INTELLIGENCE BRIEFING: 20.223.189.197
SUMMARY
IP 20.223.189.197 is a Microsoft Azure cloud infrastructure endpoint located in Dublin, Ireland (IE). The IP maintains a low-risk reputation score of 25 with no active threat indicators. The address operates within Microsoft Corporation's network infrastructure (ASN 8075) and is classified as cloud compute infrastructure with firewalled services.
OWNERSHIP & INFRASTRUCTURE
- Organization: Microsoft Corporation
- ASN: 8075
- Network Role: Microsoft Azure CloudCompute
- Infrastructure Type: Cloud
- Geographic Location: Dublin, Ireland (IE)
- BGP Prefix: 20.192.0.0/10
THREAT ASSESSMENT
- Overall Risk Score: 25 (Low Risk)
- Threat Indicators: None detected
- Blacklist Count: 0
- Is Tor Exit: False
- Is Known Attacker: False
- Is Spam Source: False
- DNSBL Listed: 1 of 8 lists
NETWORK BEHAVIOR
- Open Ports: None detected
- DNS Resolution: No forward resolution
- Hosted Domains: 0
- Services: Firewalled / No Services
- ICMP Validation: Blocked (unable to validate)
HISTORICAL OBSERVATIONS
22 total observations recorded. Most recent signal activity observed 2026-06-23. Historical signals indicate consistent geolocation reporting for Dublin, IE. Subnet abuse density observed at level 1 with mostly_clean classification. No evidence of persistent malicious behavior.
RELATIONSHIP ANALYSIS
17 relationships identified, all classified as "Same Network" with target value "MSFT". All relationships point to Microsoft infrastructure, indicating this IP is part of Microsoft's broader cloud network.
SUBNET ANALYSIS
- Subnet: 20.223.189.197/24
- Abuse Density: 0
- Classification: Mostly Clean
- Neighbor Count: 0
RECOMMENDATIONS
No specific firewall rules or blocking actions recommended. The IP is classified as low-risk Microsoft Azure infrastructure with no active threat indicators. Standard cloud provider IP reputation monitoring is sufficient. No immediate defensive action required.
CLASSIFICATION
This IP represents legitimate cloud infrastructure. No threat-based action warranted.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Microsoft Corporation |
| ASN | AS8075 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 29% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 30% | 2 | 3 |
| Overall | 22% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:04:08 UTC |
| Last Seen | 2026-06-27 03:34:20 UTC |
| Profile Built | 2026-06-27 21:40:58 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 25 |
Full dossier details are available via our API.