Attack Report for Observation

Header

Time

2023/03/14, 07:51:17 (GMT)

Transaction ID

GLCT0QEKYJB5243E

Service

smtp

Location

US (United States)

Attacker

147.78.103.206

Classification

Freemail replyto neq from dom

Harm Potential

Not

Description

Unknown client hostname (PTR or FCrDNS verification failed)

Content

220 mail.***********ehlo [147.78.103.206]
250-mail.***********
250-PIPELINING
250-8BITMIME
250-SIZE 40960000
250 AUTH LOGIN PLAIN
mail FROM:<info@usa.net> size=804
250 2.1.0 Ok
rcpt TO:<bobtundra@outlook.com>
250 2.1.5 Ok
rcpt TO:<edgarmarcus931@gmail.com>
250 2.1.5 Ok
rcpt TO:<bob.tundra@yahoo.com>
250 2.1.5 Ok
rcpt TO:<gleenhale@aol.com>
250 2.1.5 Ok
data
354 End data with <CR><LF>.<CR><LF>
250 2.0.0 Ok: queued as GLCT0QEKYJB5243E
quit
221 2.0.0 Bye

All observations are coming from honeypot central database.

Please share your wishes, opinions and suggestions with us:

If you like, you can support
with your donations to us..

Donate