Attack Report for Detail

Header

Time

2023/11/19, 20:27:05 (GMT)

Transaction ID

UHM5DLGUA8IEVW6Y

Service

sip

Location

US (United States)

Attacker

149.28.214.101

Classification

Register

Harm Potential

Medium

Description

SIP Phone and user registeration request

Content

- Received -------------------------------------------------------
REGISTER sip:46.4.222.114:5060 SIP/2.0
To: <sip:101@46.4.222.114>
From: <sip:101@46.4.222.114>;tag=e5f4a165822e4f7a
Via: SIP/2.0/UDP 149.28.214.101:50370;branch=z9hG4bK-d87543-105983841-1--d87543-;rport
Call-ID: e5f4a16582226e4f7a
CSeq: 1 REGISTER
Contact: <sip:101@149.28.214.101:50370>
Expires: 3600
Max-Forwards: 70
Allow: INVITE, ACK, CANCEL, OPTIONS, BYE, REFER, NOTIFY, MESSAGE, SUBSCRIBE, INFO
User-Agent: PolycomVVX-VVX_410-UA5.5.1.11526
Content-Length: 0


- Sended -------------------------------------------------------
SIP/2.0 200 0K
To: <sip:101@46.4.222.114>;tag=rrrkukes4a
From: <sip:101@46.4.222.114>;tag=e5f4a165822e4f7a
Via: SIP/2.0/UDP 149.28.214.101:50370;branch=z9hG4bK-d87543-105983841-1--d87543-;received=149.28.214.101;rport=50370
Call-ID: e5f4a16582226e4f7a
CSeq: 1 REGISTER
Contact: <sip:101@149.28.214.101:50370>
Expires: 3600
Max-Forwards: 70
Allow: INVITE, ACK, CANCEL, OPTIONS, BYE, REFER, NOTIFY, MESSAGE, SUBSCRIBE, INFO
User-Agent: PolycomVVX-VVX_410-UA5.5.1.11526
Content-Length: 0

All details are coming from honeypot central database.

Please share your wishes, opinions and suggestions with us:

If you like, you can support
with your donations to us..

Donate