164.92.84.120|citionline2.com|2022-03-09 21:31:36 164.92.84.120|citirestored9b.com|2022-03-09 23:11:55
Рубрика: digitalocean.com
phishing server
With Fake «Service Suspended» 164.92.75.238|case-05asecure.com|2022-03-09 16:32:26
spam emitter @159.65.94.151
Received: from mail.aswellp.live ([159.65.94.151]) From: «Account Manager» <contact@aswellp.live> Subject: [], uw saldo is onlangs bijgewerkt Date: Wed, 9 Mar 2022 04:3x:xx -0800
phishing server
143.198.137.60|chase-live.us|2022-03-09 05:47:12
spam support (domains)
domain used in spam operation ontraports.xyz [178.128.249.122]
Abused / misconfigured newsletter service (listbombing) [4th listing]
*** 4th listing due to the same cause! *** The host at this IP address is being (ab)used to «listbomb» email addresses: From: aidsmap bulletins <bulletins@bulletins.aidsmap.com> Subject: aidsmap news: Long COVID more common in people with HIV, Monday 7 March 2022 Problem description ============================ Spammers signed up for the bulk email service using the victim’s… Читать далее Abused / misconfigured newsletter service (listbombing) [4th listing]
Spam Emitter (OMICS)
This IP address is sending spam for OMICS, a publisher of «open-access» journals that solicits contributions and (by implication) fees and/or subscriptions through spam sent to scraped, purchased or appended lists. Received: from e5.oapublish.biz (unknown [157.230.36.146]) Date: Sat, 5 Mar 2022 07:##:## +0530 From: Editor — Otorhinolaryngology <editor@oapublish.biz> Reply-To: Editor — Otorhinolaryngology <submissions@scientificresearchsol.biz> Subject: Endorse… Читать далее Spam Emitter (OMICS)
Spam Emitter (OMICS)
This IP address is sending spam for OMICS, a publisher of «open-access» journals that solicits contributions and (by implication) fees and/or subscriptions through spam sent to scraped, purchased, or appended lists. Received: from e5.openaccesscfp.biz (e5.openaccesscfp.biz [46.101.235.229]) Date: Fri, 4 Mar 2022 09:##:## +0530 From: Blood Pressure and Hypertension <editor@openaccesscfp.biz> Reply-To: Blood Pressure and Hypertension <submissions@advscientificsol.biz>… Читать далее Spam Emitter (OMICS)
Assorted phish landing sites.
citi-webhelp.com citiaccess.app citiaccess.co citiaccess.io citiprotected.io support4-citi.com uspostal.app wellshelp.app wellshelp.io CITIBANK USPS WELLS FARGO.
AsyncRAT botnet controller @144.126.209.63
The host at this IP address is obviously operated by cybercriminals. It is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse. Malware botnet controller located at 144.126.209.63 on port 6606 TCP: $ telnet 144.126.209.63 6606 Trying 144.126.209.63… Connected to 144.126.209.63. Escape character… Читать далее AsyncRAT botnet controller @144.126.209.63