https://feedproxy.google.com/~r/0u4/~3/dyQGOYWG8Tk https://feedproxy.google.com/~r/1u5/~3/88yQ5p_eiw8 https://feedproxy.google.com/~r/1u5/~3/Fcg2k_e5ai8 https://feedproxy.google.com/~r/1u5/~3/LSFZkH_tXIE https://feedproxy.google.com/~r/1u5/~3/MNzsgOZQ_lU https://feedproxy.google.com/~r/1u5/~3/RC52zWTwHoE https://feedproxy.google.com/~r/1u5/~3/Rq8niNJaSiI https://feedproxy.google.com/~r/1u5/~3/hOAYvEkcyC0 https://feedproxy.google.com/~r/1u5/~3/pi6-tIfVtig https://feedproxy.google.com/~r/agrgizhspry/~3/KyWEiCDzEOw/crampfish.php https://feedproxy.google.com/~r/ailxkvxl/~3/bYF895Vf6Tk/nutrition.php https://feedproxy.google.com/~r/aybqeydnft/~3/oXQumOQVh4Q/herb.php https://feedproxy.google.com/~r/cdyek/~3/bdKgPca38CU/commencement.php https://feedproxy.google.com/~r/dqqufz/~3/0Q3MSPX4Ep4/exit.php https://feedproxy.google.com/~r/dvxmdmtbh/~3/kWqR8YOssA4/forced.php https://feedproxy.google.com/~r/dwbkdfjsix/~3/HdazHyzlyTA/violence.php https://feedproxy.google.com/~r/fvbvbrhcw/~3/nUIfCIjTMhU/inspiration.php https://feedproxy.google.com/~r/gmrxldmicig/~3/wg4m7rtJ1uA/hurrah.php https://feedproxy.google.com/~r/gufupdlmre/~3/2kPbGrwMBkg/purgers.php https://feedproxy.google.com/~r/gwsuspobc/~3/dnOhuf3Yml8/unjustifiably.php https://feedproxy.google.com/~r/gymatgzwgdw/~3/nxoTlcJ4eKU/handpick.php https://feedproxy.google.com/~r/hmldlhcerjr/~3/9b56UM8W27M/fashonably.php https://feedproxy.google.com/~r/htxfbhf/~3/g1zAUAstU8M/catechetical.php https://feedproxy.google.com/~r/imicjqn/~3/UlZv8BWABWM/sweepstakes.php https://feedproxy.google.com/~r/juaqn/~3/wAQ3F_SSGkI/discerning.php https://feedproxy.google.com/~r/kjqpqd/~3/GcFThqZkuXg/salmagundi.php https://feedproxy.google.com/~r/kldpylns/~3/5fXhOism5_8/warrantable.php https://feedproxy.google.com/~r/krkbaqxoge/~3/prJvXeBiQHs/score.php https://feedproxy.google.com/~r/lbczfqkc/~3/C3plONi3vek/myopia.php https://feedproxy.google.com/~r/lfxcictxs/~3/oujgfjZSLZ8/dothan.php https://feedproxy.google.com/~r/lmpsuqwe/~3/9OvmMfQMDSA/reticent.php https://feedproxy.google.com/~r/menvup/~3/kHSNmLdnb7Q/thunderclap.php https://feedproxy.google.com/~r/npuwx/~3/OLZbyTfei_k/sideslipping.php https://feedproxy.google.com/~r/pamaksng/~3/uxl9Us5svnE/poorhouse.php https://feedproxy.google.com/~r/pbchfaqoal/~3/9OvmMfQMDSA/reticent.php https://feedproxy.google.com/~r/phwpzumav/~3/5l2G2wzsMOM/cyclone.php https://feedproxy.google.com/~r/qtzzn/~3/doGgjuGOmUU/finder.php https://feedproxy.google.com/~r/ruykmpob/~3/nB6wKffRHwo/unbringing.php https://feedproxy.google.com/~r/seexpsudm/~3/WxBoGTY0uHU/gamist.php https://feedproxy.google.com/~r/seqtweaio/~3/MSzdF3SA4zk/lemming.php https://feedproxy.google.com/~r/sgkcbyxuox/~3/LTPawOE14Zk/beautification.php https://feedproxy.google.com/~r/trnrnxcihw/~3/Zzl3SxNYPTg/adeptness.php https://feedproxy.google.com/~r/tvglghz/~3/A2YWz1QmzhU/qatar.php https://feedproxy.google.com/~r/uogct/~3/9GDjO75sI0o/suds.php https://feedproxy.google.com/~r/vbouxoe/~3/F2bAr19xJHs/vietnam.php https://feedproxy.google.com/~r/vnuzklhbbpp/~3/HDGUO4vf8cI/insincere.php https://feedproxy.google.com/~r/vpgqoxzvywr/~3/sGkS4vUOAqo/moraine.php https://feedproxy.google.com/~r/wfqcbzyktv/~3/DtPucbsC-qg/gray.php https://feedproxy.google.com/~r/wsxyodhjt/~3/CZ_lzr8stA4/trolley.php https://feedproxy.google.com/~r/xxjrc/~3/9OvmMfQMDSA/reticent.php https://feedproxy.google.com/~r/ynpboanmayk/~3/97o-6_zqZPs/mantis.php https://feedproxy.google.com/~r/yrtpnxaz/~3/m8_GMgcx2vc/seclusive.php https://feedproxy.google.com/~r/yuezctad/~3/nZs-maPHwXg/proscenia.php
Рубрика: google.com
Credit card phish landing sites.
34.84.230.195 epos-carddomain.servequake.com But there’s more! https://epos-cardrecrds.servequake.com https://epos-cardakira.servepics.com https://epos-cardgame.ddnsking.com https://epos-cardmike.servepics.com https://epos-carddomain.servequake.com https://epos-cardname.servehalflife.com https://epos-cradgmail.servebeer.com https://epos-cardtime.onthewifi.com And probably a few we haven’t seen yet…
spam emitter @34.92.224.149
Received: from email.lunn.ru (unknown [62.220.38.54]) by [] with ESMTPS id [] for []; Thu, 24 Jun 2021 06:2x:xx +0200 (CEST) Received: from User (149.224.92.34.bc.googleusercontent.com [34.92.224.149]) by email.lunn.ru (Postfix) with ESMTPA id []; Thu, 24 Jun 2021 07:2x:xx +0300 (MSK) From: «Ms. Reem»<admdep@lunn.ru> Subject: Re: ok! ok!! ok!!! Date: Thu, 24 Jun 2021 04:2x:xx -0000 Hello,… Читать далее spam emitter @34.92.224.149
Abused / misconfigured newsletter service (listbombing)
The host at this IP address is being (ab)used to «listbomb» email addresses: From: sandrabail554@gmail.com Subject: Hello Steve, Most Attractive Web Design Problem description ============================ Spammers signed up for the bulk email service using the victim’s email address. As a result, the victim is being «listbombed» with transactional messages and bulk email campaigns. Problem resolution… Читать далее Abused / misconfigured newsletter service (listbombing)
More of the endless feedproxy.google.com spammed URLs
http://feedproxy.google.com/~r/ozhiwnfiy/~3/gUAW3mA7xAQ/tenuousness.php http://feedproxy.google.com/~r/gdloqopopho/~3/xUIN4mwQLvs/violating.php http://feedproxy.google.com/~r/adouj/~3/KNkXI-4pOMQ/agglutinin.php http://feedproxy.google.com/~r/eaqwl/~3/wAQ3F_SSGkI/discerning.php https://feedproxy.google.com/~r/phwpzumav/~3/5l2G2wzsMOM/cyclone.php http://feedproxy.google.com/~r/ynkenyega/~3/huF0jWgMTXo/chip.php http://feedproxy.google.com/~r/lpqgcmaqxp/~3/XMcokKtlnv8/nanosecond.php http://feedproxy.google.com/~r/iwntogh/~3/F2bAr19xJHs/vietnam.php https://feedproxy.google.com/~r/seexpsudm/~3/WxBoGTY0uHU/gamist.php https://feedproxy.google.com/~r/gufupdlmre/~3/2kPbGrwMBkg/purgers.php http://feedproxy.google.com/~r/fctlapr/~3/KxcQQiJeEIM/realistic.php http://feedproxy.google.com/~r/jsseiwpnyug/~3/aZTRtr7PYaM/burnie.php _____________ http://feedproxy.google.com/~r/ozhiwnfiy/~3/gUAW3mA7xAQ/tenuousness.php >>> https://brendayluis.com/tenuousness.php?utm_source=feedburner&utm_medium=feed&utm_campaign=Feed%3A+ozhiwnfiy+%28scissoringsulfite%29 http://feedproxy.google.com/~r/ozhiwnfiy/~3/gUAW3mA7xAQ/tenuousness.php >>> https://www.boltasindh.com/cgi-sys/suspendedpage.cgi?utm_source=feedburner&utm_medium=feed&utm_campaign=Feed%3A+jsseiwpnyug+%28passwordthruway%29
Abused / misconfigured newsletter service (listbombing)
The host at this IP address is being (ab)used to «listbomb» email addresses: From: roshangupta7680@gmail.com Subject: RE: Web Creating !! Problem description ============================ Spammers signed up for the bulk email service using the victim’s email address. As a result, the victim is being «listbombed» with transactional messages and bulk email campaigns. Problem resolution ============================ In… Читать далее Abused / misconfigured newsletter service (listbombing)
Spamvertised website
Received: from shaius.com (141.94.67.99) From: Retinol <noreply@karklik.ru!>; <noreply@skeidar.no> Subject: Virkestoff med dokumentert effekt på rynker Date: Sat, 03 Jul 2021 00:0x:xx +0000 http://rovoltyna.com/track/[] => https://saarnik.com/?a=2874&oc=12334&c=35414&m=3&s1=11&s2=19-1575&s3=[] => https://fn3gx.truesafetyredirect.com/?s1=[]&s2=19-1575&kw=2874 rovoltyna.com. 1799 IN A 192.46.236.105 saarnik.com. 300 IN A 34.90.93.53 fn3gx.truesafetyredirect.com. 300 IN A 204.44.99.31 fn3gx.truesafetyredirect.com. 300 IN A 204.44.99.32
Canadian Pharmacy
Left online for weeks: https://feedproxy.google.com/~r/xi2/~3/DXz2o_qilzk https://feedproxy.google.com/~r/xi2/~3/QsZ5YOQF32E https://feedproxy.google.com/~r/xi2/~3/UvGtxNJrAWU >>> https://vectorcaremedicals.shop/?OwMbKfzzopNA
Spammer hosting @34.106.239.190
Spammer hosting located here: datewithbeauty.cn. 600 IN A 35.235.76.88 rulovedate1.cn. 600 IN A 35.235.76.88
Malware / Botnet / Phishing hosting server @34.145.165.100
According to our telemetry and our own intelligence, the host at this IP address has been setup by cyber criminals for the exclusive purpose of hosting phishing sites, malware distribution sites and/or botnet controllers. We therefore advise our users to block any traffic from/to this IP address. To solve this abuse issue, we recommend ARIN… Читать далее Malware / Botnet / Phishing hosting server @34.145.165.100