IP Intelligence Briefing: 142.44.233.205
*Generated via IPDebrief tools: Profile, History, Relationships, Neighbors*
---
**Risk Assessment**
- Overall Risk Score: Low (30/100)
- Provider Score: 0 (OVH)
- Authority Score: 0
- Stability: Stable (no recent route changes)
- Threat Indicators: No malicious activity, no blacklists, no known campaigns.
---
**Ownership & Network Context**
- Organization: Dmytro, Ahrefs Pte Ltd (OVH customer, ASN 16276)
- Network: 142.44.233.0/24 (OVH-CUST-281059682)
- Subnet Abuse Density: High (60.16% of siblings flagged as risky)
- Infrastructure: CloudCompute (OVH-hosted, likely a hosting/service provider).
---
**Geolocation & Validation**
- Country: Canada (QC, Beauharnois)
- Geo Validation:
- Plausible? No (RTT discrepancy: 27ms vs. expected 112ms for 5,598km distance).
- Accuracy Radius: 3,000km (low precision).
---
**Threat & Activity History**
- Observations:
- 1 observation in the last 30 days (no trend).
- No persistent malicious activity or campaign correlations.
- DNS:
- PTR hostname: `proxy-ca003-san205.ahrefs.net` (linked to Ahrefs domain).
- No email authentication (SPF/DKIM/DMArC) detected.
---
**Subnet & Neighbor Analysis**
- Subnet: 142.44.233.0/24 (256 IPs)
- Neighbor Risk:
- 93 IPs flagged as medium-risk, 7 as low-risk.
- 154 siblings classified as "high_abuse" (inherited risk: 24).
- Abuse Density: 60.16% (high risk for subnet).
---
**Recommendations**
1. Monitor Subnet: The 142.44.233.0/24 subnet has a high abuse density. Investigate neighboring IPs for potential lateral movement or shared infrastructure risks.
2. Verify Geolocation: Discrepancy in RTT vs. distance suggests possible proxy or misconfigured routing. Validate with additional geolocation sources.
3. Check DNS: Ahrefsβ subdomain (`proxy-ca003-san205.ahrefs.net`) may require further analysis for potential misuse.
4. Baseline Activity: No observed threats, but the subnetβs risk profile warrants ongoing monitoring.
---
Conclusion: 142.44.233.205 is a low-risk IP under a legitimate hosting provider, but its subnet exhibits high abuse density. SOC teams should prioritize subnet-level monitoring and validate geolocation anomalies. No immediate action required, but contextualize within broader network security posture.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Dmytro, Ahrefs Pte Ltd |
| ASN | AS16276 |
| Network Name | OVH-CUST-281059682 |
| CIDR Block | 142.44.233.0/24 |
| RIR | ARIN |
| Country | Singapore |
| Abuse Contact | β |
π DNS Intelligence
| PTR | proxy-ca003-san205.ahrefs.net |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-ca003-san205.ahrefs.net |
π DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 2 β Moderate operator sophistication with routing hygiene |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 26% | 2 | 4 |
| routing | 22% | 3 | 4 |
| services | 12% | 2 | 2 |
| ownership | 22% | 3 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 30% | 2 | 3 |
| Overall | 23% | 13 | 19 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-07 23:03:43 UTC |
| Last Seen | 2026-06-26 23:19:02 UTC |
| Profile Built | 2026-06-27 19:33:45 UTC |
| Data Freshness | Live |
| Signal Types | 28 |
| Total Observations | 34 |
Full dossier details are available via our API.