IPDebrief

158.23.60.168

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING: 158.23.60.168/32

Classification: Low Risk / Cloud Infrastructure

Date: 2026-06-20

Analyst: IPDebrief Intelligence Operations

---

## Executive Summary

IP address 158.23.60.168 is identified as Microsoft Azure cloud infrastructure with a low-risk reputation score of 25. The address shows consistent cloud compute classification, no active threat indicators, and operates within a /24 subnet with minimal abuse density (0.5%). No immediate security action is required based on current intelligence.

---

## Network Ownership & Classification

AttributeValue
ASN8075 (MICROSOFT-APNIC-AS-AP)
OrganizationIRT-MICROSOFT-APNIC-SG
CIDR Block158.23.0.0/16
Infrastructure TypeCloudCompute (Microsoft Azure)
RIRARIN
Registration DateN/A

Control Plane Status: Route stable with 0 changes in 30 days. DNSSEC validation enabled. One DNSBL listing detected among 8 checked lists.

---

## Geolocation Assessment

AttributeValue
Primary CountrySingapore (SG)
Coordinates1.35°N, 103.82°E
TimezoneAsia/Singapore
Geo ConfidenceConsensus: True
Accuracy Radius30km

*Note: Geolocation validation flagged ICMP blocks preventing full RTT validation. Distance anomaly of 9,236km detected, consistent with cloud hosting multi-region deployment patterns.*

---

## Threat Intelligence Profile

Risk Indicators:

Service Exposure:

---

## Neighborhood Analysis

Subnet: 158.23.60.168/24

MetricValue
Abuse Density0.5%
ClassificationMostly Clean
Total Siblings2
Active Siblings1
Threat Siblings1

Neighbor IP: 158.23.60.179

---

## Historical Observations

Total Signals: 17 observations recorded

Observation Period: Through 2026-06-20

Key Temporal Trends:

---

## Relationship Graph

The IP maintains relationships primarily at the network level, with repeated associations to MICROSOFT-APNIC-AS-AP. No external hostname, certificate, or organizational relationships detected beyond the controlling network infrastructure.

---

## Recommended Security Actions

Current Risk Score: 25 (Low)

Actionable Recommendations: None at this time based on current risk profile.

Firewall Rules: Not applicable (cloud infrastructure with no open services)

Operational Guidance:

---

## Assessment

This IP address represents legitimate Microsoft Azure cloud infrastructure with a low-risk profile. The absence of open services, combined with consistent provider identification and minimal neighborhood abuse density, suggests normal cloud hosting operations. SOC analysts should treat inbound connections from this IP as low-priority unless accompanied by other suspicious indicators.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΈπŸ‡¬ Singapore
RegionChiapas
CityQuerétaro
TimezoneAsia/Singapore
Latitude1.35
Longitude103.82

🏒 Ownership & Registration

OrganizationIRT-MICROSOFT-APNIC-SG
ASNAS8075
Network NameMICROSOFT-APNIC-AS-AP
CIDR Block158.23.0.0/16
RIRARIN
CountrySG
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)

πŸ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeFirewalled / No Services
Network TierHosting β€” Infrastructure provider without advanced routing
CloudHosting

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
27%
23
routing
8%
11
services
8%
11
ownership
27%
23
reputation
26%
13
geolocation
33%
23
Overall22%914
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-05-21 02:15:24 UTC
Last Seen2026-06-28 12:58:20 UTC
Profile Built2026-06-29 07:02:11 UTC
Data FreshnessLive
Signal Types17
Total Observations21
πŸ” 17 signal types Β· 21 observations collected
This report is generated from 17+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.