IP Intelligence Briefing: 142.44.220.90
Date: 2026-06-11
---
**1. Core Profile**
- Risk Score: 50 (Moderate Risk)
- Ownership: Registered to Dmytro, Ahrefs Pte Ltd (OVH ASN 16276).
- Geolocation:
- Country: Canada (CA)
- City: Singapore (geo-plausibility: 3000 km accuracy radius).
- Network Role: Cloud compute infrastructure (OVH-hosted, no public services).
- Threat Indicators: No malicious activity detected (no blacklists, spam, or known attacker associations).
---
**2. Observation History**
- Risk Trends: Minimal risk observed over the past 30 days.
- Key Signals:
- Subnet abuse density: 0.5217 (high_abuse classification).
- Inherited risk: 20 (from subnet).
- 132 of 253 sibling IPs in the 142.44.220.0/24 subnet show medium/high risk.
- Stability: Route instability detected (unstable BGP prefix).
---
**3. Relationships & Dependencies**
- DNS Associations:
- Linked to proxy-ca006-san90.ahrefs.net (PTR record).
- No email authentication (SPF/DKIM) detected.
- Network Connections:
- Same subnet as OVH-CUST-281059685 (high abuse density).
- No direct ties to known malicious entities.
---
**4. Neighborhood Analysis**
- Subnet: 142.44.220.0/24 (253 total IPs).
- Risk Distribution:
- 94 IPs rated medium risk.
- 4 IPs rated low risk.
- 1 IP (142.44.220.90) marked as moderate risk.
- Abuse Density: 52.17% of subnet IPs flagged for abuse.
---
**5. Actionable Insights**
- Monitor Subnet: The IP resides in a high-abuse subnet. Investigate traffic patterns to mitigate potential lateral movement.
- Verify DNS: Confirm legitimacy of proxy-ca006-san90.ahrefs.net to ensure no spoofing or misconfiguration.
- Network Segmentation: Consider isolating this subnet due to its elevated abuse density.
- BGP Stability: Address route instability (OVH BGP prefix) to prevent traffic hijacking.
Conclusion: While the IP itself is clean, its subnetβs high abuse density warrants closer scrutiny. SOC teams should prioritize monitoring network behavior and ensuring segmentation to reduce exposure to adjacent risks.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Dmytro, Ahrefs Pte Ltd |
| ASN | AS16276 |
| Network Name | OVH-CUST-281059685 |
| CIDR Block | 142.44.220.0/24 |
| RIR | ARIN |
| Country | Singapore |
| Abuse Contact | β |
π DNS Intelligence
| PTR | proxy-ca006-san90.ahrefs.net |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-ca006-san90.ahrefs.net |
π DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 26% | 2 | 2 |
| routing | 8% | 1 | 1 |
| services | 22% | 2 | 2 |
| ownership | 19% | 2 | 2 |
| reputation | 23% | 1 | 2 |
| geolocation | 19% | 2 | 2 |
| Overall | 19% | 10 | 11 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-26 00:49:38 UTC |
| Last Seen | 2026-06-29 02:16:54 UTC |
| Profile Built | 2026-06-29 08:20:10 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 19 |
Full dossier details are available via our API.