IP address


--104.200.72.149mail149.stcunwind.eu.com
Shodan(more info)
Passive DNS
Tags:
OTX pulses
[690b1b175f4f05eaf8f6c0e0] 2025-11-05 09:38:31.645000 | CLOP RANSOMWARE: DISSECTING NETWORK - THE RAVEN FILE
Author name:AlienVault
Pulse modified:2025-11-05 09:39:49.493000
Indicator created:2025-11-05 09:38:32
Indicator role:None
Indicator title:
Indicator expiration:2025-12-05 09:00:00
Origin AS
AS199959 - CrownCloud
BGP Prefix
104.200.72.0/24
geo
United States
🕑 America/Chicago
hostname
mail149.stcunwind.eu.com
Address block ('inetnum' or 'NetRange' in whois database)
104.200.64.0 - 104.200.79.255
last_activity
2025-11-05 12:39:37.773000
reserved_range
0
Shodan's InternetDB
Open ports: 3389
Tags: self-signed
CPEs:
ts_added
2025-11-05 12:39:37.786000
ts_last_update
2025-12-20 12:39:41.024000

Warden event timeline

DShield event timeline

OTX pulses