IP Intelligence Briefing: 142.44.233.91
Date: 2026-06-15
---
**1. Risk Profile**
- Risk Score: 40 (Moderate Risk)
- Provider Score: 0 (Unrated)
- Authority Score: 0 (Unrated)
- Network Role: CloudCompute (Hosting)
- Threat Indicators: No direct malicious activity detected (no indicators, blacklists, or campaigns).
---
**2. Ownership & Geolocation**
- Registrar: OVH (ASN 16276)
- Organization: Ahrefs Pte Ltd (OVH-CUST-281059682)
- Geolocation:
- Country: Canada (CA)
- City: Singapore (discrepancy noted; may indicate inaccurate geolocation data).
- Coordinates: Latitude 56.13, Longitude -106.35 (3000 km accuracy radius).
---
**3. Network & Subnet Analysis**
- Subnet: 142.44.233.0/24
- Abuse Density: 0.5569 (High Abuse Classification)
- Neighbor Risk:
- 91 IPs flagged as Medium Risk (riskScore 30โ40).
- 9 IPs flagged as Low Risk.
- 0 IPs flagged as High Risk.
- Subnet Activity:
- 184 active IPs, 142 with threat associations.
- 255 total IPs in subnet.
---
**4. Relationships & DNS**
- Associated Hostname: `proxy-ca003-san91.ahrefs.net` (Ahrefs infrastructure).
- DNS Records:
- PTR record resolves to `proxy-ca003-san91.ahrefs.net`.
- No email authentication (SPF/DKIM/DMArC) detected.
- Certificates: No TLS/SSL certificates linked.
---
**5. Behavioral & Observational Trends**
- Historical Activity (30 Days):
- No significant changes in risk signals.
- Subnet abuse density has remained stable.
- BGP Data:
- Origin ASN: 16276 (OVH).
- BGP prefix: `142.44.128.0/17`.
- Route stability: Unstable (route changes detected).
---
**6. Recommendations**
- Monitor Subnet: High abuse density in 142.44.233.0/24 suggests potential for lateral movement or botnet activity.
- Verify Geolocation: Discrepancy between Canada (country) and Singapore (city) may indicate spoofing or misconfigured data.
- Check Hostname Activity: Investigate `proxy-ca003-san91.ahrefs.net` for unusual traffic patterns.
- Firewall Rules: Consider blocking high-risk neighbors (e.g., IPs with riskScore โฅ 40) to mitigate subnet-level risks.
---
Conclusion:
The IP 142.44.233.91 is part of Ahrefs' OVH-hosted infrastructure, with no direct malicious indicators. However, its subnet exhibits high abuse density, warranting closer scrutiny of neighboring IPs and network traffic. Geolocation anomalies and route instability further justify proactive monitoring.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Dmytro, Ahrefs Pte Ltd |
| ASN | AS16276 |
| Network Name | OVH-CUST-281059682 |
| CIDR Block | 142.44.233.0/24 |
| RIR | ARIN |
| Country | Singapore |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR | proxy-ca003-san91.ahrefs.net |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-ca003-san91.ahrefs.net |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 32% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 19% | 2 | 2 |
| reputation | 32% | 1 | 3 |
| geolocation | 40% | 2 | 3 |
| Overall | 25% | 10 | 15 |
| Data Coherence | Mostly Consistent (80%) โ 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-23 12:21:57 UTC |
| Last Seen | 2026-06-28 21:00:44 UTC |
| Profile Built | 2026-06-29 03:03:40 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 23 |
Full dossier details are available via our API.