IPv4 address
176.57.65.78
Last fetched
176.57.65.78 is announced in 176.57.64.0/23 by DDOS-GUARD - DDOS-GUARD LTD and geolocates to RU. 176.57.65.78 is listed by 1 threat feed; reconciled level LOW.
Threat posture
0.5threat score (procedure-native scale)
LOWListed by 1 threat feed.
- Threat feeds listing this
- 1
- Verdict coverage
- malicious-evidenced
- First seen on a feed
- Wed, 26 Aug 2026 08:33:22 GMT
- Last seen on a feed
- Mon, 28 Sep 2026 19:31:28 GMT
Nutrition Label
Attribution
- Announced prefix
- 176.57.64.0/23
- Announcing network
- DDOS-GUARD - DDOS-GUARD LTD
- RIR-registered prefix
- 176.57.64.0/22
- RPKI
- valid
Anycast detection
This does not appear to be an anycast address on the three signals Canon evaluates: reverse DNS, announced-prefix width and the announcing network's peer count.
Reverse DNS
- cv.valera.ai
- curiousminds.am
- ftp.curiousminds.am
- mail.curiousminds.am
- www.curiousminds.am
- wilco.am
- ftp.wilco.am
- mail.wilco.am
- www.wilco.am
- yulilash.beauty
- www.yulilash.beauty
- brooclean.club
- www.brooclean.club
- algoritmsb.com
- www.algoritmsb.com
- asyaefi.com
- www.asyaefi.com
- avers-group.com
- www.avers-group.com
- berkut-compressor.com
- www.berkut-compressor.com
- bldgfuture.com
- www.bldgfuture.com
- bskalliance.com
- www.bskalliance.com
- byniculina.com
- www.byniculina.com
- carcareautorepair.com
- www.carcareautorepair.com
- dianaoganesyan.com
- www.dianaoganesyan.com
- dream-art-wrkshp.com
- www.dream-art-wrkshp.com
- elenatpsy.com
- www.elenatpsy.com
- essevity.com
- www.essevity.com
- foc-la-ghete.com
- www.foc-la-ghete.com
- ganga-trading.com
- www.ganga-trading.com
- gorbovoy.com
- www.gorbovoy.com
- granatsad.com
- www.granatsad.com
- guide-budapest.com
- www.guide-budapest.com
- igranda.com
- www.igranda.com
- immigration-strategy.com
Geographic detail
- City
- Moscow, RU
- Country
- RU
- Dominant city of the prefix
- Moscow, RU
Threat-feed listings
- firehol-anonymous · proxies
Threat-feed evidence
History
Related pages
Pivot from 176.57.65.78 into the prefix, network and country that carry it.
Queries
This address's full card — routing attribution, reverse DNS and listed feeds.
MATCH (ip:IPV4 {name: $ip})
OPTIONAL MATCH (ip)-[:BELONGS_TO]->(rp:REGISTERED_PREFIX)
OPTIONAL MATCH (ip)-[:ANNOUNCED_BY]->(ap:ANNOUNCED_PREFIX)
OPTIONAL MATCH (a:ASN)-[:ROUTES]->(ap)
OPTIONAL MATCH (a)-[:HAS_NAME]->(an:ASN_NAME)
OPTIONAL MATCH (ip)-[:LOCATED_IN]->(city:CITY)
OPTIONAL MATCH (ip)-[:HAS_COUNTRY]->(ipc:COUNTRY)
WITH ip, rp, ap, a, an, city, ipc
LIMIT 10
WITH ip,
collect(rp.name) AS registeredPrefixes,
collect({prefix: ap.name, asn: a.name, network: an.name, isMoas: ap.isMoas, rpkiStatus: ap.rpkiStatus, isAnycast: ap.isAnycast, dominantCity: ap.dominantCity}) AS announcements,
collect(city.name) AS cities,
collect(ipc.name) AS countries,
collect(a.name) AS announcerNames,
head(collect(a)) AS primaryAsn,
head(collect(ap)) AS primaryPrefix
OPTIONAL MATCH (primaryPrefix)-[:CONFLICTS_WITH]->(conflict:ASN)
WITH ip, registeredPrefixes, announcements, cities, countries, announcerNames, primaryAsn,
collect(conflict.name) AS conflictAsns
CALL { WITH primaryAsn MATCH (primaryAsn)-[:ROUTES]->(p:ANNOUNCED_PREFIX) RETURN count(p) AS asnPrefixCount }
CALL { WITH primaryAsn MATCH (primaryAsn)-[:BGP_NEIGHBOR]-(peer:ASN) RETURN count(peer) AS asnPeerCount }
RETURN ip.name AS name,
ip.verdictLevel AS verdictLevel,
ip.verdictScore AS verdictScore,
ip.verdictBlocking AS verdictBlocking,
ip.verdictCoverage AS verdictCoverage,
ip.verdictAdvisory AS verdictAdvisory,
ip.threatSources AS threatSources,
ip.threatFirstSeen AS threatFirstSeen,
ip.threatLastSeen AS threatLastSeen,
ip.isTor AS isTor,
ip.isVpn AS isVpn,
ip.isProxy AS isProxy,
ip.isC2 AS isC2,
ip.isPhishing AS isPhishing,
registeredPrefixes, announcements, cities, countries, announcerNames, conflictAsns,
asnPrefixCount, asnPeerCountRun yourself →Or query Whisper from your own LLM workflow via the Whisper MCP server.