This IP was reported 162 times. Confidence of
Abuse
is 94%: ?
94%
Important Note: Public IPv6 addresses may implement the SLAAC
privacy extension. With this, the interface identifier is randomly generated. The SLAAC
privacy extension also implements a time out, which is configurable, so that the IPv6
interface addresses will be discarded and a new interface identifier is generated.
This IP address has been reported a total of
162
times from
43 distinct
sources.
2602:80d:1008::82 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
CrowdSec: Ip 2602:80d:1008::82 performed 'crowdsecurity/http-bad-user-agent' (2 events over 3.248428 ...
show moreCrowdSec: Ip 2602:80d:1008::82 performed 'crowdsecurity/http-bad-user-agent' (2 events over 3.248428109s) at 2026-07-30 08:07:10.212817375 +0000 UTC (scenario: crowdsecurity/http-bad-user-agent)
show less
[ThuJul3007:33:00.1112182026][security2:error][pid2534526:tid2534574][client2602:80d:1008::82:0]ModS ...
show more[ThuJul3007:33:00.1112182026][security2:error][pid2534526:tid2534574][client2602:80d:1008::82:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\bshodan\\\\\\\\b\|\\\\\\\\bcensysinspect\\\\\\\\b\|\\\\\\\\bcensys\\\\\\\\b\|\\\\\\\\bexpanse\\\\\\\\b\|\\\\\\\\bnetsystemsresearch\\\\\\\\b\|\\\\\\\\bnetcraftsurveyagent\\\\\\\\b\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"73\"][id\"338801\"][rev\"1\"][msg\"Atomicorp.comWAFRules:Blockedinternet-widesurveyorUA\"][severity\"ERROR\"][hostname\"2a01:4f8:212:1561::8\"][uri\"/\"][unique_id\"amriDOKTFDCf6n8_yFkeyAAAAEw\"]
show less
[WedJul2916:47:50.5491462026][security2:error][pid1816682:tid1817369][client2602:80d:1008::82:0]ModS ...
show more[WedJul2916:47:50.5491462026][security2:error][pid1816682:tid1817369][client2602:80d:1008::82:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\bshodan\\\\\\\\b\|\\\\\\\\bcensysinspect\\\\\\\\b\|\\\\\\\\bcensys\\\\\\\\b\|\\\\\\\\bexpanse\\\\\\\\b\|\\\\\\\\bnetsystemsresearch\\\\\\\\b\|\\\\\\\\bnetcraftsurveyagent\\\\\\\\b\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"73\"][id\"338801\"][rev\"1\"][msg\"Atomicorp.comWAFRules:Blockedinternet-widesurveyorUA\"][severity\"ERROR\"][hostname\"2a02:29b8:dc01:545::625:de4f\"][uri\"/\"][unique_id\"amoSlnkcJf166jtiH1zvGgAAAFU\"]
show less
Malformed or malicious web request
2602:80d:1008::82 - - [25/Jul/2026:21:49:42 +0200] "\x16\x03\x01\ ...
show moreMalformed or malicious web request
2602:80d:1008::82 - - [25/Jul/2026:21:49:42 +0200] "\x16\x03\x01\x01" 400 157 "-" "-"
show less
[ThuJul2321:42:05.4321962026][security2:error][pid2065135:tid2065184][client2602:80d:1008::82:0]ModS ...
show more[ThuJul2321:42:05.4321962026][security2:error][pid2065135:tid2065184][client2602:80d:1008::82:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\bshodan\\\\\\\\b\|\\\\\\\\bcensysinspect\\\\\\\\b\|\\\\\\\\bcensys\\\\\\\\b\|\\\\\\\\bexpanse\\\\\\\\b\|\\\\\\\\bnetsystemsresearch\\\\\\\\b\|\\\\\\\\bnetcraftsurveyagent\\\\\\\\b\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"73\"][id\"338801\"][rev\"1\"][msg\"Atomicorp.comWAFRules:Blockedinternet-widesurveyorUA\"][severity\"ERROR\"][hostname\"mail.alessandrolucchini.ch\"][uri\"/\"][unique_id\"amJujUQ6GvpmT5a37tMQqwAAAIU\"]
show less