IPDebrief

13.107.137.11

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING: 13.107.137.11/32

Classification: LOW RISK

Date: 2026-06-26

Analyst: IPDebrief Intelligence Team

---

## EXECUTIVE SUMMARY

IP address 13.107.137.11 is identified as Microsoft Corporation cloud infrastructure within the Microsoft Azure network. The IP presents a LOW RISK profile (risk score: 25/100) with no active threat indicators. The address is part of a clean subnet (13.107.137.0/24) with zero abuse density and no neighboring threat activity.

---

## OWNERSHIP & INFRASTRUCTURE

AttributeValue
OrganizationMicrosoft Corporation
ASN8068
CountryUnited States (WA)
CityRedmond
Infrastructure TypeCloudCompute
Network RoleWeb Server / Hosting
ASN ClassificationMicrosoft Azure

---

## THREAT ASSESSMENT

Current Risk Score: 25 (LOW)

Threat Indicators:

DNSBL Status: 1 listing out of 8 total lists (requires context)

---

## NETWORK CHARACTERISTICS

Services:

TLS Certificate:

Control Plane:

---

## NEIGHBORHOOD ANALYSIS

Subnet: 13.107.137.0/24

MetricValue
Abuse Density0 (Clean)
Total Siblings1
Active Siblings1
Threat Siblings0

Risk Distribution: No high-risk or medium-risk neighbors detected.

---

## OBSERVATION HISTORY

Total Observations: 34 signals

Key Historical Signals:

Temporal Analysis: No persistent malicious activity detected. Threat observation count: 1. Ownership has remained stable with no changes recorded.

---

## RELATIONSHIP GRAPH

Total Relationships: 36

Network Associations: 36 "Same Network" relationships pointing to Microsoft (MSFT) infrastructure. Indicates consistent Microsoft Azure network allocation.

---

## GEOLOCATION VALIDATION

Validation Status: ⚠️ ANOMALY DETECTED

*Note: Geolocation validation shows discrepancies typical of anycast cloud infrastructure deployments.*

---

## SECURITY RECOMMENDATIONS

Action Level: LOW (No immediate action required)

Recommended Actions: None

Firewall Rules: Not generated (low risk profile)

---

## INTELLIGENCE NARRATIVE

The IP address 13.107.137.11 operates as legitimate Microsoft Azure cloud infrastructure. Historical analysis confirms consistent cloud hosting behavior with no escalation in risk profile over time. The subnet exhibits clean classification with no abuse activity. The single DNSBL listing requires contextual review but does not indicate active malicious use.

Recommended SOC Action: Monitor for behavioral changes. Standard allow policies for Microsoft Azure traffic may apply. No threat intelligence indicators suggest blocking is warranted.

---

Report Generated: IPDebrief Intelligence Platform

Data Sources: 20+ threat feeds, network scanning, BGP routing data

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionWA
CityRedmond
TimezoneAmerica/Los_Angeles
Latitude47.67
Longitude-122.12

🏒 Ownership & Registration

OrganizationMicrosoft Corporation
ASNAS8068
Network Nameβ€”
CIDR Block13.107.137.0/24
RIRARIN
Countryβ€”
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)

πŸ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeWeb Server
Network TierTier 3 β€” Basic operator with some routing infrastructure
CloudHosting

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpβ€”
443httpstcpβ€”
Closed Ports22, 25, 3389, 8080, 8443 (2 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
CN=*.azureedge.net, O=Microsoft Corporation, L=Redmond, S=WA, C=US
Issued by CN=Microsoft TLS G2 RSA CA OCSP 02, O=Microsoft Corporation, C=US
Self-signed: No
SANs*.azureedge.net
Valid From2026-04-29T14:37:00+00:00
Valid Until2026-10-26T14:37:00+00:00
TLS ProtocolTls13
Cipher SuiteTLS_AES_256_GCM_SHA384
Signature Algorithmsha384RSA
Validity Period180 days
Serial Number41001EC69FE4DF6599BEB07B930000001EC69F
Thumbprint7A8322861B02345E8C0C0EF46CF1EFAD72A0EBBC

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
20%
24
routing
24%
45
services
25%
23
ownership
22%
34
reputation
24%
13
geolocation
27%
23
Overall23%1422
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceMostly Consistent (80%) β€” 1 contradiction(s)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Claimed geolocation contradicts RTT physics measurement

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-05-11 02:30:54 UTC
Last Seen2026-06-27 18:43:10 UTC
Profile Built2026-06-28 12:49:39 UTC
Data FreshnessLive
Signal Types33
Total Observations37
πŸ” 33 signal types Β· 37 observations collected
This report is generated from 33+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.