## IP Intelligence Briefing: 79.72.91.88/32
Classification: Low Risk / Oracle Cloud Infrastructure
IP Overview
The IP address 79.72.91.88 belongs to Oracle Cloud (ASN 31898) and is geolocated to Belfast, Northern Ireland (GB). Risk assessment returned a score of 25/100, indicating low risk. The IP is classified as firewalled with no active services detected, no open ports, and no TLS certificates.
Network Characteristics
- ASN: 31898 (ORCL-MNT)
- Infrastructure Type: Oracle Cloud provider
- Geolocation: Belfast, NIR, GB (coordinates: 55.38°N, -3.44°W)
- BGP Prefix: 79.72.64.0/19
- Route Stability: Stable (route changes in last 30 days: 0)
- RPKI State: Valid
- DNSSEC: Valid
Threat Assessment
The IP shows no threat indicators. No known campaigns, no blacklist entries, and not identified as a Tor exit node, VPN, proxy, or spam source. The abuse confidence score was not populated, and known attacker flags remained negative. Only one DNSBL listing was detected across 8 total checks.
Observation History
Analysis of 23 signal observations revealed consistent Oracle Cloud infrastructure classification. Recent observations from June 26, 2026, confirmed provider identity and geolocation. One historical observation from alienvault-otx noted AS9105 (TalkTalk Communications) association, though current attribution points to Oracle Cloud. The IP is not classified as persistently malicious, with zero threat observation persistence days.
Infrastructure Relationships
The IP maintains 31 relationship entries, all identifying connections to the network "SE-ORACLE-SE-20070619," confirming Oracle Cloud infrastructure placement. No anomalous relationships detected.
Neighborhood Analysis
The /24 subnet (79.72.91.88/24) contains one active sibling IP. Subnet classification is "mostly clean" with an abuse density score of 1. No high or medium-risk neighbors were identified.
Recommended Actions
Based on the low-risk profile and Oracle Cloud infrastructure classification, standard cloud provider monitoring applies. No blocking or firewall rules are recommended at this time. The IP may be whitelisted for legitimate Oracle Cloud traffic.
Status: No immediate action required. Monitor as standard Oracle Cloud infrastructure.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | ORCL-MNT |
| ASN | AS31898 |
| Network Name | โ |
| CIDR Block | 79.72.64.0/19 |
| RIR | RIPE |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 2 | 4 |
| routing | 17% | 2 | 3 |
| services | 12% | 2 | 2 |
| ownership | 22% | 3 | 4 |
| reputation | 24% | 1 | 3 |
| geolocation | 31% | 2 | 3 |
| Overall | 22% | 12 | 19 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-11 15:05:42 UTC |
| Last Seen | 2026-06-27 19:48:33 UTC |
| Profile Built | 2026-06-28 13:53:24 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 27 |
Full dossier details are available via our API.