AbuseIPDB » 2602:fa5d::90
2602:fa5d::90 was found in our database!
This IP was reported 66 times. Confidence of
Abuse
is 75% : ?
Important Note: Public IPv6 addresses may implement the SLAAC
privacy extension. With this, the interface identifier is randomly generated. The SLAAC
privacy extension also implements a time out, which is configurable, so that the IPv6
interface addresses will be discarded and a new interface identifier is generated.
ISP
White Label Services, LLC
Usage Type
Data Center/Web Hosting/Transit
ASN
AS44382
Domain Name
whitelabelservices.us
Country
πΉπ·
Turkey
City
Istanbul, Istanbul
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 2602:fa5d::90 :
This IP address has been reported a total of
66
times from
25 distinct
sources.
2602:fa5d::90 was first reported on
March 11th 2026 , and the most recent report was
12 hours ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
π«π·
Nicolmn
2026-03-16 02:50:41
(5 months ago)
Web form spam ( id lft.l )
Web Spam
πΊπΈ
TPI-Abuse
2026-03-16 00:51:35
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 2602:fa5d::90 (Unknown): 1 in the last 300 secs ...
show more
(mod_security) mod_security (id:210730) triggered by 2602:fa5d::90 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 15 20:51:27.967135 2026] [security2:error] [pid 486:tid 510] [client 2602:fa5d::90:40298] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||maritimeclinic.net|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "maritimeclinic.net"] [uri "/saemed.com"] [unique_id "abdUDzDpNYRM0mbs69KhKwAAAFY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-15 04:12:19
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 2602:fa5d::90 (Unknown): 1 in the last 300 secs ...
show more
(mod_security) mod_security (id:210492) triggered by 2602:fa5d::90 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 15 00:12:05.752868 2026] [security2:error] [pid 3722:tid 3722] [client 2602:fa5d::90:49174] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "archief.org"] [uri "/bak.htaccess"] [unique_id "abYxlfZpTSALCFdXrk1tvAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
HandyTreff.de
2026-03-13 05:43:45
(5 months ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -37.208 (Bad < -10 / Very Bad < -20 ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -37.208 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_9_1) AppleWebKit/537.73.11 (KHTML, like Gecko) Version/7.0
show less
Web App Attack
Bad Web Bot
π«π·
Nicolmn
2026-03-11 18:19:19
(5 months ago)
Web form spam ( id lxmmsyndc.l )
Web Spam
πΊπΈ
TPI-Abuse
2026-03-11 16:24:43
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 2602:fa5d::90 (Unknown): 1 in the last 300 secs ...
show more
(mod_security) mod_security (id:210730) triggered by 2602:fa5d::90 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 11 12:24:38.609069 2026] [security2:error] [pid 5660:tid 5660] [client 2602:fa5d::90:32962] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||ipostsocialmedia.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ipostsocialmedia.com"] [uri "/[email protected] "] [unique_id "abGXRnprefCD37AIxK8_1wAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Showing 61 to
66
of 66 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown π©
Recently Reported IPs: