IP INTELLIGENCE BRIEFING: 172.174.198.67/32
Classification: LOW RISK β Cloud Infrastructure Asset
---
EXECUTIVE SUMMARY
IP 172.174.198.67 is a low-risk (score: 25) Microsoft Azure cloud compute instance located in Virginia, US. The asset demonstrates stable cloud infrastructure characteristics with no active malicious indicators. One DNSBL listing and one threat sibling in the /24 subnet warrant monitoring.
---
OWNERSHIP & INFRASTRUCTURE
- ASN: 8075 (Microsoft Azure)
- Organization: Divya Quamara
- Network: cloud (172.174.0.0/16)
- Infrastructure Type: CloudCompute
- Location: Virginia, US (37.37°N, -79.46°W)
- Registration: RIR: ARIN
- Service Purpose: Firewalled / No Services
---
THREAT ASSESSMENT
- Risk Score: 25/100 (Low Risk)
- Threat Indicators: None detected
- Blacklist Count: 0 (DNSBL listed on 1 of 8 lists)
- Known Campaigns: None
- Is Known Attacker: False
- Is Spam Source: False
- Is Tor Exit/Proxy/VPN: False
- Historical Threat Observations: 1 (not persistently malicious)
---
NETWORK BEHAVIOR
- Open Ports: None detected
- DNS Resolution: No forward resolution / No PTR records
- Hosted Domains: 0
- TLS/HTTP Services: No active services
- Route Stability: Unstable (0 route changes in 30 days)
- Operator Score: 0.1304 (Minimal)
---
RELATIONSHIP GRAPH
- Total Relationships: 15
- Connection Type: Same Network (cloud network)
- Campaign Correlation: 0
- Cert Matches: 0
---
NEIGHBORHOOD ANALYSIS (172.174.198.0/24)
- Abuse Density: 1 (Low)
- Classification: Mostly Clean
- Total Siblings: 1
- Active Siblings: 1
- Threat Siblings: 1 (requires monitoring)
- Inherited Risk: 2
---
HISTORY TIMELINE
- Total Observations: 18
- Most Recent: 2026-06-20 23:28:35 UTC
- Geolocation Consistency: Stable (Virginia, US)
- Ownership Changes: 0
- Threat Persistence: None
---
RECOMMENDED ACTIONS
- Classification: Allow with monitoring
- Firewall Rules: No specific rules recommended (low risk)
- Monitoring Priority: Medium (cloud asset with 1 threat sibling)
- Block Recommendation: Not required
- Investigate: Monitor threat sibling in /24 subnet
---
SOC NOTES
This IP represents standard Microsoft Azure cloud infrastructure. The absence of open ports, services, or active threat indicators indicates legitimate cloud usage. The single DNSBL listing and neighborhood threat sibling suggest potential upstream or adjacent infrastructure issues but do not indicate active compromise of this specific IP. Maintain monitoring but no immediate action required.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Divya Quamara |
| ASN | AS8075 |
| Network Name | cloud |
| CIDR Block | 172.174.0.0/16 |
| RIR | ARIN |
| Country | US |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 42% | 2 | 5 |
| routing | 8% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 34% | 2 | 3 |
| Overall | 25% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-25 12:41:48 UTC |
| Last Seen | 2026-06-29 01:34:50 UTC |
| Profile Built | 2026-06-29 07:37:00 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 22 |
Full dossier details are available via our API.