AbuseIPDB » 2602:80d:1008::97
2602:80d:1008::97 was found in our database!
This IP was reported 76 times. Confidence of Abuse is 86%: ?
Important Note: Public IPv6 addresses may implement the SLAAC privacy extension. With this, the interface identifier is randomly generated. The SLAAC privacy extension also implements a time out, which is configurable, so that the IPv6 interface addresses will be discarded and a new interface identifier is generated.
| ISP | Censys, Inc. |
|---|---|
| Usage Type | Commercial |
| ASN | AS398324 |
| Domain Name | censys.io |
| Country | ๐บ๐ธ United States of America |
| City | Chicago, Illinois |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 2602:80d:1008::97:
This IP address has been reported a total of 76 times from 31 distinct sources. 2602:80d:1008::97 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐ฉ๐ช ecs.ge |
Automatic Fail2Ban report from jail plesk-modsecurity: multiple matching events detected.
|
Web App Attack Hacking | ||
| ๐บ๐ธ cwytech |
Fleet-wide ban from the Ghostfleet ๐ป. Triggered by scenario: cwy/tactical-rmm-lockdown-high.
|
Hacking | ||
| Anonymous |
2602:80d:1008::97 - - [01/Jun/2026:03:14:44 +0000] "\x16\x03\x01\x01\x06\x01" 400 432 "-" "-"
...
|
Bad Web Bot Web App Attack | ||
| ๐ฉ๐ช evilrave |
|
Web App Attack | ||
| ๐บ๐ธ Starburst SysOp Team |
Host header is a numeric IP address. Pattern match "(?:^( (920350-mnz6-4)
|
Hacking Bad Web Bot | ||
| ๐ฉ๐ช 4server |
|
Port Scan Brute-Force Web App Attack | ||
| ๐ฉ๐ฐ swrlly |
1 unauthorized webserver connection
|
Web App Attack | ||
| Anonymous |
2602:80d:1008::97 - - [30/May/2026:08:37:07 +0000] "\x16\x03\x01\x01\x06\x01" 400 432 "-" "-"
...
|
Bad Web Bot Web App Attack | ||
| ๐บ๐ธ Starburst SysOp Team |
Host header is a numeric IP address. Pattern match "(?:^( (920350-stl2-13)
|
Hacking Bad Web Bot | ||
| ๐ฉ๐ช 4server |
|
Port Scan Brute-Force Web App Attack | ||
| ๐ฆ๐บ 2000cn.com.au |
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
|
Web App Attack Bad Web Bot | ||
| ๐ฉ๐ช SCHAPPY |
Malicious activity from IP detected: crowdsecurity/http-bad-user-agent.
|
Web App Attack Bad Web Bot | ||
| ๐บ๐ธ Starburst SysOp Team |
Host header is a numeric IP address. Pattern match "(?:^( (920350-stl2-17)
|
Hacking Bad Web Bot | ||
| Anonymous |
2602:80d:1008::97 - - [24/May/2026:07:06:44 +0000] "\x16\x03\x01\x01\t\x01" 400 432 "-" "-"
...
|
Bad Web Bot Web App Attack | ||
| ๐ซ๐ท pm33 |
Probing for resource vulnerabilities HTTP(S)
|
Web App Attack |
Showing 1 to 15 of 76 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ