Network Intelligence Briefing: 23.103.226.151/32
Risk Assessment
The target IP was classified as Low Risk with a risk score of 25. No active threat indicators were observed on the specific address. The IP was not listed on any blacklists and was not identified as a known attacker or spam source.
Ownership and Infrastructure
Ownership records attributed the address to Microsoft Corporation (AS8075), within the CIDR block 23.96.0.0/13. The network role was identified as Cloud Compute and Hosting. Services observed included HTTP/2.0 on ports 80 and 443. TLS certificates validated the service for Outlook.com and Microsoft Corporation domains.
Anomalies and Contradictions
Data analysis revealed a contradiction between claimed geolocation (Boston, US) and Round-Trip Time (RTT) physics measurements. The RTT value fell below the minimum possible distance measurement for the reported location, flagging the geolocation as implausible.
Neighborhood Context
The /24 subnet (23.103.226.0/24) was classified as mixed. Of the 46 total siblings, 11 were identified as threats, resulting in an abuse density of 0.2391.
Recommendation
Analysis indicated a "Monitor" action with Low severity. Recommendations were limited to monitoring for changes due to signal contradictions present in the data.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Microsoft Corporation |
| ASN | AS8075 |
| Network Name | MSFT |
| CIDR Block | 23.96.0.0/13 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | 5/7 domains |
| DMARC | 6/7 domains |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Not configured |
| Domains Checked | 7 domains |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | β |
| 443 | https | tcp | β |
| Closed Ports | 22, 25, 3389, 8080, 8443 (2 open / 7 scanned) | ||
| Server | Microsoft-HTTPAPI/2.0 |
| HTTP Title | β |
π TLS Certificate
| SANs | outlook.com*.hotmail.com*.internal.outlook.com*.live.com*.office.com*.office365.com*.outlook.com*.outlook.office365.comattachment.outlook.live.netattachment.outlook.office.net |
| Valid From | 2026-06-26T00:00:00+00:00 |
| Valid Until | 2027-01-10T23:59:59+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha256RSA |
| Validity Period | 198 days |
| Serial Number | 0E371D2766FD365DADDCF4004297839E |
| Thumbprint | C7C19E04464D744D810EF31A24C54FC22A7909C5 |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 43% | 2 | 5 |
| routing | 13% | 1 | 1 |
| services | 33% | 2 | 4 |
| ownership | 27% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 19% | 2 | 2 |
| Overall | 27% | 10 | 18 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-08-29 21:16:55 UTC |
| Last Seen | 2026-09-14 22:10:59 UTC |
| Profile Built | 2026-09-14 22:19:39 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 35 |
Full dossier details are available via our API.