IOC Radar
IPMediumSignal 0/100

131.253.21.1

Location
United StatesUnited States
Montreal, Washington
ASN
AS8068
Microsoft Corp
First Seen
May 27, 2025
Last Seen
May 27, 2025
May 27
First Seen
379d ago
May 27
Last Seen
379d ago
2
Reports
source reports
0%
Confidence
medium
Found in 2 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
0%
Signal Score
0 / 100
IDS Rule
No
Threat Context
Tags

Network Information

CountryUSUnited States
RegionMontreal, Washington
ASNAS8068
OrganizationMicrosoft Corp

Feed Intelligence Summary

2 reports0% confidence
2
Source reports
0%
Confidence score
Category tags
indicatornetworkresearched

Activity Timeline

1 total obs
May 27May 27

Threat Activity Heatmap

Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreLow Risk
0
SIGNAL
Signal Score
0%
Confidence
2
Reports
First seenMay 27, 2025
Last seenMay 27, 2025
GeolocationUS
CountryUnited States
LocationMontreal, Washington
ASNAS8068
OrgMicrosoft Corp
Coords45.5019, -73.5674

VirusTotal

Not checked

WHOIS

raw
NetRange: 131.253.21.0 - 131.253.47.255 CIDR: 131.253.32.0/20, 131.253.22.0/23, 131.253.21.0/24, 131.253.24.0/21 NetName: MICROSOFT NetHandle: NET-131-253-21-0-1 Parent: NET131 (NET-131-0-0-0-0) NetType: Direct Allocation OriginAS: Organization: Microsoft Corp (MSFT-Z) RegDate: 2011-06-22 Updated: 2021-12-14 Ref: https://rdap.arin.net/registry/ip/131.253.21.0 OrgName: Microsoft Corp OrgId: MSFT-Z Address: One Microsoft Way City: Redmond StateProv: WA PostalCode: 98052 Country: US RegDate: 2011-06-22 Updated: 2024-03-18 Comment: To report suspected security issues specific to Comment: traffic emanating from Microsoft online services, Comment: including the distribution of malicious content Comment: or other illicit or illegal material through a Comment: Microsoft online service, please submit reports Comment: to: Comment: * https://cert.microsoft.com. Comment: Comment: For SPAM and other abuse issues, such as Microsoft Comment: Accounts, please contact: Comment: * [email protected]. Comment: Comment: To report security vulnerabilities in Microsoft Comment: products and services, please contact: Comment: * [email protected]. Comment: Comment: For legal and law enforcement-related requests, Comment: please contact: Comment: * [email protected] Comment: Comment: For routing, peering or DNS issues, please Comment: contact: Comment: * [email protected] Ref: https://rdap.arin.net/registry/entity/MSFT-Z OrgTechHandle: BEDAR6-ARIN OrgTechName: Bedard, Dawn OrgTechPhone: +1-425-538-6637 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/BEDAR6-ARIN OrgAbuseHandle: MAC74-ARIN OrgAbuseName: Microsoft Abuse Contact OrgAbusePhone: +1-425-882-8080 OrgAbuseEmail: [email protected] OrgAbuseRef: https://rdap.arin.net/registry/entity/MAC74-ARIN OrgTechHandle: MRPD-ARIN OrgTechName: Microsoft Routing, Peering, and DNS OrgTechPhone: +1-425-882-8080 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/MRPD-ARIN OrgTechHandle: SINGH683-ARIN OrgTechName: Singh, Prachi OrgTechPhone: +1-425-707-5601 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/SINGH683-ARIN OrgTechHandle: IPHOS5-ARIN OrgTechName: IPHostmaster, IPHostmaster OrgTechPhone: +1-425-538-6637 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/IPHOS5-ARIN OrgTechHandle: KIMAV-ARIN OrgTechName: Kim, Avery OrgTechPhone: +1-425-882-8080 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/KIMAV-ARIN OrgRoutingHandle: CHATU3-ARIN OrgRoutingName: Chaturmohta, Somesh OrgRoutingPhone: +1-425-882-8080 OrgRoutingEmail: [email protected] OrgRoutingRef: https://rdap.arin.net/registry/entity/CHATU3-ARIN

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 1 year ago
Appeared in 2 threat reports