IP address 20.209.179.65 was assessed as a low-risk endpoint with a risk score of 30. The address was identified as belonging to Microsoft Corporation (ASN 8075, netname MSFT) within the 20.192.0.0/10 block and is geolocated to Virginia, United States. Network role classification indicated Microsoft Azure cloud compute infrastructure operating as a web server. Threat intelligence analysis found no malicious indicators, with zero blacklist hits and no association with known campaigns or threat feeds. Active services included HTTP on port 80, HTTPS on port 443, and SSH on port 22, which returned an AzureSSH_1.0.0 banner. Additional services were observed on ports 8080 and 8443. TLS certificates were issued by Microsoft TLS G2 RSA CA OCSP 02. DNS analysis returned no PTR hostnames and no forward resolution. The endpoint was not flagged as a Tor exit, known attacker, or spam source.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Microsoft Corporation |
| ASN | AS8075 |
| Network Name | MSFT |
| CIDR Block | 20.192.0.0/10 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | 3/6 domains |
| DMARC | 6/6 domains |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Not configured |
| Domains Checked | 6 domains |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | β |
| 443 | https | tcp | β |
| 22 | ssh | tcp | |
| 8080 | http-alt | tcp | β |
| 8443 | https-alt | tcp | β |
| Closed Ports | 25, 3389 (5 open / 7 scanned) | ||
| Server | Windows-Azure-Blob/1.0 Microsoft-HTTPAPI/2.0 |
| HTTP Title | β |
| SSH Version | SSH-2.0-AzureSSH_1.0.0 |
π TLS Certificate
| SANs | *.blob.core.windows.net*.lvl08prdstr13c.store.core.windows.net*.blob.storage.azure.net*.z1.blob.storage.azure.net*.z2.blob.storage.azure.net*.z3.blob.storage.azure.net*.z4.blob.storage.azure.net*.z5.blob.storage.azure.net*.z6.blob.storage.azure.net*.z7.blob.storage.azure.net |
| Valid From | 2026-07-21T23:07:38+00:00 |
| Valid Until | 2027-01-17T23:07:38+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha384RSA |
| Validity Period | 180 days |
| Serial Number | 410084FA05C393626A5BF3C78000000084FA05 |
| Thumbprint | 42BD095A538CDC3438CE1A8495668F6FC86E55E4 |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 34% | 2 | 6 |
| routing | 13% | 1 | 1 |
| services | 33% | 2 | 5 |
| ownership | 27% | 2 | 4 |
| reputation | 27% | 1 | 5 |
| geolocation | 27% | 2 | 3 |
| Overall | 27% | 10 | 24 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-09-04 11:14:28 UTC |
| Last Seen | 2026-09-28 14:13:51 UTC |
| Profile Built | 2026-09-28 14:24:51 UTC |
| Data Freshness | Live |
| Signal Types | 25 |
| Total Observations | 49 |
Full dossier details are available via our API.