IP Intelligence Briefing: 198.244.226.50
Date: 2026-06-10
---
**1. IP Profile**
- Risk Score: 25 (Low Risk)
- Ownership:
- ASN: 16276
- Organization: Ahrefs Pte Ltd Dmytro (legitimate hosting provider)
- Geolocation: London, England, GB
- Network Role:
- Cloud Compute instance (OVH provider)
- Hosting environment (no residential/mobile traffic)
- Threat Indicators:
- No malicious activity, spam, or known attacker associations
- No DNS-based threats or abuse reports
---
**2. Observation History**
- Stability:
- Consistently classified as a cloud-hosted IP with OVH since 2026-06-01.
- No significant changes in risk scores or network behavior.
- Key Trends:
- Stable geolocation (London, GB) with no IP migration.
- No spikes in threat signals or DNS anomalies.
---
**3. Relationships**
- DNS Associations:
- Linked to `proxy-uk002-san50.ahrefs.net` (Ahrefs infrastructure).
- Network Connections:
- Part of OVH network (ASN 16276) with no peer-to-peer or CDN relationships.
- Certifications:
- Valid DNSSEC and CAA records (no misconfigurations).
---
**4. Neighborhood Analysis**
- Subnet: 198.244.226.0/24
- Risk Distribution:
- 77% medium-risk neighbors, 23% low-risk.
- Abuse density: 0% (no malicious subnets).
- Notable Neighbors:
- Mixed pool of OVH-hosted IPs (cloud infrastructure).
---
**5. Recommendations**
- Monitoring:
- No immediate action required; IP is low-risk and stable.
- Firewall:
- Allow traffic if associated with Ahrefs' legitimate services.
- Investigation:
- Monitor neighbors for emerging threats in the subnet.
---
Conclusion: 198.244.226.50 is a legitimate cloud-hosted IP under Ahrefs, with no malicious activity detected. No security actions are required, but continued monitoring of its subnet is advised.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Ahrefs Pte Ltd Dmytro |
| ASN | AS16276 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | proxy-uk002-san50.ahrefs.net |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-uk002-san50.ahrefs.net |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 36% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 32% | 1 | 3 |
| geolocation | 25% | 2 | 2 |
| Overall | 24% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-23 00:19:23 UTC |
| Last Seen | 2026-06-28 20:14:02 UTC |
| Profile Built | 2026-06-29 02:16:56 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 22 |
Full dossier details are available via our API.