Threat Intelligence Briefing for IP 15.235.98.66/32
Summary:
IP address 15.235.98.66/32 was observed during a period of network monitoring. The analysis of this IP address involved multiple data sources and tools to compile a comprehensive profile, which includes its general characteristics, historical activity, and any relevant network relationships or neighborhood data.
Profile and Historical Activity:
- Ownership: The IP address 15.235.98.66/32 is registered to a well-known service provider. This provider typically hosts various legitimate businesses, including web hosting services, e-commerce platforms, and cloud-based applications.
- Observation History: Historical data indicates that the IP has been associated with several online services. Notably, it has been linked to a range of web applications and servers, reflecting its use in hosting dynamic content.
- Behavioral Patterns: There have been no significant anomalies in the traffic originating from this IP. The data patterns are consistent with typical web server behavior, characterized by regular inbound and outbound HTTP/HTTPS traffic.
Relationships and Network Context:
- Related Entities: The IP address is part of a broader network infrastructure utilized by various clients of the service provider. These include both small enterprises and larger corporations, with no specific malicious entities directly associated.
- Neighborhood Data: The surrounding network environment consists of numerous other IPs, all registered under the same provider. The network traffic analysis did not reveal any unusual or coordinated activities among neighboring IPs.
Threat Assessment:
- Risk Level: Low. Given the lack of anomalous activity and the benign nature of the observed traffic, the risk associated with this IP address is considered low. It appears to be part of a legitimate infrastructure with no direct evidence of malicious intent or activity.
- Recommended Actions:
- Continue monitoring for any deviations from the established traffic patterns.
- Ensure that security measures, such as intrusion detection systems (IDS) and firewalls, are appropriately configured to detect any potential threats.
- Maintain an updated whitelist of this IP for trusted communications, if applicable, while remaining vigilant for any future indicators of compromise.
This briefing provides a snapshot of the observed behavior and characteristics of IP 15.235.98.66/32. The data supports its classification as a legitimate service provider resource, with no immediate threat identified. Regular monitoring and analysis should continue as part of standard security operations to detect any changes in activity.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Dmytro, Ahrefs Pte Ltd |
| ASN | AS16276 |
| Network Name | OVH-CUST-281059698 |
| CIDR Block | 15.235.98.0/24 |
| RIR | ARIN |
| Country | Singapore |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR | proxy-ca019-san66.ahrefs.net |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-ca019-san66.ahrefs.net |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 31% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 19% | 2 | 2 |
| reputation | 31% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 24% | 10 | 15 |
| Data Coherence | Mostly Consistent (80%) โ 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-21 14:56:17 UTC |
| Last Seen | 2026-06-28 13:49:11 UTC |
| Profile Built | 2026-06-29 07:55:37 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 25 |
Full dossier details are available via our API.