Phish spam source @159.223.149.85

Received: from [159.223.149.85] (helo=mta0.wincyc.com) From: [] <zzve@ho.net> Subject: 所需的行动 [] Date: 24 Dec 2021 05:0x:xx +0000 https://priceless-hypatia.137-184-60-175.plesk.page/ucc/china-mail/?email=[] priceless-hypatia.137-184-60-175.plesk.page. 3600 IN A 137.184.60.175

Phish spam source @147.182.157.76

Received: from [147.182.157.76] (helo=inbox0.mamuda-group.com) From: [] <qi@gzfoison.com> Subject: [] 帐户验证 Date: 24 Dec 2021 06:2x:x +0000 https://priceless-hypatia.137-184-60-175.plesk.page/ucc/china-mail/?email=[] priceless-hypatia.137-184-60-175.plesk.page. 3600 IN A 137.184.60.175

cismailjn.com (OMICS)

This IP address is sending spam for OMICS (aka Remedy Publishing, aka Austin Publishing, and others) advertising its «open-access» journals. The spam is sent to scraped, purchased, or appended lists. OMICS claims that these journals are peer-reviewed, but they are of dubious reputation. DigitalOcean: OMICS appears to be running riot in your VPS ranges. Please… Читать далее cismailjn.com (OMICS)

jmedimage.com (OMICS)

This IP address is sending spam for OMICS (aka Remedy Publishing, aka Austin Publishing, and others) advertising its «open-access» journals. The spam is sent to scraped, purchased, or appended lists. OMICS claims that these journals are peer-reviewed, but they are of dubious reputation. DigitalOcean: OMICS appears to be running riot in your VPS ranges. Please… Читать далее jmedimage.com (OMICS)

Spam Emitter (OMICS)

This IP address is sending spam for OMICS (aka Remedy Publishing, aka Austin Publishing, and others) advertising its «open-access» journals. The spam is sent to scraped, purchased, or appended lists. OMICS claims that these journals are peer-reviewed, but they have a dubious reputation among the academics we have asked. DigitalOcean: OMICS appears to be running… Читать далее Spam Emitter (OMICS)

RaccoonStealer botnet controller @178.62.232.173

The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse. RaccoonStealer botnet controller located at 178.62.232.173 on port 80 (using HTTP POST): hXXp://178.62.232.173/ Referencing malware binaries (MD5 hash): 8426f202fff106a789373511286c2efb — AV detection: 22 / 68 (32.35) 9e16ef5a1635cc433e55589627b01ef6… Читать далее RaccoonStealer botnet controller @178.62.232.173

phishing server

137.184.16.17|secure-02verify.com|2021-12-20 18:06:31 137.184.16.17|verifyinfo-ss.online|2021-12-19 22:45:50

Spam Emitter (aoremedymailjn.com) (OMICS

This IP address is sending spam for OMICS (aka Remedy Publishing, aka Austin Publishing, and others) advertising its «open-access» journals. The spam is sent to scraped, purchased, or appended lists. OMICS claims that these journals are peer-reviewed, but they are of dubious reputation. DigitalOcean: OMICS appears to be running riot in your VPS ranges. Please… Читать далее Spam Emitter (aoremedymailjn.com) (OMICS

Spam Emitter (wjssrmailj.com) (OMICS)

This IP address is sending spam for OMICS (aka Remedy Publishing, aka Austin Publishing, and others) advertising its «open-access» journals. The spam is sent to scraped, purchased, or appended lists. OMICS claims that these journals are peer-reviewed, but they are of dubious reputation. Received: from mail0.wjssrmailj.com (mail0.wjssrmailj.com [165.227.115.225]) Date: Mon, 20 Dec 2021 00:59:19 +0000… Читать далее Spam Emitter (wjssrmailj.com) (OMICS)