Attack Report for Observation

Header

Time

2023/03/12, 10:35:43 (GMT)

Transaction ID

DDYZEXLDJ2E143VV

Service

smtp

Location

US (United States)

Attacker

85.31.45.140

Classification

Hfilter hostname unknown

Harm Potential

Medium

Description

Unknown client hostname (PTR or FCrDNS verification failed)

Content

220 mail.***********HELO win-clj1b0gq6jp.domain
250 mail.***********
MAIL FROM:<test@bulut.ml>
250 2.1.0 Ok
RCPT TO:<devonwilliam2@gmail.com>
250 2.1.5 Ok
DATA
354 End data with <CR><LF>.<CR><LF>
250 2.0.0 Ok: queued as DDYZEXLDJ2E143VV
Quit
221 2.0.0 Bye

All observations are coming from honeypot central database.

Please share your wishes, opinions and suggestions with us:

If you like, you can support
with your donations to us..

Donate