# IP INTELLIGENCE BRIEFING
Target: 167.233.110.17/32
Classification: Low Risk Cloud Infrastructure
Date: Current Intelligence Cycle
---
## EXECUTIVE SUMMARY
IP 167.233.110.17 presents as a low-risk cloud compute endpoint operated by Hetzner Online GmbH. The address exhibits standard web server characteristics with no active threat indicators, zero blacklist entries, and no evidence of malicious activity. Risk assessment score of 25 (Low Risk) indicates minimal threat to organizational networks.
---
## OWNERSHIP & GEOSPATIAL DATA
| Attribute | Value |
|---|---|
| **Organization** | Hetzner Online GmbH - Contact Role |
| **ASN** | 24940 |
| **Network Name** | CLOUD-FSN1 |
| **CIDR Block** | 167.233.96.0/20 |
| **Country** | Germany (DE) |
| **City** | Gunzenhausen, DE-91710 |
| **RIR** | ARIN |
| **Registration** | Cloud infrastructure allocation |
---
## NETWORK CLASSIFICATION
- Infrastructure Type: Cloud Compute (Hetzner)
- Service Purpose: Web Server
- Hosting: Yes
- CDN/Proxy/VPN/Tor: No
- Residential: No
- Bogon: No
- Anycast: No
---
## DNS & SERVICE FINGERPRINTING
Reverse DNS Resolution:
- PTR Hostname: `static.17.110.233.167.clients.your-server.de`
- Forward Resolution: Confirmed
- Domain: `your-server.de`
Open Ports:
| Port | Protocol | Service |
|---|---|---|
| 80 | TCP | HTTP |
| 443 | TCP | HTTPS |
| 22 | TCP | SSH |
TLS Certificate:
- Issuer: Let's Encrypt (US)
- Subject: CN=automation.getregulars.com
- Protocol: TLS 1.3
- Certificate: Valid, non-self-signed
Server Banner: nginx/1.28.3 (Ubuntu)
---
## THREAT INDICATORS ASSESSMENT
| Indicator | Status |
|---|---|
| **Risk Score** | 25 (Low Risk) |
| **Abuse Confidence** | Not applicable |
| **Known Attacker** | No |
| **Spam Source** | No |
| **Tor Exit Node** | No |
| **Blacklist Count** | 0 |
| **DNSBL Listed** | 1 of 8 lists |
| **Campaign Likelihood** | None |
| **Threat Persistence** | 0 days |
| **Persistently Malicious** | No |
Threat Feeds: None detected
Campaign Matches: 0
---
## NETWORK NEIGHBORHOOD ANALYSIS
Subnet: 167.233.110.17/24
Abuse Density: 0 (Clean)
Classification: Clean
Active Threat Siblings: 0
Total Siblings: 1
The /24 subnet demonstrates no abuse activity, supporting the low-risk classification of this endpoint.
---
## RELATIONSHIP GRAPH ANALYSIS
Identified Relationships (16 total):
- DNS Associations: Multiple entries pointing to `static.17.110.233.167.clients.your-server.de`
- Network Associations: Consistent CLOUD-FSN1 network mapping
- Type Distribution: Standard DNS and network-level relationships
No anomalous cross-domain or cross-network associations detected.
---
## OBSERVATION HISTORY (22 Records)
Temporal Analysis:
- Latest Observations: June 2026
- Service Signals: HTTP/2.0 (nginx/1.28.3), TLS 1.3 certificates
- Status Code: 200 (OK)
- Response Time: ~493ms average
- Security Headers: No CSP, HSTS, or Referrer-Policy headers detected
Signal Evolution:
- Ownership changes: 0
- Threat observation count: 0
- Service characteristics stable over observation period
- No escalation in risk profile observed
---
## SECURITY RECOMMENDATIONS
Current Risk Profile: Low Risk (Score: 25)
Actions: None required
Firewall Rules: Not recommended
Monitoring Priority: Standard
*Note: IP exhibits standard cloud infrastructure behavior with legitimate hosting characteristics. No blocking or rate-limiting actions warranted based on current threat intelligence.*
---
## INTELLIGENCE CONFIDENCE
- Data Sufficiency: High (22 historical observations)
- Signal Confidence: Moderate (0.26-0.90 range across signals)
- Geolocation Validation: Consensus confirmed
- Ownership Verification: Confirmed via RDAP
---
BRIEFING END
*Intel generated from IPDebrief platform analysis*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Hetzner Online GmbH - Contact Role |
| ASN | AS24940 |
| Network Name | CLOUD-FSN1 |
| CIDR Block | 167.233.96.0/20 |
| RIR | ARIN |
| Country | DE |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | static.17.110.233.167.clients.your-server.de |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | static.17.110.233.167.clients.your-server.de |
๐ DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | โ |
| 443 | https | tcp | โ |
| 22 | ssh | tcp | |
| Closed Ports | 25, 3389, 8080, 8443 (3 open / 7 scanned) | ||
| Server | nginx/1.28.3 (Ubuntu) |
| HTTP Title | โ |
| SSH Version | SSH-2.0-OpenSSH_10.2p1 Ubuntu-2ubuntu3.2 |
๐ TLS Certificate
| SANs | automation.getregulars.com |
| Valid From | 2026-06-09T10:44:53+00:00 |
| Valid Until | 2026-09-07T10:44:52+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha384ECDSA |
| Validity Period | 89 days |
| Serial Number | 065261035E3B46ABD7E4F80B73FD5C808CF2 |
| Thumbprint | FB775206B29812E7DEE0C4C2576639CEDED308DF |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 35% | 2 | 3 |
| routing | 17% | 1 | 1 |
| services | 35% | 2 | 3 |
| ownership | 35% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 17% | 1 | 1 |
| Overall | 26% | 9 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-06-09 14:17:38 UTC |
| Last Seen | 2026-06-21 16:15:59 UTC |
| Profile Built | 2026-06-21 16:22:03 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 25 |
Full dossier details are available via our API.