AbuseIPDB » 51.81.111.79
51.81.111.79 was found in our database!
This IP was reported 7 times. Confidence of
Abuse
is 0% : ?
ISP
OVH US LLC
Usage Type
Data Center/Web Hosting/Transit
ASN
AS16276
Hostname(s)
proxy-us-east007-cip16.ahrefs.net
Domain Name
ovhcloud.com
Country
๐บ๐ธ
United States of America
City
Reston, Virginia
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
Important Note: 51.81.111.79 is an IP address from within
our whitelist belonging to the subnet
51.81.111.64/28 ,
which we identify as: "Ahrefs Crawler" .
Whitelisted netblocks are typically owned by trusted entities, such as Google
or Microsoft who may use them for search engine spiders. However, these same entities
sometimes also provide cloud servers and mail services which are easily abused. Pay special
attention when trusting or distrusting these IPs.
IP Abuse Reports for 51.81.111.79 :
This IP address has been reported a total of
7
times from
6 distinct
sources.
51.81.111.79 was first reported on
August 24th 2026 , and the most recent report was
11 hours ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฉ๐ช
rh24
2026-09-01 01:27:34
(11 hours ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 51.81.111.79 (US/Uni ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 51.81.111.79 (US/United States/proxy-us-east007-cip16.ahrefs.net)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-29 14:50:08
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 51.81.111.79 (proxy-us-east007-cip16.ahrefs.net ...
show more
(mod_security) mod_security (id:210730) triggered by 51.81.111.79 (proxy-us-east007-cip16.ahrefs.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 10:50:00.663354 2026] [security2:error] [pid 5473:tid 5473] [client 51.81.111.79:41136] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.whodatnation.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.whodatnation.com"] [uri "/page/40/whodatnation.com"] [unique_id "apLxmOSakNyfLwhgIm9ARAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
etu brutus
2026-08-28 02:10:04
(4 days ago)
51.81.111.79 Blocked by [Attack Vector List]
...
Hacking
Brute-Force
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-08-27 22:50:16
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 51.81.111.79 (proxy-us-east007-cip16.ahrefs.net ...
show more
(mod_security) mod_security (id:210492) triggered by 51.81.111.79 (proxy-us-east007-cip16.ahrefs.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 18:50:11.357404 2026] [security2:error] [pid 11548:tid 11548] [client 51.81.111.79:24920] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.nextngnr.com"] [uri "/7WYW5E.htaccess"] [unique_id "apC_I1FDL6ipcigHZ3JJyQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ช
Jim Keir
2026-08-26 21:02:23
(5 days ago)
2026-08-26 21:02:22 51.81.111.79 Bad bot, blocking Mozilla/5.0
Bad Web Bot
๐ฉ๐ช
ghostwarriors
2026-08-25 22:20:45
(6 days ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
netclix.gr
2026-08-24 18:05:23
(1 week ago)
(bot_qv) Bot Scraping QuickView 51.81.111.79 (US/United States/proxy-us-east007-cip16.ahrefs.net): 1 ...
show more
(bot_qv) Bot Scraping QuickView 51.81.111.79 (US/United States/proxy-us-east007-cip16.ahrefs.net): 1 in the last 4600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 51.81.111.79 - - [24/Aug/2026:21:05:13 +0300] "GET /index.php?dispatch=products.quick_view&product_id=11881&prev_url=index.php%3Fdispatch%3Dcategories.view%26category_id%3D12%26page%3D3&n_items=11307%2C11305%2C11289%2C12414%2C12596%2C11881%2C11882%2C11974%2C11944%2C11950%2C11951%2C11960%2C11969%2C11978%2C11971%2C11306%2C11326%2C11312%2C11323%2C11300 HTTP/2.0" 302 0 "-" "Mozilla/5.0 (compatible; AhrefsBot/7.0; +http://ahrefs.com/robot/)"
show less
Port Scan
Showing 1 to
7
of 7 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: