RaqibCTI
Search the threat graph — actor, CVE, technique, victim…
⌘K
◇ SIGN IN
Analyze
/
IOC Graph
/
login[.]aramco[.]eu
Corpus
DOMAIN
SUSPICIOUS
login[.]aramco[.]eu
Sourced from crt.sh
Type
domain
Risk score
2 / 3
First seen
2025-10-29
Last seen
2026-09-23
Overview
Attribution
Enrichment
Pivots
Passive DNS
Historical resolution (pDNS)
Historical IPs
35[.]71[.]153[.]225, 52[.]223[.]24[.]125, 52[.]58[.]255[.]171, 52[.]58[.]255[.]169, 52[.]58[.]255[.]170
pDNS first seen
2021-09-08
Infrastructure fingerprint
Censys
No infrastructure fingerprint
No Censys ASN, TLS/SSH, or open-port fingerprint recorded for this indicator.
Historical hosting pivot
Validin
No historical-hosting pivot
No co-resolved domains recorded for this indicator's infrastructure.
ThreatMiner
No ThreatMiner enrichment
Registrant / related-sample enrichment is pending for this indicator.