This IP was reported 6 times. Confidence of
Abuse
is 4%: ?
4%
Important Note: Public IPv6 addresses may implement the SLAAC
privacy extension. With this, the interface identifier is randomly generated. The SLAAC
privacy extension also implements a time out, which is configurable, so that the IPv6
interface addresses will be discarded and a new interface identifier is generated.
This IP address has been reported a total of
6
times from
3 distinct
sources.
2620:2d:4000:1::2f was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
2620:002d:4000:0001:0000:0000:0000:002f was recorded 3 times by 1 hosts attempting to connect to 1 u ...
show more2620:002d:4000:0001:0000:0000:0000:002f was recorded 3 times by 1 hosts attempting to connect to 1 unique ports. Incident counter (4h, 24h, all-time): 3, 3, 107
show less
2620:002d:4000:0001:0000:0000:0000:002f was recorded 3 times by 1 hosts attempting to connect to 1 u ...
show more2620:002d:4000:0001:0000:0000:0000:002f was recorded 3 times by 1 hosts attempting to connect to 1 unique ports. Incident counter (4h, 24h, all-time): 3, 3, 86
show less
Reconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Fatt. Decoy ...
show moreReconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Fatt. Decoy listen port: 52986/tcp. Observed event time: 2026-04-21 04:47:17 UTC. Report from passive honeypot only; no payload or credentials included.
show less
Confirmed malicious activity observed via T-Pot honeypot Observed 1 events on port 49402 (unknown) f ...
show moreConfirmed malicious activity observed via T-Pot honeypot Observed 1 events on port 49402 (unknown) from 2025-12-28T15:11:49.448000+00:00 to 2025-12-28T15:11:49.448000+00:00. Sample: {"dest_port": 49402, "src_port": 443, "src_ip": "2620:2d:4000:1::2f"}
show less
Confirmed malicious activity observed via T-Pot honeypot Observed 1 events on port 34636 (unknown) f ...
show moreConfirmed malicious activity observed via T-Pot honeypot Observed 1 events on port 34636 (unknown) from 2025-12-29T11:17:01.705000+00:00 to 2025-12-29T11:17:01.705000+00:00. Sample: {"dest_port": 34636, "src_ip": "2620:2d:4000:1::2f", "src_port": 443}
show less
2620:002d:4000:0001:0000:0000:0000:002f was recorded 3 times by 1 hosts attempting to connect to 1 u ...
show more2620:002d:4000:0001:0000:0000:0000:002f was recorded 3 times by 1 hosts attempting to connect to 1 unique ports. Incident counter (4h, 24h, all-time): 3, 3, 3
show less
Port Scan
Showing 1 to
6
of 6 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ