IP Intelligence Briefing: 91.107.254.4
*Generated via IPDebrief Threat Intelligence Platform*
---
**1. Core Profile**
- Risk Assessment: Moderate Risk (Risk Score: 40/100)
- Ownership:
- ISP: Hetzner Online GmbH (ASN: 24940)
- Location: Nuremberg, Bavaria, Germany (Coordinates: 51.17°N, 10.45°E)
- Network Role:
- Cloud Compute instance (Hosting: Yes, CDN: No, Mobile: No)
- Subnet: 91.107.254.4/24 (Abuse Density: 0, Classified as "mostly_clean")
---
**2. Threat Indicators**
- Malicious Activity: None detected (no malware, phishing, or C2 indicators).
- DNS Configuration:
- PTR record: `static.4.254.107.91.clients.your-server.de`
- SPF/DKIM/DNSSEC configured (email security posture: Good).
- BGP/Network:
- Route stability: Unstable (last 30 days).
- No known Tor/VPN/proxy activity.
---
**3. Historical Observations**
- Signal Trends:
- Last 30 days: No significant changes in risk score or threat indicators.
- DNS and geolocation data consistent (no spoofing detected).
- Ownership Stability:
- No ownership changes; IP has been consistently registered to Hetzner.
---
**4. Network Relationships**
- DNS Associations:
- Linked to `your-server.de` (hostname: `static.4.254.107.91.clients.your-server.de`).
- Subnet Peers:
- No active neighbors in the 91.107.254.4/24 subnet (0 active siblings).
- Subnet classified as "mostly_clean" with no inherited risks.
---
**5. Recommendations**
- Monitoring:
- Track DNS and network behavior for anomalies (e.g., unexpected connections).
- Verify if the server is part of a larger infrastructure (e.g., cloud workload).
- Security:
- Ensure DNS records are properly configured and secured (e.g., CAA, DNSSEC).
- No immediate firewall rules required, but maintain visibility for cloud compute instances.
---
Conclusion:
The IP 91.107.254.4 is a legitimate Hetzner cloud server with no current malicious activity. While it shows moderate risk due to network instability, there are no direct threats. SOC teams should monitor for unexpected behavior but prioritize other high-risk assets.
*Generated from IPDebrief intelligence on 2026-06-08.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Hetzner Online GmbH - Contact Role |
| ASN | AS24940 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | RIPE |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | static.4.254.107.91.clients.your-server.de |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | static.4.254.107.91.clients.your-server.de |
๐ DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 25% | 2 | 2 |
| Overall | 20% | 9 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-18 15:27:39 UTC |
| Last Seen | 2026-06-28 07:44:18 UTC |
| Profile Built | 2026-06-29 01:49:32 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 24 |
Full dossier details are available via our API.