IP Intelligence Briefing: 142.44.233.80
Date: 2026-06-15
---
**1. Risk Profile**
- Overall Risk Score: Low (25/100)
- Provider/Authority Scores: Minimal (0/100)
- Network Stability: Unstable (route changes detected, BGP instability).
- Threat Indicators: No malicious activity detected (no blacklists, campaigns, or exploits).
---
**2. Ownership & Geolocation**
- ISP: OVH (AS16276)
- Organization: Dmytro, Ahrefs Pte Ltd
- Geolocation: Quebec, Canada (Beauharnois).
- Subnet: 142.44.233.0/24 (OVH-CUST-281059682).
---
**3. Network Role**
- Infrastructure: Cloud compute (OVH-hosted).
- Services: No open ports, no TLS/HTTP services detected.
- Proxy Flag: Confirmed by proxycheck.io (VPN proxy type).
---
**4. Threat Observations**
- Historical Data:
- First observed June 5, 2026; last observed June 14, 2026.
- Flagged as a proxy (likely obfuscated traffic).
- Subnet Risk:
- Abuse Density: 44.44% (mixed classification).
- Threat Neighbors: 112 malicious IPs in the same /24 subnet.
- Active Siblings: 172 IPs (172 active, 80 inactive).
---
**5. Relationships & Dependencies**
- Linked Entities:
- Subnet: 142.44.233.0/24 (OVH-CUST-281059682).
- Hostname: `proxy-ca003-san80.ahrefs.net` (DNS PTR record).
- Network Classification: Mixed (some malicious IPs in subnet).
---
**6. Recommendations**
- Monitor Subnet: The /24 subnet has a high abuse density (44.44%). Investigate neighboring IPs for potential threats.
- Block Proxy Traffic: If this IP is not part of your infrastructure, consider blocking it due to proxy classification.
- Verify Ownership: Confirm if Ahrefs Pte Ltd is a legitimate entity using this IP.
- Check for Anomalies: Monitor for unexpected DNS or network activity tied to this subnet.
---
Conclusion:
The IP 142.44.233.80 is associated with a cloud provider (OVH) and appears to be a proxy server. While it has no direct threat indicators, its subnet contains a significant number of malicious IPs, warranting further investigation. SOC teams should validate the IPโs legitimacy and consider blocking proxy traffic to mitigate potential risks.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Dmytro, Ahrefs Pte Ltd |
| ASN | AS16276 |
| Network Name | OVH-CUST-281059682 |
| CIDR Block | 142.44.233.0/24 |
| RIR | ARIN |
| Country | Singapore |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR | proxy-ca003-san80.ahrefs.net |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-ca003-san80.ahrefs.net |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 17% | 2 | 3 |
| ownership | 19% | 2 | 2 |
| reputation | 28% | 1 | 3 |
| geolocation | 35% | 2 | 3 |
| Overall | 23% | 10 | 16 |
| Data Coherence | Mostly Consistent (80%) โ 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-08 17:17:37 UTC |
| Last Seen | 2026-06-27 13:32:25 UTC |
| Profile Built | 2026-06-28 07:38:32 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 28 |
Full dossier details are available via our API.