Attack Report for Observation

Header

Time

2023/05/20, 11:02:17 (GMT)

Transaction ID

WA4PFTLQDJLM2T10

Service

smtp

Location

US (United States)

Attacker

147.78.103.30

Classification

Hfilter hostname unknown

Harm Potential

Medium

Description

Unknown client hostname (PTR or FCrDNS verification failed)

Content

220 mail.***********HELO win-g7cphcgk247.domain
250 mail.***********
MAIL FROM:<test@bulut.ml>
250 2.1.0 Ok
RCPT TO:<test@gmail.com>
250 2.1.5 Ok
DATA
354 End data with <CR><LF>.<CR><LF>
250 2.0.0 Ok: queued as WA4PFTLQDJLM2T10
Quit
221 2.0.0 Bye

All observations are coming from honeypot central database.

Please share your wishes, opinions and suggestions with us:

If you like, you can support
with your donations to us..

Donate