2602:80d:1005::1c

Recent Activity This IP has received recent abuse reports, which causes the score to increase. IPv6 SLAAC Note Public IPv6 addresses may implement the SLAAC privacy extension. With SLAAC, the interface identifier is randomly generated. SLAAC also implements a configurable time out, so that the original IPv6 interface addresses will be discarded in favor of a new interface identifier.
Abuse confidence score ?
84% Critical
313 reports
70 reporters ยท latest 15 hours ago
ISP Censys, Inc.
Usage Type Data Center/Web Hosting/Transit
ASN AS398705
Hostname(s) scanner-202.fr7.censys-scanner.com
Domain Name censys.com
Country ๐Ÿ‡ฉ๐Ÿ‡ช Germany
City Frankfurt am Main, Hesse

ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Reports Activity

Example preview

Report Categories (Last 60 Days)

Example preview

Top Reporter Countries (Last 60 Days)

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 2602:80d:1005::1c

This IP address has been reported a total of 313 times from 70 distinct sources. 2602:80d:1005::1c was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: Netherlands with 32 reports; Germany with 30 reports; Switzerland with 8 reports. The most common categories in these recent reports were: Web App Attack 80 times; Bad Web Bot 56 times; Port Scan 20 times; Brute-Force 19 times; Hacking 13 times; Other 6 times.

Reporter IoA Timestamp (UTC) Comment Categories
๐Ÿ‡ณ๐Ÿ‡ฑ WeCloudit-Anti-Abuse
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
Web App Attack Bad Web Bot
๐Ÿ‡ณ๐Ÿ‡ฑ WeCloudit-Anti-Abuse
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
Web App Attack Bad Web Bot
๐Ÿ‡ซ๐Ÿ‡ท DUBREUIL
As always with censys
DDoS Attack Brute-Force Web App Attack SSH Open Proxy Port Scan SQL Injection Hacking
๐Ÿ‡จ๐Ÿ‡ญ 4server
Hacking Web App Attack
๐Ÿ‡ณ๐Ÿ‡ฑ WeCloudit-Anti-Abuse
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
Web App Attack Bad Web Bot
๐Ÿ‡จ๐Ÿ‡ญ 4server
Hacking Web App Attack
Anonymous
[20/Sep/2026:22:12:33 +1000] "\x16\x03\x01" 400 266
Hacking Web App Attack
๐Ÿ‡ฉ๐Ÿ‡ช Starburst SysOp Team
Host header is a numeric IP address. Pattern match "(?:^( (920350-nue6-1)
Hacking Bad Web Bot
๐Ÿ‡ณ๐Ÿ‡ฑ WeCloudit-Anti-Abuse
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
Web App Attack Bad Web Bot
๐Ÿ‡บ๐Ÿ‡ธ LotPhantom
Web App Attack
๐Ÿ‡บ๐Ÿ‡ธ Rocky Mountain Bioengineering Symposium
Bad Web Bot
๐Ÿ‡ณ๐Ÿ‡ฑ WeCloudit-Anti-Abuse
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
Web App Attack Bad Web Bot
๐Ÿ‡ฉ๐Ÿ‡ช 4server
Port Scan Brute-Force Web App Attack
๐Ÿ‡ซ๐Ÿ‡ท Tilellit.PRO
Malicious or fake user-agent string used to bypass scraping restrictions
Web App Attack Bad Web Bot
๐Ÿ‡ณ๐Ÿ‡ฑ WeCloudit-Anti-Abuse
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
Web App Attack Bad Web Bot

Showing 1 to 15 of 313 reports

Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡ฎ๐Ÿ‡ฉ 202.50.203.150
๐Ÿ‡ฆ๐Ÿ‡ท 186.158.170.138
๐Ÿ‡ซ๐Ÿ‡ท 172.71.127.122
๐Ÿ‡ป๐Ÿ‡ณ 103.97.126.135
๐Ÿ‡บ๐Ÿ‡ธ 72.202.250.250
๐Ÿ‡ธ๐Ÿ‡ฌ 43.134.49.202
๐Ÿ‡ฉ๐Ÿ‡ช 23.132.164.70
๐Ÿ‡บ๐Ÿ‡ธ 20.65.219.164
๐Ÿ‡บ๐Ÿ‡ธ 20.65.144.189
๐Ÿ‡ฐ๐Ÿ‡ท 14.55.144.22
๐Ÿ‡จ๐Ÿ‡ณ 218.56.160.82
๐Ÿ‡น๐Ÿ‡ผ 198.235.24.79
๐Ÿ‡ง๐Ÿ‡ท 187.52.212.235
๐Ÿ‡ณ๐Ÿ‡ฑ 185.223.235.57
๐Ÿ‡ธ๐Ÿ‡ฌ 172.237.78.33
๐Ÿ‡จ๐Ÿ‡ณ 124.31.107.37
๐Ÿ‡จ๐Ÿ‡ณ 111.26.62.46
๐Ÿ‡บ๐Ÿ‡ธ 66.132.195.101
๐Ÿ‡ณ๐Ÿ‡ฑ 45.138.12.51
๐Ÿ‡ฎ๐Ÿ‡ณ 34.93.113.242