IP address


.086162.214.114.117vps-228907.cei-gesmujer.mx
Shodan(more info)
Passive DNS
Tags:
IP blacklists
UCEPROTECT L1
162.214.114.117 is listed on the UCEPROTECT L1 blacklist.

Description: UCEPROTECT-NETWORK list of spam IPs.
Type of feed: primary (feed detail page)

Last checked at: 2026-03-13 16:45:00.715000
Was present on blacklist at: 2026-03-03 08:45, 2026-03-03 16:45, 2026-03-04 00:45, 2026-03-04 08:45, 2026-03-04 16:45, 2026-03-05 00:45, 2026-03-05 08:45, 2026-03-05 16:45, 2026-03-06 00:45, 2026-03-06 08:45, 2026-03-09 08:45, 2026-03-09 16:45, 2026-03-10 00:45, 2026-03-10 08:45, 2026-03-10 16:45, 2026-03-11 00:45, 2026-03-11 08:45, 2026-03-11 16:45, 2026-03-12 00:45, 2026-03-12 08:45, 2026-03-12 16:45, 2026-03-13 00:45, 2026-03-13 08:45, 2026-03-13 16:45
blocklist.de IMAP
162.214.114.117 is listed on the blocklist.de IMAP blacklist.

Description: Blocklist.de feed is a free and voluntary service<br>provided by a Fraud/Abuse-specialist. IPs performing attacks<br>on the Service imap, sasl, pop3.
Type of feed: primary (feed detail page)

Last checked at: 2026-03-05 23:05:00.416000
Was present on blacklist at: 2026-03-03 11:05, 2026-03-03 17:05, 2026-03-03 23:05, 2026-03-04 05:05, 2026-03-04 11:05, 2026-03-04 17:05, 2026-03-04 23:05, 2026-03-05 05:05, 2026-03-05 11:05, 2026-03-05 17:05, 2026-03-05 23:05
blocklist.de mail
162.214.114.117 is listed on the blocklist.de mail blacklist.

Description: Blocklist.de feed is a free and voluntary service provided<br>by a Fraud/Abuse-specialist. IPs performing Mail attacks.
Type of feed: primary (feed detail page)

Last checked at: 2026-03-05 23:05:00.509000
Was present on blacklist at: 2026-03-03 11:05, 2026-03-03 17:05, 2026-03-03 23:05, 2026-03-04 05:05, 2026-03-04 11:05, 2026-03-04 17:05, 2026-03-04 23:05, 2026-03-05 05:05, 2026-03-05 11:05, 2026-03-05 17:05, 2026-03-05 23:05
AbuseIPDB
162.214.114.117 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2026-03-14 05:00:00.644000
Was present on blacklist at: 2026-03-11 05:00, 2026-03-12 05:00, 2026-03-13 05:00, 2026-03-14 05:00
blocklist.de SSH
162.214.114.117 is listed on the blocklist.de SSH blacklist.

Description: Blocklist.de feed is a free and voluntary service provided<br>by a Fraud/Abuse-specialist. IPs performing SSH attacks.
Type of feed: primary (feed detail page)

Last checked at: 2026-03-15 23:05:00.310000
Was present on blacklist at: 2026-03-11 05:05, 2026-03-11 11:05, 2026-03-11 17:05, 2026-03-11 23:05, 2026-03-12 05:05, 2026-03-12 11:05, 2026-03-12 17:05, 2026-03-12 23:05, 2026-03-13 05:05, 2026-03-13 11:05, 2026-03-13 17:05, 2026-03-13 23:05, 2026-03-14 05:05, 2026-03-14 11:05, 2026-03-14 23:05, 2026-03-15 05:05, 2026-03-15 11:05, 2026-03-15 23:05

Threat categories

TLRoleCategoryDetails
60 src login protocol: ssh
50 src scan
41 src

Warden events (5)
2026-03-13
AttemptLogin (node.03e7a9): 2
2026-03-12
AttemptLogin (node.03e7a9): 1
2026-03-11
AttemptLogin (node.03e7a9): 2
DShield reports (IP summary, reports)
2026-03-10
Number of reports: 12
Distinct targets: 8
2026-03-11
Number of reports: 29
Distinct targets: 13
2026-03-12
Number of reports: 30
Distinct targets: 10
2026-03-13
Number of reports: 30
Distinct targets: 10
Origin AS
AS46606 - UNIFIEDLAYER-AS-1
BGP Prefix
162.214.112.0/22
geo
United States, Phoenix
🕑 America/Phoenix
hostname
vps-228907.cei-gesmujer.mx
Address block ('inetnum' or 'NetRange' in whois database)
162.214.0.0 - 162.215.255.255
last_activity
2026-03-13 20:19:13.821000
last_warden_event
2026-03-13 20:19:13.821000
rep
0.08571428571428572
reserved_range
0
ts_added
2026-03-03 08:54:41.516000
ts_last_update
2026-03-17 08:54:51.545000

Warden event timeline

DShield event timeline

Presence on blacklists