# IP INTELLIGENCE BRIEFING
Target IP: 20.235.86.97/32
Report Date: 2026-06-18
Classification: Microsoft Azure Cloud Infrastructure
## EXECUTIVE SUMMARY
IP 20.235.86.97 is identified as Microsoft Corporation cloud infrastructure (ASN 8075) located in Pune, Maharashtra, India. The IP carries a LOW RISK score of 25 and is classified as Microsoft Azure CloudCompute infrastructure. No active threat indicators, blacklists, or malicious campaigns were detected.
## OWNERSHIP & INFRASTRUCTURE
- Organization: Microsoft Corporation (ASN 8075)
- Network Role: Microsoft Azure Cloud Compute
- Infrastructure Type: Cloud infrastructure (verified)
- RIR: ARIN
- BGP Prefix: 20.192.0.0/10
- Route Stability: Unstable (flagged as false)
## GEOLOCATION
- Country: India (IN)
- Region: Maharashtra (MH)
- City: Pune
- Coordinates: 18.58°N, 73.92°E
- Geolocation Confidence: High (plausible)
- Validation Status: ICMP blocked - unable to validate
## THREAT ANALYSIS
- Risk Score: 25/100 (Low Risk)
- Abuse Confidence: Not applicable
- Blacklist Count: 0
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Active Threat Indicators: None detected
- Known Campaigns: None
## NETWORK SERVICES
- Open Ports: None detected
- TLS Certificate: None
- HTTP Services: None
- Service Banner: None
- DNS Records: No PTR hostnames, no forward resolution
- Email Authentication: No SPF/DMARC configured
## OBSERVATION HISTORY
Analysis of 20 historical observations reveals consistent Microsoft infrastructure signals:
- Recent Activity: Observations recorded on 2026-06-14 and 2026-06-18
- Geographic Consistency: All geo-signals consistently resolve to Pune, India
- Operator Score: 0.1304 (Minimal risk level)
- Threat Persistence: 0 days (transient)
- Ownership Changes: 0 (stable)
## NETWORK RELATIONSHIPS
- Total Relationships: 24
- Relationship Type: Same Network (MSFT/Microsoft)
- Classification: All relationships indicate Microsoft infrastructure
## SUBNET ANALYSIS (20.235.86.0/24)
- Subnet Classification: Mostly Clean
- Abuse Density: 1
- Total Sibling IPs: 1
- Active Siblings: 1
- Threat Siblings: 1
- Inherited Risk: 2
## SECURITY RECOMMENDATIONS
Action: MONITOR (No immediate action required)
- Risk Level: Low (Score 25)
- Recommended Action: Standard cloud infrastructure monitoring
- Firewall Rules: None required
- WAF Rules: None required
- Threat Feeds: No blocking recommended
## ASSESSMENT
This IP address represents legitimate Microsoft Azure cloud infrastructure. The absence of threat indicators, combined with consistent Microsoft network relationships and low-risk classification, indicates normal cloud service operation. No defensive action is required at this time. SOC teams should maintain standard cloud infrastructure monitoring protocols.
---
*Intel generated from IPDebrief platform data. Classification based on current signal analysis.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Microsoft Corporation |
| ASN | AS8075 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 29% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 30% | 2 | 3 |
| Overall | 21% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:04:08 UTC |
| Last Seen | 2026-06-27 03:36:32 UTC |
| Profile Built | 2026-06-27 21:43:19 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 25 |
Full dossier details are available via our API.