IPDebrief

198.244.242.66

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING

Target: 198.244.242.66/32

Classification: LOW RISK

Date: 2026-06-26

## Executive Summary

IP 198.244.242.66 is a low-risk residential cloud infrastructure endpoint associated with Ahrefs Pte Ltd, a legitimate SEO analytics provider. No active threat indicators, blacklisting, or malicious behavior observed. The IP resolves to a firewalled hosting environment with no open services.

## Technical Profile

Risk Assessment:

Ownership & Registration:

Network Classification:

DNS Resolution:

## Threat Indicators

Active Threat Signals: None

Behavioral Analysis:

## Historical Observations (21 Total)

Recent monitoring shows stable infrastructure classification with consistent cloud hosting signals. Geolocation inference indicates London, UK with varying confidence levels (0.22-0.90). Network classification consistently reports OVH cloud infrastructure with hosting designation. No escalation in threat signals observed across the observation window.

## Network Relationships

## Subnet Analysis (198.244.242.0/24)

The subnet exhibits mixed usage patterns with a notable presence of threat-sibling IPs (83/256). This indicates the broader address space hosts various services, some with security concerns.

## Recommended Security Actions

Current Risk Profile: Low (25/100)

Recommendations: No specific blocking or filtering required at this time.

Context: The IP belongs to Ahrefs infrastructure and presents no immediate threat. Standard enterprise filtering policies apply. Consider monitoring the broader /24 subnet for emerging threat patterns given the 83 threat siblings observed.

## Conclusion

IP 198.244.242.66 is a legitimate cloud infrastructure endpoint with low risk characteristics. No immediate defensive action required. SOC analysts should maintain standard monitoring protocols and observe the broader subnet for emerging threat indicators.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฌ๐Ÿ‡ง United Kingdom
RegionEngland
CityLondon
TimezoneEurope/London
Latitude51.51
Longitude-0.13

๐Ÿข Ownership & Registration

OrganizationAhrefs Pte Ltd Dmytro
ASNAS16276
Network Nameโ€”
CIDR Blockโ€”
RIRARIN
Countryโ€”
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRproxy-uk007-san66.ahrefs.net
Forward ConfirmedNo โ€” PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnamesproxy-uk007-san66.ahrefs.net

๐Ÿ” DNS Hygiene

Hygiene Score40% (Fair)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAAPresent

โ˜๏ธ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeFirewalled / No Services
Network TierHosting โ€” Infrastructure provider without advanced routing
CloudHosting

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
28%
24
routing
13%
11
services
12%
22
ownership
24%
23
reputation
30%
13
geolocation
31%
23
Overall23%1016
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-11 21:44:06 UTC
Last Seen2026-06-27 20:25:11 UTC
Profile Built2026-06-28 14:30:28 UTC
Data FreshnessLive
Signal Types22
Total Observations27
๐Ÿ” 22 signal types ยท 27 observations collected
This report is generated from 22+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.