AbuseIPDB » 2602:80d:1000::16

2602:80d:1000::16 was found in our database!

This IP was reported 89 times. Confidence of Abuse is 47%: ?

47%

Important Note: Public IPv6 addresses may implement the SLAAC privacy extension. With this, the interface identifier is randomly generated. The SLAAC privacy extension also implements a time out, which is configurable, so that the IPv6 interface addresses will be discarded and a new interface identifier is generated.

ISP Censys, Inc.
Usage Type Data Center/Web Hosting/Transit
ASN AS398324
Domain Name censys.com
Country United States of America
City Chicago, Illinois

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated biweekly.

IP Abuse Reports for 2602:80d:1000::16:

This IP address has been reported a total of 89 times from 31 distinct sources. 2602:80d:1000::16 was first reported on , and the most recent report was .

Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.

Reporter IoA Timestamp in UTC Comment Categories
vestibtech
Bad Web Bot
ParaBug
2602:80d:1000::16 - - [24/Mar/2025:10:25:04 +0100] "\x16\x03\x01" 400 392 "-" "-"
...
Phishing Brute-Force Web App Attack
spyra.rocks
NGINX
Bad Web Bot
exxos
http-no-verb
Hacking
spyra.rocks
NGINX
Bad Web Bot
LotPhantom
Web App Attack
spyra.rocks
NGINX
Bad Web Bot
Murazaki
Hacking
vestibtech
Bad Web Bot
ParaBug
2602:80d:1000::16 - - [03/Mar/2025:09:37:45 +0100] "\x16\x03\x01" 400 392 "-" "-"
...
Phishing Brute-Force Web App Attack
Admins@FBN
FW-PortScan: Traffic Blocked srcport=57636 dstport=80
Port Scan
vestibtech
Bad Web Bot
LuckyCharms
tarpit
SSH
LuckyCharms
tarpit
SSH
UFFR_87
Port Scan Hacking Brute-Force Web App Attack

Showing 1 to 15 of 89 reports


Is this your IP? You may request to takedown any associated reports. We will attempt to verify your ownership. Request Takedown 🚩

Recently Reported IPs: