This IP was reported 156 times. Confidence of
Abuse
is 11%: ?
11%
Important Note: Public IPv6 addresses may implement the SLAAC
privacy extension. With this, the interface identifier is randomly generated. The SLAAC
privacy extension also implements a time out, which is configurable, so that the IPv6
interface addresses will be discarded and a new interface identifier is generated.
This IP address has been reported a total of
156
times from
20 distinct
sources.
2a0b:f4c2:4::97 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:4::97 (Unknown): 1 in the last 300 se ...
show more(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:4::97 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 04 08:56:19.024953 2026] [security2:error] [pid 31030:tid 31030] [client 2a0b:f4c2:4::97:49725] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||forerunnersjazz.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "forerunnersjazz.org"] [uri "/local.sql"] [unique_id "aag6A88oBEQhe2pVJL6LMAAAAAU"]
show less
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:4::97 (Unknown): 1 in the last 300 se ...
show more(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:4::97 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 03 13:03:43.910485 2026] [security2:error] [pid 29751:tid 29751] [client 2a0b:f4c2:4::97:40529] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||jtagulator.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "jtagulator.com"] [uri "/tor_wp1.sql"] [unique_id "aacif_JRYJAWuTB6nJqhvQAAAAE"]
show less
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:4::97 (Unknown): 1 in the last 300 se ...
show more(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:4::97 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 25 20:09:47.149733 2026] [security2:error] [pid 19328:tid 19328] [client 2a0b:f4c2:4::97:41663] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||phoboschildren.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "phoboschildren.com"] [uri "/db_n.sql"] [unique_id "aZ-dW3BCXNBn3JQ55-pZ-QAAAAA"]
show less
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:4::97 (Unknown): 1 in the last 300 se ...
show more(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:4::97 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 21 09:58:55.754591 2026] [security2:error] [pid 3901:tid 3901] [client 2a0b:f4c2:4::97:17907] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vrevgaming.net|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vrevgaming.net"] [uri "/vrevga.sql"] [unique_id "aZnILyNFxxQ2Cpd3ZCMyLAAAAAU"]
show less
Blocked by UFW (TCP on 8333)
Source port: 62299
Packet length: 72
This report (for 2a0b:f4c2:0004:0 ...
show moreBlocked by UFW (TCP on 8333)
Source port: 62299
Packet length: 72
This report (for 2a0b:f4c2:0004:0000:0000:0000:0000:0097) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:4::97 (Unknown): 1 in the last 300 se ...
show more(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:4::97 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 05 09:15:45.969527 2026] [security2:error] [pid 13884:tid 13884] [client 2a0b:f4c2:4::97:54237] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||stacyfarm.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "stacyfarm.com"] [uri "/backup_wp.sql"] [unique_id "aYSmEajWj1eUD1CLcC8qewAAABA"]
show less
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:4::97 (Unknown): 1 in the last 300 se ...
show more(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:4::97 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 02 06:48:06.077812 2026] [security2:error] [pid 12669:tid 12669] [client 2a0b:f4c2:4::97:64327] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||roughexports.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "roughexports.com"] [uri "/latest.sql"] [unique_id "aYCO9qqULsMk7bcBKIAFzAAAABM"]
show less
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:4::97 (Unknown): 1 in the last 300 se ...
show more(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:4::97 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 01 15:40:36.627904 2026] [security2:error] [pid 23452:tid 23452] [client 2a0b:f4c2:4::97:64221] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||pcga.golf|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "pcga.golf"] [uri "/bck.sql"] [unique_id "aX-6RH027Wv8JoDiQ1Mg5QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Showing 1 to
15
of 156 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ