# IP INTELLIGENCE BRIEFING
Target: 172.212.160.76/32
Date: 2026-06-29
Classification: MODERATE RISK
---
## EXECUTIVE SUMMARY
IP 172.212.160.76 is a Microsoft Azure cloud infrastructure endpoint assigned to organization Divya Quamara (ASN 8075). The IP presents moderate risk (score: 50) with no active threat indicators, no open ports, and no services exposed. The subnet maintains low abuse density with two low-risk sibling IPs. No malicious campaigns, blacklists, or persistent threat behavior detected.
---
## OWNERSHIP & INFRASTRUCTURE
| Attribute | Value |
|---|---|
| **ASN** | 8075 (Microsoft Azure) |
| **Organization** | Divya Quamara |
| **Network** | 172.212.0.0/16 |
| **Country** | GB (United Kingdom) |
| **Infrastructure Type** | CloudCompute |
| **ISP/Provider** | Microsoft Azure |
The IP operates within Microsoft Azure cloud infrastructure. No residential, mobile, proxy, or hosting characteristics detected.
---
## RISK PROFILE
- Overall Risk Score: 50 (Moderate Risk)
- Abuse Confidence: Not available
- Blacklist Count: 0
- DNSBL Listed: 2 of 8 total lists
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Threat Indicators: None detected
The IP shows no evidence of active exploitation or malicious use. Risk profile is consistent with legitimate cloud infrastructure operations.
---
## NETWORK SERVICES & DNS
- Open Ports: None
- TLS Certificate: Not available
- HTTP Title: Not available
- PTR Hostnames: None
- Forward Resolution: Confirmed: No
- Hosted Domains: 0
- Email Auth: SPF: No, DMARC: No
No public-facing services or DNS records associated with this IP address.
---
## TEMPORAL ANALYSIS
- Observation Count: 21 historical signals
- Threat Persistence Days: 0
- Ownership Changes: 0
- Is Persistently Malicious: No
Historical data indicates stable ownership and no persistent malicious behavior. Most recent observations recorded 2026-06-29.
---
## SUBNET ANALYSIS (172.212.160.0/24)
- Abuse Density: 0.3333
- Classification: Mostly Clean
- Total Siblings: 3
- Active Siblings: 1
- Threat Siblings: 1
- Inherited Risk: 2
Neighboring IPs:
- 172.212.160.51: Risk Score 25
- 172.212.160.56: Risk Score 25
The subnet exhibits low abuse density with minimal threat correlation.
---
## RELATIONSHIPS
Six relationships detected, all classified as "Same Network" type pointing to cloud infrastructure. No external entity associations, hostnames, or certificate links identified.
---
## CONTROL PLANE
- BGP Prefix: 172.208.0.0/13
- Route Stability: Unstable (isRouteStable: false)
- Route Changes (30d): 0
- DNSSEC Valid: Yes
- Operator Score: 0.1304 (Minimal)
- RPKI State: Not available
- IRR Consistency: Not available
---
## RECOMMENDED ACTIONS
For SOC Analysts:
1. No blocking required โ No active threats or malicious indicators
2. Monitor for service exposure โ Current state shows no open ports; verify if this is expected behavior
3. Review DNSBL listings โ IP appears on 2 of 8 DNSBL lists; investigate if these are false positives
4. Standard cloud traffic logging โ Apply normal Azure traffic monitoring procedures
Firewall Rules (if required):
- No specific blocking rules recommended
- Standard cloud infrastructure monitoring policies apply
---
## CONCLUSION
IP 172.212.160.76 is classified as Microsoft Azure cloud infrastructure with moderate risk scoring due to DNSBL listings and control plane instability. No active threat indicators, open services, or malicious behavior detected. The subnet maintains low abuse density with no significant threat correlation. Recommended for standard cloud traffic monitoring without additional blocking or restrictive measures.
---
Report Generated: 2026-06-29
Source: IPDebrief Intelligence Platform
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Divya Quamara |
| ASN | AS8075 |
| Network Name | cloud |
| CIDR Block | 172.212.0.0/16 |
| RIR | ARIN |
| Country | US |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 19% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 22% | 1 | 3 |
| geolocation | 13% | 1 | 1 |
| Overall | 20% | 9 | 14 |
| Data Coherence | Mostly Consistent (80%) โ 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-06-09 14:17:41 UTC |
| Last Seen | 2026-06-29 18:29:01 UTC |
| Profile Built | 2026-06-29 18:30:57 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 20 |
Full dossier details are available via our API.