2021-10-25 crystals.com.de. 60 IN A 46.101.3.14 Received: from gotogml.com (gotogml.com. [185.122.223.223]) From: 🔔Gemeentelijk Energie <[]@gotogml.com> Date: Fri, 08 Oct 2021 09:1x:xx +0000 Subject: Nieuw in uw gemeente: bespaar via het Gemeentelijke Energie Collectief http://crystals.com.de/rd/[] 185.146.157.69 https://laudypauty.com/[] 209.159.146.166 https://sendt.go2cloud.org/aff_c?offer_id=2893&aff_id=1482&aff_sub=472864&aff_sub2=[]&aff_sub3=31 18.202.12.61
spam emitters
Received: from s9.megojom.ru (megojom.ru [5.188.76.2]) Date: Mon, 25 Oct 2021 02:3x:xx +0000 From: Aleksandr <info@s9.megojom.ru> Subject: Предложение 5.188.76.2 megojom.ru 5.188.76.3 tefalongo.ru 5.188.76.4 raferenco.ru 5.188.76.5 telefonsho.ru 5.188.76.6 grehemon.ru
RedLineStealer botnet controller @141.94.188.138
The host at this IP address is obviously operated by cybercriminals. It is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse. Malware botnet controller located at 141.94.188.138 on port 46419 TCP: $ telnet 141.94.188.138 46419 Trying 141.94.188.138… Connected to 141.94.188.138. Escape character… Читать далее RedLineStealer botnet controller @141.94.188.138
spam emitter @164.90.239.211
Received: from fnzrwu.nayrb.com (164.90.239.211) From: Netflix<noreply@netflix.ru!>; <noreply@email.ellos.no> Subject: Du er en av våre potensielle vinnere! Date: Sun, 24 Oct 2021 21:2x:xx +0000
Carding fraud site/forums: fe-acc18.ru (DNS)
ns1.fe-acc18.ru. 300 IN A 159.223.69.200 ns2.fe-acc18.ru. 300 IN A 159.223.74.144 ns3.fe-acc18.ru. 296 IN A 45.9.20.193 __________________________ Was: ns1.fe-acc18.ru. 273 IN A 67.205.169.224 ns2.fe-acc18.ru. 273 IN A 206.189.103.131 ns3.fe-acc18.ru. 273 IN A 45.9.20.193 ___________________________ Was: ns1.fe-acc18.ru. 299 IN A 159.65.60.44 ns2.fe-acc18.ru. 299 IN A 206.189.37.24 ;; QUESTION SECTION: ;ns1.fe-acc18.ru. IN A ;; ANSWER SECTION: ns1.fe-acc18.ru. 300… Читать далее Carding fraud site/forums: fe-acc18.ru (DNS)
Carding fraud site/forums: fe-acc18.ru (DNS)
ns1.fe-acc18.ru. 300 IN A 159.223.69.200 ns2.fe-acc18.ru. 300 IN A 159.223.74.144 ns3.fe-acc18.ru. 296 IN A 45.9.20.193 __________________________ Was: ns1.fe-acc18.ru. 273 IN A 67.205.169.224 ns2.fe-acc18.ru. 273 IN A 206.189.103.131 ns3.fe-acc18.ru. 273 IN A 45.9.20.193 ___________________________ Was: ns1.fe-acc18.ru. 299 IN A 159.65.60.44 ns2.fe-acc18.ru. 299 IN A 206.189.37.24 ;; QUESTION SECTION: ;ns1.fe-acc18.ru. IN A ;; ANSWER SECTION: ns1.fe-acc18.ru. 300… Читать далее Carding fraud site/forums: fe-acc18.ru (DNS)
phishing server
secure01a-chase-protect-private-webs.com has address 129.213.117.241 secure01c-chase-protect-private-webs.com has address 129.213.117.241
Spamvertised domain hosting
Based on research, analysis of network data, our ‘snowshoe’ spam detection systems, intelligence sources and our experience, Spamhaus believes that this IP address range is being used or is about to be used for the purpose of high volume ‘snowshoe’ spam emission. As a precaution therefore we are listing this IP range in an SBL… Читать далее Spamvertised domain hosting
Spamvertised domain hosting
% Abuse contact for ‘2.56.58.0 — 2.56.59.255’ is ‘abuse@serverion.com’ inetnum: 2.56.58.0 — 2.56.59.255 netname: SERVER-2-56-58-0 country: NL org: ORG-SB666-RIPE admin-c: SBAH21-RIPE tech-c: SBAH21-RIPE status: ASSIGNED PA mnt-by: PREFIXBROKER-MNT created: 2021-05-03T18:09:59Z last-modified: 2021-05-03T18:09:59Z source: RIPE organisation: ORG-SB666-RIPE org-name: Serverion BV org-type: OTHER address: Krammer 8 address: 3232HE Brielle address: Netherlands abuse-c: SBAH21-RIPE mnt-ref: PREFIXBROKER-MNT mnt-by: PREFIXBROKER-MNT… Читать далее Spamvertised domain hosting
spam emitters
Received: from s9.megojom.ru (megojom.ru [212.41.23.242]) Date: Sun, 24 Oct 2021 03:3x:xx +0000 From: Aleksandr <info@s9.megojom.ru> Subject: Предложение 212.41.23.154 uwentos.ru 212.41.23.155 irawenom.ru 212.41.23.156 oblakodzen.ru 212.41.23.157 yeremont.ru 212.41.23.242 megojom.ru 212.41.23.243 tefalongo.ru 212.41.23.244 raferenco.ru 212.41.23.245 telefonsho.ru 212.41.23.246 grehemon.ru