# IP Intelligence Briefing: 135.181.196.5/32
## Executive Summary
IP 135.181.196.5 is a low-risk cloud compute resource hosted by Hetzner Online GmbH (ASN 24940) in Helsinki, Finland. No malicious activity, threat indicators, or abuse patterns were detected. The IP exhibits standard cloud infrastructure characteristics with no security-relevant anomalies.
## Profile Overview
| Attribute | Value |
|---|---|
| Risk Score | 0 (Low Risk) |
| Provider Score | 0 |
| Authority Score | 0 |
| Reputation | Low Risk |
| Infrastructure Type | Cloud Compute |
| Is Cloud | Yes |
| Is Hosting | Yes |
## Ownership & Network Classification
- Organization: Hetzner Online GmbH - Contact Role
- Netname: CLOUD-HEL1
- ASN: 24940 (Hetzner Online GmbH)
- CIDR Block: 135.181.192.0/20
- RIR: ARIN
- Geolocation: Helsinki, Finland (FI)
## Threat Assessment
- Abuse Confidence Score: Not applicable
- Blacklist Count: 0
- Known Campaigns: None
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Threat Indicators: None detected
## Technical Analysis
- DNS: PTR hostname resolves to static.5.196.181.135.clients.your-server.de
- Forward Resolution: Confirmed (your-server.de)
- Email Authentication: SPF and DMARC configured
- DNSSEC: Valid
- CAA Records: Present
- Services: No open ports detected (Firewalled / No Services)
## Control Plane Observations
- BGP Prefix: 135.181.0.0/16
- Route Stability: Fluctuating (isRouteStable: false)
- Route Changes (30d): 0
- DNSBL Listings: 0 of 8 checked
- Operator Score: 0.3478 (Basic)
## Neighborhood Analysis
- Subnet: 135.181.196.0/24
- Active Siblings: 0
- Threat Siblings: 0
- Abuse Density: 0
- High/Medium Risk Neighbors: None
## Relationship Graph
1. DNS Association: static.5.196.181.135.clients.your-server.de
2. Same Network: CLOUD-HEL1 (network block)
## Historical Observations (16 signals)
Recent observations (August 2026) confirm:
- Consistent ownership with Hetzner Online GmbH
- Geographic validation plausible (claimed Helsinki coordinates)
- No changes in threat persistence or ownership
- No persistent malicious behavior detected
## Recommended Actions
No security actions required. The IP represents a legitimate cloud infrastructure resource with no malicious indicators. Standard monitoring for the Hetzner network block (135.181.0.0/16) is recommended.
## Analyst Notes
This IP is a standard cloud compute endpoint from a reputable hosting provider. The absence of services, threats, or abuse patterns suggests this is a dormant or properly secured cloud resource. No firewall rules or blocking actions are warranted.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Hetzner Online GmbH - Contact Role |
| ASN | AS24940 |
| Network Name | CLOUD-HEL1 |
| CIDR Block | 135.181.192.0/20 |
| RIR | ARIN |
| Country | FI |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | static.5.196.181.135.clients.your-server.de |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | static.5.196.181.135.clients.your-server.de |
๐ DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | 3/3 domains |
| DMARC | 3/3 domains |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
| Domains Checked | 3 domains |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | โ |
| 443 | https | tcp | โ |
| Closed Ports | 22, 25, 3389, 8080, 8443 (2 open / 7 scanned) | ||
| Server | nginx/1.28.3 (Ubuntu) |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | app.mdm-jotbar.scaletech.xyz |
| Valid From | 2026-08-07T09:18:23+00:00 |
| Valid Until | 2026-11-05T09:18:22+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha384ECDSA |
| Validity Period | 89 days |
| Serial Number | 05B5012C7B23CC8E565E989FF2371D07D709 |
| Thumbprint | 07F8560A88E9D345B3F447EFD68CD0F748207D46 |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 35% | 2 | 2 |
| Overall | 18% | 5 | 5 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-08-07 01:03:51 UTC |
| Last Seen | 2026-08-30 22:24:45 UTC |
| Profile Built | 2026-09-03 09:21:41 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 25 |
Full dossier details are available via our API.