Anonymous
2024-12-30 08:50:25
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐จ๐ญ
ale
2023-05-29 03:06:05
(3 years ago)
SIP auth scanning - multiple failed SIP authentication
Fraud VoIP
๐ต๐ฑ
6GNet.pl
2023-05-29 02:19:43
(3 years ago)
[2023-05-29 04:09:48] SECURITY[2169] res_security_log.c: SecurityEvent="InvalidPassword",EventTV="20 ...
show more
[2023-05-29 04:09:48] SECURITY[2169] res_security_log.c: SecurityEvent="InvalidPassword",EventTV="2023-05-29T04:09:48.337+0200",Severity="Error",Service="SIP",EventVersion="2",AccountID="490",SessionID="0x7fc0940c33a0",LocalAddress="IPV4/UDP/64.18.129.55/5060",RemoteAddress="IPV4/UDP/5.62.61.161/57225",Challenge="5413df66",ReceivedChallenge="5413df66",ReceivedHash="9d45b3919f691f59330227543a1766a1"
[2023-05-29 04:10:24] SECURITY[2169] res_security_log.c: SecurityEvent="InvalidPassword",EventTV="2023-05-29T04:10:24.879+0200",Severity="Error",Service="SIP",EventVersion="2",AccountID="490",SessionID="0x7fc094363df0",LocalAddress="IPV4/UDP/64.18.129.55/5060",RemoteAddress="IPV4/UDP/5.62.61.161/65379",Challenge="6e991c88",ReceivedChallenge="6e991c88",ReceivedHash="d017ab9f0816039c504eaef889dbe885"
[2023-05-29 04:18:49] SECURITY[2169] res_security_log.c: SecurityEvent="InvalidPassword",EventTV="2023-05-29T04:18:49.091+0200",Severity="Error",Service="SIP",EventVersion="2",AccountID="491",Sess
...
show less
Fraud VoIP
Brute-Force
๐บ๐ธ
kuj
2023-05-29 02:14:11
(3 years ago)
VoIP Brute Force Attack
Fraud VoIP
Brute-Force
๐ซ๐ฎ
MindSolve
2023-05-29 02:08:29
(3 years ago)
2023-05-29 04:08:29.153438 [WARNING] sofia_reg.c:1798 SIP auth challenge (REGISTER) on sofia profile ...
show more
2023-05-29 04:08:29.153438 [WARNING] sofia_reg.c:1798 SIP auth challenge (REGISTER) on sofia profile 'internal' for [[email protected] ] from ip 5.62.61.161
show less
Fraud VoIP
Hacking
Brute-Force
๐ฆ๐บ
Aidar Kamalov
2023-05-29 02:06:16
(3 years ago)
May 29 02:06:15 melbourne-sip-ulap-net /usr/sbin/kamailio[3138660]: NOTICE: {REGISTER 1 1 REGISTER e ...
show more
May 29 02:06:15 melbourne-sip-ulap-net /usr/sbin/kamailio[3138660]: NOTICE: {REGISTER 1 1 REGISTER e5f4a156812642e4f7a490} <script>: AUTH: REGISTER FAILED from 5.62.61.161 (code: -5) fd=152.69.190.114, adu=<null>, aa=<null>, ar=<null>, au=<null>, ad=<null>, aU=<null>, [email protected]
...
show less
Fraud VoIP
๐ซ๐ท
DiLenaTech
2023-05-28 04:13:06
(3 years ago)
2023-05-26 04:55:44,637 fail2ban.actions [1062]: NOTICE [asterisk] Ban 5.62.61.161
2023-05-2 ...
show more
2023-05-26 04:55:44,637 fail2ban.actions [1062]: NOTICE [asterisk] Ban 5.62.61.161
2023-05-28 05:13:05,924 fail2ban.actions [1062]: NOTICE [asterisk] Ban 5.62.61.161
2023-05-28 05:13:05,925 fail2ban.actions [1062]: NOTICE [asterisk-challenge] Ban 5.62.61.161
...
show less
Brute-Force
SSH
๐จ๐ญ
ale
2023-05-28 00:10:56
(3 years ago)
SIP auth scanning - multiple failed SIP authentication
Fraud VoIP
๐บ๐ธ
kuj
2023-05-27 23:24:36
(3 years ago)
VoIP Brute Force Attack
Fraud VoIP
Brute-Force
๐ต๐ฑ
6GNet.pl
2023-05-27 22:20:38
(3 years ago)
[2023-05-27 23:54:01] SECURITY[2169] res_security_log.c: SecurityEvent="InvalidPassword",EventTV="20 ...
show more
[2023-05-27 23:54:01] SECURITY[2169] res_security_log.c: SecurityEvent="InvalidPassword",EventTV="2023-05-27T23:54:01.002+0200",Severity="Error",Service="SIP",EventVersion="2",AccountID="651",SessionID="0x7fc0941fb1c0",LocalAddress="IPV4/UDP/64.18.129.55/5060",RemoteAddress="IPV4/UDP/5.62.61.161/58054",Challenge="3137dadb",ReceivedChallenge="3137dadb",ReceivedHash="a8ebac7d2db86dc7b961733ac1bcd438"
[2023-05-27 23:58:42] SECURITY[2169] res_security_log.c: SecurityEvent="InvalidPassword",EventTV="2023-05-27T23:58:42.613+0200",Severity="Error",Service="SIP",EventVersion="2",AccountID="651",SessionID="0x7fc09417f4e0",LocalAddress="IPV4/UDP/64.18.129.55/5060",RemoteAddress="IPV4/UDP/5.62.61.161/52413",Challenge="0abe657e",ReceivedChallenge="0abe657e",ReceivedHash="e7bd31829693a9da122274b4d872f1eb"
[2023-05-28 00:15:58] SECURITY[2169] res_security_log.c: SecurityEvent="InvalidPassword",EventTV="2023-05-28T00:15:58.528+0200",Severity="Error",Service="SIP",EventVersion="2",AccountID="653",Sess
...
show less
Fraud VoIP
Brute-Force
๐บ๐ธ
Teknikal_Domain
2023-05-27 21:55:52
(3 years ago)
[May 27 17:55:51] NOTICE[2706] res_pjsip/pjsip_distributor.c: Request 'REGISTER' from '<sip:[email protected] ...
show more
[May 27 17:55:51] NOTICE[2706] res_pjsip/pjsip_distributor.c: Request 'REGISTER' from '<sip:[email protected] >' failed for '5.62.61.161:1418' (callid: e5f4a351688814e4f7a65) - No matching endpoint found
[May 27 17:55:52] NOTICE[2706] res_pjsip/pjsip_distributor.c: Request 'REGISTER' from '<sip:[email protected] >' failed for '5.62.61.161:1418' (callid: e5f4a351688814e4f7a65) - No matching endpoint found
[May 27 17:55:52] NOTICE[2706] res_pjsip/pjsip_distributor.c: Request 'REGISTER' from '<sip:[email protected] >' failed for '5.62.61.161:1418' (callid: e5f4a351688814e4f7a65) - Failed to authenticate
...
show less
Fraud VoIP
Brute-Force
๐ซ๐ฎ
MindSolve
2023-05-27 21:52:31
(3 years ago)
2023-05-27 23:52:30.616841 [WARNING] sofia_reg.c:1798 SIP auth challenge (REGISTER) on sofia profile ...
show more
2023-05-27 23:52:30.616841 [WARNING] sofia_reg.c:1798 SIP auth challenge (REGISTER) on sofia profile 'internal' for [[email protected] ] from ip 5.62.61.161
show less
Fraud VoIP
Hacking
Brute-Force
Anonymous
2023-05-26 13:18:22
(3 years ago)
B: f2b asterisk aggressive 3x
Email Spam
๐จ๐ญ
ale
2023-05-26 03:42:13
(3 years ago)
SIP auth scanning - multiple failed SIP authentication
Fraud VoIP
๐ซ๐ฎ
sgofferj
2023-05-26 02:53:12
(3 years ago)
Attack attempt on SIP server
Fraud VoIP
Hacking
Brute-Force