tech support 9

  • Subscribe to our RSS feed.
  • Twitter
  • StumbleUpon
  • Reddit
  • Facebook
  • Digg

Friday, 31 May 2013

Medfos sites to block 31/5/13

Posted on 08:06 by Unknown


The following domains and IPs are currently being used as C&C servers by the Medfos family of trojans (this one in particular):

84.32.116.110
85.25.132.55
173.224.210.244
184.82.62.16
188.95.48.152
ehistats.su
emstats.su
ieguards.su
iestats.cc
inetprotections.su
iprotections.su
netprotections.cc
sysinfo.cc
sysinfonet.cc
westats.cc

The hosts involved are:
84.32.116.110 (LIX Solutions, Lithunia
Read More
Posted in Germany, Intergenia, Lithuania, Malware, Netherlands, Viruses | No comments

Thursday, 30 May 2013

NewEgg.com spam / 174.140.171.233

Posted on 13:56 by Unknown


This fake NewEgg.com spam leads to malware on 174.140.171.233:


Date:      Thu, 30 May 2013 16:06:12 +0000 [12:06:12 EDT]From:      Newegg [info@newegg.com]Subject:      Newegg.com - Payment  ChargedNewegg logo     My Account     My Account |     Customer Services     Customer Services�Twitter     Twitter     You Tube     You Tube     Facebook     Facebook     Myspace     Myspaceclick to
Read More
Posted in Malware, Spam, Viruses | No comments

ADP spam / 4rentconnecticut.com and 174.140.171.233

Posted on 13:48 by Unknown


These fake ADP spams lead to malware on 4rentconnecticut.com:


Date:      Thu, 30 May 2013 12:41:28 -0500 [13:41:28 EDT]
From:      "ADPClientServices@adp.com" [ADPClientServices@adp.com]
Subject:      ADP Funding Notification - Debit Draft

Your Transaction Report(s) have been uploaded to the web site:

https://www.flexdirect.adp.com/client/login.aspx

Please note that your bank account will
Read More
Posted in ADP, Malware, Spam, ThreeScripts, Viruses | No comments

Al Rowaad Advocates - scumbag, spammy lawyers

Posted on 11:34 by Unknown


This scumbag law firm from the UAE advertises itself through spam.


From:     Professional Lawyers in the UAE [uaelawyers@gmx.com]Reply-To:     uaelawyers@gmx.comDate:     30 May 2013 18:52Subject:     Al Rowaad Advocates - Monthly Newsletter - May 2013Dear Sirs,Please forgive our direct email which is intended to give a brief introduction to our law firm based in the United Arab Emirates.Al
Read More
Posted in Spam, UAE | No comments

Amazon.com 55 inch TV spam / ozonatorz.com

Posted on 01:51 by Unknown
This earlier spam run about various brands of 55 inch TVs from Amazon has been updated and is now directing victims to a malware landing page on the domain ozonatorz.com:


Newer Posts Older Posts Home
Subscribe to: Posts (Atom)

Popular Posts

Categories

  • .SU
  • 1&1
  • 419
  • ADP
  • Advanced Fee Fraud
  • Advertising
  • Adware
  • AICPA
  • Amazon
  • Amerika
  • Android
  • Anti-Virus Software
  • AOL
  • Apple
  • Aruba
  • Australia
  • Austria
  • BBB
  • Black Hat
  • Blackhole
  • Blogging
  • Botnet
  • Brazil
  • Bulgaria
  • Canada
  • Chile
  • China
  • CNN
  • Colombia
  • CookieBomb
  • Crime
  • CyberBunker
  • Data Breach
  • DHL
  • DOC
  • Domains
  • Dynamic DNS
  • eBay
  • Edis
  • eFax
  • Egypt
  • Emailmovers Ltd
  • Endurance International Group
  • Estonia
  • Evil Network
  • EXE-in-ZIP
  • Facebook
  • Fail
  • Fake Pharma
  • False Positive
  • FedEx
  • Finland
  • France
  • Gandi
  • Germany
  • GHOSTnet
  • GoDaddy
  • Google
  • Greece
  • Hacked sites
  • Hetzner
  • HMRC
  • Hosting
  • Hungary
  • India
  • Injection Attacks
  • Intergenia
  • INTUIT
  • Iran
  • IRS
  • Israel
  • Italy
  • Japan
  • Job Offer Scams
  • Joe Job
  • Jolly Works Hosting
  • Kelihos
  • Kenya
  • Korea
  • Latvia
  • Law
  • Leaseweb
  • LinkedIn
  • Linode
  • Lithuania
  • Lithunia
  • logol.ru
  • Macintosh
  • Magnitude
  • Malware
  • Mea Culpa
  • Microsoft
  • Moldova
  • Money Mule
  • Mongolia
  • NACHA
  • NATO
  • Netherlands
  • Neutrino
  • Nuclear Fallout Enterprises
  • OVH
  • Pakistan
  • Patches
  • PayPal
  • Philippines
  • Phishing
  • Phishtank
  • Phones
  • Pinterest
  • Pizza
  • Poland
  • Politics
  • Porn
  • PPI
  • Printer Spam
  • Privacy
  • Pump and Dump
  • Retro
  • Romania
  • RU:8080
  • Russia
  • Sally Gaskell
  • Scam
  • Scams
  • Senegal
  • Serbia
  • Serverius
  • Sidharth Shah
  • Simply Transit
  • Singapore
  • Slicehost
  • SMS
  • South Africa
  • Spain
  • Spam
  • Stupidity
  • Sweden
  • Sweet Orange
  • Switzerland
  • Syria
  • Taiwan
  • Telepests
  • Thailand
  • TheFirst-RU
  • ThreeScripts
  • Tor
  • Turkey
  • UAE
  • UK2.NET
  • Ukraine
  • UPS
  • US Airways
  • USPS
  • VBScript
  • Virgin Media
  • Viruses
  • Waledac
  • Weather
  • Xeex
  • Yahoo
  • YouTube
  • Zbot
  • Zeus

Blog Archive

  • ▼  2013 (500)
    • ►  November (29)
    • ►  October (37)
    • ►  September (46)
    • ►  August (44)
    • ►  July (62)
    • ►  June (42)
    • ▼  May (39)
      • Medfos sites to block 31/5/13
      • NewEgg.com spam / 174.140.171.233
      • ADP spam / 4rentconnecticut.com and 174.140.171.233
      • Al Rowaad Advocates - scumbag, spammy lawyers
      • Amazon.com 55 inch TV spam / ozonatorz.com
      • University of Illinois CS department compromised
      • Malware sites to block 29/5/13
      • 55-Inch TV Amazon.com spam / federal-credit-union.com
      • Something (a bit) evil on 158.255.212.96 and 158.2...
      • fab.com spam
      • Citibank spam / Statement 57-27-05-2013.zip
      • Chase "Incoming Wire Transfer" spam / incoming_wir...
      • prospectdirect.org (Emailmovers Ltd) spam
      • Delivery_Information_ID-000512430489234.zip
      • Something evil on 50.116.28.24
      • Newegg.com spam / balckanweb.com
      • "Referral link" spam / rockingworldds.net and pari...
      • Wells Fargo and Citi spam / SecureMessage.zip and ...
      • Walmart.com spam / virgin-altantic.net
      • Walmart.com spam / bestunallowable.com
      • HMRC spam / VAT Returns Repot 517794350.doc
      • "Invoice Copy" spam / invoice copy.zip
      • ADP spam / outlookexpres.net
      • Something evil on 184.95.51.123
      • Facebook spam / otophone.net
      • Something evil on 94.242.198.16
      • Bank of America spam / RECEIPT428-586.doc
      • "Confidential - Secure Message from AMEX" spam / S...
      • Something evil on 188.241.86.33
      • Something evil on 151.248.123.170, Part IV
      • Experiment: There may be confidential content in y...
      • Citibank spam / Statement ID 64775-4985.doc
      • Amazon.com spam / ehrap.net
      • Something evil on 151.248.123.170, Part III
      • Wanted: Seer. To work on Åland.. wherever that is.
      • Something evil on 173.255.200.91
      • A look at the wonderful, weird world of retro phones
      • LinkedIn spam / guessworkcontentprotect.biz
      • "Your Wire Transfer 07532312 canceled" spam / Rece...
    • ►  April (67)
    • ►  March (67)
    • ►  February (60)
    • ►  January (7)
Powered by Blogger.

About Me

Unknown
View my complete profile