Intelligence analysis identified 104.44.19.171 as an endpoint assigned to Microsoft Corporation (AS8075) within the 104.40.0.0/13 block. Geolocation data confirmed the address in Madison, WI, United States. Service scans returned no open ports, indicating a firewalled state with no active services. Risk assessment assigned a Low Risk score of 25, though the threat actor classification labeled the host as Suspicious. The control plane recorded one DNSBL listing, and the subnet neighborhood contained two threat siblings among fifteen active siblings. Observations indicated activity between September 5 and September 23, 2026. A monitoring action was recommended based on the mostly clean neighborhood classification and low severity rating.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Microsoft Corporation |
| ASN | AS8075 |
| Network Name | MSFT |
| CIDR Block | 104.40.0.0/13 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | be6.ibr01.gru30.ntwk.msn.net |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | be6.ibr01.gru30.ntwk.msn.net |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | 0/2 domains |
| DMARC | 0/2 domains |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Present |
| Domains Checked | 2 domains |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 39% | 2 | 11 |
| routing | 30% | 3 | 4 |
| services | 19% | 2 | 2 |
| ownership | 27% | 2 | 4 |
| reputation | 27% | 1 | 7 |
| geolocation | 27% | 2 | 3 |
| Overall | 28% | 12 | 31 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (65%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-09-05 07:09:58 UTC |
| Last Seen | 2026-09-27 08:20:08 UTC |
| Profile Built | 2026-09-27 08:26:24 UTC |
| Data Freshness | Live |
| Signal Types | 27 |
| Total Observations | 49 |
Full dossier details are available via our API.