Microsoft Azure cloud infrastructure in Boston, MA, with a moderate risk score of 40. The address is registered under ASN 8075 and operates within a cloud environment with no active services or open ports detected. The IP has been DNSBL listed on 2 of 8 threat feeds and shows route instability over the past 30 days.
## Network Profile
- Geolocation: United States, Massachusetts (Boston), America/New_York timezone
- ASN: 8075 (MICROSOFT-CORP-MSN-AS-BLOCK)
- Network Block: 102.37.0.0/17 (AfriNIC registry, allocated 2019-06-07)
- Infrastructure Type: Cloud (Microsoft Azure)
- Route Stability: Unstable (route changes detected in last 30 days)
## Threat Assessment
- Overall Risk Score: 40/100 (Moderate)
- Threat Indicators: No active attacker signatures, Tor exit node, or known campaign affiliations
- Abuse Confidence: Low to Moderate
- Blacklist Status: Listed on 2 of 8 DNSBL sources (max severity: high)
- Persistence: Single threat observation recorded; not classified as persistently malicious
## Technical Observations
- Open Ports/Services: None detected
- DNS Resolution: No PTR records; forward resolution not confirmed
- Email Security: No SPF or DMARC records configured
- TLS/HTTP: No active certificates or service banners
- Network Classification: Cloud infrastructure with firewall-protected services
## Neighborhood Analysis (102.37.110.0/24)
- Abuse Density: 1 (Low)
- Subnet Classification: Mostly clean
- Inherited Risk: 2
- Threat Siblings: 1 identified within /24 subnet
## Historical Activity
- Observation Count: 12 signals recorded
- Most Recent: 2026-07-29
- Ownership Changes: None observed
- DNSSEC Validation: Valid
- Threat Persistence Days: 0
## Recommended Actions
1. Traffic Filtering: No immediate blocking required due to cloud infrastructure classification
2. Monitoring: Continue monitoring for service activation or threat indicator changes
3. DNSBL Review: Investigate the 2 active DNSBL listings to determine specific reasons for listing
4. Subnet Correlation: Monitor the 1 identified threat sibling within the /24 subnet
## Conclusion
This IP represents a Microsoft Azure cloud address with moderate risk characteristics. While not actively malicious, the DNSBL listings and route instability warrant continued observation. No immediate defensive action is required, but maintain awareness of associated threat siblings in the neighborhood subnet.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | IP Hostmaster |
| ASN | AS8075 |
| Network Name | 102.37.0.0 - 102.37.127.255 |
| CIDR Block | 102.37.0.0/17 |
| RIR | AFRINIC |
| Country | ZA |
| Abuse Contact | β |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 35% | 2 | 4 |
| routing | 25% | 1 | 1 |
| services | 19% | 2 | 2 |
| ownership | 19% | 2 | 2 |
| reputation | 26% | 1 | 3 |
| geolocation | 27% | 2 | 2 |
| Overall | 25% | 10 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-07-23 20:04:32 UTC |
| Last Seen | 2026-08-12 17:48:38 UTC |
| Profile Built | 2026-08-12 17:55:01 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 21 |
Full dossier details are available via our API.