IP address
Shodan(more info)

Passive DNS

- OTX pulses
-
[690b1b175f4f05eaf8f6c0e0] 2025-11-05 09:38:31.645000 | CLOP RANSOMWARE: DISSECTING NETWORK - THE RAVEN FILE
Author name: AlienVault Pulse modified: 2025-11-05 09:39:49.493000 Indicator created: 2025-11-05 09:38:32 Indicator role: None Indicator title: Indicator expiration: 2025-12-05 09:00:00
- Origin AS
- AS199959 - CrownCloud
- BGP Prefix
- 104.200.72.0/24
- geo
- United States
- 🕑 America/Chicago
- hostname
- mail149.stcunwind.eu.com
- Address block ('inetnum' or 'NetRange' in whois database)
- 104.200.64.0 - 104.200.79.255
- last_activity
- 2025-11-05 12:39:37.773000
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 3389
- Tags: self-signed
- CPEs: –
- ts_added
- 2025-11-05 12:39:37.786000
- ts_last_update
- 2025-12-20 12:39:41.024000
Warden event timeline
DShield event timeline
OTX pulses

