IP Intelligence Briefing: 142.44.220.216
Date: 2026-06-08
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Ownership:
- ASN: AS16276 (OVH)
- Organization: Dmytro, Ahrefs Pte Ltd
- Subnet: 142.44.220.0/24
- Geolocation:
- Country: Canada (CA)
- Region: QC (Quebec)
- City: Singapore (likely misattribution)
- Network Role:
- Cloud compute instance (OVH)
- No open ports, no TLS certs, no HTTP services
---
**2. Threat Indicators**
- No malicious activity detected:
- No known attackers, spam, or abuse reports.
- No DNSBL listings or TLS certificate threats.
- Behavioral Analysis:
- Scans detected (ports scanned), but no exploitation or data exfiltration signs.
- BGP stability: Route changes last 30 days = 0, stable.
---
**3. Observation History**
- Recent Activity (June 8, 2026):
- DNS resolution for `proxy-ca006-san216.ahrefs.net` (Ahrefs infrastructure).
- Network scans (ports 22, 80, 443, etc.) with low confidence (0.5โ0.8).
- No persistent threats or honeypot hits.
---
**4. Relationships**
- DNS Associations:
- Linked to `proxy-ca006-san216.ahrefs.net` (Ahrefs domain).
- Network:
- Part of OVH subnet (AS16276), shared with 252 IPs.
- 88 active siblings, 126 flagged as high-risk.
---
**5. Neighborhood Analysis**
- Subnet: 142.44.220.0/24
- Abuse Density: 0.5 (moderate risk)
- Neighbor Risk Distribution:
- High Risk: 0
- Medium Risk: 97 IPs
- Low Risk: 2 IPs
- Notable:
- 100% of neighbors have no abuse reports.
---
**6. Recommendations**
- Monitor Subnet: Track high-risk neighbors (126 IPs) for lateral movement.
- Verify Geolocation: Discrepancy between "Canada" and "Singapore" may indicate misconfigured DNS or spoofing.
- No Immediate Actions: IP is low-risk, but subnet has moderate abuse density.
Conclusion: 142.44.220.216 is a legitimate cloud compute instance owned by Ahrefs. No active threats detected, but SOC teams should monitor its subnet for emerging risks.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Dmytro, Ahrefs Pte Ltd |
| ASN | AS16276 |
| Network Name | OVH-CUST-281059685 |
| CIDR Block | 142.44.220.0/24 |
| RIR | ARIN |
| Country | Singapore |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR | proxy-ca006-san216.ahrefs.net |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-ca006-san216.ahrefs.net |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 39% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 15% | 2 | 2 |
| reputation | 22% | 1 | 2 |
| geolocation | 39% | 2 | 3 |
| Overall | 24% | 10 | 13 |
| Data Coherence | Mostly Consistent (80%) โ 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-19 21:39:11 UTC |
| Last Seen | 2026-06-28 09:36:48 UTC |
| Profile Built | 2026-06-29 03:41:16 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 24 |
Full dossier details are available via our API.