IP Intelligence Briefing: 207.46.13.54
Date: 2026-06-11
---
**1. Core Profile**
- Reputation: Moderate Risk (Risk Score: 50)
- Ownership: Microsoft Corporation (ASN 8075, Microsoft-GLOBAL-NET)
- Geolocation: United States (Washington, DC; GPS: 47.6109, -122.3303)
- Network Role: Microsoft Azure cloud infrastructure (CloudCompute, Hosting)
- Threat Indicators: No malicious activity detected (no indicators, blacklists, or campaigns).
---
**2. Historical Observations**
- Signal Stability: Stable over 30 days (no persistent malicious activity).
- Key Trends:
- DNS records consistently resolved to `msnbot-207-46-13-54.search.msn.com`.
- Routing stability confirmed (no abrupt changes).
- No spikes in threat-related signals.
---
**3. Network Relationships**
- DNS Associations:
- Linked to `msnbot-207-46-13-54.search.msn.com` (Microsoft Bingbot).
- Subnet: Part of `207.46.13.54/24` (Microsoft-owned CIDR: 207.46.0.0/16).
- Neighbors:
- Subnet abuse density: 0% (mostly clean).
- 6 active siblings (25 total), with 3 flagged as medium/low risk.
---
**4. Threat & Risk Analysis**
- No Direct Threats: No malware, spam, or known attacker activity.
- Indirect Risks:
- One neighbor (207.46.13.6) has a medium risk score (25/100).
- Subnet has 0% abuse density, but 25% of siblings are low-risk.
- Recommendation: Monitor for lateral movement or unusual traffic patterns, especially if this IP interacts with high-risk hosts.
---
**5. Mitigation & Actions**
- Firewall Rules:
- Allow traffic for Microsoft Azure services (ports 80/443, TLS).
- Block anomalous traffic to/from high-risk neighbors (e.g., 207.46.13.6).
- DNS Monitoring: Verify DNS resolution for `msnbot-207-46-13-54.search.msn.com` to ensure no spoofing.
- Logging: Correlate with internal logs for unexpected access patterns.
---
Conclusion:
This IP is a legitimate Microsoft Azure asset associated with Bingbot. While no direct threats are detected, its subnet contains low-risk neighbors. SOC teams should maintain vigilance for indirect risks and ensure alignment with Microsoftβs network security practices.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Microsoft Corporation |
| ASN | AS8075 |
| Network Name | MICROSOFT-GLOBAL-NET |
| CIDR Block | 207.46.0.0/16 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | msnbot-207-46-13-54.search.msn.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | msnbot-207-46-13-54.search.msn.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 24% | 2 | 3 |
| services | 15% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 13% | 1 | 2 |
| geolocation | 27% | 2 | 3 |
| Overall | 22% | 11 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-28 00:16:30 UTC |
| Last Seen | 2026-06-29 04:57:53 UTC |
| Profile Built | 2026-06-29 05:02:58 UTC |
| Data Freshness | Live |
| Signal Types | 26 |
| Total Observations | 26 |
Full dossier details are available via our API.