Microsoft Trying To Hack My 3CX System

Status
Not open for further replies.

SpecialK

Customer
Joined
Jul 21, 2015
Messages
5
Reaction score
0
whois.com/whois says this IP is registered to Microsoft. Has anyone ever seen something like this?

The IP 13.78.215.213 on PBX sip-xxx has been blacklisted and will expire on: 2020/10/12 12:20:49.

Affected Module: SIP Server
User agent: <N/A>
Reason: Too many failed authentications!

This IP Address 13.78.215.213 has made numerous attempts to authenticate with 3CX using invalid credentials. In response, 3CX has blacklisted this IP and denied any further requests.
No action is required on your behalf.



Whois IP 13.78.215.213
NetRange: 13.64.0.0 - 13.107.255.255
CIDR: 13.104.0.0/14, 13.64.0.0/11, 13.96.0.0/13
NetName: MSFT
NetHandle: NET-13-64-0-0-1
Parent: NET13 (NET-13-0-0-0-0)
NetType: Direct Assignment
OriginAS:
Organization: Microsoft Corporation (MSFT)
RegDate: 2015-03-26
Updated: 2015-03-26
Ref: https://rdap.arin.net/registry/ip/13.64.0.0
 
Maybe it´s someone who uses an Azure VM to create those attempts.
 
Status
Not open for further replies.

Latest Posts

Forum statistics

Threads
111,964
Messages
590,000
Members
164,869
Latest member
hpgitsupport