# IP INTELLIGENCE BRIEFING: 167.233.63.202/32
## Executive Summary
IP 167.233.63.202 presents a LOW RISK profile with an overall risk score of 25. The address is assigned to Hetzner Online GmbH cloud infrastructure in Germany. No active threat indicators detected. Recommend monitoring but no immediate blocking required.
## Ownership and Network Classification
- Organization: Hetzner Online GmbH - Contact Role (AS24940)
- Network Name: CLOUD-FSN1 (167.233.48.0/20)
- Location: D-91710 Gunzenhausen, Germany (51.17°N, 10.45°E)
- Infrastructure Type: Cloud Compute
- Network Role: Firewalled / No Services Detected
- Registration: ARIN RIR
## Technical Profile
- DNS Resolution: static.202.63.233.167.clients.your-server.de (forward confirmed)
- Hosted Domain: your-server.de
- Email Authentication: SPF and DMARC records present
- Open Ports: None detected (firewalled configuration)
- TLS/Certificates: None observed
- DNSBL Status: Listed on 1 of 8 DNSBL lists
## Threat Assessment
- Risk Score: 25 (Low Risk)
- Abuse Confidence: Not assessed
- Known Attacker: False
- Spam Source: False
- Tor Exit Node: False
- Known Campaigns: None correlated
- Blacklist Count: 0
## Neighborhood Analysis (167.233.63.0/24)
- Abuse Density: 1 (mostly_clean classification)
- Inherited Risk: 2
- Total Siblings: 1
- Active Siblings: 1
- Threat Siblings: 1
## Observations and History
- Total Observations: 23 signals
- Most Recent Signal: 2026-06-21T11:56:49Z
- Threat Persistence: Not persistently malicious
- Ownership Stability: 0 changes observed
- Signal Evolution: Consistent basic classification signals over observation period
## Relationship Graph
- Network Associations: Multiple links to CLOUD-FSN1 subnet
- DNS Associations: your-server.de domain infrastructure
- Fingerprint: No distinctive server fingerprint detected
## Recommended Actions
Risk Score: 25 (Low) - No immediate blocking recommended.
- Monitor for changes in risk score
- Review DNSBL listing (1 of 8 lists) for context
- No specific firewall rules generated at this risk level
- Standard logging and monitoring advised
## SOC Analyst Notes
This IP represents legitimate cloud hosting infrastructure associated with Hetzner's CLOUD-FSN1 network. The one DNSBL listing may warrant investigation to determine source and relevance. The neighborhood shows minimal abuse density with one threat sibling detected. No active attack campaigns or persistent malicious behavior observed. Treat as standard cloud infrastructure traffic with normal monitoring practices.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Hetzner Online GmbH - Contact Role |
| ASN | AS24940 |
| Network Name | CLOUD-FSN1 |
| CIDR Block | 167.233.48.0/20 |
| RIR | ARIN |
| Country | DE |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | static.202.63.233.167.clients.your-server.de |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | static.202.63.233.167.clients.your-server.de |
๐ DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 33% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 21% | 2 | 2 |
| ownership | 30% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 21% | 2 | 2 |
| Overall | 24% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-06-05 01:01:29 UTC |
| Last Seen | 2026-06-21 11:57:04 UTC |
| Profile Built | 2026-06-21 12:02:11 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 25 |
Full dossier details are available via our API.