Stolen credit card data websites: https://ascarding.com/ >>> https://infodig.is/ infodig.ch. 600 IN A 45.141.101.93 infodig.domains. 600 IN A 45.141.101.93 infodig.sx. 600 IN A 45.141.101.93 ________________ Was: infodig.ch. 600 IN A 185.188.183.32 infodig.domains. 600 IN A 185.188.183.32 infodig.sx. 600 IN A 185.188.183.32 ________________ Was: infodig.ch. 600 IN A 45.8.124.79 infodig.domains. 600 IN A 45.8.124.79 infodig.sx. 600 IN… Читать далее Cybercrime site/forum: infodig.ch / infodig.domains / infodig.sx
Spam Emitter (PHP Hub)
This IP address is sending spam for Claimable Training, also known of as ‘Trainer’s Club’ and ‘P2P Hub’. The spam is sent to scraped, purchased, or appended lists offering online training in marketing methods. SPAM SAMPLE: Received: from server.trainingclub.club (server.trainersclub.club [194.233.73.229]) Received: from desktop-h14210u.local (unknown [180.73.87.27]) Date: Fri, 11 Mar 2022 00:##:## +0800 From: «Claimable… Читать далее Spam Emitter (PHP Hub)
Abused / misconfigured newsletter service (listbombing)
The host at this IP address is being (ab)used to «listbomb» email addresses: From: Marc de Be-Wear <noreply@wizicare.com> Subject: Demande d’autorisation BE-WEAR Problem description ============================ Spammers signed up for the bulk email service using the victim’s email address. As a result, the victim is being «listbombed» with transactional messages and bulk email campaigns. Problem resolution… Читать далее Abused / misconfigured newsletter service (listbombing)
phishing server
34.219.30.93|secured-d58af507401b31e6ac098e0abe578b31-helpauth.com|2022-03-12 22:56:12 34.219.30.93|secured-d58af507401b31e6ac098e0abe578b35-helpauth.com|2022-03-12 19:15:57
phishing server
167.172.22.195|citieseconlinebn9.com|2022-03-13 02:01:20 167.172.22.195|citisupportsec8.com|2022-03-13 02:51:41
phishing server
We were told this server was cleared of phish site it has not been. 209.126.0.84|10002000300056746456658484757558447759122.tk|2022-03-13 00:51:08 209.126.0.84|10002000300056746456658484757558447759123.tk|2022-03-13 00:26:10 209.126.0.84|10002000300056746456658484757558447759125.tk|2022-03-13 00:50:59 209.126.0.84|10002000300056746456658484757558447759126.tk|2022-03-13 00:31:01 209.126.0.84|10002000300056746456658484757558447759128.tk|2022-03-13 00:26:14 209.126.0.84|10002000300056746456658484757558447759129.tk|2022-03-13 00:26:14 209.126.0.84|10002000300056746456658484757558447759130.tk|2022-03-13 00:30:55
Malware/Fraud Package Delivery Scam Emitter/Web Hosting!
This IP address has been sending quantities of package delivery scam emails for a bit over a week. THe URI in the email is also hosted on this IP address. This is almost certainly a compromised website with a malware infection. Received: from kob.su (kob.su [138.201.18.87]) Date: Sat, 12 Mar 2022 09:##:## +0300 From: Postnord… Читать далее Malware/Fraud Package Delivery Scam Emitter/Web Hosting!
phishing server
54.39.226.38|mail.us-app-irs.gov-coronavirus-funds-assistance-service.com|2022-03-07 17:47:50 54.39.226.38|us-app-irs.gov-coronavirus-funding-assistance.com|2022-03-11 18:40:04 54.39.226.38|us-app-irs.gov-coronavirus-funds-assistance-service.com|2022-03-06 08:55:48 54.39.226.38|us-app-irs.gov-coronavirus-support-centers.com|2022-03-11 14:50:12 54.39.226.38|us-irs.gov-coronavirus-assistance-support.com|2022-03-11 12:10:38 54.39.226.38|us-irs.gov-coronavirus-funds-assistance-service.com|2022-03-11 13:10:13 54.39.226.38|us-webb-irs.gov-pandemic-funding-assistance.com|2022-03-11 13:08:11 54.39.226.38|webb-us-irs.gov-coronavirus-assistance-center.com|2022-03-11 18:00:04 54.39.226.38|cpcontacts.us-app-irs.gov-coronavirus-funds-assistance-service.com|2022-03-07 17:48:31 54.39.226.38|cpcontacts.us-irs.gov-coronavirus-assistance-support.com|2022-03-11 12:23:23 54.39.226.38|go-app-irs.gov-coronavirus-assistance-center.online|2022-02-22 03:00:47 54.39.226.38|go.gov-coronavirus-assistance-support.online|2022-03-09 11:58:02 54.39.226.38|go.gov-coronavirus-funding-assistance.online|2022-03-03 12:30:35 54.39.226.38|go.gov-coronavirus-funds-assistance-service.online|2022-03-07 17:24:40 54.39.226.38|go.gov-coronavirus-support-centers.online|2022-03-07 17:02:35 54.39.226.38|go.gov-pandemic-funding-assistance.online|2022-03-04 11:30:58 54.39.226.38|go.irsonlineservice.com|2022-03-10 21:01:53
phishing / fraud sites
$ host notesbanks.com notesbanks.com has address 66.29.146.185 $ host banksnotesonline.com banksnotesonline.com has address 66.29.146.185
phishing server
159.223.166.18|securemynavyfederal.com|2022-03-11 16:57:26