# IP INTELLIGENCE BRIEFING
Target: 13.89.125.25/32
Classification: Low Risk Cloud Infrastructure
Date: 2026-07-30
## EXECUTIVE SUMMARY
The target IP 13.89.125.25 is identified as Microsoft Azure cloud infrastructure with a low risk profile (Risk Score: 25). The IP belongs to Microsoft Corporation (ASN: 8075, CIDR: 13.64.0.0/11) and is geolocated to Boston, MA. No active threat indicators, blacklist entries, or known malicious campaigns were detected.
## NETWORK OWNERSHIP & CLASSIFICATION
| Attribute | Value |
|---|---|
| Organization | Microsoft Corporation |
| ASN | 8075 (MSFT) |
| CIDR Block | 13.64.0.0/11 |
| RIR | ARIN |
| Network Role | CloudCompute (Microsoft Azure) |
| Infrastructure Type | Cloud Infrastructure |
## GEOLOCATION & TRAFFIC FINGERPRINT
- Country/Region: United States (US-MA, Boston)
- Timezone: America/New_York
- Network Classification: Cloud, Hosting-enabled
- Not Classified As: CDN, VPN, Proxy, Tor, Mobile, Residential
- BGP Origin: 13.64.0.0/11
- Control Plane: Route stable (false), DNSSEC valid, CAA present
## THREAT INTELLIGENCE INDICATORS
- Risk Score: 25/100 (Low)
- Abuse Confidence Score: Not applicable
- Blacklist Count: 0
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Threat Feeds: None detected
- Known Campaigns: None correlated
## DNS & SERVICE ANALYSIS
- PTR Record: azpdcso0lqy8.stretchoid.com
- Forward Resolution: Confirmed to stretchoid.com
- Open Ports: None detected
- TLS Certificate: None
- HTTP Service: None
- Email Authentication: SPF/DMARC not configured (not applicable for Azure infrastructure)
- DNSBL Listings: 1/8 total lists (likely false positive for Microsoft Azure)
## NEIGHBORHOOD ANALYSIS (13.89.125.0/24)
- Subnet Classification: Mostly clean
- Abuse Density: 17.65%
- Total Siblings: 17
- Active Siblings: 11
- Threat Siblings: 3
- Risk Distribution: 0 High / 2 Medium / 13 Low
- Inherited Risk Score: 7
Key neighbor observations:
- 13.89.125.229: Risk Score 40 (elevated)
- 13.89.125.253: Risk Score 40 (elevated)
- Remaining siblings: Risk Score 25 (low)
## OBSERVATION HISTORY
Seventeen observations recorded since monitoring inception. Recent signals indicate:
- Consistent ownership by Microsoft Corporation
- Stable geolocation data
- No evidence of persistent malicious activity
- Threat persistence days: 0
- Threat observation count: 0
## RELATIONSHIP GRAPH
- DNS Associations: azpdcso0lqy8.stretchoid.com (multiple associations)
- Network: MSFT (same network)
- Total Relationships: 4
## RECOMMENDED ACTIONS
No immediate defensive actions required. The IP is classified as low-risk Microsoft Azure infrastructure. Monitor for any changes in:
- DNS record updates
- Neighbor subnet risk escalation
- New threat indicator associations
Note: The stretchoid.com hostname association warrants periodic review. This domain is not Microsoft-owned and may indicate a third-party service or potential misconfiguration.
---
*Intelligence generated by IPDebrief. Data accuracy: High. Classification: Internal.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Microsoft Corporation |
| ASN | AS8075 |
| Network Name | MSFT |
| CIDR Block | 13.64.0.0/11 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | azpdcso0lqy8.stretchoid.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | azpdcso0lqy8.stretchoid.com |
π DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 40% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 19% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 27% | 2 | 2 |
| Overall | 24% | 10 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-07-25 08:44:40 UTC |
| Last Seen | 2026-08-12 19:22:01 UTC |
| Profile Built | 2026-08-12 19:40:05 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 25 |
Full dossier details are available via our API.