IPDebrief

37.27.96.153

IP Intelligence Dossier
Your IP: 216.73.217.34
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

IP INTELLIGENCE BRIEFING: 37.27.96.153/32

Classification: LOW RISK

Report Date: Current

Risk Score: 0/100

---

EXECUTIVE SUMMARY

IP address 37.27.96.153 is associated with Hetzner Online GmbH (ASN 24940) infrastructure in Helsinki, Finland. The IP demonstrates a low-risk profile with no active threat indicators, blacklist listings, or persistent malicious activity observed. Network classification indicates the IP may be designated as a Tor Exit Node, though no operational evidence of Tor traffic was detected during analysis.

---

OWNERSHIP & GEOSPATIAL

AttributeValue
ASN24940 (Hetzner Online GmbH)
NetworkDE-HETZNER-20111228 (37.27.0.0/16)
CountryFinland (FI)
Region/CityUusimaa, Helsinki
RIRRIPE
PTR Hostnamestatic.153.96.27.37.clients.your-server.de

---

THREAT INTELLIGENCE

---

NETWORK INFRASTRUCTURE

---

HISTORICAL OBSERVATION (Last 16 Signals)

The IP has been observed with the following signal history:

No persistent malicious behavior detected. Threat observation count remains at zero.

---

NEIGHBORHOOD ANALYSIS (37.27.96.0/24)

MetricValue
Total Siblings0
Active Siblings0
Threat Siblings0
Abuse Density0/100
ClassificationClean

The /24 subnet shows zero neighbor activity with no adjacent threat activity detected.

---

RELATIONSHIP GRAPH

---

RECOMMENDED ACTIONS

Current Risk Score: 0/100

The IP demonstrates benign characteristics consistent with normal hosting infrastructure. While classified as a potential Tor Exit Node, no operational Tor traffic was detected. The Hetzner network context suggests this is a standard customer-facing IP with no active abuse indicators.

---

BRIEFING NOTES FOR SOC ANALYSTS

1. IP belongs to major European hosting provider (Hetzner) with established reputation

2. No active threat indicators or blacklist listings present

3. Historical data shows stable ownership with no malicious activity patterns

4. Neighboring subnet demonstrates zero abuse density

5. Monitor for any changes in threat classification or blacklist status in future assessments

END REPORT

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ซ๐Ÿ‡ฎ Finland
RegionUusimaa
CityHelsinki
TimezoneEurope/Helsinki
Latitude60.17
Longitude24.93

๐Ÿข Ownership & Registration

OrganizationHetzner Online GmbH - Contact Role
ASNAS24940
Network NameDE-HETZNER-20111228
CIDR Block37.27.0.0/16
RIRRIPE
CountryFI
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRstatic.153.96.27.37.clients.your-server.de
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnamesstatic.153.96.27.37.clients.your-server.de

๐Ÿ” DNS Hygiene

Hygiene Score100% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAAPresent

โ˜๏ธ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeMulti-Service Host
Network TierTier 2 โ€” Moderate operator sophistication with routing hygiene
CloudHosting

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpโ€”
22sshtcp
Closed Ports25, 443, 3389, 8080, 8443 (2 open / 7 scanned)
Servermytrade
HTTP Titleโ€”
SSH VersionSSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.18

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
24
routing
24%
45
services
35%
26
ownership
27%
35
reputation
22%
13
geolocation
20%
23
Overall25%1426
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionHigh (100%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-08-13 03:25:04 UTC
Last Seen2026-09-14 09:49:41 UTC
Profile Built2026-09-14 09:58:25 UTC
Data FreshnessLive
Signal Types33
Total Observations47
๐Ÿ” 33 signal types ยท 47 observations collected
This report is generated from 33+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.