Your IP: 216.73.216.123
π€ Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.
IP Intelligence Briefing: 142.44.228.196
Date: 2026-06-09
---
**1. Core Profile**
- Risk Score: Low (25/100) | Provider: OVH | Organization: Dmytro, Ahrefs Pte Ltd
- Geolocation: Canada (QC), Singapore (approx. 3000 km accuracy radius)
- Network Role: Hosting provider (OVH-CUST-281059695) | Subnet: 142.44.228.0/24
- DNS: Resolves to `proxy-ca016-san196.ahrefs.net` (Ahrefs infrastructure)
- Services: No open ports or TLS certificates detected.
---
**2. Threat & Behavior**
- Threat Indicators: No malware, spam, or known attacker activity detected.
- Historical Observations:
- Stable network role (hosting/cloud) since June 2026.
- Subnet abuse density: 47.37% (mixed classification, 117/247 IPs flagged).
- Subnet Risk: Inherited risk score of 18 due to neighbor activity.
---
**3. Relationships**
- Network Affiliation: Directly tied to OVH's OVH-CUST-281059695 network.
- DNS Associations: Linked to Ahrefs' proxy hostname `proxy-ca016-san196.ahrefs.net`.
- No Known Campaigns: No correlation with malicious campaigns or blacklists.
---
**4. Neighborhood Analysis**
- Subnet: 142.44.228.0/24 (247 IPs)
- Active Neighbors: 123 IPs (54 medium-risk, 45 low-risk, 28 high-risk).
- Abuse Density: 47.37% (moderate risk).
- Neighbor IPs: Includes 100+ IPs with mixed risk profiles, including 54 medium-risk and 45 low-risk.
---
**5. Recommended Actions**
- Monitor Subnet: Given the subnetβs 47% abuse density, monitor traffic patterns and flag anomalies.
- Block High-Risk Neighbors: Consider blocking high-risk IPs in the 142.44.228.0/24 subnet.
- Verify DNS: Confirm DNS resolution to `proxy-ca016-san196.ahrefs.net` is legitimate (Ahrefs is a legitimate SEO company).
- No Immediate Action Required: The IP itself is low-risk, but subnet-level threats warrant closer scrutiny.
---
Conclusion: This IP is a low-risk hosting server operated by Ahrefs, part of a subnet with moderate abuse. While no direct threats are detected, the subnetβs activity suggests monitoring for lateral movement or network compromise.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Dmytro, Ahrefs Pte Ltd |
| ASN | AS16276 |
| Network Name | OVH-CUST-281059695 |
| CIDR Block | 142.44.228.0/24 |
| RIR | ARIN |
| Country | Singapore |
| Abuse Contact | β |
π DNS Intelligence
| PTR | proxy-ca016-san196.ahrefs.net |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-ca016-san196.ahrefs.net |
π DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
No certificate
Issued by β
N/A
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 36% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 19% | 2 | 2 |
| reputation | 31% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 24% | 10 | 15 |
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
β Claimed geolocation contradicts RTT physics measurement
π Observation Timeline π Live
| First Seen | 2026-05-21 14:56:12 UTC |
| Last Seen | 2026-06-28 13:29:56 UTC |
| Profile Built | 2026-06-29 01:33:32 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 24 |
π 21 signal types Β· 24 observations collected
This report is generated from 21+ independent intelligence signals including
ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds,
behavioral fingerprinting, and more.
Full dossier details are available via our API.
Full dossier details are available via our API.
βΉοΈ About This Report
All data shown is publicly available network metadata β IP addresses do not reliably identify individuals.
Assessments are probabilistic and should not be used as sole basis for access control decisions.
To report an issue or request data review, contact admin@ipdebrief.com.