An intelligence assessment identified IP 4.149.160.182 as a Low Risk endpoint with a risk score of 25. Ownership records attributed the address to Microsoft Corporation (AS8075, MSFT) within the 4.144.0.0/12 CIDR block, located in Quincy, WA, US. Network role classification assigned the address to Microsoft Azure CloudCompute infrastructure. Security assessments found no threat indicators, known campaigns, or blacklist entries, and the address was not associated with spam, Tor exit nodes, or active attacker activity. Active services scans detected port 443 (HTTPS), with TLS certificate analysis confirming the domain licensingwindows.md.mp.microsoft.com under Microsoft TLS G2 RSA CA OCSP 16. Behavioral analysis recorded zero incidents. The recommendation assigned to the address is Monitor, citing its location within a clean neighborhood.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Microsoft Corporation |
| ASN | AS8075 |
| Network Name | MSFT |
| CIDR Block | 4.144.0.0/12 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 443 | https | tcp | β |
| Closed Ports | 22, 25, 80, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | Microsoft-Azure-Application-Gateway/v2 |
| HTTP Title | β |
π TLS Certificate
| SANs | licensingwindows.mp.microsoft.com*.licensingwindows.mp.microsoft.com*.windows.licensing.commerce.microsoft.comlicensingwindows.md.mp.microsoft.com |
| Valid From | 2026-08-29T02:39:10+00:00 |
| Valid Until | 2027-02-25T02:39:10+00:00 |
| TLS Protocol | Tls12 |
| Cipher Suite | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 |
| Signature Algorithm | sha384RSA |
| Validity Period | 180 days |
| Serial Number | 5500C8922572A80A0E8C7D0EC2000000C89225 |
| Thumbprint | B6CCE681CA68E58463F71F634E09560AA65A8010 |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 42% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 27% | 2 | 3 |
| ownership | 27% | 2 | 3 |
| reputation | 19% | 1 | 2 |
| geolocation | 27% | 2 | 2 |
| Overall | 26% | 10 | 14 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-09-03 14:25:19 UTC |
| Last Seen | 2026-09-11 02:16:09 UTC |
| Profile Built | 2026-09-11 02:23:11 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 27 |
Full dossier details are available via our API.