# IP INTELLIGENCE BRIEFING: 142.44.225.62/32
Classification: LOW RISK | Date: 2026-06-26
## Executive Summary
IP 142.44.225.62 is a low-risk cloud infrastructure address associated with Ahrefs Pte Ltd, hosted on OVH infrastructure. The IP demonstrates minimal threat indicators and serves as a cloud compute endpoint with no active malicious campaigns. However, geolocation anomalies and moderate neighborhood abuse density warrant contextual monitoring.
## Risk Assessment
- Overall Risk Score: 25/100 (Low Risk)
- Reputation: Low Risk
- Abuse Confidence Score: Not Available
- Blacklist Count: 0
- Threat Persistence Days: 0
## Ownership & Infrastructure
- Organization: Dmytro, Ahrefs Pte Ltd
- ASN: 16276 (OVH)
- CIDR Block: 142.44.225.0/24
- Infrastructure Type: CloudCompute
- Provider: OVH (Data Center Hosting)
- Service Classification: Firewalled / No Services
## Geolocation Analysis
- Reported Country: Canada (CA)
- Reported Region/City: QC/Singapore
- Geolocation Status: Plausibility Violation Detected
- RTT Anomaly: 28ms observed vs 112ms minimum expected for reported distance (5,598km)
- Distance Violation: Confirmed - geographic metadata inconsistent
## DNS & Resolution Profile
- Reverse DNS: proxy-ca017-san62.ahrefs.net
- Forward Resolution: proxy-ca017-san62.ahrefs.net (ahrefs.net)
- Forward Confirmation: False
- Email Authentication: No SPF/DMARC records detected
- HTTP Services: None detected (firewalled)
## Threat Indicators
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Active Campaigns: None
- Threat Feeds: No matches
- Control Plane: RPKI state unknown, IRR consistency unknown
## Network Neighborhood (142.44.225.0/24)
- Abuse Density: 0.3984 (39.84%)
- Classification: Mixed
- Inherited Risk: 15/100
- Total Subnet Size: 256 IPs
- Active Siblings: 224
- Threat Siblings: 102
- Risk Distribution: 55 Medium, 45 Low, 0 High
## Historical Observations (26 signals)
Recent activity includes subnet abuse density monitoring, DNS CAA record validation, and routing stability assessments. No escalation patterns detected. Threat observation count: 1.
## Interconnected Entities
71 relationships identified, predominantly same-network connections to OVH-CUST-281059696 subnet.
## Security Recommendations
No automated actions required based on current risk profile. Consider:
1. Monitor geolocation consistency (Canada vs Singapore discrepancy)
2. Review neighborhood abuse density context (102 threat siblings in /24)
3. Verify service purpose alignment with Ahrefs.net domain
Assessment: This IP represents legitimate cloud infrastructure with no active malicious indicators. Geolocation metadata requires validation but does not indicate malicious intent.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Dmytro, Ahrefs Pte Ltd |
| ASN | AS16276 |
| Network Name | OVH-CUST-281059696 |
| CIDR Block | 142.44.225.0/24 |
| RIR | ARIN |
| Country | Singapore |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR | proxy-ca017-san62.ahrefs.net |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-ca017-san62.ahrefs.net |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 4 |
| routing | 20% | 2 | 3 |
| services | 12% | 2 | 2 |
| ownership | 22% | 3 | 3 |
| reputation | 27% | 1 | 3 |
| geolocation | 32% | 2 | 3 |
| Overall | 23% | 12 | 18 |
| Data Coherence | Mostly Consistent (80%) โ 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:03:43 UTC |
| Last Seen | 2026-06-26 23:02:47 UTC |
| Profile Built | 2026-06-27 19:17:23 UTC |
| Data Freshness | Live |
| Signal Types | 24 |
| Total Observations | 30 |
Full dossier details are available via our API.