# IP INTELLIGENCE BRIEFING
Target: 135.225.181.171/32
Classification: Cloud Infrastructure (Microsoft Azure)
Risk Level: LOW (Score: 25/100)
Date of Analysis: 2026-06-19
---
## EXECUTIVE SUMMARY
IP 135.225.181.171 is a Microsoft Azure cloud compute instance located in Stockholm, Sweden (ASN 8075). The address exhibits minimal threat indicators with no known malicious activity. The IP shows stable characteristics over the observation period with no ownership changes or persistent malicious behavior detected.
---
## INFRASTRUCTURE PROFILE
| Attribute | Value |
|---|---|
| **Risk Score** | 25 (Low Risk) |
| **Provider** | Microsoft Azure (ASN 8075) |
| **Organization** | Divya Quamara |
| **Location** | Stockholm, AB, Sweden (SE) |
| **Infrastructure Type** | CloudCompute |
| **CIDR Block** | 135.224.0.0/15 |
| **Network Role** | Cloud / Hosting |
| **Services** | No open ports detected |
| **DNSSEC** | Valid |
---
## THREAT INDICATORS
- Blacklist Status: Not blacklisted (0/0 lists)
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Campaign Affiliation: None detected
- Threat Persistence: 0 days (no persistent activity)
- Abuse Confidence Score: Not applicable (insufficient data)
---
## NETWORK NEIGHBORHOOD ANALYSIS
Subnet: 135.225.181.0/24
Abuse Density: 0% (Low)
Classification: Mostly Clean
Neighbor Risk Distribution:
- High Risk: 0 (0%)
- Medium Risk: 2 (22.2%)
- Low Risk: 7 (77.8%)
Notable Neighbors:
- 135.225.181.175: Risk Score 25 (Moderate)
- 135.225.181.165, 135.225.181.167: Risk Score 50
The target IP shares a subnet with minimal overall threat density. One threat sibling (135.225.181.175) warrants monitoring but does not indicate correlated malicious activity.
---
## OBSERVATION HISTORY
Total Observations: 20
Most Recent: 2026-06-19T21:55:45 UTC
Previous Observation: 2026-06-14T22:04:14 UTC
Ownership Changes: 0
Is Persistently Malicious: No
The IP demonstrates stable behavior with consistent risk scoring (0.1304 operator score) across observation periods. No degradation in signal quality or emerging threat patterns observed.
---
## RELATIONSHIP GRAPH
Total Relationships: 20
Type: Same Network (Cloud Infrastructure)
All identified relationships map to cloud network entities, confirming the IP operates within Microsoft Azure's cloud infrastructure. No external organizational or hostname associations detected.
---
## RECOMMENDED ACTIONS
Risk-Based Recommendation: NO IMMEDIATE ACTION REQUIRED
Firewall Rules: None recommended
Monitoring Level: Standard monitoring appropriate
Actionable Guidance:
- No blocking or rate-limiting rules recommended at this time
- Maintain standard cloud infrastructure monitoring procedures
- Monitor associated subnet 135.225.181.0/24 for any emerging threat patterns
- Continue baseline observation for Microsoft Azure cloud assets
---
## SOC ANALYST NOTES
This IP represents legitimate cloud infrastructure with a low-risk profile. The absence of open ports, lack of threat indicators, and clean blacklist status support classification as benign. The neighborhood context indicates minimal threat density within the subnet. Continue standard monitoring; no escalation or blocking actions warranted.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Divya Quamara |
| ASN | AS8075 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 29% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 31% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 23% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-14 01:08:28 UTC |
| Last Seen | 2026-06-28 00:01:38 UTC |
| Profile Built | 2026-06-28 18:07:09 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 22 |
Full dossier details are available via our API.