IP Intelligence Briefing: 20.220.146.147
Date: 2026-06-14
---
**1. Profile Summary**
- Risk Score: Low (25/100) | Provider Score: 0 | Authority Score: 0
- Ownership: Microsoft Corporation (AS8075) | Network Role: Microsoft Azure Cloud Compute
- Geolocation:
- Primary: Toronto, Ontario, Canada (43.65°N, -79.38°W)
- Conflicting Data: One observation incorrectly labeled the IP as "US" with coordinates 37.751°N, -97.822°W.
- Threat Indicators: No active malicious indicators detected. Historical data (June 5, 2026) shows "has_threats": true in one observation, but no current campaign or abuse reports.
---
**2. Observation History**
- Last 30 Days:
- Geolocation: Stable at Toronto, Canada, with 150km accuracy radius.
- Network Role: Consistently identified as Microsoft Azure (cloud compute, no residential/mobile).
- Threat Signals: One ambiguous "pulse" detection (2 threats) from AlienVault OTX, but no confirmed malicious activity.
- Stability: No changes in ownership or network classification.
---
**3. Relationships & Network**
- Linked Entities:
- Microsoft Azure Network (MSFT): Multiple relationships confirm the IP is part of Microsoftβs infrastructure.
- No External Connections: No subnets, hostnames, or organizations linked beyond Microsoft.
- Subnet: 20.220.146.147/24 | Abuse Density: 0 (no risky neighbors detected).
---
**4. Key Findings & Recommendations**
- Legitimate Infrastructure: The IP is part of Microsoft Azure, a trusted cloud provider. No evidence of spoofing or misclassification in recent data.
- Geolocation Discrepancy: One observation incorrectly labeled the IP as "US" with San Francisco coordinates. Investigate potential data anomalies or misconfigurations.
- Threat Ambiguity: Historical "pulse" detections may indicate false positives or benign cloud activity. Monitor for changes in threat signals.
- Actionable Steps:
- Validate geolocation inconsistencies with Microsoftβs network documentation.
- Continuously monitor for unexpected DNS or service changes (no open ports or TLS certs detected).
- No immediate mitigation required, but retain monitoring due to ambiguous historical data.
---
Conclusion: 20.220.146.147 is a low-risk Microsoft Azure server with no active malicious indicators. Address geolocation discrepancies and monitor for unexpected behavior.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Microsoft Corporation |
| ASN | AS8075 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 47% | 2 | 5 |
| routing | 8% | 1 | 1 |
| services | 20% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 23% | 2 | 2 |
| Overall | 24% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-08 23:18:25 UTC |
| Last Seen | 2026-06-27 14:30:07 UTC |
| Profile Built | 2026-06-28 08:35:39 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 24 |
Full dossier details are available via our API.