This IP was reported 239 times. Confidence of
Abuse
is 95%: ?
95%
Important Note: Public IPv6 addresses may implement the SLAAC
privacy extension. With this, the interface identifier is randomly generated. The SLAAC
privacy extension also implements a time out, which is configurable, so that the IPv6
interface addresses will be discarded and a new interface identifier is generated.
This IP address has been reported a total of
239
times from
58 distinct
sources.
2602:80d:1007::4f was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
[MonJun0822:19:00.5321192026][security2:error][pid1769605:tid1769703][client2602:80d:1007::4f:0]ModS ...
show more[MonJun0822:19:00.5321192026][security2:error][pid1769605:tid1769703][client2602:80d:1007::4f:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\bshodan\\\\\\\\b\|\\\\\\\\bcensysinspect\\\\\\\\b\|\\\\\\\\bcensys\\\\\\\\b\|\\\\\\\\bexpanse\\\\\\\\b\|\\\\\\\\bnetsystemsresearch\\\\\\\\b\|\\\\\\\\bnetcraftsurveyagent\\\\\\\\b\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"73\"][id\"338801\"][rev\"1\"][msg\"Atomicorp.comWAFRules:Blockedinternet-widesurveyorUA\"][severity\"ERROR\"][hostname\"www.danielasilvia.ch\"][uri\"/\"][unique_id\"aicjtGql9iOVknLfeATzwAAAAQI\"]
show less
[SatJun0621:03:05.9011852026][security2:error][pid2721405:tid2721494][client2602:80d:1007::4f:0]ModS ...
show more[SatJun0621:03:05.9011852026][security2:error][pid2721405:tid2721494][client2602:80d:1007::4f:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\bshodan\\\\\\\\b\|\\\\\\\\bcensysinspect\\\\\\\\b\|\\\\\\\\bcensys\\\\\\\\b\|\\\\\\\\bexpanse\\\\\\\\b\|\\\\\\\\bnetsystemsresearch\\\\\\\\b\|\\\\\\\\bnetcraftsurveyagent\\\\\\\\b\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"73\"][id\"338801\"][rev\"1\"][msg\"Atomicorp.comWAFRules:Blockedinternet-widesurveyorUA\"][severity\"ERROR\"][hostname\"www.agilityrossoblu.ch\"][uri\"/favicon.ico\"][unique_id\"aiRu6e8PIxHbfARR_Nm3UgAAAJU\"]
show less
[TueJun0208:13:04.2041432026][security2:error][pid447848:tid448134][client2602:80d:1007::4f:0]ModSec ...
show more[TueJun0208:13:04.2041432026][security2:error][pid447848:tid448134][client2602:80d:1007::4f:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\bshodan\\\\\\\\b\|\\\\\\\\bcensysinspect\\\\\\\\b\|\\\\\\\\bcensys\\\\\\\\b\|\\\\\\\\bexpanse\\\\\\\\b\|\\\\\\\\bnetsystemsresearch\\\\\\\\b\|\\\\\\\\bnetcraftsurveyagent\\\\\\\\b\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"73\"][id\"338801\"][rev\"1\"][msg\"Atomicorp.comWAFRules:Blockedinternet-widesurveyorUA\"][severity\"ERROR\"][hostname\"foodelivery.benvenutialfood.ch\"][uri\"/\"][unique_id\"ah50cGdzvhZhBw48JOPQAgAAANA\"]
show less
[TueJun0204:57:17.9733152026][security2:error][pid3655507:tid3655565][client2602:80d:1007::4f:0]ModS ...
show more[TueJun0204:57:17.9733152026][security2:error][pid3655507:tid3655565][client2602:80d:1007::4f:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\bshodan\\\\\\\\b\|\\\\\\\\bcensysinspect\\\\\\\\b\|\\\\\\\\bcensys\\\\\\\\b\|\\\\\\\\bexpanse\\\\\\\\b\|\\\\\\\\bnetsystemsresearch\\\\\\\\b\|\\\\\\\\bnetcraftsurveyagent\\\\\\\\b\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"73\"][id\"338801\"][rev\"1\"][msg\"Atomicorp.comWAFRules:Blockedinternet-widesurveyorUA\"][severity\"ERROR\"][hostname\"kvsm-blackstone.com\"][uri\"/images/favicon.ico\"][unique_id\"ah5Gjf60jK4tz_ceFuGmMAAAAEI\"]
show less
Port Scan
Brute-Force
Web App Attack
Anonymous
Scenarios: http-bad-user-agent
Total requests: 10
[01/Jun/2026:20:46:05 +0000] [Client: 2602:80d:100 ...
show moreScenarios: http-bad-user-agent
Total requests: 10
[01/Jun/2026:20:46:05 +0000] [Client: 2602:80d:1007::4f] GET [200] "/ HTTP/1.1" User-Agent: "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)"
[01/Jun/2026:20:46:08 +0000] [Client: 2602:80d:1007::4f] PRI [400] "* HTTP/2.0" User-Agent: "-"
[01/Jun/2026:20:46:08 +0000] [Client: 2602:80d:1007::4f] GET [200] "/favicon.ico HTTP/1.1" User-Agent: "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)"
[01/Jun/2026:20:46:09 +0000] [Client: 2602:80d:1007::4f] [400] "\x16\x03\x01\x00\xEE\x01\x00\x00\xEA\x03\x03p\xD0-\xE3\x0Fs" User-Agent: "-"
[01/Jun/2026:20:46:22 +0000] [Client: 2602:80d:1007::4f] GET [200] "/.well-known/security.txt HTTP/1.1" User-Agent: "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)"
[01/Jun/2026:20:46:24 +0000] [Client: 2602:80d:1007::4f] GET [200] "/favicon.ico HTTP/1.1" User-Agent: "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)"
show less