IP INTELLIGENCE BRIEFING
IP Address: 172.184.213.160/32
Classification: Moderate Risk (Score: 50)
Report Date: 2026-06-16
---
**EXECUTIVE SUMMARY**
IP 172.184.213.160 is a Microsoft Azure cloud infrastructure address associated with ASN 8075 (Divya Quamara). The IP demonstrates moderate risk characteristics with no active threat indicators, no blacklist presence, and no known malicious campaigns. The IP is classified as cloud compute infrastructure with firewalled services and no open ports observed.
**OWNERSHIP & GEOLOCATION**
- Organization: Divya Quamara
- ASN: 8075 (Microsoft Azure)
- Location: Redmond, WA, US (ARIN)
- CIDR Block: 172.184.0.0/16
- Infrastructure Type: CloudCompute / Cloud Hosting
**RISK INDICATORS**
| Indicator | Status |
|---|---|
| Risk Score | 50 / 100 (Moderate) |
| Abuse Confidence | Not detected |
| Blacklist Count | 0 |
| Known Attacker | False |
| Spam Source | False |
| Tor Exit Node | False |
| DNSBL Listed | 2 of 8 lists |
**THREAT PROFILE**
- Threat Indicators: None detected
- Known Campaigns: None
- Threat Persistence: 0 days
- Persistent Malicious Activity: False
- Abuse Confidence Score: Not assigned
**NETWORK CONTEXT**
The IP resides in a /24 subnet (172.184.213.0/24) with:
- Abuse Density: 0.4 (40% moderate)
- Subnet Classification: Mostly Clean
- Active Siblings: 3 of 5 total
- Threat Siblings: 2
Neighbor Risk Distribution:
- High Risk: 0
- Medium Risk: 1
- Low Risk: 3
**SERVICES & DNS**
- Open Ports: None (Firewalled)
- DNS Resolution: None (No PTR records)
- Hosted Domains: 0
- Email Authentication: SPF/DMARC not configured
- HTTP Services: None detected
**OBSERVATION HISTORY**
Fourteen observations recorded through 2026-06-16. Signals indicate stable ownership with no recent changes. Geolocation inferences consistently point to US territory with moderate confidence levels. No escalation in threat signals observed over time.
**RELATIONSHIPS**
Three network-level relationships identified, all associated with the "cloud" network designation. No external entity associations detected.
**RECOMMENDED ACTIONS**
Based on risk profile, the following controls are recommended:
Firewall/IPS Rules:
- `iptables -A INPUT -s 172.184.213.160 -j DROP`
- `nft add rule inet filter input ip saddr 172.184.213.160 drop`
WAF Configuration:
- Cloudflare WAF: Block IP with expression `ip.src eq 172.184.213.160`
- AWS WAF: Add IP address 172.184.213.160/32 to blocklist
Notes:
- This is a cloud infrastructure IP with no active services exposed
- Consider risk tolerance before implementing blocking rules
- Monitor for any changes in threat indicators or behavior
**CONCLUSION**
IP 172.184.213.160 presents moderate risk but lacks active threat indicators. The IP is Microsoft Azure cloud infrastructure with firewalled services. While not actively malicious, the moderate risk score and presence of DNSBL listings warrant monitoring. Recommended action is optional blocking if the IP is not legitimately required for business operations.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Divya Quamara |
| ASN | AS8075 |
| Network Name | cloud |
| CIDR Block | 172.184.0.0/16 |
| RIR | ARIN |
| Country | US |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 2 |
| routing | 17% | 1 | 1 |
| services | 17% | 1 | 1 |
| ownership | 35% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 17% | 1 | 1 |
| Overall | 21% | 8 | 10 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-06-14 23:36:03 UTC |
| Last Seen | 2026-06-21 22:30:02 UTC |
| Profile Built | 2026-06-21 23:00:32 UTC |
| Data Freshness | Live |
| Signal Types | 16 |
| Total Observations | 17 |
Full dossier details are available via our API.