AbuseIPDB » 2602:80d:1008::85
2602:80d:1008::85 was found in our database!
This IP was reported 181 times. Confidence of Abuse is 100%: ?
Important Note: Public IPv6 addresses may implement the SLAAC privacy extension. With this, the interface identifier is randomly generated. The SLAAC privacy extension also implements a time out, which is configurable, so that the IPv6 interface addresses will be discarded and a new interface identifier is generated.
| ISP | Censys, Inc. |
|---|---|
| Usage Type | Commercial |
| ASN | AS398324 |
| Domain Name | censys.com |
| Country | ๐บ๐ธ United States of America |
| City | Chicago, Illinois |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 2602:80d:1008::85:
This IP address has been reported a total of 181 times from 52 distinct sources. 2602:80d:1008::85 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐ฉ๐ช Dennis |
|
Bad Web Bot | ||
| ๐ซ๐ท HerrWolf |
CrowdSec Detection: crowdsecurity/http-bad-user-agent
|
Bad Web Bot | ||
| ๐บ๐ธ cwytech |
Fleet-wide ban from the Ghostfleet ๐ป. Triggered by scenario: cwy/tactical-rmm-lockdown-high.
|
Hacking | ||
| ๐จ๐ฆ Anytech |
Blocked by Conn-Monitor: http-bad-user-agent
|
Web App Attack Bad Web Bot | ||
| ๐ฉ๐ช 4server |
|
Port Scan Brute-Force Web App Attack | ||
| Anonymous |
2602:80d:1008::85 - - [20/Aug/2026:13:52:43 +0000] "\x16\x03\x01\x01\v\x01" 400 432 "-" "-"
...
|
Bad Web Bot Web App Attack | ||
| ๐บ๐ธ Starburst SysOp Team |
Host header is a numeric IP address. Pattern match "(?:^( (920350-mnz6-3)
|
Hacking Bad Web Bot | ||
| Anonymous |
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
|
Web App Attack Bad Web Bot | ||
| ๐ฉ๐ช 4server |
|
Port Scan Brute-Force Web App Attack | ||
| ๐ฌ๐ง andypiper |
CrowdSec ban for AbuseIPDB Top List
|
Brute-Force Web App Attack | ||
| Anonymous |
2602:80d:1008::85 - - [19/Aug/2026:00:14:31 +0000] "\x16\x03\x01" 400 432 "-" "-"
...
|
Bad Web Bot Web App Attack | ||
| ๐ฉ๐ช yvoictra |
Bloqueado automรกticamente por CrowdSec. Escenario: crowdsecurity/http-bad-user-agent
|
Web App Attack | ||
| ๐บ๐ธ factor1 |
CrowdSec at churndash Reports Abuse
|
Web App Attack | ||
| ๐บ๐ธ technojoe99 |
Vulnerable HTTP/1.0 from 2602:80d:1008::85. x16x03x01.
|
Bad Web Bot | ||
| ๐ฆ๐บ 2000cn.com.au |
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
|
Web App Attack Bad Web Bot |
Showing 1 to 15 of 181 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ