Attack Report for Detail

Header

Time

2023/01/19, 23:44:17 (GMT)

Transaction ID

IFPZGH6R9UDG1YE8

Service

sip

Location

GB (United Kingdom)

Attacker

149.7.16.28

Classification

Invite

Harm Potential

High

Description

Invites a user to a call request

Content

- Received -------------------------------------------------------
INVITE sip:90046812112622@***.***.***.*** SIP/2.0
Via: SIP/2.0/TCP 149.7.16.28:5303;branch=z9hG4bK-524287-1---3927953f7b175b54;rport
Max-Forwards: 70
Contact: <sip:10000@149.7.16.28:5303;ob;transport=tcp>;+sip.instance="<urn:uuid:33540D62-405E-C675-4A30-C6F64C259DA2>"
To: <sip:90046812112622@***.***.***.***>
From: "10000"<sip:10000@***.***.***.***>;tag=cc6e084b
Call-ID: W5Tf6cdBIC28WRh174OIRQ..
CSeq: 1 INVITE
Allow: INVITE, ACK, CANCEL, OPTIONS, BYE, REFER, NOTIFY, MESSAGE, REGISTER, SUBSCRIBE, INFO, PUBLISH
Content-Type: application/sdp
Supported: replaces, outbound, path
User-Agent: Cisco
Allow-Events: hold, talk, conference
Content-Length: 271

v=0
o=- 433743569 1 IN IP4 149.7.16.28
s=portsip.com
c=IN IP4 149.7.16.28
t=0 0
m=audio 20010 RTP/AVP 0 8 18 101
a=rtpmap:0 PCMU/8000
a=rtpmap:8 PCMA/8000
a=rtpmap:18 G729/8000
a=fmtp:18 annexb=no
a=rtpmap:101 telephone-event/8000
a=fmtp:101 0-16
a=sendrecv


- Sended -------------------------------------------------------
SIP/2.0 400 Bad Request
Via: SIP/2.0/TCP 149.7.16.28:5303;branch=z9hG4bK-524287-1---3927953f7b175b54;received=149.7.16.28;rport=62993
Max-Forwards: 70
Contact: <sip:10000@149.7.16.28:5303;ob;transport=tcp>;+sip.instance="<urn:uuid:33540D62-405E-C675-4A30-C6F64C259DA2>"
To: <sip:90046812112622@***.***.***.***>;tag=3g96fsw34m
From: "10000"<sip:10000@***.***.***.***>;tag=cc6e084b
Call-ID: W5Tf6cdBIC28WRh174OIRQ..
CSeq: 1 INVITE
Allow: INVITE, ACK, CANCEL, OPTIONS, BYE, REFER, NOTIFY, MESSAGE, REGISTER, SUBSCRIBE, INFO, PUBLISH
Content-Type: application/sdp
Supported: replaces, outbound, path
User-Agent: Cisco
Allow-Events: hold, talk, conference
Content-Length: 0

All details are coming from honeypot central database.

Please share your wishes, opinions and suggestions with us:

If you like, you can support
with your donations to us..

Donate