IP address


--185.55.242.97srv.pubstorm.com
Shodan(more info)
Passive DNS
Tags:
OTX pulses
[690b1b175f4f05eaf8f6c0e0] 2025-11-05 09:38:31.645000 | CLOP RANSOMWARE: DISSECTING NETWORK - THE RAVEN FILE
Author name:AlienVault
Pulse modified:2025-11-05 09:39:49.493000
Indicator created:2025-11-05 09:38:32
Indicator role:None
Indicator title:
Indicator expiration:2025-12-05 09:00:00
Origin AS
AS209272 - AS-ALVIVA
BGP Prefix
185.55.242.0/24
geo
Germany
🕑 Europe/Berlin
hostname
srv.pubstorm.com
Address block ('inetnum' or 'NetRange' in whois database)
185.55.240.0 - 185.55.243.255
last_activity
2025-11-05 12:39:38.203000
reserved_range
0
Shodan's InternetDB
Open ports: 25, 80, 110, 123, 443, 465, 587, 993, 995
Tags: starttls
CPEs: cpe:/a:getbootstrap:bootstrap, cpe:/a:postfix:postfix, cpe:/a:f5:nginx, cpe:/a:jquery:jquery_ui, cpe:/a:jquery:jquery
ts_added
2025-11-05 12:39:38.212000
ts_last_update
2025-12-19 12:39:40.705000

Warden event timeline

DShield event timeline

OTX pulses