IP Intelligence Briefing: 198.244.183.196
*Generated via IPDebrief Threat Intelligence Platform*
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Ownership: Owned by Ahrefs Pte Ltd (AS16276, OVH provider).
- Geolocation: London, England, UK (ARIN-registered).
- Network Role: CloudCompute infrastructure (OVH-hosted).
- Threat Indicators: No malicious activity detected (no known attackers, spam, or blacklisted IPs).
- DNS: Resolves to `proxy-uk004-san196.ahrefs.net` (Ahrefsβ proxy service).
---
**2. Observation History**
- Recent Activity:
- Geolocation inferred via multi-signal analysis (confidence: 28%).
- DNSSEC and CAA validation confirmed.
- No persistent malicious behavior (threat observation count: 1).
- Trend: Stable risk profile; no significant changes in threat signals.
---
**3. Relationships**
- DNS Associations: Linked to `proxy-uk004-san196.ahrefs.net` (Ahrefsβ infrastructure).
- Network Peers: Part of OVHβs AS282347340 network.
- Subnet: Belongs to `198.244.183.0/24` (mixed abuse density: 49.22%).
---
**4. Neighborhood Analysis**
- Subnet Risk:
- 85 active IPs in `/24` subnet.
- 126 IPs flagged as high/medium risk (abuse density: 49.22%).
- Neighboring IPs show varied risk scores (25β40).
- Key Neighbors:
- `198.244.183.0` (risk: 25), `198.244.183.1` (risk: 40), etc.
---
**5. Recommendations**
- Monitor Subnet: The `/24` subnet has moderate abuse density; monitor for unusual activity.
- Verify DNS: Confirm DNS resolution to `proxy-uk004-san196.ahrefs.net` is intentional (Ahrefsβ proxy service).
- Firewall Rules: Consider allowing traffic to this IP if itβs part of legitimate cloud infrastructure.
- Continuous Profiling: Track changes in subnet risk over time, as abuse density may evolve.
Conclusion: This IP is part of a legitimate cloud-hosted network with no immediate threats. However, the broader subnet shows mixed risk, warranting closer monitoring.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Ahrefs Pte Ltd Dmytro |
| ASN | AS16276 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | proxy-uk004-san196.ahrefs.net |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-uk004-san196.ahrefs.net |
π DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 40% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 31% | 1 | 3 |
| geolocation | 39% | 2 | 3 |
| Overall | 27% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-18 03:22:27 UTC |
| Last Seen | 2026-06-28 06:09:05 UTC |
| Profile Built | 2026-06-29 00:14:14 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 25 |
Full dossier details are available via our API.