IP Intelligence Briefing: 15.235.96.46
Date: 2026-06-14
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Provider: OVH (ASN 16276)
- Organization: Dmytro, Ahrefs Pte Ltd (OVH-CUST-281059694)
- Geolocation: Singapore, Canada (CA) | Latitude: 56.13, Longitude: -106.35
- Network Role: CloudCompute Hosting (OVH infrastructure)
- Threat Indicators: No malicious activity detected (no indicators, blacklists, or campaigns).
---
**2. Observation History**
- Last 30 Days:
- Stable infrastructure with no significant changes in risk signals.
- DNS resolution consistent with `proxy-ca015-san46.ahrefs.net` (Ahrefs domain).
- BGP routing stable (15.235.0.0/17 prefix, OVH provider).
- No anomalies in geolocation, TLS, or service scans.
---
**3. Relationships & Associations**
- Network:
- Subnet: 15.235.96.0/24 (OVH-owned).
- Linked to Ahrefs' DNS hostname: `proxy-ca015-san46.ahrefs.net`.
- DNS:
- PTR records resolve to Ahrefs' domain.
- No email authentication (SPF/DKIM) detected.
- Control Plane:
- RPKI valid, DNSSEC enabled, and CAA records present.
- No route instability or BGP hijack alerts.
---
**4. Neighborhood Analysis**
- Subnet (15.235.96.0/24):
- Abuse Density: 0.3198 (moderate risk).
- Total IPs: 247 | Active IPs: 117 | Threat IPs: 79.
- Neighbor Risk: 42 IPs flagged as medium risk, 57 as low risk.
- Notable IPs:
- 15.235.96.0/24 (OVH-owned, no malicious activity).
---
**5. Threat Assessment**
- Current Status:
- No evidence of C2, spam, or malicious campaigns.
- Low-risk infrastructure likely used for legitimate cloud hosting.
- Recommendations:
- Monitor for unexpected DNS changes or subnet abuse.
- Maintain standard firewall rules for OVH infrastructure.
---
Conclusion:
15.235.96.46 is a low-risk cloud hosting IP associated with Ahrefs, owned by OVH. No malicious activity detected. While its subnet has moderate abuse density, the IP itself shows no threat indicators. SOC teams should focus on monitoring subnet activity but prioritize other high-risk targets.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Dmytro, Ahrefs Pte Ltd |
| ASN | AS16276 |
| Network Name | OVH-CUST-281059694 |
| CIDR Block | 15.235.96.0/24 |
| RIR | ARIN |
| Country | Singapore |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR | proxy-ca015-san46.ahrefs.net |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-ca015-san46.ahrefs.net |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 26% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 20% | 2 | 3 |
| ownership | 19% | 2 | 2 |
| reputation | 28% | 1 | 3 |
| geolocation | 32% | 2 | 3 |
| Overall | 23% | 10 | 16 |
| Data Coherence | Mostly Consistent (80%) โ 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:03:46 UTC |
| Last Seen | 2026-06-27 00:16:02 UTC |
| Profile Built | 2026-06-27 14:29:20 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 29 |
Full dossier details are available via our API.