Analysis of IP 52.115.167.60/32 identified the address as owned by Microsoft Corporation (ASN 8075) within the 52.96.0.0/12 CIDR block. Geolocation data placed the infrastructure in Virginia, US, with network role classification indicating Microsoft Azure cloud compute hosting.
Threat assessment returned a risk score of 0 with no associated indicators, reputation sources, or known campaigns. The address was not listed on any blacklists, and behavioral analysis showed zero incidents or honeypot strikes.
Technical scanning detected port 443 (HTTPS) in use. The TLS certificate presented was issued by Microsoft TLS G2 RSA CA OCSP 02, validating the subject tr.teams.microsoft.com. The certificate subject alternative names included various relay and turn services for Microsoft Teams.
The intelligence profile concluded the intent was legitimate infrastructure with a recommendation to allow traffic. The overall confidence score was 0.1667 based on very low risk indicators.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Microsoft Corporation |
| ASN | AS8075 |
| Network Name | MSFT |
| CIDR Block | 52.96.0.0/12 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 0% (None) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 443 | https | tcp | β |
| Closed Ports | 22, 25, 80, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | tr.teams.microsoft.com*.tr.teams.microsoft.comturn.teams.microsoft.com*.turn.teams.microsoft.com*.relay.teams.microsoft.comaz.relay.teams.cloud.microsoft*.az.relay.teams.cloud.microsoftr0.az.relay.teams.microsoft.com*.r0.az.relay.teams.microsoft.comr0.az.relay.teams.cloud.microsoft |
| Valid From | 2026-08-29T04:17:29+00:00 |
| Valid Until | 2027-02-25T04:17:29+00:00 |
| TLS Protocol | Tls12 |
| Cipher Suite | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 |
| Signature Algorithm | sha384RSA |
| Validity Period | 180 days |
| Serial Number | 4100D6ED6E97D33CB4621036D2000000D6ED6E |
| Thumbprint | C03FE2B511C71FA8857E6212827FC4DAFF57802F |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 25% | 1 | 1 |
| Overall | 16% | 4 | 4 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-09-16 22:22:36 UTC |
| Last Seen | 2026-09-16 22:22:36 UTC |
| Profile Built | 2026-09-16 22:39:07 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 22 |
Full dossier details are available via our API.