## IP Intelligence Briefing: 20.64.106.39
Classification: Low Risk β Microsoft Azure Infrastructure
Report Generated: June 15, 2026
Executive Summary
IP address 20.64.106.39/32 is registered to Microsoft Corporation (ASN 8075) and operates as Microsoft Azure cloud infrastructure located in San Antonio, TX. Risk assessment indicates Low Risk with an overall risk score of 25/100. No active threat indicators detected.
Infrastructure Profile
- Organization: Microsoft Corporation
- ASN: 8075
- Network Role: Cloud Compute (Microsoft Azure)
- Geolocation: United States, TX, San Antonio (29.43, -98.49)
- BGP Prefix: 20.64.0.0/10
- Control Plane: Route stability flag set; operator score 0.3478 (Basic)
Threat Indicators
- Reputation: Low Risk
- Known Attacker: No
- Tor Exit Node: No
- Spam Source: No
- Blacklist Status: Listed on 1 of 8 DNSBLs checked
- Active Services: None detected (no open ports, no TLS certificates)
- Campaign Affiliation: None identified
DNS Analysis
- PTR Records: azpdsghq7jpi.stretchoid.com
- Forward Resolution: Confirmed (1 hostname)
- Note: DNS hostname resolves to stretchoid.com domain, which may warrant correlation with stretchoid.com infrastructure
Historical Observations
Analysis of 21 observations reveals stable behavior with no significant risk escalation:
- No ownership changes detected
- No persistent malicious activity
- Threat observation count: 1 (isolated event)
- Control plane signals remain consistent across observation window
Subnet Neighborhood Assessment
Subnet 20.64.106.0/24 shows minimal abuse activity:
- Abuse Density: 0 (clean)
- Neighbor Risk Distribution: 0 High, 1 Medium, 1 Low
- Siblings:
- 20.64.106.116 (Risk Score: 25)
- 20.64.106.155 (Risk Score: 40)
Related Entities
37 relationships identified, primarily:
- DNS associations to azpdsghq7jpi.stretchoid.com
- Network association to MSFT infrastructure
- No malicious entity correlations detected
SOC Recommendations
1. Allow: No blocking recommended based on current risk profile
2. Monitor: DNS hostname azpdsghq7jpi.stretchoid.com warrants correlation with stretchoid.com known infrastructure
3. Validate: Confirm 20.64.106.39/32 is legitimate Microsoft Azure endpoint if traffic is observed
4. Firewall Rules: No restrictive rules required at this time
Conclusion: This IP represents standard Microsoft Azure cloud infrastructure with low-risk characteristics. The DNS association to stretchoid.com is the only element requiring attention for correlation purposes.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Microsoft Corporation |
| ASN | AS8075 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | azpdsghq7jpi.stretchoid.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | azpdsghq7jpi.stretchoid.com |
π DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 43% | 2 | 5 |
| routing | 8% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 31% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 25% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-18 03:22:33 UTC |
| Last Seen | 2026-06-28 06:25:52 UTC |
| Profile Built | 2026-06-29 00:30:26 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 27 |
Full dossier details are available via our API.