This IP was reported 129 times. Confidence of
Abuse
is 59%: ?
59%
Important Note: Public IPv6 addresses may implement the SLAAC
privacy extension. With this, the interface identifier is randomly generated. The SLAAC
privacy extension also implements a time out, which is configurable, so that the IPv6
interface addresses will be discarded and a new interface identifier is generated.
This IP address has been reported a total of
129
times from
34 distinct
sources.
2602:80d:1007::ba was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
[WedSep1611:16:40.0997312026][security2:error][pid367122:tid367166][client2602:80d:1007::ba:0]ModSec ...
show more[WedSep1611:16:40.0997312026][security2:error][pid367122:tid367166][client2602:80d:1007::ba:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\bshodan\\\\\\\\b\|\\\\\\\\bcensysinspect\\\\\\\\b\|\\\\\\\\bcensys\\\\\\\\b\|\\\\\\\\bexpanse\\\\\\\\b\|\\\\\\\\bnetsystemsresearch\\\\\\\\b\|\\\\\\\\bnetcraftsurveyagent\\\\\\\\b\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"73\"][id\"338801\"][rev\"1\"][msg\"Atomicorp.comWAFRules:Blockedinternet-widesurveyorUA\"][severity\"ERROR\"][hostname\"mail.ecosuber.com\"][uri\"/\"][unique_id\"aqpeeJjhDBBOCDdf38iJjAAAAEo\"]
show less
[FriSep1109:07:56.0221152026][security2:error][pid1453566:tid1453595][client2602:80d:1007::ba:0]ModS ...
show more[FriSep1109:07:56.0221152026][security2:error][pid1453566:tid1453595][client2602:80d:1007::ba:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\bshodan\\\\\\\\b\|\\\\\\\\bcensysinspect\\\\\\\\b\|\\\\\\\\bcensys\\\\\\\\b\|\\\\\\\\bexpanse\\\\\\\\b\|\\\\\\\\bnetsystemsresearch\\\\\\\\b\|\\\\\\\\bnetcraftsurveyagent\\\\\\\\b\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"73\"][id\"338801\"][rev\"1\"][msg\"Atomicorp.comWAFRules:Blockedinternet-widesurveyorUA\"][severity\"ERROR\"][hostname\"www.eimeko.ch\"][uri\"/403.shtml\"][unique_id\"aqOozMaAw1WOzFTcKVrqvgAAABI\"]
show less
Malformed or malicious web request
2602:80d:1007::ba - - [07/Sep/2026:18:51:27 +0200] "PRI * HTTP/2. ...
show moreMalformed or malicious web request
2602:80d:1007::ba - - [07/Sep/2026:18:51:27 +0200] "PRI * HTTP/2.0" 400 157 "-" "-"
show less
[MonSep0709:08:45.2339422026][security2:error][pid97610:tid97770][client2602:80d:1007::ba:0]ModSecur ...
show more[MonSep0709:08:45.2339422026][security2:error][pid97610:tid97770][client2602:80d:1007::ba:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\bshodan\\\\\\\\b\|\\\\\\\\bcensysinspect\\\\\\\\b\|\\\\\\\\bcensys\\\\\\\\b\|\\\\\\\\bexpanse\\\\\\\\b\|\\\\\\\\bnetsystemsresearch\\\\\\\\b\|\\\\\\\\bnetcraftsurveyagent\\\\\\\\b\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"73\"][id\"338801\"][rev\"1\"][msg\"Atomicorp.comWAFRules:Blockedinternet-widesurveyorUA\"][severity\"ERROR\"][hostname\"2a02:29b8:dc01:545::625:de4f\"][uri\"/\"][unique_id\"ap5i_QiEJ15BkcMnrFtZNwAAAJM\"]
show less
[TueSep0108:42:40.2682092026][security2:error][pid3788412:tid3788433][client2602:80d:1007::ba:0]ModS ...
show more[TueSep0108:42:40.2682092026][security2:error][pid3788412:tid3788433][client2602:80d:1007::ba:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\bshodan\\\\\\\\b\|\\\\\\\\bcensysinspect\\\\\\\\b\|\\\\\\\\bcensys\\\\\\\\b\|\\\\\\\\bexpanse\\\\\\\\b\|\\\\\\\\bnetsystemsresearch\\\\\\\\b\|\\\\\\\\bnetcraftsurveyagent\\\\\\\\b\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"73\"][id\"338801\"][rev\"1\"][msg\"Atomicorp.comWAFRules:Blockedinternet-widesurveyorUA\"][severity\"ERROR\"][hostname\"www.asw-sa.com\"][uri\"/\"][unique_id\"apZz4G926YcZykV8gRSBKgAAAAo\"]
show less
[ThuAug2710:24:42.9664782026][security2:error][pid76119:tid76986][client2602:80d:1007::ba:0]ModSecur ...
show more[ThuAug2710:24:42.9664782026][security2:error][pid76119:tid76986][client2602:80d:1007::ba:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\bshodan\\\\\\\\b\|\\\\\\\\bcensysinspect\\\\\\\\b\|\\\\\\\\bcensys\\\\\\\\b\|\\\\\\\\bexpanse\\\\\\\\b\|\\\\\\\\bnetsystemsresearch\\\\\\\\b\|\\\\\\\\bnetcraftsurveyagent\\\\\\\\b\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"73\"][id\"338801\"][rev\"1\"][msg\"Atomicorp.comWAFRules:Blockedinternet-widesurveyorUA\"][severity\"ERROR\"][hostname\"server-privato.ch\"][uri\"/\"][unique_id\"ao_0SqF7Toawt1m5kHmvbAAAANg\"]
show less
Hacking
Web App Attack
Showing 1 to
15
of 129 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ