IP Intelligence Briefing: 74.7.227.173
Date: 2026-06-11
---
**1. Core Profile**
- Risk Score: Moderate (50/100)
- Provider: Microsoft Azure (Cloud Compute)
- Ownership:
- ASN: 8075
- Organization: Divya Quamara (arin-registered)
- Subnet: 74.7.128.0/17
- Geolocation:
- City: Redmond, WA, US
- Latitude: 47.6062° N, Longitude: -122.3321° W
- Timezone: Pacific Standard Time (PST)
---
**2. Threat & Network Behavior**
- Threat Indicators:
- No malicious indicators, abuse confidence score, or blacklist entries.
- Not linked to Tor, known attackers, or spam sources.
- Network Role:
- Cloud-hosted infrastructure (Azure).
- No open ports, TLS certs, or HTTP services detected.
- BGP prefix: 74.7.0.0/16 (stable, no route changes in 30 days).
- DNS & Email:
- No PTR records, SPF/DKIM/DMARC configurations, or email-related risks.
---
**3. Observation History**
- Recent Activity (2026-06-11):
- Subnet abuse density: 0.33 (mixed risk classification).
- DNSSEC validation: Valid.
- 2 DNSBL listings (out of 8 monitored lists).
- Temporal Trends:
- No persistent malicious behavior or ownership changes.
- Threat observation count: 0.
---
**4. Relationships & Neighborhood**
- Connected Entities:
- Linked to Azure cloud infrastructure (multiple "Same Network" relationships).
- Subnet Analysis (74.7.227.173/24):
- Total IPs: 256
- Abuse density: 0.25 (mostly clean, 1 threat sibling).
- High-risk neighbor: 74.7.227.17 (risk score: 55).
- Other neighbors: 4 low-risk IPs (avg. score: 25).
---
**5. Recommendations**
- SOC Actions:
- Monitor the 74.7.227.17 neighbor for potential anomalies.
- Allow traffic to the IP as it is part of legitimate Azure infrastructure.
- Check for subnet-level threats (e.g., 74.7.227.0/24) in SIEM logs.
- Firewall Rules:
- No immediate blocking required.
- Consider rate-limiting or anomaly detection for the subnet.
---
Conclusion:
The IP is a legitimate Microsoft Azure cloud instance with no direct malicious indicators. However, its subnet shows moderate abuse density, warranting closer monitoring. No immediate action is required, but contextualize activity against Azure's infrastructure norms.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Divya Quamara |
| ASN | AS8075 |
| Network Name | cloud |
| CIDR Block | 74.7.128.0/17 |
| RIR | ARIN |
| Country | US |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 8% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 13% | 1 | 2 |
| geolocation | 27% | 2 | 2 |
| Overall | 20% | 10 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-26 18:58:18 UTC |
| Last Seen | 2026-06-29 03:26:56 UTC |
| Profile Built | 2026-06-29 03:33:10 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 19 |
Full dossier details are available via our API.