hXXp://l0gin-securedauthusersslverifyreviews.com/user/auth/login/users/dashboard/login/ citizensuseralert-sms.com has address 167.71.244.46 citizensalerts-sms.com has address 167.71.244.46 l0gin-securedauthusersslverifyreviews.com has address 167.71.244.46 secured-l0ginauthusersverifyssl.com has address 167.71.244.46 citizenusers-alertsms.com has address 167.71.244.46 citizenusers-smsalert.com has address 167.71.244.46 citizensusers-alertsms.com has address 167.71.244.46 secured-l0ginauthreviewusersslverified.com has address 167.71.244.46 secured-l0ginuserauthverifysslreview.com has address 167.71.244.46 secured-l0ginauthusersslreviewverified.com has address 167.71.244.46 citizensuser-smsalert.com has address 167.71.244.46 citizensusers-smsalert.com has address 167.71.244.46 secured-l0ginauthusersreviewsslverified.com has address 167.71.244.46 citizensusers-smsalerts.com has… Читать далее phishing server
Автор: blog
Abused crypto currency mining pool
The host at this IP address is running a crypto currency mining pool that is currently being abused by cybercriminals for mining crypto currencies on malware infected computers. The following information should be sufficient for the identification and suspension of the abusive users: {«id»:1,»jsonrpc»:»2.0″,»method»:»login»,»params»:{«login»:»youssefchinelli359@gmail.com»,»pass»:»»,»agent»:»Windows Configuration Manager/2.0.0 (Windows NT 10.0; Win64; x64) libuv/1.38.0 msvc/2019″,»rigid»:»»,»algo»:[«rx/0″,»cn/2″,»cn/r»,»cn/fast»,»cn/half»,»cn/xao»,»cn/rto»,»cn/rwz»,»cn/zls»,»cn/double»,»cn-lite/1″,»cn-heavy/0″,»cn-heavy/tube»,»cn-heavy/xhv»,»cn-pico»,»cn-pico/tlo»,»cn/ccx»,»cn/upx2″,»cn/1″,»rx/wow»,»rx/arq»,»rx/sfx»,»rx/keva»,»argon2/chukwa»,»argon2/chukwav2″,»argon2/ninja»,»astrobwt»]}}
RaccoonStealer botnet controller @104.21.31.156
RaccoonStealer botnet controller hosted here: http://teleta.top/agrybirdsgamerept $ dig +short teleta.top 104.21.31.156 172.67.178.59
Malware / Botnet / Phishing hosting server @78.155.222.142
According to our telemetry and our own intelligence, the host at this IP address has been setup by cyber criminals for the exclusive purpose of hosting phishing sites, malware distribution sites and/or botnet controllers. We therefore advise our users to block any traffic from/to this IP address. Malware botnet controller located at 78.155.222.142 on port… Читать далее Malware / Botnet / Phishing hosting server @78.155.222.142
phishing server
secureonlinemanager04c.org has address 34.118.57.104 secureonlinemanager01c.org has address 34.118.57.104 secureonlinemanager03c.org has address 34.118.57.104 secureonlinemanager02c.org has address 34.118.57.104
Malware / Botnet / Phishing hosting server @194.87.210.83
According to our telemetry and our own intelligence, the host at this IP address has been setup by cyber criminals for the exclusive purpose of hosting phishing sites, malware distribution sites and/or botnet controllers. We therefore advise our users to block any traffic from/to this IP address. Malware botnet controller located at 194.87.210.83 on port… Читать далее Malware / Botnet / Phishing hosting server @194.87.210.83
Suspected Snowshoe Spam IP Range
Based on research, analysis of network data, our ‘snowshoe’ spam detection systems, intelligence sources and our experience, Spamhaus believes that this IP address range is being used or is about to be used for the purpose of high volume ‘snowshoe’ spam emission. As a precaution therefore we are listing this IP range in an SBL… Читать далее Suspected Snowshoe Spam IP Range
Carding fraud site/forums: fe-acc18.ru
2021-10-08 host still active, listing reactivated 2021-09-28 listing removed Given false removal request:. ns1.fe-acc18.ru. 299 IN A 159.65.60.44 ns2.fe-acc18.ru. 299 IN A 206.189.37.24 ;; QUESTION SECTION: ;ns1.fe-acc18.ru. IN A ;; ANSWER SECTION: ns1.fe-acc18.ru. 300 IN A 159.65.60.44 ;; AUTHORITY SECTION: fe-acc18.ru. 300 IN NS ns1.fe-acc18.ru. fe-acc18.ru. 300 IN NS ns2.fe-acc18.ru. fe-acc18.ru. 300 IN NS ns3.fe-acc18.ru.… Читать далее Carding fraud site/forums: fe-acc18.ru
Carding fraud site/forums: fe-acc18.ru (DNS)
Stolen credit card data sites: https://procrd.biz/ >>> https://i.imgur.com/dnhfzOq.gif >>> https://www.fe-acc18.ru/ fe-acc18.ru. 300 IN A 45.9.20.113 ns1.fe-acc18.ru. 300 IN A 159.65.60.44 ns2.fe-acc18.ru. 300 IN A 165.22.211.13 ns3.fe-acc18.ru. 300 IN A 193.56.146.163 —————————————————— Опции темы Опции просмотра Старый 07.10.2013, 20:33 WWW.FE-ACC18.RU !!!!! Sell CC + CVV !!!!!! Легендарный сервис по продаже СС !!!!!!!!! Аватар для Ferum Ferum… Читать далее Carding fraud site/forums: fe-acc18.ru (DNS)
Spamvertised website
Received: from gotogml.com (gotogml.com. [185.122.223.223]) From: 🔔Gemeentelijk Energie <[]@gotogml.com> Date: Fri, 08 Oct 2021 09:1x:xx +0000 Subject: Nieuw in uw gemeente: bespaar via het Gemeentelijke Energie Collectief http://crystals.com.de/rd/[] 167.99.245.231 https://laudypauty.com/[] 209.159.146.166 https://sendt.go2cloud.org/aff_c?offer_id=2893&aff_id=1482&aff_sub=472864&aff_sub2=[]&aff_sub3=31 18.202.12.61