## IP Intelligence Briefing: 20.104.123.131/32
Executive Summary
IP address 20.104.123.131 is a Microsoft Azure cloud infrastructure endpoint with low-risk classification. No malicious activity, threat indicators, or abuse patterns were detected during analysis. The IP demonstrates consistent legitimate cloud service behavior.
Ownership and Infrastructure Profile
- Organization: Microsoft Corporation
- ASN: AS8075 (MSFT)
- CIDR Block: 20.33.0.0/16
- Infrastructure Type: CloudCompute
- Provider: Microsoft Azure
- Geolocation: Toronto, Ontario, Canada (43.65°N, -79.38°W)
Risk Assessment
- Overall Risk Score: 25 (Low Risk)
- Provider Score: 0
- Authority Score: 0
- Abuse Confidence Score: Not applicable
- Stability Label: N/A
Threat Intelligence Indicators
- Blacklist Status: Not listed on any threat feeds
- Known Attacker: False
- Spam Source: False
- Tor Exit Node: False
- Campaign Associations: None identified
- Threat Feeds: Empty
Network Behavior and Services
- Open Ports: None detected
- DNS Resolution: No forward resolution confirmed
- Email Authentication: Not configured (SPF/DMARC absent)
- HTTPS/TLS: No certificates detected
- Connection Type: Cloud infrastructure (firewalled/no services exposed)
Temporal Analysis and History
Observation history (20 recorded signals) shows consistent classification as Microsoft Azure cloud infrastructure. Key observations:
- 2026-06-21: Cloud infrastructure classification confirmed (confidence: 90%)
- 2026-06-16: Geolocation validation for Toronto, ON confirmed (confidence: 56%)
- Risk Trend: Stable; no escalation in threat signals over time
Subnet Neighborhood Analysis
- Subnet: 20.104.123.0/24
- Abuse Density: 0% (clean classification)
- Total Siblings: 1
- Active/Threat Siblings: 0
- Inherited Risk: 0
Relationships
All relationship links point to Microsoft network (MSFT), confirming infrastructure ownership. No external or cross-organization associations detected.
Recommended Actions
No immediate security actions required. The IP represents legitimate Microsoft Azure cloud infrastructure with no adversarial indicators. Standard monitoring for cloud infrastructure traffic patterns is recommended.
---
*Report generated using IPDebrief intelligence platform data. All findings based on real-time network intelligence observations.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Microsoft Corporation |
| ASN | AS8075 |
| Network Name | MSFT |
| CIDR Block | 20.33.0.0/16 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 19% | 2 | 2 |
| routing | 13% | 1 | 1 |
| services | 19% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 13% | 1 | 2 |
| geolocation | 20% | 2 | 3 |
| Overall | 19% | 10 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-29 05:55:10 UTC |
| Last Seen | 2026-06-29 06:09:39 UTC |
| Profile Built | 2026-06-29 06:13:41 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 20 |
Full dossier details are available via our API.