AbuseIPDB » 2602:80d:1007::20

2602:80d:1007::20
Recent Activity This IP has received recent abuse reports, which causes the score to increase. IPv6 SLAAC Note Public IPv6 addresses may implement the SLAAC privacy extension. With SLAAC, the interface identifier is randomly generated. SLAAC also implements a configurable time out, so that the original IPv6 interface addresses will be discarded in favor of a new interface identifier.
176 reports found in our database
78% Critical
Abuse confidence score ?
ISP
Censys, Inc.
Usage Type
Commercial
ASN
Domain Name
censys.io
Country
🇺🇸 United States of America
City
Chicago, Illinois

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Top Reporter Countries (Last 60 Days)

Example preview

Report Categories (Last 60 Days)

Example preview

Reports Activity

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 2602:80d:1007::20:

This IP address has been reported a total of 176 times from 56 distinct sources. 2602:80d:1007::20 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: Germany with 42 reports; United States of America with 8 reports; France with 7 reports. The most common categories in these recent reports were: Web App Attack 49 times; Bad Web Bot 35 times; Hacking 22 times; Brute-Force 15 times; Port Scan 12 times; Other 6 times.

Reporter IoA Timestamp (UTC) Comment Categories
Anonymous
Fail2Ban triggered
Web App Attack
Anonymous
2602:80d:1007::20 - - [13/Aug/2026:14:23:05 +0000] "\x16\x03\x01" 400 432 "-" "-" ...
Bad Web Bot Web App Attack
🇩🇪 LRob
Bad Web Bot
🇩🇪 seal
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
SSH Brute-Force
🇫🇷 pm33
Probing for resource vulnerabilities HTTP(S)
Web App Attack
🇩🇪 23p02732
Automated web scanning and malicious probing
Brute-Force Bad Web Bot Web App Attack
🇩🇪 yvoictra
Bloqueado automáticamente por CrowdSec. Escenario: crowdsecurity/http-bad-user-agent
Web App Attack
🇩🇪 Melle
Web App Attack Bad Web Bot
🇦🇹 Starburst SysOp Team
Host header is a numeric IP address. Pattern match "(?:^( (920350-vie6-1)
Hacking Bad Web Bot
🇫🇷 pm33
Probing for resource vulnerabilities HTTP(S)
Web App Attack
🇺🇸 Starburst SysOp Team
Host header is a numeric IP address. Pattern match "(?:^( (920350-stl2-14)
Hacking Bad Web Bot
🇩🇪 4server
Port Scan Brute-Force Web App Attack
🇹🇷 neron
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking Web App Attack
🇩🇪 SCHAPPY
Malicious activity from IP detected: crowdsecurity/http-bad-user-agent.
Web App Attack Bad Web Bot
🇩🇪 LRob
Bad Web Bot

Showing 16 to 30 of 176 reports


Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩

Recently Reported IPs:

🇧🇩 103.178.191.213
🇦🇪 92.97.9.14
🇺🇸 91.230.168.45
🇦🇷 45.228.190.124
🇳🇱 45.148.10.59
🇺🇸 34.106.6.41
🇨🇦 216.26.241.74
🇧🇷 177.116.241.87
🇭🇰 172.253.237.20
🇩🇪 147.45.197.127
🇷🇴 146.70.246.133
🇺🇸 136.118.193.212
🇸🇬 136.110.59.139
🇻🇳 116.111.184.244
🇨🇭 46.19.138.10