This IP was reported 34 times. Confidence of
Abuse
is 71%: ?
71%
Important Note: Public IPv6 addresses may implement the SLAAC
privacy extension. With this, the interface identifier is randomly generated. The SLAAC
privacy extension also implements a time out, which is configurable, so that the IPv6
interface addresses will be discarded and a new interface identifier is generated.
This IP address has been reported a total of
34
times from
14 distinct
sources.
2602:80d:1005::f was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Abusive crawler: User-Agent on the known-bad list or claiming a placeholder identity | ua: Mozilla/5 ...
show moreAbusive crawler: User-Agent on the known-bad list or claiming a placeholder identity | ua: Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/) | path: / (+1 more)
show less
CrowdSec: Ip 2602:80d:1005::f performed 'crowdsecurity/http-bad-user-agent' (2 events over 369.48136 ...
show moreCrowdSec: Ip 2602:80d:1005::f performed 'crowdsecurity/http-bad-user-agent' (2 events over 369.481369ms) at 2026-08-22 20:59:06.168948226 +0000 UTC (scenario: crowdsecurity/http-bad-user-agent)
show less
[FriAug2104:33:35.6037572026][security2:error][pid463782:tid463917][client2602:80d:1005::f:0]ModSecu ...
show more[FriAug2104:33:35.6037572026][security2:error][pid463782:tid463917][client2602:80d:1005::f:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\bshodan\\\\\\\\b\|\\\\\\\\bcensysinspect\\\\\\\\b\|\\\\\\\\bcensys\\\\\\\\b\|\\\\\\\\bexpanse\\\\\\\\b\|\\\\\\\\bnetsystemsresearch\\\\\\\\b\|\\\\\\\\bnetcraftsurveyagent\\\\\\\\b\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"73\"][id\"338801\"][rev\"1\"][msg\"Atomicorp.comWAFRules:Blockedinternet-widesurveyorUA\"][severity\"ERROR\"][hostname\"sanierung-pilzen-schimmel-schweiz.ch.risanamento-funghi-muffa.ch\"][uri\"/\"][unique_id\"aoe4_z2oAvohhWGtqC8-IQAAANI\"]
show less
Abusive crawler: User-Agent on the known-bad list or claiming a placeholder identity | ua: Mozilla/5 ...
show moreAbusive crawler: User-Agent on the known-bad list or claiming a placeholder identity | ua: Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/) | path: / (+1 more)
show less
Triggered crowdsecurity/http-bad-user-agent. More information at: https://app.crowdsec.net/cti/2602: ...
show moreTriggered crowdsecurity/http-bad-user-agent. More information at: https://app.crowdsec.net/cti/2602:80d:1005::f
show less
[WedAug1917:10:39.4615942026][security2:error][pid167751:tid167919][client2602:80d:1005::f:0]ModSecu ...
show more[WedAug1917:10:39.4615942026][security2:error][pid167751:tid167919][client2602:80d:1005::f:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\bshodan\\\\\\\\b\|\\\\\\\\bcensysinspect\\\\\\\\b\|\\\\\\\\bcensys\\\\\\\\b\|\\\\\\\\bexpanse\\\\\\\\b\|\\\\\\\\bnetsystemsresearch\\\\\\\\b\|\\\\\\\\bnetcraftsurveyagent\\\\\\\\b\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"73\"][id\"338801\"][rev\"1\"][msg\"Atomicorp.comWAFRules:Blockedinternet-widesurveyorUA\"][severity\"ERROR\"][hostname\"2a02:29b8:dc01:545::625:de4f\"][uri\"/\"][unique_id\"aoXHb-NbkKCmKMjnq7X7_QAAAQI\"]
show less
[MonAug1716:54:52.6097412026][security2:error][pid3863617:tid3863860][client2602:80d:1005::f:0]ModSe ...
show more[MonAug1716:54:52.6097412026][security2:error][pid3863617:tid3863860][client2602:80d:1005::f:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\bshodan\\\\\\\\b\|\\\\\\\\bcensysinspect\\\\\\\\b\|\\\\\\\\bcensys\\\\\\\\b\|\\\\\\\\bexpanse\\\\\\\\b\|\\\\\\\\bnetsystemsresearch\\\\\\\\b\|\\\\\\\\bnetcraftsurveyagent\\\\\\\\b\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"73\"][id\"338801\"][rev\"1\"][msg\"Atomicorp.comWAFRules:Blockedinternet-widesurveyorUA\"][severity\"ERROR\"][hostname\"2a02:29b8:dc01:545::625:de4f\"][uri\"/\"][unique_id\"aoMgvLqCiN5o3sS4mH_RIwAAAE8\"]
show less
Requests sent with a known malicious or scanner user-agent | req: / | UA: Mozilla/5.0 (compatible; C ...
show moreRequests sent with a known malicious or scanner user-agent | req: / | UA: Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)
show less
Bad Web Bot
Showing 1 to
15
of 34 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ