Intelligence Briefing: 132.196.74.211
Risk Assessment
The IP address was classified as Low Risk with a risk score of 25. However, the profile coherence was marked as Contradictory, and the overall confidence level remained Very Low (21.33%).
Infrastructure and Services
The address is hosted on Microsoft Azure cloud infrastructure under ASN 8075. It operates as a web server exposing ports 80 and 443. Server banners identified Microsoft-IIS/10.0, and a TLS certificate was issued for fe2.update.microsoft.com.
Observed Anomalies
Three major signal contradictions were recorded:
* Geolocation: Sources disagreed on country (GB vs. US), with geo-plausibility flagged as false.
* RTT Physics: Measured RTT of 49ms contradicted the reported distance of 7,066km.
* Certificate Origin: The TLS certificate indicated US origin while primary geo data claimed GB.
The address was listed on one of eight observed DNSBLs. No specific
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Divya Quamara |
| ASN | AS8075 |
| Network Name | cloud |
| CIDR Block | 132.196.0.0/17 |
| RIR | ARIN |
| Country | US |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | 2/2 domains |
| DMARC | 2/2 domains |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Not configured |
| Domains Checked | 2 domains |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | โ |
| 443 | https | tcp | โ |
| Closed Ports | 22, 25, 3389, 8080, 8443 (2 open / 7 scanned) | ||
| Server | Microsoft-IIS/10.0 |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | fe2.update.microsoft.com |
| Valid From | 2026-01-22T20:47:39+00:00 |
| Valid Until | 2027-01-22T20:47:39+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha256RSA |
| Validity Period | 365 days |
| Serial Number | 330000028D431F2E04AD2C43C900000000028D |
| Thumbprint | FEAF9A057ECBDE927A412A3049696E740E6A8E1D |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 36% | 2 | 7 |
| routing | 13% | 1 | 1 |
| services | 33% | 2 | 5 |
| ownership | 27% | 2 | 4 |
| reputation | 27% | 1 | 5 |
| geolocation | 40% | 2 | 7 |
| Overall | 29% | 10 | 29 |
| Data Coherence | Contradictory (48%) โ 3 contradiction(s) |
| Attribution | Very Low (20%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
โ Geo sources disagree on country: US, GB
โ TLS certificate claims US but primary geo says GB
๐ Observation Timeline ๐ Live
| First Seen | 2026-09-02 23:37:24 UTC |
| Last Seen | 2026-09-28 20:47:16 UTC |
| Profile Built | 2026-09-28 20:54:09 UTC |
| Data Freshness | Live |
| Signal Types | 24 |
| Total Observations | 48 |
Full dossier details are available via our API.