# IP INTELLIGENCE BRIEFING
IP Address: 46.225.21.34/32
Classification: Moderate Risk (Score: 40)
Status: Cloud Infrastructure - Passive Monitoring Recommended
---
## EXECUTIVE SUMMARY
IP 46.225.21.34 belongs to Hetzner Online GmbH (AS24940) within the CLOUD-NBG1 cloud network infrastructure. The address is associated with a German cloud hosting provider and presents moderate risk based on control plane indicators. No active threat indicators or malicious behavior observed. Recommended for passive monitoring rather than immediate blocking.
---
## OWNERSHIP & INFRASTRUCTURE
| Attribute | Value |
|---|---|
| **Organization** | Hetzner Online GmbH - Contact Role |
| **ASN** | 24940 |
| **Network** | CLOUD-NBG1 (46.225.16.0/20) |
| **Infrastructure Type** | CloudCompute |
| **Geolocation** | Nuremberg, Bavaria, Germany (DE) |
| **Coordinates** | 51.17, 10.45 |
---
## THREAT INDICATORS
- Risk Score: 40 (Moderate)
- Blacklist Status: 0 entries (control plane: 2 DNSBL listings, 8 total lists)
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Active Campaigns: None detected
- Threat Feeds: Empty
---
## NETWORK ROLE & SERVICES
- Provider: Hetzner
- Connection Type: Cloud Hosting
- Open Ports: None detected
- Service Status: Firewalled / No Services
- CDN/Proxy/VPN: Not classified as any
- Anycast: No
- Mobile/Residential: No
---
## DNS ANALYSIS
- PTR Hostname: static.34.21.225.46.clients.your-server.de
- Forward Resolution: Confirmed
- Domain: your-server.de
- Email Authentication: SPF and DMARC present
- TXT Records: 0
---
## GEOLOCATION VALIDATION
- Plausibility: Valid (400km accuracy radius)
- Distance from Claimed Location: 456.6km
- Average RTT: 113.2ms
- Minimum Possible RTT: 9.13ms
- Probe Count: 5
---
## OBSERVATION HISTORY (20 Signals)
- Recent Activity: June 2026 timeframe
- Classification Consistency: CloudCompute maintained across observations
- Operator Score: 0.3478 (Basic)
- DNSSEC: Valid
- Route Stability: False (route changes detected within 30 days)
- Threat Persistence: 0 days
- Is Persistently Malicious: No
---
## RELATIONSHIP GRAPH (18 Entities)
- DNS Associations: Multiple entries pointing to static.34.21.225.46.clients.your-server.de
- Network Associations: CLOUD-NBG1 network (46.225.16.0/20)
- Related Entities: No external organization or certificate links identified
---
## NEIGHBORHOOD ANALYSIS (46.225.21.0/24)
- Subnet Abuse Density: 0 (Clean)
- Total Siblings: 1
- Active Siblings: 0
- Threat Siblings: 0
- Classification: Clean
- Inherited Risk: 0
---
## RECOMMENDED ACTIONS
Current Risk Assessment: Moderate (Score: 40)
Recommended Firewall Rules:
- iptables: `iptables -A INPUT -s 46.225.21.34 -j DROP`
- nftables: `nft add rule inet filter input ip saddr 46.225.21.34 drop`
- nginx: `deny 46.225.21.34;`
- pfSense: `46.225.21.34/32`
- Cloudflare WAF: Block with expression `ip.src eq 46.225.21.34`
- AWS WAF: `Addresses: ["46.225.21.34/32"]`
SOC Analyst Guidance:
1. The IP is part of a legitimate cloud hosting provider network (Hetzner)
2. No active threat indicators or malicious behavior observed
3. Control plane shows route instability (potential for prefix changes)
4. Zero threat siblings in neighborhood suggests isolated behavior
5. If blocking required, apply selective firewall rules rather than complete network-wide blocks
6. Monitor for changes in DNSBL listings and threat feed associations
---
Generated by IPDebrief Intelligence Platform
Data Source: Real-time IP intelligence aggregation
Analysis Date: Current
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Hetzner Online GmbH - Contact Role |
| ASN | AS24940 |
| Network Name | CLOUD-NBG1 |
| CIDR Block | 46.225.16.0/20 |
| RIR | RIPE |
| Country | DE |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | static.34.21.225.46.clients.your-server.de |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | static.34.21.225.46.clients.your-server.de |
๐ DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 19% | 2 | 2 |
| routing | 8% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 18% | 1 | 2 |
| geolocation | 34% | 2 | 3 |
| Overall | 19% | 9 | 12 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-25 06:42:21 UTC |
| Last Seen | 2026-06-29 01:22:25 UTC |
| Profile Built | 2026-06-29 07:25:14 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 22 |
Full dossier details are available via our API.