RaqibCTI
Search the threat graph — actor, CVE, technique, victim…
⌘K
◇ SIGN IN
Analyze
/
IOC Graph
/
172[.]189[.]57[.]198
Corpus
IP
SUSPICIOUS
172[.]189[.]57[.]198
Sourced from shodan-c2
Type
ip
Risk score
3 / 3
First seen
—
Last seen
2026-09-20
Overview
Attribution
Enrichment
Pivots
Passive DNS
Historical resolution (pDNS)
No passive-DNS enrichment
Historical resolution data is pending or unavailable for this indicator.
Infrastructure fingerprint
Censys
ASN
8075 · MICROSOFT-CORP-MSN-AS-BLOCK - Microsoft Corporation
Open ports
443
Historical hosting pivot
Validin
Co-resolved domains (2)
login[.]infovexis[.]com, login[.]vocamedproject[.]com
ThreatMiner
No ThreatMiner enrichment
Registrant / related-sample enrichment is pending for this indicator.