IP Intelligence Briefing: 198.244.183.66
Date: 2026-06-08
---
**1. Profile Summary**
- Risk Score: Low Risk (25/100) | No active threats detected.
- Ownership: Owned by Ahrefs Pte Ltd (AS16276, OVH).
- Geolocation: London, England, UK.
- Network Role: CloudCompute instance (OVH) with no open services.
- Threat Indicators: No malware, phishing, or malicious activity observed.
- DNS: Resolves to `proxy-uk004-san66.ahrefs.net` (Ahrefs infrastructure).
---
**2. Observation History**
- Recent Activity:
- Minimal risk score (0.2174) with no malicious signals.
- Subnet abuse density (198.244.183.0/24) shows moderate risk (0.4922).
- No persistent malicious behavior or ownership changes.
- Long-Term Trends:
- Stable risk profile since May 2026.
- No spikes in threat indicators or DNS anomalies.
---
**3. Network Relationships**
- Subnet: 198.244.183.0/24 (OVH infrastructure).
- Linked Entities:
- OVH Network (AS16276).
- Ahrefs DNS Hostname: `proxy-uk004-san66.ahrefs.net`.
- Control Plane:
- BGP prefix: `198.244.128.0/17` (OVH).
- No route instability or RPKI violations.
---
**4. Neighborhood Analysis**
- Subnet Overview:
- Total IPs: 256 (198.244.183.0/24).
- Active IPs: 85 (33% utilization).
- Threat Density: 126 IPs flagged as high/medium risk (49% of subnet).
- Key Neighbors:
- Low-Risk: 17 IPs (6.6%).
- Medium-Risk: 83 IPs (32.4%).
- High-Risk: 0 IPs.
- Abuse Density: 49.22% (moderate risk).
---
**5. Recommendations**
- Monitoring:
- Track subnet activity for potential lateral movement or new threats.
- Monitor Ahrefs infrastructure for DNS changes or unusual traffic patterns.
- Mitigation:
- No immediate blocking required for this IP.
- Consider implementing subnet-level monitoring for the 198.244.183.0/24 range.
Conclusion: This IP is part of a legitimate cloud infrastructure (Ahrefs) with no malicious activity. However, its subnet shows moderate abuse density, warranting further investigation into neighboring IPs.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Ahrefs Pte Ltd Dmytro |
| ASN | AS16276 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | proxy-uk004-san66.ahrefs.net |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-uk004-san66.ahrefs.net |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 39% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 22% | 1 | 2 |
| geolocation | 33% | 2 | 3 |
| Overall | 24% | 10 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-18 03:22:28 UTC |
| Last Seen | 2026-06-28 06:10:57 UTC |
| Profile Built | 2026-06-29 00:16:33 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 26 |
Full dossier details are available via our API.