Author Topic: 'Money Mule' Recruitment Network Exposed  (Read 6715 times)

0 Members and 1 Guest are viewing this topic.

October 10, 2009, 01:54:14 pm
Read 6715 times

Malware-Web-Threats

  • Special Members
  • Hero Member

  • Offline
  • *

  • 354
    • MalwareURL

Cyber Crooks Target Public & Private Schools:
http://voices.washingtonpost.com/securityfix/2009/09/cyber_mob_targets_public_priva.html

'Money Mule' Recruitment Network Exposed:
http://voices.washingtonpost.com/securityfix/2009/09/money_mule_recruitment_101.html?wprss=securityfix

similar domains:
Code: [Select]
ccn-group.cc
ccn-groupco.cc
ccn-groupco.cn
ccn-groupsvc.cn
fairline-group.cc
fairline-group.cn
fairline-groupinc.cc
fairline-groupinc.cn
margin-group.cc
margin-groupco.cc
margin-groupco.cn
margingroupinc.cn
phoenixgroupco.cn
phoenix-groupmain.cn
stargroupinc.cn
star-groupinc.net
star-groupsvc.cn
star-groupsvc.com
summit-groupinc.cc
summit-groupinc.cn

October 11, 2009, 04:06:47 am
Reply #1

Malware-Web-Threats

  • Special Members
  • Hero Member

  • Offline
  • *

  • 354
    • MalwareURL

Code: [Select]
landgroupinc.cn
landgroupinc.net
land-groupsvc.cn
land-groupsvc.com
cronos-groupinc.com
cronos-group.net
cronos-groupinc.cn
cronosgroupsvc.cn

October 13, 2009, 09:31:06 pm
Reply #2

Malware-Web-Threats

  • Special Members
  • Hero Member

  • Offline
  • *

  • 354
    • MalwareURL
Code: [Select]
safegroupsvc.cn
safe-group.cc
phoenix-groupmain.com
nvidia-groupnet.cn
nvidia-groupsvc.cn
nvidia-groupnet.cc
nvidia-group.cc

http://sunbeltblog.blogspot.com/2009/10/money-mule-recruitment-sites-are.html

November 06, 2009, 08:55:01 am
Reply #3

Malware-Web-Threats

  • Special Members
  • Hero Member

  • Offline
  • *

  • 354
    • MalwareURL

online:

Code: [Select]
phoenix-groupco.net
master-groupsvc.cn
master-groupinc.com
mastergroupinc.cn
master-groupinc.org
igt-groupco.cn
igtgroupinc.cn
igt-groupinc.com
ing-groupsvc.cn
mellis-group.cn
mellis-groupmain.cn
indexgroupinc.net
index-groupinc.cn
index-groupmain.cn
index-groupinc.com
altgroupco.cn
alt-groupco.net
brain-groupsvc.com
brain-groupsvc.cn
braingroupmain.cn

some new registrations on 2009-11-03 - keep an eye on them (currently offline)

Quote
atlantis-groupsvc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
atlantis-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
blitz-groupsvc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
blitz-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
bramas-groupinc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
bramas-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
derby-groupinc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
derby-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
emerald-groupinc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
emerald-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
flash-groupinc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
flash-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
hudson-groupsvc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
hudson-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
integra-groupinc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
integra-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
jupiter-groupsvc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
jupiter-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
leader-groupinc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
leader-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
leverage-groupinc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
leverage-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
marcus-groupinc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
master-groupsvc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
mastergroupinc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
marcus-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
maximus-groupinc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
maximus-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
palladium-groupsvc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
palladium-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
phoenix-groupsvc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
phoenix-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
platinum-groupsvc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
platinum-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
pole-groupinc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
pole-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
quest-groupsvc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
quest-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
solar-groupinc.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
solar-groupco.cn -  Real Host LTD / abuseemaildhcp@ gmail.com -
atlantic-groupsinc.com - Petr Alexandrov / harms@ cheapmail.ru -
atlantis-groupinc.com - Liliya Akhmadullina / brad@ e2mail.ru -
blitz-groupco.com - Petr Alexandrov / harms@ cheapmail.ru -
bramas-groupco.com - Lyubov Bushmakina / mast@ 8081.ru -
derby-groupsvc.com - Anna Veprinceva / dr@ freemailbox.ru -
emerald-groupsvc.com - Anna Veprinceva / dr@ freemailbox.ru -
flash-groupsvc.com - Liliya Akhmadullina / brad@ e2mail.ru -
hudson-groupco.com - Andrey Kudryavtsev / packet@ cheapmail.ru -
integra-groupco.com - Alexander Ksalov / irate@ isprovider.ru -
jupiter-groupco.com - Alexander Belkov / laser@ co5.ru -
leader-groupinc.com - Liliya Akhmadullina / brad@ e2mail.ru -
leverage-groupco.com - Ivan Kumakov / mr@ corporatemail.ru -
marcus-groupco.com - Andrey Kudryavtsev / packet@ cheapmail.ru -
maximus-groupco.com - Alexander Ksalov / irate@ isprovider.ru -
palladium-groupco.com - Yuri Vernitsky / lawn@ ml3.ru -
phoenix-groupco.com - Ananoliy Kunirkin / nest@ blogbuddy.ru -
platinum-groupinc.com - Ananoliy Kunirkin / nest@ blogbuddy.ru -
pole-groupinc.com - Anna Veprinceva / dr@ freemailbox.ru -
quest-groupinc.com - Lyubov Bushmakina / mast@ 8081.ru -
solar-groupco.com - Alexander Belkov / laser@ co5.ru -