# IP Intelligence Briefing: 132.196.101.31/32
Classification: Cloud Infrastructure / Microsoft Azure
Risk Level: Low (Score: 25/100)
Report Date: Based on latest observation: 2026-06-29
---
## Executive Summary
IP address 132.196.101.31 is a cloud infrastructure endpoint hosted on Microsoft Azure (ASN: 8075). The IP shows no active malicious indicators, no open services, and no known association with threat campaigns. Observed behavior is consistent with legitimate cloud infrastructure operations.
---
## Technical Profile
Ownership & Network:
- ASN: 8075 (Microsoft Azure)
- Organization: Divya Quamara
- Network Block: 132.196.0.0/17
- CIDR Assignment: 132.196.101.31/32
- RIR: ARIN
Geolocation:
- Country: United States (US)
- Region: Iowa (IA)
- City: Des Moines
- Coordinates: 41.60°N, 93.61°W
- Timezone: America/Chicago
- Accuracy Radius: 150km
Infrastructure Classification:
- Cloud Provider: Microsoft Azure
- Infrastructure Type: CloudCompute
- Connection Type: N/A
- Service Status: Firewalled / No Services Detected
---
## Threat Assessment
Risk Indicators:
- Reputation: Low Risk
- Abuse Confidence: Not Available
- Blacklist Count: 0
- Tor Exit Node: False
- Known Attacker: False
- Spam Source: False
Control Plane:
- Operator Score: Minimal (0.1304)
- DNSBL Listed: 1 of 8 lists checked
- RPKI State: Not Available
- Route Stability: False
- BGP Prefix: 132.196.0.0/16
Network Services:
- Open Ports: None detected
- TLS Certificate: None
- HTTP Title: None
- Email Authentication: No SPF/DMARC records
---
## Historical Observations
Observation Period: 19 signals observed since 2026-06-21
Signal Timeline:
- 2026-06-29: Confirmed cloud infrastructure classification (Microsoft Azure, confidence: 0.90)
- 2026-06-21: Subnet classification "mostly_clean" with inherited risk score 2
- 2026-06-21: Geolocation inference for Des Moines, IA (confidence: 0.56)
- 2026-06-21: Operator score classification "Minimal"
Temporal Analysis:
- Ownership Changes: 0
- Threat Persistence Days: 0
- Threat Observation Count: 1
- Persistently Malicious: False
---
## Relationship Analysis
Connected Entities: 14 relationships identified
- All relationships classified as "Same Network" (cloud network)
- No cross-network associations or external entity links
- Network topology indicates internal cloud infrastructure routing
---
## Neighborhood Assessment
Subnet: 132.196.101.31/24
- Abuse Density: 1
- Classification: Mostly Clean
- Total Sibling IPs: 1
- Active Siblings: 1
- Threat Siblings: 1
- Inherited Risk: 2
---
## Recommended Actions
Current Status: No immediate action required
Defensive Posture:
- IP classified as low-risk cloud infrastructure
- No blocking recommended for legitimate Microsoft Azure traffic
- Monitor for service changes if operational requirements change
Firewall Rules: No rules required. If explicit blocking is desired (non-routable or policy-based), use:
```
iptables -A INPUT -s 132.196.101.31/32 -j DROP
```
---
## Conclusion
IP 132.196.101.31 represents standard Microsoft Azure cloud infrastructure with no observed malicious activity. The IP shows stable, low-risk behavior consistent with legitimate cloud service operations. No immediate threat mitigation actions are recommended. SOC analysts may monitor for service activation or behavioral changes if operational requirements warrant increased scrutiny.
Analyst Notes: The IP's association with Microsoft Azure cloud infrastructure and absence of threat indicators support classification as benign cloud endpoint. Further investigation only warranted if operational context indicates concern about specific cloud resource usage patterns.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Divya Quamara |
| ASN | AS8075 |
| Network Name | cloud |
| CIDR Block | 132.196.0.0/17 |
| RIR | ARIN |
| Country | US |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 19% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 22% | 1 | 3 |
| geolocation | 24% | 2 | 3 |
| Overall | 22% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-29 18:14:09 UTC |
| Last Seen | 2026-06-29 06:34:15 UTC |
| Profile Built | 2026-06-29 06:39:03 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 18 |
Full dossier details are available via our API.