Malware Domain List

Malware Related => Malware Analysis => Topic started by: cleanmx on October 30, 2009, 10:41:46 pm

Title: nice phishing trap host
Post by: cleanmx on October 30, 2009, 10:41:46 pm
this comes just up...

Code: [Select]
http://telokambio.com/web/hosts
Code: [Select]
38.99.169.154 www.viabcp.com
38.99.169.154 viabcp.com
38.99.169.154 www.scotiabank.com.pe
38.99.169.154 scotiabank.com.pe
38.99.169.154 www.bbvabancocontinental.com
38.99.169.154 bbvabancocontinental.com

Title: Re: nice phishing trap host
Post by: crim on October 31, 2009, 07:53:57 am
if this isn't a rooted box, i think we found the worst scammer in the internet today, ftp logs totally visible from http

Quote
2009.08.31 11:03 B C:\Documents and Settings\mriverol\Escritorio\web\pics\mtvvma09.jpg --> 213.218.141.2 /www/web/pics mtvvma09.jpg
2009.08.31 11:03 B C:\Documents and Settings\mriverol\Escritorio\web\pics\tiempofinal3.jpg --> 213.218.141.2 /www/web/pics tiempofinal3.jpg
2009.08.31 11:03 B C:\Documents and Settings\mriverol\Escritorio\web\pics\khloekourtney.jpg --> 213.218.141.2 /www/web/pics khloekourtney.jpg
2009.08.31 11:03 B C:\Documents and Settings\mriverol\Escritorio\web\pics\thetudors.jpg --> 213.218.141.2 /www/web/pics thetudors.jpg
Title: Re: nice phishing trap host
Post by: SysAdMini on October 31, 2009, 09:01:16 am
if this isn't a rooted box, i think we found the worst scammer in the internet today, ftp logs totally visible from http

it IS a rooted box. Look at
Code: [Select]
telokambio.com/