IP Intelligence Briefing: 142.44.220.18
Date: 2026-06-15
---
**1. Core Profile**
- Risk Score: 30 (Low Risk)
- Ownership:
- ASN: 16276 (OVH)
- Organization: "Dmytro, Ahrefs Pte Ltd"
- Network: 142.44.220.0/24
- Geolocation:
- Country: Canada (CA)
- City: Singapore (discrepancy noted; geolocation accuracy radius: 3,000 km)
- Network Role:
- Type: Cloud Compute (OVH infrastructure)
- Hosting: Yes
- Subnet Abuse Density: 62.89% (high abuse classification)
---
**2. Threat & Security Indicators**
- Threat Observations:
- No direct malicious indicators (no malware, spam, or known attacker associations).
- DNS:
- Resolves to `proxy-ca006-san18.ahrefs.net` (Ahrefs-related hostname).
- DNSSEC validated, CAA records present.
- BGP:
- Valid RPKI state, stable route (AS_PATH: 57866 16276).
- No recent route changes (30-day stability).
- Services:
- No open ports or TLS/HTTP services detected.
---
**3. Network Relationships**
- Subnet: 142.44.220.0/24
- Key Associations:
- OVH Network: 256 IPs in subnet; 156 active, 161 flagged as threats.
- DNS: Linked to Ahrefs' infrastructure (`ahrefs.net`).
- Routing: Part of high-abuse classification due to subnet activity.
---
**4. Neighborhood Analysis**
- Subnet Abuse Density: 62.89% (high abuse classification).
- Neighbor Risk:
- 100 IPs in subnet; 99% medium-low risk, 1% high risk.
- Notable Neighbors:
- IPs with risk scores of 40โ50 (likely benign, but monitor for anomalies).
---
**5. Observational History**
- Recent Activity (30 Days):
- 29 observations; 15+ signals logged (e.g., DNS, geolocation, BGP).
- Moderate Risk Signals: 7/8 dimensions analyzed (e.g., routing, ownership).
- Geolocation Plausibility: Low confidence (city mismatch).
---
**6. Recommendations**
- Monitor Subnet: High abuse density in 142.44.220.0/24 warrants closer scrutiny.
- Verify DNS Associations: Confirm legitimacy of Ahrefs-related DNS entries.
- Check for Anomalies: No immediate action required, but correlate with other IPs in the subnet for potential lateral movement.
- Geolocation Discrepancy: Investigate why IP reports "Singapore" despite being registered in Canada.
Conclusion: 142.44.220.18 is a low-risk cloud-hosted IP, but its subnet shows elevated abuse activity. No direct threats detected, but ongoing monitoring is advised.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Dmytro, Ahrefs Pte Ltd |
| ASN | AS16276 |
| Network Name | OVH-CUST-281059685 |
| CIDR Block | 142.44.220.0/24 |
| RIR | ARIN |
| Country | Singapore |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR | proxy-ca006-san18.ahrefs.net |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-ca006-san18.ahrefs.net |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 31% | 2 | 4 |
| routing | 24% | 3 | 4 |
| services | 12% | 2 | 2 |
| ownership | 26% | 3 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 39% | 2 | 3 |
| Overall | 27% | 13 | 19 |
| Data Coherence | Mostly Consistent (80%) โ 1 contradiction(s) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-22 03:08:25 UTC |
| Last Seen | 2026-06-28 16:56:32 UTC |
| Profile Built | 2026-06-29 05:01:51 UTC |
| Data Freshness | Live |
| Signal Types | 26 |
| Total Observations | 29 |
Full dossier details are available via our API.