IP Intelligence Briefing: 20.12.205.207
Date: June 14, 2026
---
**1. Core Profile**
- Risk Score: Low (25/100) | Provider: Microsoft Corporation (AS8075) | Network Role: Microsoft Azure CloudCompute
- Geolocation: Des Moines, Iowa, US (latitude 41.0613, longitude -95.1226) | Subnet: 20.12.205.207/24
- Threat Indicators: No malicious activity detected (no indicators, campaigns, or blacklist entries).
- Infrastructure: Firewalled / No Services | Hosting: Yes | Cloud: Yes
---
**2. Observation History**
- Recent Activity (June 14, 2026):
- Minimal risk score (0.15) with DNSSEC validation and stable geolocation.
- No DNS resolution or service exposure detected.
- Historical Data (June 2, 2026):
- Consistent geolocation and low-risk profile.
- No scans, TLS certs, or HTTP services observed.
---
**3. Network Relationships**
- Linked Entities:
- Microsoft Network (MSFT): Repeatedly linked to Microsoft's infrastructure (16 relationships).
- No External Connections: No subnets, hostnames, or organizations tied to this IP.
---
**4. Neighborhood Analysis**
- Subnet (20.12.205.207/24):
- Abuse Density: 1 (low risk).
- Active Siblings: 1 (itself).
- Neighbors: No neighboring IPs found (likely isolated or no data available).
---
**5. Control Plane & Route Stability**
- BGP Prefix: 20.0.0.0/11 | Route Stability: Unstable (flagged as "not stable").
- DNSSEC: Valid | RPKI State: Not reported.
- Potential Risk: Unstable routing could indicate misconfiguration or network disruptions.
---
**6. Recommendations**
- Monitor Route Stability: Investigate BGP instability for potential network issues.
- Verify Cloud Configuration: Confirm Azure VM/firewall rules align with expected traffic patterns.
- No Immediate Action Required: No malicious indicators detected, but isolate further if route instability persists.
Conclusion: This IP is a legitimate Microsoft Azure cloud resource with no signs of malicious activity. Focus on resolving BGP route stability issues and ensure cloud security policies are enforced. No urgent threat detected.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Microsoft Corporation |
| ASN | AS8075 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 26% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 30% | 2 | 3 |
| Overall | 21% | 10 | 16 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-07 23:04:07 UTC |
| Last Seen | 2026-06-27 03:04:26 UTC |
| Profile Built | 2026-06-27 21:10:48 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 25 |
Full dossier details are available via our API.