IP Intelligence Briefing: 142.44.233.241
Date: 2026-06-13
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Provider: OVH (ASN 16276)
- Organization: Ahrefs Pte Ltd (OVH-CUST-281059682)
- Geolocation:
- Country: Canada (CA)
- City: Singapore (conflicting data; geoValidation flags as implausible)
- Accuracy Radius: 3,000 km
- Network Role: CloudCompute (OVH-hosted, no residential/mobile traffic)
---
**2. Threat Indicators**
- Malicious Activity: None detected (no indicators, blacklist entries, or campaigns).
- DNS Associations:
- Resolves to `proxy-ca003-san241.ahrefs.net` (likely legitimate).
- No suspicious subdomains or email auth records.
- Services: No open ports, TLS certs, or web server banners.
---
**3. Observation History (30-Day Trend)**
- Risk Stability: Minimal fluctuations (avg. risk score 25).
- Key Signals:
- Consistent CloudCompute classification.
- No spikes in threat signals or network anomalies.
---
**4. Network Relationships**
- Shared Subnet: 142.44.233.0/24 (OVH network).
- Neighbors:
- 100 total IPs in subnet; 59 flagged as medium/low risk.
- Abuse density: 0% (no malicious activity in subnet).
- Critical Links:
- Direct association with Ahrefs Pte Ltd (OVH customer).
---
**5. Anomalies & Flags**
- Geolocation Discrepancy:
- IP reports "Singapore" but is registered to Canada (OVH).
- GeoValidation violation: RTT (26ms) inconsistent with 5,598 km distance.
- DNS Resolution:
- Multiple failed DNS queries to internal IPs (192.168.2.108).
---
**6. Recommendations**
- Monitor: Track geolocation anomalies and DNS resolution patterns.
- Verify: Confirm Ahrefs' use of this IP (OVH customer).
- No Action Required: Low-risk, no malicious indicators detected.
Conclusion: Legitimate OVH-hosted server with no malicious activity. Investigate geolocation inconsistencies and DNS errors for potential spoofing or misconfiguration.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Dmytro, Ahrefs Pte Ltd |
| ASN | AS16276 |
| Network Name | OVH-CUST-281059682 |
| CIDR Block | 142.44.233.0/24 |
| RIR | ARIN |
| Country | Singapore |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR | proxy-ca003-san241.ahrefs.net |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-ca003-san241.ahrefs.net |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 30% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 24% | 2 | 3 |
| ownership | 15% | 2 | 2 |
| reputation | 27% | 1 | 3 |
| geolocation | 35% | 2 | 3 |
| Overall | 24% | 10 | 16 |
| Data Coherence | Mostly Consistent (80%) โ 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:03:43 UTC |
| Last Seen | 2026-06-26 23:20:42 UTC |
| Profile Built | 2026-06-27 19:36:03 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 29 |
Full dossier details are available via our API.