AbuseIPDB » 2602:80d:1007::4f

2602:80d:1007::4f was found in our database!

This IP was reported 249 times. Confidence of Abuse is 99%: ?

99%

Important Note: Public IPv6 addresses may implement the SLAAC privacy extension. With this, the interface identifier is randomly generated. The SLAAC privacy extension also implements a time out, which is configurable, so that the IPv6 interface addresses will be discarded and a new interface identifier is generated.

ISP Censys, Inc.
Usage Type Commercial
ASN AS398324
Domain Name censys.io
Country πŸ‡ΊπŸ‡Έ United States of America
City Chicago, Illinois

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

IP Abuse Reports for 2602:80d:1007::4f:

This IP address has been reported a total of 249 times from 60 distinct sources. 2602:80d:1007::4f was first reported on , and the most recent report was .

Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.

Reporter IoA Timestamp (UTC) Comment Categories
πŸ‡©πŸ‡ͺ 4server
Port Scan Brute-Force Web App Attack
πŸ‡©πŸ‡ͺ HoneyPot-FrPri
2602:80d:1007::4f - - [26/Apr/2026:20:54:11 +0200] "PRI * HTTP/2.0" 400 157 "-" "-" ...
Bad Web Bot Web App Attack
Anonymous
Fail2Ban triggered
Web App Attack
πŸ‡©πŸ‡ͺ IVski.com
IVski WAF | TLS/SSL handshake sent over plain HTTP - likely port scan or misconfiguration
Port Scan Brute-Force Web App Attack
Anonymous
2602:80d:1007::4f - - [26/Apr/2026:06:02:55 +0000] "\x16\x03\x01\x01\t\x01" 400 432 "-" "-" ...
Bad Web Bot Web App Attack
πŸ‡¦πŸ‡Ή Starburst SysOp Team
Host header is a numeric IP address. Pattern match "(?:^( (920350-vie6-1)
Hacking Bad Web Bot
πŸ‡©πŸ‡ͺ HoneyPot-FrPri
2602:80d:1007::4f - - [25/Apr/2026:19:47:01 +0200] "PRI * HTTP/2.0" 400 157 "-" "-" ...
Bad Web Bot Web App Attack
Anonymous
[25/Apr/2026:13:17:47 +1000] "\x16\x03\x01" 400 266
Hacking Web App Attack
πŸ‡©πŸ‡ͺ 4server
Port Scan Brute-Force Web App Attack
πŸ‡©πŸ‡ͺ SCHAPPY
Malicious activity from IP detected: crowdsecurity/http-bad-user-agent.
Web App Attack Bad Web Bot
πŸ‡©πŸ‡ͺ ecs.ge
Automatic Fail2Ban report from jail plesk-modsecurity: multiple matching events detected.
Web App Attack Hacking
πŸ‡¦πŸ‡Ί Anytech
Blocked by Conn-Monitor: Automated bot activity
Web App Attack
Anonymous
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
Web App Attack Bad Web Bot
Anonymous
2602:80d:1007::4f - - [22/Apr/2026:16:36:00 +0000] "\x16\x03\x01\x01\x03\x01" 400 432 "-" "-" ...
Bad Web Bot Web App Attack
πŸ‡ͺπŸ‡Έ RtheCompany.eu
Brute-Force Hacking SQL Injection

Showing 196 to 210 of 249 reports


Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩

Recently Reported IPs:

πŸ‡¬πŸ‡§ 193.32.209.230
πŸ‡ΊπŸ‡Έ 172.190.100.213
πŸ‡§πŸ‡· 170.245.16.171
πŸ‡±πŸ‡Ή 77.90.185.238
πŸ‡«πŸ‡· 37.67.74.31
πŸ‡³πŸ‡± 35.204.50.3
πŸ‡¬πŸ‡§ 35.203.211.123
πŸ‡ΊπŸ‡Έ 35.185.5.241
πŸ‡ΊπŸ‡Έ 34.106.6.135
πŸ‡­πŸ‡° 34.96.165.238
πŸ‡ΊπŸ‡Έ 20.65.146.164
πŸ‡ΊπŸ‡Έ 217.181.78.158
πŸ‡©πŸ‡ͺ 194.88.98.89
πŸ‡·πŸ‡Ί 176.115.149.0
πŸ‡ΊπŸ‡Έ 136.107.222.15
πŸ‡ΊπŸ‡Έ 136.66.93.101
πŸ‡ΈπŸ‡ͺ 94.255.245.175
πŸ‡ΊπŸ‡¦ 93.170.117.13
πŸ‡ΈπŸ‡ͺ 83.255.102.217
πŸ‡©πŸ‡ͺ 81.7.17.180