# IP INTELLIGENCE BRIEFING
Target: 20.199.130.122/32
Date: Current
Analyst: Automated Intelligence System
---
## EXECUTIVE SUMMARY
IP 20.199.130.122 is identified as Microsoft Corporation cloud infrastructure (ASN 8075) with a low-risk profile. The address is classified as Microsoft Azure service infrastructure with no active malicious indicators. No recommended blocking actions are warranted at this time.
---
## INFRASTRUCTURE PROFILE
| Attribute | Value |
|---|---|
| **Organization** | Microsoft Corporation |
| **ASN** | 8075 |
| **Network Role** | Microsoft Azure |
| **Infrastructure Type** | Cloud |
| **Geolocation** | US (country), Zurich (city) |
| **Risk Score** | 25 / 100 |
| **Reputation** | Low Risk |
---
## THREAT ASSESSMENT
Current Threat Indicators: None
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Blacklist Count: 0 active listings
- Pulsedive Risk: Not flagged
Network Classification:
- Cloud Infrastructure: Yes
- Proxy/VPN: No
- Hosting: No
- Mobile/Residential: No
- Anycast: No
---
## OBSERVATION HISTORY
19 signal observations recorded. Key findings:
- Recent cloud infrastructure classification confirmed (Microsoft Azure)
- Historical blacklist listing observed (1 of 8 lists, high severity) - appears resolved
- Subnet abuse density: 1 (low)
- Threat observation count: 1
- No persistent malicious activity detected
- Ownership changes: 0
Temporal Analysis: IP demonstrates stable ownership with no persistent malicious behavior patterns.
---
## NEIGHBORHOOD ANALYSIS
Subnet: 20.199.130.122/24
- Total Siblings: 1
- Active Siblings: 1
- Threat Siblings: 1
- Abuse Density: Low
- Classification: Mostly Clean
No elevated threat concentration detected in immediate subnet.
---
## RELATIONSHIP GRAPH
22 relationships identified, all classified as "Same Network" with Microsoft (MSFT) network identifiers. All relationships confirm legitimate Microsoft infrastructure association.
---
## SERVICE & DNS ANALYSIS
- Open Ports: None detected
- TLS Certificates: None
- HTTP Services: None
- DNS PTR Records: None
- Forward Resolution: Not confirmed
- Hosted Domains: 0
Service banner analysis indicates no active services running; infrastructure appears firewalled.
---
## RECOMMENDED ACTIONS
Risk Score: 25 (Low)
Action Recommendations: None
Firewall Rules: Not required
No blocking or filtering actions recommended. This IP represents legitimate Microsoft Azure infrastructure with no evidence of malicious activity.
---
## INTELLIGENCE CONCLUSION
IP 20.199.130.122 is Microsoft Corporation cloud infrastructure (Azure) with a low-risk security profile. The address shows no active threat indicators, no malicious service banners, and demonstrates stable ownership patterns. Historical blacklist listings appear resolved. Continued monitoring is appropriate but no immediate action is warranted.
Classification: LEGITIMATE INFRASTRUCTURE
Recommendation: Allow Traffic
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Microsoft Corporation |
| ASN | AS8075 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 39% | 2 | 5 |
| routing | 8% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 19% | 2 | 2 |
| Overall | 21% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-19 21:39:55 UTC |
| Last Seen | 2026-06-28 09:56:25 UTC |
| Profile Built | 2026-06-29 04:01:53 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 23 |
Full dossier details are available via our API.