Your IP: 216.73.216.123
๐ค Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.
IP Intelligence Briefing: 20.151.221.144
Date: 2026-06-14
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Provider: Microsoft Corporation (ASN 8075)
- Geolocation: Toronto, Ontario, Canada (43.65°N, -79.38°E)
- Network Role: Microsoft Azure CloudCompute infrastructure (firewalled, no open services)
- Threat Indicators: No malicious activity detected (no spam, attacks, or abuse reports).
---
**2. Observation History**
- Recent Activity (Last 30 Days):
- Minimal risk signals consistently observed (operator score: 0.13).
- No significant changes in geolocation, DNS, or threat indicators.
- One observation of "Minimal" risk classification (confidence: 30%).
---
**3. Relationships**
- Linked Entities:
- Subnet: `20.151.221.144/24` (abuse density: 1, classified as "mostly_clean").
- Network: Microsoft Azure (infrastructure type: CloudCompute).
- No linked hostnames, domains, or certificates detected.
---
**4. Neighborhood Analysis**
- Subnet: `20.151.221.144/24`
- Neighbor Count: 0 (no active sibling IPs identified).
- Abuse Density: 1 (low risk).
---
**5. Key Findings**
- Legitimate Infrastructure: The IP is part of Microsoft Azure, a trusted cloud provider.
- No Malicious Activity: No indicators of spam, attacks, or abuse in historical data.
- Network Stability: Stable routing (BGP prefix: `20.150.0.0/15`), no route instability detected.
- Limited Subnet Activity: No neighboring IPs identified, suggesting a standalone or minimally active host.
---
**6. Recommendations**
- Monitor: Track for unexpected service changes or new neighbor activity in the subnet.
- Verify: Confirm if the IP is part of a legitimate cloud workload (e.g., Azure VM or container).
- No Action Required: Current risk profile is low, and no immediate mitigation is needed.
---
End of Briefing
*Generated by IPDebrief for SOC operational use.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Microsoft Corporation |
| ASN | AS8075 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
No certificate
Issued by โ
N/A
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 26% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 30% | 2 | 3 |
| Overall | 21% | 10 | 16 |
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:04:07 UTC |
| Last Seen | 2026-06-27 03:08:20 UTC |
| Profile Built | 2026-06-27 21:15:24 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 25 |
๐ 20 signal types ยท 25 observations collected
This report is generated from 20+ independent intelligence signals including
ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds,
behavioral fingerprinting, and more.
Full dossier details are available via our API.
Full dossier details are available via our API.
โน๏ธ About This Report
All data shown is publicly available network metadata โ IP addresses do not reliably identify individuals.
Assessments are probabilistic and should not be used as sole basis for access control decisions.
To report an issue or request data review, contact admin@ipdebrief.com.