Malware distribution @104.21.27.42

The host at this IP address is currently being used to distribute malware. Malware distribution located here: hXXp://ggalive.info/xxx.txt $ dig +short ggalive.info 104.21.27.42 Referencing malware binaries (MD5 hash): 6080cdf3c23a43caeba7e55dffc72bbe — AV detection: 28 / 70 (40.00) 6a792cb55ea84b39eaf4a142a994aef6 — AV detection: 45 / 70 (64.29) 8da4a10a05a31ba3e42686a355dfd970 — AV detection: 13 / 70 (18.57) b5a1558a2f1039e67c453a6843f87a45 — AV… Читать далее Malware distribution @104.21.27.42

survivaltools.casa (Snowshoe Spam Hosting)

Cloudflare hosts the A record and website of the domain survivaltools.casa SPAM SAMPLE: Received: from little.survivaltools.casa (unknown [163.123.244.45]) Date: Sun, 27 Jun 2021 13:##:## -0400 From: «Vidtoon» <Info@survivaltools.casa> Subject: Create animated explainer video <x> <snip> Simply drag and drop the premade characters, choose the action you want them to do… like walking, talking, dancing, driving,… Читать далее survivaltools.casa (Snowshoe Spam Hosting)

Carding fraud site/forum: verifiedcarder.net

Stolen credit card data websites. verifiedcarder.net. 299 IN A 104.21.93.150 verifiedcarder.net. 299 IN A 172.67.211.93 ________________ Log in Register Search… Verified Carder No 1 Legit Carding Forum HOME FORUMS Zuno Store best cc store Home Carder Forum hacking forums altnen Carding forum atn card the world — VerifiedCarder.net New posts Carders Trade Center Verified seller… Читать далее Carding fraud site/forum: verifiedcarder.net

Carding fraud site/forum: cybercarders.su

Stolen credit card data websites. cybercarders.su. 299 IN A 104.21.59.219 cybercarders.su. 299 IN A 172.67.184.148 ________________ Portal Home Login Register Carding Forum HomeHome CARDING FORUM, BLACK MARKET & FREEBIES Hello, dear visitor, you entered the carding paradise, we are pleased to meet you at our carding forum. Be ready, we will teach you how to… Читать далее Carding fraud site/forum: cybercarders.su

Carding fraud site/forum: cardingteam.biz (cardingteam.is)

Stolen credit card data websites. cardingteam.biz >>> cardingteam.is cardingteam.biz. 299 IN A 172.67.215.249 cardingteam.biz. 299 IN A 104.21.91.111 cardingteam.is. 299 IN A 104.21.30.70 cardingteam.is. 299 IN A 172.67.172.58 ________________ REGISTRATION OPENED ! CLICK HERE to register FREE. Home Search Escrow BTC addressMore Carding forums, Carders forums, Credit card dumps, iPhone carding, Altenen Login to account… Читать далее Carding fraud site/forum: cardingteam.biz (cardingteam.is)

Carding fraud site/forum: carder.uk

Stolen credit card data websites. https://carder.uk/ carder.uk. 298 IN A 104.21.88.138 carder.uk. 298 IN A 172.67.180.23 ________________ Carding Forum for Professional Carders HOME FORUMS WHAT’S NEW MEDIA RESOURCES MEMBERS LOG INREGISTER New posts Search forums Home Carding Forum for Professional Carders NEW POSTS Verified Service Category Sell CC + CVV Threads 106 Messages 8.6K JUST… Читать далее Carding fraud site/forum: carder.uk

Carding fraud site/forum: getsome.su / valcc.cx

Stolen credit card data website: https://getsome.su/ >>> https://valcc.cx/ getsome.su. 291 IN A 104.21.85.215 getsome.su. 291 IN A 172.67.211.106 valcc.cx. 299 IN A 172.67.175.107 valcc.cx. 299 IN A 104.21.17.93 _______________ Was: getsome.su. 299 IN A 104.21.89.195 getsome.su. 299 IN A 172.67.164.144 __________________________________________________________________ __________________________________________________________________ Part of this massive set: 2021-May-13 @dns999.ru 04c.ru 163dstver.ru 2forcecc.ru 2rich4bitches.ru 2rich4bitches.su 2tracks24.net… Читать далее Carding fraud site/forum: getsome.su / valcc.cx

Carding fraud site/forum: cc2btc.cc

Stolen credit card data websites. https://carder.uk/ >>> http://cc2btc.cc/ CC2BTC.CC. 299 IN A 172.67.190.220 CC2BTC.CC. 299 IN A 104.21.92.88

Spamvertised website

Received: from tmc.edu (185.22.235.124) Date: Tue, 29 Jun 2021 12:3x:xx +0000 From: Olav Bitcoin <newsletter.fr@dushi.ca> Subject: Bitcoin-prisen er høyere enn den har vært i to år 9901 Brodie Lane Ste 160 Austin, TX 78748 URL redirects: URL: https://cloudcmh3.blob.core.windows.net/trackinglinkcmh3/cmh3_tracking.html#[] Server IP address is 52.239.169.132 https://loopersmash.com/0/0/0/[] Server IP address is 212.11.64.41 https://olfactivjump.com/index2.php?s1=350609&s2=[]&s3=2275&p=[]&ow=17 Server IP address is 104.21.39.29… Читать далее Spamvertised website

Spamvertised website

Received: from BN8NAM04FT019.eop-NAM04.prod.protection.outlook.com (2a01:111:e400:7e85::50) From: «thouchemnta@hotmail.com» <thouchemnta@hotmail.com> Subject: Du har aldrig en russisk pige før? 👩‍❤️‍💋‍👨 Date: Tue, 29 Jun 2021 08:5x:xx +0200 URL: https://cutt.ly/wmiApKE Server IP address is 104.22.1.232 Location: https://meetrussianlovedk.netlify.app/ Server IP address is 184.72.19.87 URL: http://portulove.site/ Server IP address is 162.255.119.220 Location: https://ml-trk.com/aff_c?offer_id=6872&aff_id=37119&source=s005 Server IP address is 172.67.191.224