IP Intelligence Briefing: 74.248.129.59
Date: 2023-10-05
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Provider: Microsoft Azure (CloudCompute)
- Geolocation: Warsaw, Poland (52.23°N, 21.01°E)
- Ownership:
- ASN: 8075 (BHM ADSL CBB)
- Subnet: 74.248.128.0/18
- Infrastructure: Cloud-hosted, no residential/mobile indicators
- Threat Indicators: None detected (no malware, C2, or spam associations).
---
**2. Network Behavior**
- Services: No open ports or TLS certificates observed.
- DNS: No PTR records or domain associations.
- Routing: BGP prefix 74.248.0.0/15, route stability flagged as "unstable" (14 hops timed out in traceroute).
- Cloud Context: Likely a virtual machine or cloud instance; no CDN/VPN/proxy indicators.
---
**3. Observation History (Last 90 Days)**
- Activity Trends: Minimal changes; no spikes in DNS, geolocation, or threat signals.
- Validation: ICMP blocked, preventing full geo-validation. Estimated distance to Warsaw: 976 km.
---
**4. Relationships**
- Network Links:
- Same subnet: 74.248.128.0/18 (BLS-74-248-128-0-1003020949).
- No direct links to domains, organizations, or certificates.
---
**5. Subnet Neighborhood**
- Subnet: 74.248.129.59/24
- Abuse Density: 0% (mostly clean).
- Neighbors:
- 74.248.129.192: Risk score 25, authority score 50 (potentially risky sibling).
---
**6. Recommendations**
- Monitor Neighbor: 74.248.129.192 shows higher risk metrics; investigate potential lateral movement or shared compromise.
- Cloud Security: Ensure Azure VM is configured with strict firewall rules and updated security policies.
- Geolocation Verification: Use alternative methods (e.g., DNS probing) to validate location due to ICMP blocking.
Conclusion: 74.248.129.59 appears benign but requires vigilance due to its subnet's mixed risk profile. Prioritize monitoring the neighboring IP and cloud infrastructure health.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | BHM ADSL CBB |
| ASN | AS8075 |
| Network Name | BLS-74-248-128-0-1003020949 |
| CIDR Block | 74.248.128.0/18 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 19% | 2 | 2 |
| reputation | 26% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 20% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:04:34 UTC |
| Last Seen | 2026-06-27 09:22:01 UTC |
| Profile Built | 2026-06-28 03:28:45 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 25 |
Full dossier details are available via our API.