IP Intelligence Briefing: 51.161.65.157
Date: 2026-06-05
1. Profile Summary
- Risk Score: 25 (Low Risk)
- Provider: OVH (ASN 16276)
- Organization: Dmytro, Ahrefs Pte Ltd (OVH-CUST-281059690)
- Geolocation: Singapore, CA (latitude 56.13, longitude -106.35, ±3000km accuracy)
- Network Role: Cloud hosting infrastructure (OVH)
- Threat Indicators: No malicious activity detected (no blacklists, campaigns, or DNS anomalies).
2. Observation History
- Abuse Density: 0.2794 (moderate risk in subnet)
- Key Trends:
- Stable ownership (OVH) since at least 2026-05-31.
- Subnet (51.161.65.0/24) shows 69 threat siblings, 110 active IPs, and 247 total IPs.
- Recent (2026-06-05) abuse density increased to 0.4819, classified as "mixed" (low/medium risk).
3. Relationships
- Network: Linked to OVH-CUST-281059690 (same subnet).
- DNS: Resolves to `proxy-ca011-san157.ahrefs.net` (Ahrefs domain).
- Certificates: No TLS certificates or email authentication records found.
4. Neighborhood Analysis
- Subnet: 51.161.65.0/24
- Risk Distribution:
- 67% low risk, 33% medium risk (33 IPs).
- 11 IPs flagged with inherited risk (potential shared infrastructure risks).
- Notable Neighbors:
- 51.161.65.0/24 (same subnet, moderate risk).
5. Recommendations
- Monitor Subnet: The subnet has a moderate abuse density (0.2794) and 33% medium-risk neighbors.
- Verify Hosting Context: Confirm the IPโs role in cloud hosting (OVH) and check for shared infrastructure risks.
- Continuous Monitoring: Track changes in subnet abuse density and DNS records, as the IPโs subnet showed increased risk (0.4819) recently.
Conclusion:
51.161.65.157 is currently low risk, but its subnet exhibits moderate abuse density and 33% medium-risk neighbors. The IP is associated with Ahrefs via OVH hosting, so shared infrastructure risks should be considered. SOC teams should prioritize monitoring the subnet for emerging threats.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Dmytro, Ahrefs Pte Ltd |
| ASN | AS16276 |
| Network Name | OVH-CUST-281059690 |
| CIDR Block | 51.161.65.0/24 |
| RIR | ARIN |
| Country | Singapore |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR | proxy-ca011-san157.ahrefs.net |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | proxy-ca011-san157.ahrefs.net |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 26% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 15% | 2 | 2 |
| reputation | 22% | 1 | 2 |
| geolocation | 31% | 2 | 3 |
| Overall | 20% | 10 | 13 |
| Data Coherence | Mostly Consistent (80%) โ 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-10 22:17:47 UTC |
| Last Seen | 2026-06-27 18:34:35 UTC |
| Profile Built | 2026-06-28 12:39:15 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 25 |
Full dossier details are available via our API.