# IP Intelligence Briefing: 207.46.13.7
## Executive Summary
IP 207.46.13.7 is a legitimate Microsoft Bingbot crawler infrastructure address with low-risk profile. The IP belongs to Microsoft Corporation (AS8075) and operates as part of their global search engine bot network. No active threat indicators detected.
## Network Ownership & Classification
- Organization: Microsoft Corporation
- Network: MICROSOFT-GLOBAL-NET (207.46.0.0/16)
- ASN: 8075
- Geolocation: Madison, Wisconsin, US
- Infrastructure Type: CloudCompute
- Network Role: Bingbot (Search Engine Crawler)
- Classification: Cloud hosting infrastructure, not residential or proxy
## Risk Assessment
Current Risk Score: 25 (Low Risk)
Threat Indicators: None detected
- No known attacker reputation
- No spam source designation
- No Tor exit node activity
- Zero blacklisted threat feeds
DNSBL Status: Listed on 1 of 8 commercial blacklists (likely standard Microsoft bot filtering)
## Service & Port Profile
- Open Ports: None detected
- Service Status: Firewalled / No Services
- TLS Certificate: Not available
- HTTP Banner: Not available
- Network Classification: CloudCompute infrastructure
The IP is a headless crawler with no exposed services, consistent with Microsoft Bingbot operational patterns.
## DNS & Reverse DNS Evidence
- PTR Record: msnbot-207-46-13-7.search.msn.com
- Forward Resolution: msnbot-207-46-13-7.search.msn.com
- Associated Domain: msn.com
- Forward Confirmation: Yes
- SPF/DMARC: Records present
DNS evidence confirms legitimate Microsoft search infrastructure ownership.
## Subnet Neighborhood Analysis
Subnet: 207.46.13.0/24
- Total Siblings: 31
- Active Siblings: 12
- Threat Siblings: 7
- Abuse Density: 0.2258 (22.58%)
- Risk Distribution: 0 high-risk, 2 medium-risk, 29 low-risk
The subnet shows typical Microsoft botnet infrastructure characteristics. Most addresses (29 of 31) share the same low-risk profile (score 25), indicating coordinated crawler deployment. Two neighbors exhibit medium risk (score 50), warranting continued monitoring but not immediate concern.
## Historical Observation Trends
Total Observations: 21
- Recent Operator Score: 0.4 (confident assessment)
- Risk Persistence: No persistent malicious behavior detected
- Ownership Changes: None
- Threat Observation Count: 0
Historical data shows consistent Microsoft infrastructure classification with no escalation in threat signals.
## Relationship Graph
All 25 relationship entries confirm:
- Same Network: MICROSOFT-GLOBAL-NET
- DNS Associations: msnbot-207-46-13-7.search.msn.com
No external or suspicious entity associations detected.
## Recommended Actions
Firewall/Security Recommendations:
- No blocking required. This is legitimate Microsoft Bingbot infrastructure.
- Standard Microsoft bot user-agent filtering rules may apply if organization blocks all crawlers.
- Whitelist recommendation: 207.46.0.0/16 (Microsoft Bingbot network)
Monitoring Recommendations:
- Continue monitoring for changes in network role classification
- Watch for subnet abuse density changes in 207.46.13.0/24
- Monitor for new threat indicators emerging from Microsoft infrastructure
## Conclusion
IP 207.46.13.7 is confirmed as Microsoft Bingbot crawler infrastructure with no threat indicators. The IP operates as part of legitimate search engine indexing operations. No defensive action required beyond standard Microsoft bot management policies.
---
*Intelligence generated: [Current Date]*
*Source: IPDebrief Intelligence Platform*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Microsoft Corporation |
| ASN | AS8075 |
| Network Name | MICROSOFT-GLOBAL-NET |
| CIDR Block | 207.46.0.0/16 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | msnbot-207-46-13-7.search.msn.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | msnbot-207-46-13-7.search.msn.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 19% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 13% | 1 | 2 |
| geolocation | 15% | 2 | 2 |
| Overall | 19% | 10 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-30 06:22:36 UTC |
| Last Seen | 2026-06-29 07:15:41 UTC |
| Profile Built | 2026-06-29 07:24:04 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 22 |
Full dossier details are available via our API.