Loading threats
Identifies HTTP request bodies containing the URL-encoded parameter 0x[] with the value androxgh0st, a distinctive payload marker associated with Androxgh0st exploitation activity and automated scanning campaigns targeting web applications and exposed services.
| IP Address | Risk | Events | Sessions | Country | ASN | Last Seen |
|---|---|---|---|---|---|---|
| 155.117.232.221 | 100% | 8,995 | 8,985 | 🇺🇸 US | AS399486 | 2026-04-16 |
| 78.153.140.39 | 100% | 5,289 | 4,500 | 🇬🇧 GB | AS202306 | 2026-04-17 |
| 78.153.140.148 | 100% | 5,209 | 4,431 | 🇬🇧 GB | AS202306 | 2026-04-17 |
| 78.153.140.149 | 100% | 4,797 | 4,076 | 🇬🇧 GB | AS202306 | 2026-04-17 |
| 78.153.140.40 | 100% | 4,569 | 3,390 | 🇬🇧 GB | AS202306 | 2026-04-17 |
| 78.153.140.93 | 100% | 4,475 | 3,384 | 🇬🇧 GB | AS202306 | 2026-04-17 |
| 78.153.140.147 | 100% | 4,223 | 3,910 | 🇬🇧 GB | AS202306 | 2026-04-17 |
| 74.0.32.57 | 100% | 2,260 | 2,260 | 🇬🇧 GB | AS399486 | 2026-04-17 |
| 102.90.100.229 | 100% | 372 | 372 | 🇳🇬 NG | AS29465 | 2026-03-27 |
| 103.219.153.243 | 100% | 360 | 360 | 🇳🇱 NL | AS207083 | 2026-03-25 |
| 188.126.94.90 | 100% | 332 | 332 | 🇩🇰 DK | AS42708 | 2026-02-28 |
| 94.154.32.25 | 100% | 273 | 273 | 🇫🇷 FR | AS214961 | 2026-03-19 |
| 162.158.88.2 | 26% | 265 | 84 | 🇺🇸 US | AS13335 | 2026-03-30 |
| 102.36.229.83 | 93% | 187 | 83 | 🇳🇬 NG | AS328555 | 2026-03-17 |
| 20.48.25.221 | 100% | 95 | 95 | 🇯🇵 JP | AS8075 | 2026-04-12 |
| 104.23.239.105 | 26% | 73 | 44 | 🇩🇪 DE | AS13335 | 2026-03-30 |
| 172.70.80.101 | 13% | 68 | 6 | 🇨🇦 CA | AS13335 | 2026-03-08 |
| 162.159.122.123 | 21% | 60 | 60 | 🇫🇷 FR | AS13335 | 2026-04-16 |
| 172.71.203.131 | 27% | 54 | 46 | 🇺🇸 US | AS13335 | 2026-03-30 |
| 196.115.87.207 | 99% | 50 | 50 | 🇲🇦 MA | AS36925 | 2026-04-02 |