# IP Intelligence Briefing: 172.202.26.56/32
Classification: Low Risk | Provider: Microsoft Azure | Risk Score: 25
## Executive Summary
IP 172.202.26.56 is a Microsoft Azure cloud compute infrastructure endpoint with a low overall risk profile (score: 25). The address is located within the 172.202.0.0/16 Microsoft cloud network block, geolocated to Des Moines, IA, United States. No active threat indicators, open ports, or malicious activity were observed during analysis.
## Technical Profile
- ASN: 8075 (Microsoft Azure)
- Network Block: 172.202.0.0/16 (Microsoft cloud infrastructure)
- Infrastructure Type: CloudCompute
- Geolocation: Des Moines, IA, US (America/Chicago timezone)
- DNS Status: No PTR hostnames; forward resolution unavailable
- Service Status: No open ports detected; firewalled/no services exposed
- TLS/HTTP: No certificates, banners, or service signatures detected
## Threat Assessment
- Abuse Confidence: Not applicable (cloud infrastructure)
- Blacklist Count: 0
- Known Campaigns: None identified
- Tor Exit/Proxy: No
- Threat Feeds: No matches
- Control Plane: Route stability flagged as unstable; RPKI validation state unknown
## Historical Observations
Analysis of 18 observation signals revealed:
- Most Recent (2026-06-21): Operator score 0.1304, labeled "Minimal" risk
- Subnet Analysis (2026-06-16): Subnet 172.202.26.56/24 classified as "mostly_clean" with abuse density rating of 1
- Ownership: No ownership changes detected; threat persistence days: 0
- Stability: Not classified as persistently malicious
## Neighborhood Analysis
Subnet 172.202.26.56/24 assessment:
- Abuse Density: 0
- Risk Distribution: No high/medium risk neighbors
- Threat Siblings: 1 threat sibling identified in subnet
- Active Siblings: 0
- Classification: mostly_clean
## Network Relationships
Twelve "Same Network" relationships identified, all targeting the Microsoft cloud network infrastructure. No external organization or hostname associations beyond the cloud provider network.
## Recommended Actions
No firewall rules or mitigation recommendations generated. The IP presents minimal threat risk to defensive operations. Standard cloud infrastructure monitoring applies.
---
Intelligence Source: IPDebrief Platform | Analysis Date: 2026-06-21
Status: No immediate action required. Continue standard cloud infrastructure monitoring.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Divya Quamara |
| ASN | AS8075 |
| Network Name | cloud |
| CIDR Block | 172.202.0.0/16 |
| RIR | ARIN |
| Country | US |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 19% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 22% | 1 | 3 |
| geolocation | 19% | 2 | 2 |
| Overall | 21% | 10 | 15 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-31 23:33:39 UTC |
| Last Seen | 2026-06-29 09:01:42 UTC |
| Profile Built | 2026-06-29 09:09:16 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 19 |
Full dossier details are available via our API.