# IP Intelligence Briefing: 172.213.218.74/32
Classification: Cloud Infrastructure / Low Risk
Date: 2026-08-13
Risk Score: 25 (Low Risk)
## Executive Summary
IP address 172.213.218.74 is identified as a Microsoft Azure cloud compute infrastructure endpoint located in Milan, Italy (ASN 8075). The IP presents a low-risk profile with no active threat indicators, no open services, and no blacklist associations. The subnet exhibits zero abuse density with all neighboring IPs showing comparable risk scores.
## Infrastructure Profile
| Attribute | Value |
|---|---|
| **Organization** | Divya Quamara |
| **Network** | cloud |
| **ASN** | 8075 |
| **Geolocation** | Milan, Italy (45.46°N, 9.19°E) |
| **Infrastructure Type** | CloudCompute |
| **ISP Classification** | Microsoft Azure |
## Threat Assessment
- Risk Score: 25 (Low Risk)
- Abuse Confidence Score: None
- Blacklist Count: 0
- Threat Indicators: None detected
- Known Campaigns: None
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
## Network Behavior
- Open Ports: None detected
- DNS Resolution: No forward resolution
- PTR Records: None
- HTTPS/TLS: No certificate detected
- Service Banner: No services active
Network Role: The IP operates as cloud compute infrastructure with "Firewalled / No Services" status. No active services are exposed to the public internet.
## Neighborhood Analysis
Subnet: 172.213.218.0/24
- Abuse Density: 0% (Clean)
- Total Siblings: 3
- Active Siblings: 2
- Threat Siblings: 0
- Risk Distribution: 2 Low Risk, 0 Medium/High Risk
Neighboring IPs (172.213.218.42, 172.213.218.62) exhibit identical risk scores (25), indicating consistent cloud infrastructure behavior across the subnet.
## Observation History
- Total Observations: 22 signals
- Recent Activity: August 13, 2026
- Threat Persistence: 0 days
- Persistent Malicious Behavior: No
- Ownership Changes: 0
Geolocation signals show some variance (Boston, US vs. Milan, IT), typical of cloud infrastructure with multiple routing paths and CDN edge locations.
## Relationships
- Connected Networks: 8 relationships to "cloud" network prefix
- Associated Entities: All indicate same-network cloud infrastructure
## Recommended Actions
Based on the low-risk profile and cloud infrastructure classification:
1. Allow โ No blocking recommended. This is legitimate Microsoft Azure infrastructure.
2. Monitor โ Standard monitoring applies for cloud endpoints.
3. No Firewall Rules โ No specific iptables/nftables/Cloudflare rules recommended.
## Intelligence Notes
This IP represents Microsoft Azure's cloud compute infrastructure. The IP has no active services exposed, no threat indicators, and is part of a clean subnet with consistent risk characteristics across neighboring addresses. SOC teams should treat this as benign cloud infrastructure with standard monitoring procedures.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Divya Quamara |
| ASN | AS8075 |
| Network Name | cloud |
| CIDR Block | 172.213.0.0/16 |
| RIR | ARIN |
| Country | IT |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 40% | 2 | 3 |
| routing | 17% | 1 | 1 |
| services | 24% | 2 | 2 |
| ownership | 38% | 2 | 4 |
| reputation | 32% | 1 | 3 |
| geolocation | 35% | 2 | 3 |
| Overall | 31% | 10 | 16 |
| Data Coherence | Mostly Consistent (80%) โ 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-08-03 17:30:19 UTC |
| Last Seen | 2026-08-13 05:11:34 UTC |
| Profile Built | 2026-08-13 05:22:52 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 22 |
Full dossier details are available via our API.