## IP INTELLIGENCE BRIEFING
Target: 198.244.168.182/32
Classification: Moderate Risk Infrastructure
Report Date: 2026-06-20
---
EXECUTIVE SUMMARY
IP 198.244.168.182 operates as part of Ahrefs Pte Ltd Dmytro's cloud infrastructure hosted on OVH London. The IP maintains a moderate risk profile (Score: 50) with no active threat indicators. While DNSBL listings indicate historical abuse, current observation shows the IP as firewalled with no exposed services. The subnet exhibits elevated abuse density (0.8203), requiring contextual monitoring.
---
INFRASTRUCTURE PROFILE
| Attribute | Value |
|---|---|
| **ASN** | 16276 (OVH) |
| **Organization** | Ahrefs Pte Ltd Dmytro |
| **Geolocation** | London, England, GB |
| **Network Role** | Cloud Compute / Hosting |
| **DNS Target** | proxy-uk001-san182.ahrefs.net |
| **BGP Prefix** | 198.244.128.0/17 |
---
THREAT ASSESSMENT
Current Status: Moderate Risk
- Risk Score: 50/100
- Threat Indicators: None detected
- Blacklist Status: Listed on 2 of 8 DNSBLs (dnsblListedCount: 2)
- Attack Attribution: Not classified as known attacker or spam source
- Campaign Activity: No correlated campaigns identified
Key Observations:
- Infrastructure hosted on OVH cloud with no open services
- Forward DNS confirmed (proxy-uk001-san182.ahrefs.net)
- No TLS certificates or HTTP services exposed
- Route stability flagged as false; network routing subject to change
---
SUBNET CONTEXT (198.244.168.0/24)
| Metric | Value |
|---|---|
| **Abuse Density** | 0.8203 (High) |
| **Subnet Classification** | High Abuse |
| **Total Siblings** | 256 |
| **Active Siblings** | 204 |
| **Threat Siblings** | 210 |
| **Inherited Risk** | 32/100 |
Neighbor Risk Distribution: 53 medium, 47 low, 0 high
---
OBSERVATION HISTORY
Total Signals: 17
Recent Activity: 2026-06-20
- Cloud/hosting infrastructure confirmed (OVH)
- High-abuse subnet classification observed
- DNSBL listings active (severity: high)
- Operator score: 0.2174 (Minimal)
- No persistent malicious activity detected
---
NETWORK RELATIONSHIPS
- Same Network: 35 relationships to OVH network OVH_282347337
- Infrastructure Type: Cloud compute environment
- No cross-organizational links detected beyond hosting provider
---
RECOMMENDATIONS
SOC Actions:
1. Monitor โ No immediate blocking required; moderate risk with no active threats
2. DNSBL Review โ Investigate specific blacklist listings for context
3. Subnet Awareness โ Monitor 198.244.168.0/24 for coordinated abuse patterns
4. Baseline โ Establish traffic patterns for legitimate Ahrefs proxy usage
Firewall Rules:
- Allow traffic if source is verified Ahrefs infrastructure
- Monitor outbound connections from this subnet
- No explicit deny recommended without additional threat intelligence
---
END OF BRIEFING
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Ahrefs Pte Ltd Dmytro |
| ASN | AS16276 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | proxy-uk001-san182.ahrefs.net |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-uk001-san182.ahrefs.net |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 31% | 2 | 2 |
| routing | 13% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 20% | 2 | 3 |
| reputation | 22% | 1 | 2 |
| geolocation | 25% | 2 | 2 |
| Overall | 20% | 9 | 11 |
| Data Coherence | Mostly Consistent (80%) โ 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-19 21:39:48 UTC |
| Last Seen | 2026-06-28 09:45:22 UTC |
| Profile Built | 2026-06-29 03:49:19 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 22 |
Full dossier details are available via our API.