IP Intelligence Briefing: 198.244.168.153
*Generated via IPDebrief tools (June 14, 2026)*
---
**1. Risk Profile**
- Overall Risk: Moderate (Risk Score: 40)
- Provider: OVH (ASN 16276)
- Organization: Ahrefs Pte Ltd (London, UK)
- Geolocation: London, England, UK (High plausibility, 473.7 km from probe)
- Network Role: Cloud infrastructure (OVH, hosting provider)
Key Findings:
- No direct indicators of malicious activity (no malware, phishing, or C2 signatures).
- Subnet 198.244.168.0/24 has high abuse density (0.5273), with 135/256 IPs flagged as risky.
- Threat Siblings: 135 IPs in the subnet show suspicious behavior (e.g., spam, phishing, or C2 activity).
---
**2. Observation History**
- Stability: Stable routing (no recent changes).
- Activity Trends:
- No reported threats or abuse in the last 30 days.
- DNS and geolocation data consistent across observations.
- DNS: Resolves to `proxy-uk001-san153.ahrefs.net` (no email auth records).
---
**3. Relationships & Network Context**
- Linked Entities:
- OVH_282347337 (same network, 40+ IPs).
- Ahrefs Pte Ltd (ownership, no abuse reports).
- Subnet Analysis:
- 135/256 IPs in the subnet are flagged as risky (high abuse density).
- 136 active IPs in the subnet, with 135 showing threat indicators.
---
**4. Neighborhood Risk**
- Subnet Risk Distribution:
- 81 IPs with medium risk (score 25β40).
- 19 IPs with low risk (score 0β25).
- 0 IPs with high risk (score >40).
- Neighboring IPs:
- Example IPs: 198.244.168.0 (risk 40), 198.244.168.1 (risk 25).
- Abuse Density: 52.73% of subnet IPs are associated with abuse.
---
**5. Recommendations**
- Monitor Subnet: High abuse density in the subnet warrants closer scrutiny.
- Network Segmentation: Consider isolating critical assets from this subnet.
- Threat Intelligence Feeds: Cross-reference with DNSBLs (1/8 lists) for additional context.
- Verify Ownership: Confirm Ahrefs Pte Ltdβs infrastructure is not compromised.
---
Note: The IP itself shows no direct malicious activity, but its subnetβs high abuse density suggests potential indirect risks. SOC teams should prioritize monitoring related entities and subnet traffic.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Ahrefs Pte Ltd Dmytro |
| ASN | AS16276 |
| Network Name | β |
| CIDR Block | 198.244.128.0/17 |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | proxy-uk001-san153.ahrefs.net |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-uk001-san153.ahrefs.net |
π DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 31% | 2 | 4 |
| routing | 27% | 2 | 3 |
| services | 15% | 2 | 2 |
| ownership | 27% | 3 | 4 |
| reputation | 31% | 1 | 3 |
| geolocation | 39% | 2 | 3 |
| Overall | 28% | 12 | 19 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-13 19:04:36 UTC |
| Last Seen | 2026-06-27 23:45:20 UTC |
| Profile Built | 2026-06-28 17:50:55 UTC |
| Data Freshness | Live |
| Signal Types | 26 |
| Total Observations | 30 |
Full dossier details are available via our API.