IP Intelligence Briefing: 15.235.98.248
Date: 2026-06-15
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Ownership: Owned by Dmytro, Ahrefs Pte Ltd (OVH ASN 16276).
- Geolocation: Registered to Singapore (CA), though geolocation data is sparse.
- Network Role: Cloud compute instance (OVH infrastructure).
- Threat Indicators: No malicious activity detected (no indicators, blacklists, or campaigns).
---
**2. Observation History**
- Recent Activity (June 2026):
- Minimal risk detected (operator score: 0.2174).
- DNSSEC and CAA records validated.
- Subnet abuse density: 0.451 (moderate risk in the 15.235.98.0/24 subnet).
- No persistent malicious behavior observed.
---
**3. Relationships**
- DNS Associations: Linked to proxy-ca019-san248.ahrefs.net (Ahrefs hostname).
- Network Affiliation: Part of OVHβs OVH-CUST-281059698 network.
- Subnet Context: 15.235.98.0/24 subnet with 199 active IPs, 115 flagged as risky.
---
**4. Neighborhood Analysis**
- Subnet Abuse Density: 45.1% (mixed classification: 70% medium-risk neighbors, 30% low-risk).
- High-Risk Neighbors: 0 IPs (no high-risk siblings in the subnet).
- Notable Neighbors:
- 15.235.98.0/24: 100+ IPs, with some medium-risk scores (e.g., 40β50).
---
**5. Recommendations**
- Monitor Subnet: The 15.235.98.0/24 subnet has a moderate abuse density; monitor for unusual activity.
- Verify DNS: Confirm legitimacy of proxy-ca019-san248.ahrefs.net and ensure no rogue subdomains.
- Access Controls: Restrict access to this IP if itβs not part of your expected infrastructure.
- Subnet Scanning: Use passive monitoring tools to track changes in the 15.235.98.0/24 subnet.
---
Conclusion: This IP is associated with a legitimate cloud provider (Ahrefs) and shows no direct malicious activity. However, the surrounding subnet has a moderate risk profile, warranting closer scrutiny. No immediate action required, but ongoing monitoring is advised.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Dmytro, Ahrefs Pte Ltd |
| ASN | AS16276 |
| Network Name | OVH-CUST-281059698 |
| CIDR Block | 15.235.98.0/24 |
| RIR | ARIN |
| Country | Singapore |
| Abuse Contact | β |
π DNS Intelligence
| PTR | proxy-ca019-san248.ahrefs.net |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-ca019-san248.ahrefs.net |
π DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 31% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 15% | 2 | 2 |
| reputation | 28% | 1 | 3 |
| geolocation | 25% | 2 | 2 |
| Overall | 21% | 10 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-22 09:11:35 UTC |
| Last Seen | 2026-06-28 18:14:59 UTC |
| Profile Built | 2026-06-29 06:19:20 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 24 |
Full dossier details are available via our API.