Intelligence Briefing: 52.110.1.144/32
Classification: Low Risk
Risk Score: 25
Ownership and Infrastructure:
The IP address was assigned to Microsoft Corporation (AS8075) within the 52.96.0.0/12 block. Analysis identified the resource as Cloud Compute infrastructure providing hosting services. The host operated web services on ports 80 and 443, returning a Microsoft-HTTPAPI/2.0 banner. TLS certificates validated against outlook.com and Microsoft Corporation domains.
Threat Assessment:
No threat indicators were detected. The address was not listed on blacklists, and the neighborhood subnet (52.110.1.0/24) remained classified as clean. Behavioral analysis recorded no honeypot hits, enumeration strikes, or WAF violations. The host was not flagged as a Tor exit node or known attacker.
Observations and Anomalies:
Geolocation data indicated the United States (Massachusetts), but physics measurements contradicted this placement, recording a 54ms RTT against a claimed 7066km distance. DNS hygiene was rated Fair, with SPF and DMARC records present but lacking DNSSEC validation.
Recommendation:
Monitor. The overall profile confidence remained Very Low due to signal contradictions. The system advised monitoring for potential changes without immediate firewall action.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Microsoft Corporation |
| ASN | AS8075 |
| Network Name | MSFT |
| CIDR Block | 52.96.0.0/12 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | 5/7 domains |
| DMARC | 6/7 domains |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Not configured |
| Domains Checked | 7 domains |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | β |
| 443 | https | tcp | β |
| Closed Ports | 22, 25, 3389, 8080, 8443 (2 open / 7 scanned) | ||
| Server | Microsoft-HTTPAPI/2.0 |
| HTTP Title | β |
π TLS Certificate
| SANs | outlook.com*.hotmail.com*.internal.outlook.com*.live.com*.office.com*.office365.com*.outlook.com*.outlook.office365.comattachment.outlook.live.netattachment.outlook.office.net |
| Valid From | 2026-06-26T00:00:00+00:00 |
| Valid Until | 2027-01-10T23:59:59+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha256RSA |
| Validity Period | 198 days |
| Serial Number | 0E371D2766FD365DADDCF4004297839E |
| Thumbprint | C7C19E04464D744D810EF31A24C54FC22A7909C5 |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 33% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 33% | 2 | 4 |
| ownership | 27% | 2 | 3 |
| reputation | 13% | 1 | 2 |
| geolocation | 19% | 2 | 2 |
| Overall | 23% | 10 | 16 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-09-01 19:25:17 UTC |
| Last Seen | 2026-09-16 00:04:11 UTC |
| Profile Built | 2026-09-16 00:22:35 UTC |
| Data Freshness | Live |
| Signal Types | 25 |
| Total Observations | 38 |
Full dossier details are available via our API.