IPDebrief

198.244.183.144

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING: 198.244.183.144

Classification: LOW RISK

Date: 2026-06-25

Analyst: IPDebrief Intelligence Service

Status: Active Monitoring

---

## EXECUTIVE SUMMARY

IP 198.244.183.144 is a low-risk cloud infrastructure endpoint associated with Ahrefs Pte Ltd (ASN 16276) located in London, England. The address resolves to aresolves to aresolves to aresolves to aresolves to proxy-uk004-san144.ahrefs.net with no active service exposure. Current risk score is 25/100 (Low Risk) with no known threat campaign associations or malicious activity indicators.

---

## INFRASTRUCTURE PROFILE

AttributeValue
**IP Address**198.244.183.144/32
**Organization**Ahrefs Pte Ltd Dmytro
**ASN**16276 (OVH)
**Country/Region**GB / England / London
**Infrastructure Type**CloudCompute / Hosting
**DNS Target**proxy-uk004-san144.ahrefs.net
**BGP Prefix**198.244.128.0/17
**ISP**OVH

---

## THREAT ASSESSMENT

Risk Score: 25 (Low Risk)

Reputation Status: Low Risk

Known Threats: None Detected

Threat Indicators:

Control Plane Analysis:

---

## NEIGHBORHOOD ANALYSIS

Subnet: 198.244.183.0/24

Abuse Density: 0.4258 (Mixed Classification)

Total Siblings: 256

Active Siblings: 212

Threat Siblings: 109

Inherited Risk Score: 17

Risk Distribution in Subnet:

*Note: The target IP resides in a subnet with elevated abuse density. While this specific endpoint shows no malicious behavior, the neighborhood context warrants monitoring for lateral threat migration.*

---

## OBSERVATION HISTORY

Total Observations: 31 signals tracked

Recent Signal Activity:

Temporal Analysis:

---

## NETWORK RELATIONSHIPS

Total Relationships: 86 identified

Primary Association: OVH Network (OVH_282347340)

Connection Type: Cloud hosting infrastructure

---

## SERVICE EXPOSURE ANALYSIS

Open Ports: None detected

Services: Firewalled / No Services

TLS Certificate: None

HTTP Banner: None

*The endpoint appears to be firewalled with no publicly accessible services, reducing surface attack vectors.*

---

## RECOMMENDED ACTIONS

Current Security Recommendations: None Required

Firewall Rules: Not applicable

Monitoring Guidance:

1. Monitor subnet-level activity for lateral threat migration

2. Track DNS resolution patterns for ahrefs.net

3. Watch for any service exposure changes

4. Review neighborhood threat indicators periodically

---

## INTELLIGENCE CONCLUSION

IP 198.244.183.144 represents a benign cloud infrastructure endpoint for Ahrefs with no direct threat indicators. The low risk score and absence of malicious activity support continued monitoring without immediate blocking action. However, the subnet's elevated abuse density (0.4258) and presence of 109 threat-sibling IPs suggest the operational environment warrants periodic reassessment. No immediate security action recommended; maintain standard monitoring protocols.

---

*Intel Briefing generated by IPDebrief Intelligence Platform. Data accuracy subject to verification against multiple sources.*

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฌ๐Ÿ‡ง United Kingdom
RegionEngland
CityLondon
TimezoneEurope/London
Latitude51.51
Longitude-0.13

๐Ÿข Ownership & Registration

OrganizationAhrefs Pte Ltd Dmytro
ASNAS16276
Network Nameโ€”
CIDR Block198.244.128.0/17
RIRARIN
Countryโ€”
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRproxy-uk004-san144.ahrefs.net
Forward ConfirmedNo โ€” PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnamesproxy-uk004-san144.ahrefs.net

๐Ÿ” DNS Hygiene

Hygiene Score40% (Fair)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAAPresent

โ˜๏ธ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeFirewalled / No Services
Network TierHosting โ€” Infrastructure provider without advanced routing
CloudHosting

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
29%
24
routing
20%
23
services
15%
22
ownership
19%
34
reputation
28%
13
geolocation
31%
23
Overall24%1219
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-08 23:18:23 UTC
Last Seen2026-06-27 14:28:13 UTC
Profile Built2026-06-28 08:33:22 UTC
Data FreshnessLive
Signal Types30
Total Observations36
๐Ÿ” 30 signal types ยท 36 observations collected
This report is generated from 30+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.