The host at this IP address (13.107.42.13) is either operated by cybercriminals or hosting compromised websites that are being used to distribute malware: https://onedrive.live.com/download?cid=68C9F09DED4D3B72&resid=68C9F09DED4D3B72%21173&authkey=AL6oUfOJI4ZrhEY https://onedrive.live.com/download?cid=ACA36329F96145E7&resid=ACA36329F96145E7%21108&authkey=AIg30Xmo50HUN6s http://onedrive.live.com/download?cid=2BCCCFD49591E542&resid=2BCCCFD49591E542!104&authkey=ACSUapER1G2BuSA https://onedrive.live.com/download?cid=D7A53F4E448C59AF&resid=D7A53F4E448C59AF%21930&authkey=AE8AYkwfBEmxEgw https://onedrive.live.com/download?cid=8AD327FEA0288842&resid=8AD327FEA0288842%21476&authkey=ACo-GUvKHDyJL-o https://onedrive.live.com/download?cid=2F38368D4BD88C0E&resid=2F38368D4BD88C0E%21118&authkey=AL9u2JyCVKLhDfk https://onedrive.live.com/download?cid=B9F97974937AF42D&resid=B9F97974937AF42D%21183&authkey=APZbR8B3Xgtai1Y https://onedrive.live.com/download?cid=86C04FE349EAFD3D&resid=86C04FE349EAFD3D%21264&authkey=AMlvCynqZz-Xh08 https://onedrive.live.com/download?cid=21DC3741EA2CB3F2&resid=21DC3741EA2CB3F2%21204&authkey=AHJPj8UjWVeqnms https://onedrive.live.com/download?cid=64DE6B3FCA356C05&resid=64DE6B3FCA356C05%211284&authkey=APDonrm4qUrpCqk https://onedrive.live.com/download?cid=5B4883EE81CE085C&resid=5B4883EE81CE085C%211387&authkey=AGeQ4Y5yPPEW7jE https://onedrive.live.com/download?cid=EBDE3D8CE54ED339&resid=EBDE3D8CE54ED339%21153&authkey=AKPvZ3cKptj9Pq4 https://onedrive.live.com/download?cid=ED0141F46D6D00C9&resid=ED0141F46D6D00C9%2110669&authkey=AKFup5TTuavYYgI https://onedrive.live.com/download?cid=F3BA03FF9BD7183E&resid=F3BA03FF9BD7183E%21137&authkey=ADKzncNbdhev0XI https://onedrive.live.com/download?cid=633055B9F28C3083&resid=633055B9F28C3083%21126&authkey=ACmgfs0UyLumtdQ AS number: AS8068 AS name: MICROSOFT-CORP-MSN-AS-BLOCK — Microsoft Corporation
Malware botnet controller @23.100.23.67
The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse. Malware botnet controller located at 23.100.23.67 on port 80 (using HTTP GET): hXXp://hostas4.cf/click.php $ dig +short hostas4.cf 23.100.23.67 Other malicious domain names hosted on this IP address:… Читать далее Malware botnet controller @23.100.23.67
Spam source @104.47.53.164
The host at this IP address is emitting spam emails. Spam sample ========================================= From: rajeevguptaqa@outlook.com Subject: RE: Follow up =========================================
Abused / misconfigured newsletter service (listbombing)
The host at this IP address is being (ab)used to «listbomb» email addresses: From: dineshdjfij@outlook.com Subject: Re: High quality Apps and low cost Problem description ============================ Spammers signed up for the bulk email service using the victim’s email address. As a result, the victim is being «listbombed» with transactional messages and bulk email campaigns. Problem… Читать далее Abused / misconfigured newsletter service (listbombing)
Abused / misconfigured newsletter service (listbombing)
The host at this IP address is being (ab)used to «listbomb» email addresses: From: manishanegiss@outlook.com Subject: How to increase website ranking Problem description ============================ Spammers signed up for the bulk email service using the victim’s email address. As a result, the victim is being «listbombed» with transactional messages and bulk email campaigns. Problem resolution ============================… Читать далее Abused / misconfigured newsletter service (listbombing)
Spam source @40.92.19.61
The host at this IP address is emitting spam emails. Spam sample ========================================= From: ajityadavqsw@outlook.com Subject: RE: Follow-up =========================================
Spam source @40.92.254.30
The host at this IP address is emitting spam emails. Spam sample ========================================= From: ansh.kathuria@hotmail.com Subject: Creation of Idea Mobile App at Low Cost =========================================
Spam source @40.92.253.40
The host at this IP address is emitting spam emails. Spam sample ========================================= From: emilyoliver.webios@hotmail.com Subject: RE : (Follow-up) — Website Design, Digital & Inbound Marketing, SEO =========================================
Spam source @40.92.255.76
The host at this IP address is emitting spam emails: 2020-02-04 40.92.255.76 Chandan Tiwari <Tiwari.contentwright@outlook.com> Website Design/Development
Spam source @40.92.4.81
The host at this IP address is emitting spam emails: 2020-02-04 40.92.4.81 MEGA ORGANIZATION <tracking-confirmation@msn.com> SIE HABEN 1.000.000,00€ GEWONNEN LOTTERIEPREIS INHALT \x0aLESEN !!!