18.118.83.62|case08verify.tk|2022-01-02 20:06:05 18.118.83.62|csh-validate.cf|2022-01-02 20:11:06 18.118.83.62|my-citi.cf|2021-12-27 20:06:17 18.118.83.62|schwverify.cf|2022-01-02 20:30:54 18.118.83.62|secured0.cf|2021-12-28 06:46:30
Malware botnet controller @194.87.185.135
The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse. Malware botnet controller located at 194.87.185.135 on port 443: $ telnet 194.87.185.135 443 Trying 194.87.185.135… Connected to 194.87.185.135. Escape character is ‘^]’ pywolwnvd.biz. 600 IN A 194.87.185.135
phishing server
159.203.174.211|accountantrecoveryservices.co|2022-01-01 11:11:06 159.203.174.211|accountantrecoveryservices.com|2022-01-02 11:30:40 159.203.174.211|accountrecoveryinfo.com|2022-01-01 11:51:00 159.203.174.211|accounturecoveryinfo.com|2022-01-01 12:26:17
Malware botnet controller @68.65.120.238
The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse. Malware botnet controller located at 68.65.120.238 on port 80 (using HTTP GET): hXXp://axieinfirity.xyz/vidacha_settings.php $ dig +short axieinfirity.xyz 68.65.120.238 $ nslookup 68.65.120.238 server106-5.web-hosting.com Referencing malware binaries (MD5 hash):… Читать далее Malware botnet controller @68.65.120.238
phishing server
3.142.53.243|53secureverify.com|2022-01-01 19:11:01 3.142.53.243|53updateverify.com|2022-01-01 19:11:12 3.142.53.243|securedmtbank.com|2022-01-01 14:06:26 3.142.53.243|securemtbankaccount.com|2022-01-01 14:11:02 3.142.53.243|securemtbankcard.com|2022-01-01 14:50:56 3.142.53.243|securemtbankupdate.com|2022-01-01 14:35:57 3.142.53.243|securemtbankverify.com|2022-01-01 14:36:10 3.142.53.243|www3mtbankaccess.com|2022-01-01 23:40:54 3.142.53.243|www3mtbankaccessdirect.com|2022-01-02 00:20:57 3.142.53.243|www3mtbankaccessservices.com|2022-01-02 00:20:54 3.142.53.243|www3mtbankonline.com|2022-01-02 00:21:02
Malware distribution & malware botnet controllers @194.87.185.125
The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse. Smoke Loader botnet controller located at 194.87.185.125 on port 80 (using HTTP POST): hXXp://host-data-coin-11.com/ host-data-coin-11.com. 600 IN A 194.87.185.125 Referencing malware binaries (MD5 hash): 16a32ce5e3bde626c4fe08878a2c3682 — AV… Читать далее Malware distribution & malware botnet controllers @194.87.185.125
Malware botnet controller @194.87.185.120
The host at this IP address is obviously operated by cybercriminals. It is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse. Malware botnet controller located at 194.87.185.120 on port 443: $ telnet 194.87.185.120 443 Trying 194.87.185.120… Connected to 194.87.185.120. Escape character is… Читать далее Malware botnet controller @194.87.185.120
spam source
[!] This SBL record is to show an example of ongoing network abuse. It currently is not being published in the SBL list, but is instead being presented on the webpage so that the network owner has evidence to investigate and correct the problem. w 161.38.193.221 m193-221.mailgun.net «m193-221.mailgun.net» 2022-01-01T04:00:00Z (+/-10 min) 161.38.193.221/32 (161.38.193.221 .. 161.38.193.221)… Читать далее spam source
spam source
[!] This SBL record is to show an example of ongoing network abuse. It currently is not being published in the SBL list, but is instead being presented on the webpage so that the network owner has evidence to investigate and correct the problem. w 161.38.193.221 m193-221.mailgun.net «m193-221.mailgun.net» 2022-01-01T04:00:00Z (+/-10 min) 161.38.193.221/32 (161.38.193.221 .. 161.38.193.221)… Читать далее spam source
Spammer hosting @206.81.20.47
Spammer hosting located here: rezeptfre-per-express.ru A 206.81.20.47 schweiz-rezeptfrei.ru A 206.81.20.47 verschickt-aus-eu.ru A 206.81.20.47