# IP Intelligence Briefing: 158.158.114.84/32
Classification: Low Risk Cloud Infrastructure
Date: 2026-06-26
Analyst: IPDebrief Intelligence
---
## Executive Summary
IP 158.158.114.84 is a Microsoft Azure cloud compute endpoint with a low-risk profile (risk score: 25). The address is part of the Microsoft APNIC-AP network block (158.158.0.0/16) and is geolocated to Madrid, Spain. No malicious indicators, known campaigns, or blacklist entries were detected. The IP shows consistent cloud infrastructure characteristics with no evidence of abuse.
---
## Infrastructure Profile
| Attribute | Value |
|---|---|
| **ASN** | 8075 (Microsoft Azure) |
| **Organization** | IRT-MICROSOFT-APNIC-SG |
| **Network Block** | 158.158.0.0/16 |
| **Geolocation** | Madrid, Spain (ES) |
| **Infrastructure Type** | Cloud Compute |
| **Services Detected** | None (Firewalled/No Services) |
| **DNS Records** | No PTR hostnames, no reverse resolution |
---
## Threat Assessment
- Reputation Status: Low Risk
- Abuse Confidence Score: N/A
- Blacklist Count: 0
- Known Campaigns: None
- Tor/Proxy/VPN: No
- Hosting Status: Yes (Microsoft Azure)
Threat Indicators: No active threat indicators present. The IP is not flagged as a known attacker, spam source, or Tor exit node.
---
## Neighborhood Analysis
The /24 subnet (158.158.114.0/24) exhibits minimal abuse characteristics:
- Abuse Density: 0 (clean)
- Classification: Mostly clean
- Neighbor Count: 1 active sibling (158.158.114.211, risk score: 25)
- Risk Distribution: 1 low risk, 0 medium/high
The subnet shows low inherited risk (score: 5) and no concentration of malicious activity.
---
## Historical Observation Trends
Analysis of 25 signal observations reveals:
- Stability: No ownership changes detected
- Recent Classification: Subnet classified as "clean" (2026-06-26)
- Infrastructure Consistency: Persistent Microsoft Azure cloud compute classification
- Geolocation Consistency: Madrid, Spain maintained across observations
- Operator Score: 0.2174 (Minimal)
The IP has demonstrated persistent low-risk behavior with no escalation of threat signals over time.
---
## Relationship Mapping
26 relationships identified, all associated with the Microsoft APNIC-AP network block (MICROSOFT-APNIC-AP). No external organization, hostname, certificate, or campaign relationships detected.
---
## Recommended Actions
Security Posture: No immediate action required.
Firewall Recommendations: None generated. The IP is classified as low-risk cloud infrastructure.
Monitoring Guidance:
- Monitor for changes in infrastructure classification
- Track neighborhood abuse density for subnet-level anomalies
- No blocking or rate-limiting recommended
---
Conclusion: IP 158.158.114.84 represents standard Microsoft Azure cloud infrastructure with no malicious indicators. SOC analysts may treat as benign traffic from a legitimate cloud service provider. No blocking or restrictive measures are warranted based on current intelligence.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IRT-MICROSOFT-APNIC-SG |
| ASN | AS8075 |
| Network Name | MICROSOFT-APNIC-AP |
| CIDR Block | 158.158.0.0/16 |
| RIR | ARIN |
| Country | SG |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 26% | 2 | 4 |
| routing | 24% | 2 | 3 |
| services | 12% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 30% | 2 | 3 |
| Overall | 24% | 11 | 18 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:03:49 UTC |
| Last Seen | 2026-06-27 00:46:52 UTC |
| Profile Built | 2026-06-27 14:59:56 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 30 |
Full dossier details are available via our API.