← Back to observed IPs
EudorIA Threat Observatory

39.109.116.214

Technical source observed on EudorIA perimeter controls. All the events listed were blocked, contained or detected by the defensive systems.

Confidencehigh10 catalogued events
First observation24/09/2026 02:04
Last observation24/09/2026 02:04
Controls areaIPS, WAF
Maximum rule level12/20
Network context

Estimated origin

Country
Hong Kong (HK)
City
Location not published by the sources
ASN
AS142403
ASN operator / holder
YISUCLOUDLTD-HK - YISU CLOUD LTD, HK
Announced prefix
39.109.116.0/24
Reverse DNS
PTR record not published
Last activity

Anomalous web request

Public destination
eudoria.it
Service
HTTPS protetto da WAF
Rule
100604
Technical reason
EudorIA WAF blocked an external request with a high anomaly score from 39.109.116.214.
Outcome
Blocked / detected
Minimised history

Observed evidence

Last 10 publishable events
24/09/2026 02:04
WAF

Anomalous web request

medium

EudorIA WAF blocked an external request with a high anomaly score from 39.109.116.214.

Destination
eudoria.it
Service
HTTPS protetto da WAF
Method
POST
Resource
/hello.world
Anomaly score
33
Outcome
Blocked
24/09/2026 02:04
IPS

IPS detection

high

ET WEB_SERVER PHP.//Input in HTTP POST

Destination
eudoria.it
Service
HTTP
Outcome
Detected
24/09/2026 02:04
IPS

IPS detection

high

ET WEB_SERVER Generic PHP Remote File Include

Destination
eudoria.it
Service
HTTP
Outcome
Detected
24/09/2026 02:04
IPS

IPS detection

high

ET WEB_SERVER Possible SQL Injection (exec) in HTTP Request Body

Destination
eudoria.it
Service
HTTP
Outcome
Detected
24/09/2026 02:04
IPS

IPS detection

high

ET WEB_SERVER auto_prepend_file PHP config option in uri

Destination
eudoria.it
Service
HTTP
Outcome
Detected
24/09/2026 02:04
IPS

IPS detection

high

ET WEB_SERVER allow_url_include PHP config option in uri

Destination
eudoria.it
Service
HTTP
Outcome
Detected
24/09/2026 02:04
IPS

IPS detection

high

ET WEB_SERVER PHP tags in HTTP POST

Destination
eudoria.it
Service
HTTP
Outcome
Detected
24/09/2026 02:04
IPS

IPS detection

high

ET EXPLOIT Apache HTTP Server - Path Traversal Attempt (CVE-2021-42013) M2

Destination
eudoria.it
Service
HTTP
Outcome
Detected
24/09/2026 02:04
IPS

IPS detection

high

ET WEB_SERVER /bin/sh In URI Possible Shell Command Execution Attempt

Destination
eudoria.it
Service
HTTP
Outcome
Detected
24/09/2026 02:04
IPS

IPS detection

high

ET EXPLOIT Apache HTTP Server 2.4.49 - Path Traversal Attempt (CVE-2021-41773) M2

Destination
eudoria.it
Service
HTTP
Outcome
Detected