Host

104.238.93.4

Tags: Hosting

As of our latest check on 2026-09-20, 104.238.93.4 (GoDaddy.com, LLC, AS398101, United States) had 3 open ports (21, 80, 443) and 112 known CVEs, 1 known to be exploited.

Known CVEs on this host

3open ports
0names pointing here
112known CVEs
1known exploited

Open ports and CVEs as of our latest check of this host, 2026-09-20.

CVEs by severity: CRITICAL 21 HIGH 60 MEDIUM 30 LOW 1

A match is an indication, not proof: it is based on the software version a service reported, and fixes are often backported without changing the version. See the list

Not counted: 4 only affect a particular platform; this host's is not known (http_server 2.4.52, php 5.6.40). See them

Network
GoDaddy.com, LLC AS398101
Open ports
21, 80, 443 · at our latest check, 2026-09-20
Location
United States US
Hostname
4.93.238.104.host.secureserver.net · reverse DNS, checked 2026-10-04
Route
104.238.92.0/22 · announced by GoDaddy.com, LLC AS398101 RPKI valid
Organisation
GoDaddy.com, LLC
Registry network
GO-DADDY-COM-LLC · 104.238.64.0 - 104.238.127.255 · GoDaddy.com, LLC · ARIN
Abuse contact
[email protected] · for GO-DADDY-COM-LLC
First seen
2026-09-20 09:49 UTC
Last seen alive
2026-09-20 09:52 UTC
Hosted domains
No host name points here

Reputation

Not a Tor relay, not a VPN or privacy relay address, and not on a current public blocklist.

Services (3)

21/tcp FTP first 2026-09-20 · last 2026-09-20
Banner
220---------- Welcome to Pure-FTPd [privsep] [TLS] ---------- 220-You are user number 1 of 50 allowed. 220-Local time is now 15:22. Server port: 21. 220-This is a private system - No anonymous logi
Raw response
220---------- Welcome to Pure-FTPd [privsep] [TLS] ----------
220-You are user number 1 of 50 allowed.
220-Local time is now 15:20. Server port: 21.
220-This is a private system - No anonymous login
220-IPv6 connections are also welcome on this server.
220 You will be disconnected after 15 minutes of inactivity.
80/tcp HTTP first 2026-09-20 · last 2026-09-20
Raw response
HTTP/1.1 200 OK
Date: Sun, 20 Sep 2026 09:50:16 GMT
Server: Apache/2.4.52 (cPanel) OpenSSL/1.1.1m mod_bwlimited/1.4
Last-Modified: Thu, 28 Oct 2021 14:25:02 GMT
ETag: "4e0012-a3-5cf6a79e3ab80"
Accept-Ranges: bytes
Content-Length: 163
Cache-Control: no-cache, no-store, must-revalidate
Pragma: no-cache
Expires: 0
Content-Type: text/html

<html><head><META HTTP-EQUIV="Cache-control" CONTENT="no-cache"><META HTTP-EQUIV="refresh" CONTENT="0;URL=/cgi-sys/defaultwebpage.cgi"></head><body></body></html>
443/tcp HTTP Apache/2.4.52 (cPanel) OpenSSL/1.1.1m mod_bwlimited/1.4 112 CVEs first 2026-09-20 · last 2026-09-20
Status
200 OK
Title
Login
Server
Apache/2.4.52 (cPanel) OpenSSL/1.1.1m mod_bwlimited/1.4
Powered by
PHP/5.6.40
Raw response
HTTP/1.1 302 Found
Date: Sun, 20 Sep 2026 09:50:16 GMT
Server: Apache/2.4.52 (cPanel) OpenSSL/1.1.1m mod_bwlimited/1.4
Location: https://www.mayfour.co.in/400.shtml
Content-Length: 219
Connection: close
Content-Type: text/html; charset=iso-8859-1

<!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
<html><head>
<title>302 Found</title>
</head><body>
<h1>Found</h1>
<p>The document has moved <a href="https://www.mayfour.co.in/400.shtml">here</a>.</p>
</body></html>

Vulnerabilities

Only affects certain platforms (4)

These CVEs only apply when the software runs on a particular platform (for example Windows), and this host's platform is not known. They are not counted.

CVEs by severity: CRITICAL 1 HIGH 2 MEDIUM 1

CVESoftware
CVE-2024-3566 CRITICAL 9.8 php 5.6.40 · port 443
CVE-2024-40898 HIGH 7.5 http_server 2.4.52 · port 443
CVE-2024-43394 HIGH 7.5 http_server 2.4.52 · port 443
CVE-2022-28330 MEDIUM 5.3 http_server 2.4.52 · port 443

Port history

Every port that has answered a connection on this address, and when. A port is listed as open above only when a service was identified on it. Times are UTC.