IP address


.05223.94.219.108mail2.cmsatty.com
Shodan(more info)
Passive DNS
Tags: Scanner

Threat categories

TLRoleCategoryDetails
63 src scan port: 23

Warden events (17)
2026-05-01
ReconScanning (node.ce2b59): 11
2026-04-30
ReconScanning (node.ce2b59): 6
DShield reports (IP summary, reports)
2026-05-01
Number of reports: 63
Distinct targets: 3
Origin AS
AS36352 - AS-COLOCROSSING
BGP Prefix
23.94.219.0/24
geo
Netherlands, Amsterdam
🕑 Europe/Amsterdam
hostname
mail2.cmsatty.com
Address block ('inetnum' or 'NetRange' in whois database)
23.94.0.0 - 23.95.255.255
last_activity
2026-05-01 18:24:30
last_warden_event
2026-05-01 18:24:30
rep
0.051994977678571426
reserved_range
0
Shodan's InternetDB
Open ports: 22, 53, 80, 110, 143, 993, 2082, 2083, 2086, 2087, 2095, 3306
Tags: database, starttls
CPEs: cpe:/a:cpanel:whm, cpe:/a:cpanel:cpanel, cpe:/a:mariadb:mariadb, cpe:/a:apache:http_server, cpe:/a:openbsd:openssh:7.4
ts_added
2026-04-30 19:48:57.566000
ts_last_update
2026-05-09 19:49:00.177000

Warden event timeline

DShield event timeline