# IP INTELLIGENCE BRIEFING
Target: 144.217.135.193/32
Date: 2026-06-20
Classification: Low Risk โ Cloud Infrastructure Node
---
## EXECUTIVE SUMMARY
IP address 144.217.135.193 is classified as Low Risk (Risk Score: 25/100). The address belongs to OVH CloudCompute infrastructure in Canada and functions as a firewalled crawler/proxy endpoint with no active services. No threat indicators were observed. Current risk assessment indicates minimal immediate threat to defensive networks.
---
## OWNERSHIP & INFRASTRUCTURE
- Provider: OVH (ASN 16276)
- Organization: Dataprovider B.V.
- Network Block: 144.217.135.128/25 (OVH-CUST-3695512)
- Infrastructure Type: CloudCompute / Hosting
- Geolocation: Canada (QC, Beauharnois) โ Geo consensus: true
- Registration: RIR ARIN
---
## THREAT ASSESSMENT
Current Status: Low Risk
- Risk Score: 25/100
- Abuse Confidence Score: Not applicable
- Blacklist Status: Clean (0 listings)
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
Control Plane Indicators:
- Route stability: False
- DNSSEC: Valid
- DNSBL Listings: 1 of 8 total lists
- Operator Score: 0.2609 (Basic)
---
## NETWORK BEHAVIOR
DNS Resolution:
- PTR Record: crawl-144-217-135-193.dataproviderbot.com
- Forward Resolution: Confirmed
- Domain: dataproviderbot.com
- Email Authentication: No SPF/DMARC records configured
Service Exposure:
- Open Ports: None detected
- TLS Certificate: Not present
- HTTP Services: None detected
- Status: Firewalled/No active services
---
## OBSERVATION HISTORY
- Total Observations: 17
- Time Range: 2026-06-15 to 2026-06-20
- Threat Persistence: 0 days
- Key Historical Signal (2026-06-15): DNSBL listing detected with "high" severity classification (8 total lists), one active listing observed. Operator score 0.2609 recorded.
- Geolocation Consistency: Consistent Canada attribution across all observations
- Current Threat Status: No active malicious indicators
---
## NETWORK RELATIONSHIPS
DNS Associations:
- crawl-144-217-135-193.dataproviderbot.com (23 instances)
Network Associations:
- OVH-CUST-3695512 (23 instances)
Campaign Correlation:
- Cert Matches: 0
- Banner Matches: 0
- Correlated IPs: 0
---
## NEIGHBORHOOD ANALYSIS (144.217.135.0/24)
- Abuse Density: 0.5 (Low)
- Classification: Mostly clean
- Total Siblings: 2
- Active Siblings: 1
- Threat Siblings: 1
- Neighbor IP: 144.217.135.176 (Risk Score: 20, Authority Score: 60)
---
## RECOMMENDATIONS
Action: Monitor
- No immediate blocking or filtering required
- Low-risk cloud infrastructure node with no active service exposure
- Continue standard logging and monitoring
- No firewall rules or WAF configurations recommended
Context: This IP represents a standard OVH cloud infrastructure node used for crawling/data collection activities. The dataproviderbot.com hostname indicates automated data collection operations. No malicious activity observed in current or historical observations.
---
Analyst Notes: This IP shows characteristics typical of web crawler infrastructure hosted on OVH cloud platforms. The absence of open ports and services suggests proper hardening. Historical DNSBL listing may indicate past reputation issues now resolved. No correlation with active threat campaigns observed.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | B.V., Dataprovider |
| ASN | AS16276 |
| Network Name | OVH-CUST-3695512 |
| CIDR Block | 144.217.135.128/25 |
| RIR | ARIN |
| Country | Netherlands |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR | crawl-144-217-135-193.dataproviderbot.com |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | crawl-144-217-135-193.dataproviderbot.com |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 41% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 19% | 2 | 2 |
| reputation | 32% | 1 | 3 |
| geolocation | 26% | 2 | 2 |
| Overall | 23% | 9 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-24 12:33:40 UTC |
| Last Seen | 2026-06-28 23:59:31 UTC |
| Profile Built | 2026-06-29 06:00:58 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 21 |
Full dossier details are available via our API.