IP Intelligence Briefing: 89.167.120.76
Date: 2026-06-10
---
**1. Core Profile**
- Risk Rating: Low Risk (Risk Score: 0 / Provider Score: 0 / Authority Score: 0)
- Ownership:
- ASN: 24940 (Hetzner Online GmbH)
- Geolocation: Finland (FI), but DNS records indicate Bavaria, Germany (Gunzenhausen). Potential data inconsistency.
- Network Role: CloudCompute (Hetzner Hosting)
- Threat Indicators: No malicious activity, spam, or known attacker associations.
---
**2. Network & DNS**
- DNS:
- PTR hostname: `static.76.120.167.89.clients.your-server.de`
- SPF/DMArc: Validated (SPF: true, DMARC: true)
- No open ports or TLS certificates detected.
- BGP:
- Origin ASN: 24940
- Prefix: `89.167.0.0/17`
- Route Stability: Unstable (ICMP validation blocked, no RTT data).
---
**3. Observation History**
- Last 30 Days:
- Consistent classification as a cloud-hosted server with Hetzner.
- No spikes in threat signals, abuse confidence, or DNS anomalies.
- Geo validation failed due to ICMP blocking, but geolocation remains plausible.
---
**4. Relationships**
- Linked Entities:
- DNS: Repeated association with `your-server.de` (likely internal domain).
- Network: Subnet `CLOUD-HEL1` (Hetzner infrastructure).
- No ties to Tor, VPNs, or CDN services.
---
**5. Neighborhood Analysis**
- Subnet: `89.167.120.76/24`
- Neighbor Risk:
- 0 abuse density, 0 malicious siblings.
- No active neighbors (possibly a single-host subnet or incomplete data).
---
**6. Recommendations**
- Monitor: Track geolocation inconsistencies and BGP route stability.
- Firewall: Allow traffic based on Hetznerโs infrastructure rules; no immediate blocking required.
- Verify: Confirm DNS records and geolocation accuracy with Hetzner support.
Conclusion: This IP is a legitimate Hetzner-hosted cloud server with no malicious activity detected. No action required unless new threats emerge.
---
*Generated by IPDebrief | © 2026 Jason Alberino*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Hetzner Online GmbH - Contact Role |
| ASN | AS24940 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | RIPE |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | static.76.120.167.89.clients.your-server.de |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | static.76.120.167.89.clients.your-server.de |
๐ DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | 2/2 domains |
| DMARC | 2/2 domains |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
| Domains Checked | 2 domains |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | โ |
| 443 | https | tcp | โ |
| 22 | ssh | tcp | |
| Closed Ports | 25, 3389, 8080, 8443 (3 open / 7 scanned) | ||
| Server | nginx/1.27.5 |
| HTTP Title | โ |
| SSH Version | SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.16 |
๐ TLS Certificate
| SANs | liveexpert.aiwww.liveexpert.ai |
| Valid From | 2026-04-16T17:50:42+00:00 |
| Valid Until | 2026-07-15T17:50:41+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha384ECDSA |
| Validity Period | 89 days |
| Serial Number | 05BAC92F5941F2A1E4974942D3A57AE96D3C |
| Thumbprint | 450F293D97CCDCADB259404D913A5A0311E51FA1 |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 30% | 2 | 3 |
| ownership | 20% | 2 | 3 |
| reputation | 18% | 1 | 2 |
| geolocation | 34% | 2 | 3 |
| Overall | 24% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-24 12:36:00 UTC |
| Last Seen | 2026-06-29 00:17:30 UTC |
| Profile Built | 2026-06-29 06:19:19 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 25 |
Full dossier details are available via our API.