# IP Intelligence Briefing: 172.202.89.32/32
## Executive Summary
IP 172.202.89.32 is a Microsoft Azure cloud infrastructure endpoint located in Des Moines, Iowa with a low-risk reputation score of 25. No active threat indicators were observed, though the subnet (172.202.89.0/24) contains one threat-sibling IP. The IP is firewalled with no open services or DNS reverse resolution.
## Infrastructure Profile
- IP Address: 172.202.89.32
- ASN: 8075 (Microsoft Azure)
- Organization: Divya Quamara
- Geolocation: United States, Iowa, Des Moines (41.6°N, 93.61°W)
- Infrastructure Type: Cloud compute (Microsoft Azure)
- Risk Score: 25/100 (Low Risk)
## Threat Indicators
- Abuse Confidence Score: Not applicable
- Blacklist Count: 0
- Known Attacker: False
- Tor Exit Node: False
- Spam Source: False
- Known Campaigns: None detected
- DNSBL Listings: 1/8 total lists
## Network Services
- Open Ports: None detected
- TLS Certificate: None
- HTTP Title: None
- Connection Type: Firewalled / No services responding
- Forward DNS Resolution: Not confirmed
## Historical Observations
Analysis of 21 historical observations reveals consistent cloud infrastructure classification with Microsoft Azure provider identification. Recent signals (June 2026) maintain the same risk posture. Geolocation validation experienced ICMP blocking, though coordinates appear plausible. Certificate queries returned empty results. The IP has not demonstrated persistent malicious behavior over the observation period.
## Relationship Graph
The relationship graph identifies 23 connections, all classified as "Same Network" relationships pointing to cloud infrastructure. No hostname, organization, or certificate relationships were discovered.
## Neighborhood Analysis (172.202.89.0/24)
- Subnet Classification: Mostly clean
- Abuse Density: 1
- Total Siblings: 1
- Active Siblings: 1
- Threat Siblings: 1
- Risk Distribution: Low (0), Medium (0), High (0)
## Security Recommendations
1. Monitoring: No immediate blocking required; IP maintains low-risk classification
2. Subnet Context: Investigate the single threat-sibling IP within 172.202.89.0/24 if observed in threat traffic
3. Traffic Patterns: Monitor for any service openings or DNS resolution attempts
4. Cloud Infrastructure: Recognize this as legitimate Azure infrastructure; apply cloud-specific logging and monitoring
5. DNSBL Review: Verify the single DNSBL listing if traffic patterns warrant scrutiny
## Conclusion
IP 172.202.89.32 represents a low-risk Microsoft Azure cloud endpoint with no active threat indicators. The subnet contains one threat-sibling IP that warrants contextual awareness but does not elevate the risk profile of this specific address. Continue standard cloud traffic monitoring procedures.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Divya Quamara |
| ASN | AS8075 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 22% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-14 07:13:25 UTC |
| Last Seen | 2026-06-28 00:23:37 UTC |
| Profile Built | 2026-06-28 18:31:16 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 24 |
Full dossier details are available via our API.