IP Address: 40.107.20.88 ⚠ IP Confounder
Outbound; PTR: *.outbound.protection.outlook.com
Differentiating between Office 365, including email protection services, and Azure (public cloud) when diagnosing incidents is challenging because they utilize shared Microsoft-owned IP ranges. Most of this is probably O365/Outlook or Defender protection breaking DKIM and SPF authentication. Disambiguation is a work-in-progress.
This page shows DMARC authentication failure data for this IP address. Learn more about this data.
Geolocation Information
- Country:
- IE Ireland
- Region:
- Leinster
- City:
- Dublin
- Coordinates:
- 53.3382, -6.2591
WHOIS Information
- Network Name:
- MSFT
- CIDR:
40.125.0.0/17, 40.124.0.0/16, 40.96.0.0/12, 40.112.0.0/13, 40.74.0.0/15, 40.76.0.0/14, 40.120.0.0/14, 40.80.0.0/12- Owner:
- Microsoft Corporation
- Org ID:
MSFT- Address:
- One Microsoft Way, Redmond, WA 98052
- Reverse DNS:
-
mail-db8eur05on2088.outbound.protection.outlook.com
Last updated: 2/5/2026
Analysis
This IP was first observed on September 13, 2024 and most recently on December 19, 2024. It has been associated with 2 failed authentication events affecting 2 messages, representing low but recurring activity. The IP belongs to MSFT (Microsoft Corporation), a network with activity associated with Ireland. 8 other IPs in the same /24 subnet (40.107.20.*) also appear in this dataset.
Network Topology
External Reputation Lookups
Look up this IP in external threat intelligence and reputation databases (opens in new tab):
Nearby IPs
Other IPs in the 40.107.20.0/24 range observed failing DMARC:
40.107.20.75 (2 failures), 40.107.20.59 (2 failures), 40.107.20.118 (1 failure), 40.107.20.120 (1 failure), 40.107.20.129 (1 failure), 40.107.20.135 (1 failure), 40.107.20.48 (1 failure), 40.107.20.57 (1 failure)