IP INTELLIGENCE BRIEFING: 198.244.183.217
Overview
The IP address 198.244.183.217 was analyzed and classified as Low Risk with an overall risk score of 25. The address resolved to infrastructure in London, England (GB), operating under OVH cloud hosting (ASN 16276, Ahrefs Pte Ltd Dmytro).
Infrastructure Classification
The IP operates as cloud-based hosting infrastructure with no detected open services or ports. DNS resolution returned proxy-uk004-san217.ahrefs.net, indicating association with ares.net infrastructure. The address is not classified as CDN, VPN, Tor exit node, or proxy.
Threat Indicators
No active threat indicators were detected. The IP is not flagged as a known attacker, spam source, or Tor exit node. Blacklist enumeration returned 0 entries, though the control plane data indicated listing on 1 of 8 DNSBLs. No known campaigns or threat feed associations were identified.
Network Context
The IP resides within the 198.244.183.0/24 subnet with mixed abuse density classification. Neighboring IP analysis across 100 sampled addresses revealed a risk distribution of 0 high-risk, 76 medium-risk, and 24 low-risk addresses. The subnet abuse density score was 0.4219 with 108 threat siblings identified among 213 active siblings.
Temporal Analysis
Historical observation data shows 22 total signals. Recent observations from 2026-06-26 confirmed consistent network classification (mixed), cloud hosting designation, and geolocation validation. The IP is not persistently malicious with 0 threat observation days.
Actionable Intelligence
The IP presents minimal operational threat. Recommended actions: Monitor for service activation; block only if specific abuse patterns emerge. The infrastructure is legitimate cloud hosting (Ahrefs) with established enterprise reputation. No immediate firewall rules required.
Summary
198.244.183.217 is a low-risk cloud hosting IP associated with Ahrefs infrastructure in London. The subnet shows moderate abuse density but the specific IP exhibits no malicious indicators. Treat as benign infrastructure unless contextual threat indicators develop.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Ahrefs Pte Ltd Dmytro |
| ASN | AS16276 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | proxy-uk004-san217.ahrefs.net |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-uk004-san217.ahrefs.net |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 26% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 37% | 2 | 3 |
| Overall | 23% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-10 22:17:30 UTC |
| Last Seen | 2026-06-27 18:25:03 UTC |
| Profile Built | 2026-06-28 12:28:50 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 27 |
Full dossier details are available via our API.