IP INTELLIGENCE BRIEFING
Target: 135.119.96.68/32
Classification: Moderate Risk / Microsoft Azure Cloud Infrastructure
---
EXECUTIVE SUMMARY
IP address 135.119.96.68 resolves to Microsoft Azure cloud infrastructure (ASN 8075) with a current risk score of 40/100. The IP is associated with stretchoid.com DNS infrastructure and shows no active threat indicators. Historical analysis reveals temporal risk variation between moderate (0.56) and minimal (0.22) operator scores over the observation period.
---
TECHNICAL PROFILE
Network Ownership & Infrastructure:
- ASN: 8075 (Microsoft Azure)
- Geolocation: Des Moines, IA, US (41.6°N, -93.61°W)
- CIDR Block: 135.119.0.0/16
- Infrastructure Type: CloudCompute / Cloud Provider
- BGP Prefix: 135.119.0.0/16 (Route stable, no recent changes)
DNS Resolution:
- PTR Hostname: azpdcgzazze3.stretchoid.com
- Forward Resolution: 135.119.96.68 β azpdcgzazqe3.stretchoid.com (confirmed)
- Domain: stretchoid.com
- Email Auth: No SPF/DMARC records configured
Services & Ports:
- Open Ports: None detected
- Service Status: Firewalled / No Services
- TLS Certificate: Not detected
---
THREAT INTELLIGENCE
Current Threat Posture:
- Risk Score: 40 (Moderate)
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Blacklist Count: 0
- Abuse Confidence Score: Not available
Historical Risk Trend (24 observations):
- Most Recent (2026-06-27): Minimal risk (Operator Score: 0.22)
- Previous (2026-06-19): Moderate risk (Operator Score: 0.57)
- Assessment: Risk decreased over observation period; no persistent malicious behavior detected
---
NEIGHBORHOOD ANALYSIS
- Subnet: 135.119.96.68/24
- Abuse Density: 0 (Low)
- Threat Siblings: 1
- Active Siblings: 1
- Classification: Mostly Clean
- Inherited Risk: 2
Relationship Graph:
- 40 total relationships identified
- Primary associations: DNS hostname (azpdcgzazqe3.stretchoid.com), Cloud network classification
---
RECOMMENDED ACTIONS
Based on risk score and infrastructure analysis, the following defensive measures are recommended:
Firewall Rules:
```bash
# iptables
iptables -A INPUT -s 135.119.96.68 -j DROP
# nftables
nft add rule inet filter input ip saddr 135.119.96.68 drop
# pfSense
135.119.96.68/32
```
WAF/Cloud Security:
- Cloudflare WAF: Block 135.119.96.68 (Risk: 40)
- AWS WAF: Block 135.119.96.68/32
- nginx: deny 135.119.96.68
RISK MITIGATION NOTES:
- IP is Microsoft Azure cloud infrastructureβfalse positive risk exists
- No active services detected (firewalled state)
- Consider contextual analysis before blocking: verify if IP is associated with legitimate cloud workloads
- Monitor for emerging threat indicators in subsequent observation cycles
---
INTELLIGENCE CONFIDENCE
Data sourced from 7+ threat intelligence sources. Risk assessment based on current signal analysis. Recommend periodic re-evaluation if this IP appears in malicious activity reports.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Divya Quamara |
| ASN | AS8075 |
| Network Name | β |
| CIDR Block | 135.119.0.0/16 |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | azpdcgzazqe3.stretchoid.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | azpdcgzazqe3.stretchoid.com |
π DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 37% | 2 | 5 |
| routing | 24% | 2 | 3 |
| services | 12% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 37% | 2 | 3 |
| Overall | 27% | 11 | 19 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-13 12:11:42 UTC |
| Last Seen | 2026-06-27 23:02:27 UTC |
| Profile Built | 2026-06-28 23:07:16 UTC |
| Data Freshness | Live |
| Signal Types | 24 |
| Total Observations | 30 |
Full dossier details are available via our API.