← Back to observed IPs
EudorIA Threat Observatory

80.89.199.242

Technical source observed on EudorIA perimeter controls. All the events listed were blocked, contained or detected by the defensive systems.

Confidencehigh17 catalogued events
First observation04/09/2026 05:59
Last observation04/09/2026 05:59
Controls areaIPS, WAF
Maximum rule level12/20
Network context

Estimated origin

Country
Russian Federation (RU)
City
Location not published by the sources
ASN
AS34757
ASN operator / holder
SIBSET-NSK-AS - Sibirskie Seti Ltd., RU
Announced prefix
80.89.192.0/20
Reverse DNS
host-80-89-199-242.academ.org
Last activity

Exploit attempt

Public destination
eudoria.it
Service
HTTPS protetto da WAF
Rule
100604
Technical reason
EudorIA WAF blocked an external request with a high anomaly score from 80.89.199.242.
Targeted vulnerability
CVE-2017-9841
Outcome
Blocked / detected
Minimised history

Observed evidence

Last 17 publishable events
04/09/2026 05:59
WAF

Exploit attempt

high

EudorIA WAF blocked an external request with a high anomaly score from 80.89.199.242.

Destination
eudoria.it
Service
HTTPS protetto da WAF
Method
GET
Resource
/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php
Vulnerability
CVE-2017-9841
Anomaly score
10
Outcome
Blocked
04/09/2026 05:59
WAF

Anomalous web request

medium

EudorIA WAF blocked an external request with a high anomaly score from 80.89.199.242.

Destination
eudoria.it
Service
HTTPS protetto da WAF
Method
POST
Resource
/test.hello
Anomaly score
30
Outcome
Blocked
04/09/2026 05:59
WAF

Anomalous web request

medium

EudorIA WAF blocked an external request with a high anomaly score from 80.89.199.242.

Destination
eudoria.it
Service
HTTPS protetto da WAF
Method
POST
Resource
/test.hello
Anomaly score
25
Outcome
Blocked
04/09/2026 05:59
WAF

Anomalous web request

medium

EudorIA WAF blocked an external request with a high anomaly score from 80.89.199.242.

Destination
eudoria.it
Service
HTTPS protetto da WAF
Method
POST
Resource
/index.php
Anomaly score
30
Outcome
Blocked
04/09/2026 05:59
WAF

Anomalous web request

medium

EudorIA WAF blocked an external request with a high anomaly score from 80.89.199.242.

Destination
eudoria.it
Service
HTTPS protetto da WAF
Method
POST
Resource
/index.php
Anomaly score
25
Outcome
Blocked
04/09/2026 05:59
WAF

Anomalous web request

medium

EudorIA WAF blocked an external request with a high anomaly score from 80.89.199.242.

Destination
eudoria.it
Service
HTTPS protetto da WAF
Method
POST
Resource
/
Anomaly score
30
Outcome
Blocked
04/09/2026 05:59
WAF

Anomalous web request

medium

EudorIA WAF blocked an external request with a high anomaly score from 80.89.199.242.

Destination
eudoria.it
Service
HTTPS protetto da WAF
Method
POST
Resource
/
Anomaly score
25
Outcome
Blocked
04/09/2026 05:59
WAF

Anomalous web request

medium

EudorIA WAF blocked an external request with a high anomaly score from 80.89.199.242.

Destination
eudoria.it
Service
HTTPS protetto da WAF
Method
POST
Resource
/hello.world
Anomaly score
33
Outcome
Blocked
04/09/2026 05:59
IPS

IPS detection

high

ET WEB_SERVER Possible SQL Injection (exec) in HTTP Request Body

Destination
eudoria.it
Service
HTTP
Outcome
Detected
04/09/2026 05:59
IPS

IPS detection

high

ET WEB_SERVER Generic PHP Remote File Include

Destination
eudoria.it
Service
HTTP
Outcome
Detected
04/09/2026 05:59
IPS

IPS detection

high

ET WEB_SERVER auto_prepend_file PHP config option in uri

Destination
eudoria.it
Service
HTTP
Outcome
Detected
04/09/2026 05:59
IPS

IPS detection

high

ET WEB_SERVER PHP.//Input in HTTP POST

Destination
eudoria.it
Service
HTTP
Outcome
Detected
04/09/2026 05:59
IPS

IPS detection

high

ET WEB_SERVER allow_url_include PHP config option in uri

Destination
eudoria.it
Service
HTTP
Outcome
Detected
04/09/2026 05:59
IPS

IPS detection

high

ET WEB_SERVER PHP tags in HTTP POST

Destination
eudoria.it
Service
HTTP
Outcome
Detected
04/09/2026 05:59
IPS

IPS detection

high

ET EXPLOIT Apache HTTP Server - Path Traversal Attempt (CVE-2021-42013) M2

Destination
eudoria.it
Service
HTTP
Outcome
Detected
04/09/2026 05:59
IPS

IPS detection

high

ET EXPLOIT Apache HTTP Server 2.4.49 - Path Traversal Attempt (CVE-2021-41773) M2

Destination
eudoria.it
Service
HTTP
Outcome
Detected
04/09/2026 05:59
IPS

IPS detection

high

ET WEB_SERVER /bin/sh In URI Possible Shell Command Execution Attempt

Destination
eudoria.it
Service
HTTP
Outcome
Detected