IPDebrief

162.254.193.103

IP Intelligence Dossier
Your IP: 216.73.217.34
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

The IP address 162.254.193.103 was profiled as a High Risk asset (Score: 70) owned by Valve Corporation (ASN 32590) in Chicago, US. Although associated with legitimate Steam server infrastructure (cmp1-ord1.steamserver.net), the system recommended a critical severity block based on a high risk score and strong threat evidence. Correlation analysis identified 43 related IPs and a high campaign likelihood. The endpoint served HTTPS traffic via nginx/1.29.8 on port 443 with a valid Let's Encrypt certificate. While the subnet neighborhood was classified as mostly clean (Abuse Density: 0.1667), the profile showed zero blacklist entries and zero known attacker indicators. The assessment maintained a Very Low confidence score (0.1921) due to insufficient intent data, with observations recorded between August 31, 2026, and September 21, 2026.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionIllinois
CityChicago
Timezoneβ€”
Latitude41.85
Longitude-87.63

🏒 Ownership & Registration

OrganizationValve Corporation
ASNAS32590
Network NameVALVE-V4-6
CIDR Block162.254.192.0/21
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR162-254-193-103.valve.net
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnames162-254-193-103.valve.net

πŸ” DNS Hygiene

Hygiene Score60% (Good)
SPF3/3 domains
DMARC3/3 domains
FCrDNSNot verified
DNSSECNot signed
CAAPresent
Domains Checked3 domains

☁️ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierUnknown β€” Insufficient routing data to classify
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
443httpstcpβ€”
Closed Ports22, 25, 80, 3389, 8080, 8443 (1 open / 7 scanned)
Servernginx/1.29.8
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
CN=cmp1-ord1.steamserver.net
Issued by CN=YE2, O=Let's Encrypt, C=US
Self-signed: No
SANscmp1-ord1.steamserver.net
Valid From2026-08-19T22:05:40+00:00
Valid Until2026-11-17T22:05:39+00:00
TLS ProtocolTls13
Cipher SuiteTLS_AES_256_GCM_SHA384
Signature Algorithmsha384ECDSA
Validity Period89 days
Serial Number0662562EE76C32334BF62F5BBD5A2375E62F
ThumbprintF7110AFA7FA9023C7AD3AD2CF312CA64D18C43D3

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
42%
23
routing
13%
11
services
33%
24
ownership
27%
23
reputation
19%
12
geolocation
35%
23
Overall28%1016
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-08-31 22:44:41 UTC
Last Seen2026-09-21 13:14:30 UTC
Profile Built2026-09-21 13:29:29 UTC
Data FreshnessLive
Signal Types24
Total Observations32
πŸ” 24 signal types Β· 32 observations collected
This report is generated from 24+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.