2602:80d:1007::56
| ISP | Censys, Inc. |
|---|---|
| Usage Type | Data Center/Web Hosting/Transit |
| ASN | AS398324 |
| Domain Name | censys.com |
| Country | ๐บ๐ธ United States of America |
| City | Chicago, Illinois |
ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 2602:80d:1007::56
This IP address has been reported a total of 264 times from 69 distinct sources. 2602:80d:1007::56 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: Germany with 31 reports; United States of America with 12 reports; Australia with 7 reports. The most common categories in these recent reports were: Web App Attack 54 times; Bad Web Bot 38 times; Hacking 30 times; Port Scan 17 times; Brute-Force 16 times; Other 3 times.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐ฉ๐ช IVski.com |
IVski WAF | TLS/SSL handshake sent over plain HTTP - likely port scan or misconfiguration
|
Port Scan Brute-Force Web App Attack | ||
| ๐บ๐ธ Starburst SysOp Team |
Host header is a numeric IP address. Pattern match "(?:^( (920350-stl2-13)
|
Hacking Bad Web Bot | ||
| ๐ฉ๐ช enjoyably |
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
|
Web App Attack Bad Web Bot | ||
| ๐บ๐ธ infra-monitor |
Automated ban via infra-monitor: protocol-mismatch
|
Port Scan | ||
| ๐ฉ๐ช 4server |
|
Port Scan Brute-Force Web App Attack | ||
| ๐ฌ๐ง pinguin |
|
Bad Web Bot | ||
| ๐ฉ๐ช ecs.ge |
Automatic Fail2Ban report from jail plesk-modsecurity: multiple matching events detected.
|
Web App Attack Hacking | ||
| ๐ฉ๐ช ecs.ge |
Automatic Fail2Ban report from jail plesk-modsecurity: multiple matching events detected.
|
Web App Attack Hacking | ||
| ๐ซ๐ท Bensay |
|
Hacking Bad Web Bot Web App Attack | ||
| ๐ฉ๐ช 4server |
|
Port Scan Brute-Force Web App Attack | ||
| ๐ซ๐ท HerrWolf |
CrowdSec Detection: crowdsecurity/http-bad-user-agent
|
Bad Web Bot | ||
| ๐ณ๐ฑ ParaBug |
2602:80d:1007::56 - - [13/Apr/2026:04:36:37 +0200] "\x16\x03\x01\x01\n" 400 432 "-" "-"
...
|
Phishing Brute-Force Web App Attack | ||
| ๐ฉ๐ช Starburst SysOp Team |
Host header is a numeric IP address. Pattern match "(?:^( (920350-nue6-1)
|
Hacking Bad Web Bot | ||
| ๐บ๐ธ Starburst SysOp Team |
Host header is a numeric IP address. Pattern match "(?:^( (920350-stl2-17)
|
Hacking Bad Web Bot | ||
| ๐ฉ๐ช 4server |
|
Port Scan Brute-Force Web App Attack |
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ