Guest User

Untitled

a guest
Apr 19th, 2017
801
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 12.84 KB | None | 0 0
  1. Suspect List:
  2. Found on Incero network: 172.93.49.77 (Client ID: 1925)
  3. Found on Incero network: 172.93.52.2 (Client ID: 1925)
  4. Found on Incero network: 172.93.52.197 (Client ID: 1925)
  5. Found on Incero network: 172.93.52.215 (Client ID: 1925)
  6. Found on Incero network: 172.93.49.76 (Client ID: 1925)
  7. Found on Incero network: 172.93.49.76 (Client ID: 1925)
  8. Found on Incero network: 172.93.52.215 (Client ID: 1925)
  9. Found on Incero network: 172.93.49.76 (Client ID: 1925)
  10. Found on Incero network: 172.93.49.76 (Client ID: 1925)
  11. Found on Incero network: 172.93.52.215 (Client ID: 1925)
  12. Found on Incero network: 172.93.49.78 (Client ID: 1925)
  13. Found on Incero network: 172.93.49.77 (Client ID: 1925)
  14. Found on Incero network: 172.93.52.191 (Client ID: 1925)
  15. Found on Incero network: 172.93.49.80 (Client ID: 1925)
  16. Found on Incero network: 172.93.52.197 (Client ID: 1925)
  17. Found on Incero network: 172.93.49.78 (Client ID: 1925)
  18. Found on Incero network: 172.93.52.2 (Client ID: 1925)
  19. Found on Incero network: 172.93.49.76 (Client ID: 1925)
  20. Found on Incero network: 172.93.52.197 (Client ID: 1925)
  21. Found on Incero network: 172.93.52.197 (Client ID: 1925)
  22. Found on Incero network: 172.93.49.76 (Client ID: 1925)
  23. Found on Incero network: 172.93.49.232 (Client ID: 1925)
  24. *** THIS TICKET IS ABOUT THIS ENTRY *** Found on Incero network: 172.93.49.235 (Client ID: 1925)
  25. Found on Incero network: 172.93.49.77 (Client ID: 1925)
  26. Found on Incero network: 172.93.49.78 (Client ID: 1925)
  27. Found on Incero network: 172.93.49.232 (Client ID: 1925)
  28. Found on Incero network: 172.93.49.78 (Client ID: 1925)
  29. Found on Incero network: 172.93.52.197 (Client ID: 1925)
  30. Found on Incero network: 172.93.49.80 (Client ID: 1925)
  31. Found on Incero network: 172.93.49.76 (Client ID: 1925)
  32. Found on Incero network: 172.93.49.76 (Client ID: 1925)
  33. *** THIS TICKET IS ABOUT THIS ENTRY *** Found on Incero network: 172.93.49.235 (Client ID: 1925)
  34. Found on Incero network: 172.93.49.76 (Client ID: 1925)
  35. Found on Incero network: 172.93.49.78 (Client ID: 1925)
  36.  
  37. ---
  38.  
  39. Notice we received:
  40.  
  41.  
  42. ----------------------------------------
  43. Abuse Notice Sender Information
  44. From: \"Gordon Page, Incero\"
  45. Sender\'s replyto:
  46. Subject: SBL
  47. Date: Mon, 17 Apr 2017 13:47:53 -0500
  48. ----------------------------------------
  49.  
  50. https://www.spamhaus.org/sbl/query/SBL340361
  51.  
  52.  
  53. Select Language=E2=96=BC
  54. Ref: SBL340361
  55. 172.93.49.77/32 is listed on the Spamhaus Block List - SBL
  56. 2017-04-15 08:10:18 GMT | incero[dot]com
  57. Credit card fraud domain hosting: legitvendors.cc (on multiple INCERO IPs)
  58.  
  59. The backend validation system for several of the big illegal
  60. credit-card theft sites:
  61.  
  62. http://octavian.cc
  63. >>> http://legitvendors.cc/shop/stats/piwik.php?idsite=3D1
  64.  
  65. http://www.dshop.su
  66. >>> http://legitvendors.cc/shop/stats/piwik.php?idsite=3D1
  67.  
  68.  
  69. https://krebsonsecurity.com/tag/octaviandotsu/
  70.  
  71.  
  72. ;; QUESTION SECTION:
  73. ;legitvendors.cc. IN A
  74.  
  75. ;; ANSWER SECTION:
  76. legitvendors.cc. 604800 IN A 172.93.49.77
  77. legitvendors.cc. 604800 IN A 172.93.52.2
  78. legitvendors.cc. 604800 IN A 172.93.52.197
  79. legitvendors.cc. 604800 IN A 172.93.52.215
  80. legitvendors.cc. 604800 IN A 45.32.128.122
  81. legitvendors.cc. 604800 IN A 108.61.203.198
  82. legitvendors.cc. 604800 IN A 192.241.243.198
  83.  
  84.  
  85.  
  86. Domain Name: LEGITVENDORS.CC
  87. Registry Domain ID: 122554979_DOMAIN_CC-VRSN
  88. Registrar WHOIS Server: whois.dynadot.com
  89. Registrar URL: http://www.dynadot.com
  90. Updated Date: 2017-02-16T18:40:30.0Z
  91. Creation Date: 2016-05-02T21:32:33.0Z
  92. Registrar Registration Expiration Date: 2017-05-02T21:32:33.0Z
  93. Registrar: DYNADOT LLC
  94. Registrar IANA ID: 472
  95. Registrar Abuse Contact Email: abuse@dynadot.com
  96. Registrar Abuse Contact Phone: +1.6502620100
  97. Domain Status: clientTransferProhibited
  98. Registrant Name: Anuwat Chi
  99. Registrant Street: Thung Suk La, Si Racha Distric 12
  100. Registrant City: Leam Chabang
  101. Registrant State/Province: Chon Buri
  102. Registrant Postal Code: 20230
  103. Registrant Country: TH
  104. Registrant Phone: +66.835289
  105. Registrant Email: chi.anuwat@gmail.com
  106. Admin Name: Anuwat Chi
  107. Admin Street: Thung Suk La, Si Racha Distric 12
  108. Admin City: Leam Chabang
  109. Admin State/Province: Chon Buri
  110. Admin Postal Code: 20230
  111. Admin Country: TH
  112. Admin Phone: +66.835289
  113. Admin Email: chi.anuwat@gmail.com
  114. Tech Name: Anuwat Chi
  115. Tech Street: Thung Suk La, Si Racha Distric 12
  116. Tech City: Leam Chabang
  117. Tech State/Province: Chon Buri
  118. Tech Postal Code: 20230
  119. Tech Country: TH
  120. Tech Phone: +66.835289
  121. Tech Email: chi.anuwat@gmail.com
  122. Name Server: mynameserver1.com
  123. Name Server: mynameserver2.com
  124. Name Server: mynameserver3.com
  125. Name Server: mynameserver4.com
  126.  
  127.  
  128.  
  129. ;; QUESTION SECTION:
  130. ;legitvendors.cc. IN A
  131.  
  132. ;; ANSWER SECTION:
  133. legitvendors.cc. 294 IN A 52.14.133.90
  134. legitvendors.cc. 294 IN A 52.87.52.12
  135. legitvendors.cc. 294 IN A 52.205.11.13
  136. legitvendors.cc. 294 IN A 54.82.239.211
  137. legitvendors.cc. 294 IN A 54.175.239.156
  138.  
  139.  
  140.  
  141. _________________________________________
  142.  
  143.  
  144. Other abuser domains:
  145.  
  146. facebookproxy.info 192.64.147.200
  147. google-tracker.com 114.142.153.88
  148. googlecodecambiar.com 209.239.120.72
  149. googlesyndicatiofn.com 209.239.120.72
  150. googlesyndicationxxx.com 69.162.80.54
  151. wwwgoogletagmanager.com 209.208.78.145
  152. teenwantblack.com 50.63.202.50
  153. shopbitcoin.us 209.239.120.72
  154. crimeaboard.net 91.231.86.19
  155. 100shops.biz 104.238.129.233
  156. 10iranfilm.info 209.239.120.72
  157. 10minuetmail.com 209.239.120.72
  158. 15worldsubtitle.in 209.239.120.72
  159. 16dlera.in 209.239.120.72
  160. 178cdn.com 209.239.120.72
  161. 18babes.us 209.239.120.72
  162. 1fardadownload.info 209.239.120.72
  163. 1u1yt0dxs5fvmr7ce.com 127.0.0.1
  164. 20-taktaraneh.com
  165. 20minuite.com 173.224.112.44
  166. 2mdm.net 209.239.120.72
  167. 2po.info
  168. 30nama6.net 192.64.147.200
  169. 35d473cf.info 209.239.120.72
  170. 3filmtory.org 209.239.120.72
  171. 47704a5e.info 173.224.112.44
  172. 4eo6dnxy2v5gcmip8wcr2h.com 127.0.0.1
  173. 4ff8857b.info 209.239.120.72
  174. 5042346.com 103.224.182.250
  175. 6dfas9obxn234.us 5.45.79.140
  176. 7bestmusic.com
  177. a677hxrrb4vjmt1y.com 127.0.0.1
  178. ad2upadd.com 209.239.120.72
  179. adhak.net 209.239.120.72
  180. admacman.com 127.0.0.1
  181. adminwebads.com 173.224.112.44
  182. adnetwork969520504-ads.net
  183. ads2adnow.com 209.239.120.72
  184. adsmobil.mobi 195.244.59.214
  185. adver.mobi 192.64.147.200
  186. airdroaid.com 209.239.120.72
  187. alhayatcultural.com 5.9.105.16
  188. alkasi.me 209.239.120.72
  189. allofporn.net 209.239.120.72
  190. americantheatermagazine.info 209.239.120.72
  191. api-livechatinc.com 209.208.78.145
  192. ariamovie3.biz 209.239.120.72
  193. ariamovie4.biz 209.239.120.72
  194. asanporn.asia 173.224.112.44
  195. authoritinutrition.com 185.53.179.24
  196. ayads-new.co 209.239.120.72
  197. baixar-filmes.biz 173.224.112.44
  198. bitcongift.xyz 192.64.147.200
  199. blackjack-casinos.net 8.5.1.42
  200. blogger-wp.com 103.224.182.250
  201. brezicode.com 173.224.112.44
  202. brislie.org.in 209.239.120.72
  203. bugundeyakisikliyim.com
  204. calverthal.com
  205. canadanwebhosting.com 209.239.120.72
  206. captionxpress.com 54.197.231.101
  207. carilamat.com 62.116.181.25
  208. casinobous2.co 185.53.177.12
  209. catoferta.co 209.239.120.72
  210. cconvert2mp3.net 141.8.224.169
  211. cloudcaont.net 209.239.120.72
  212. collegescanada.net 209.239.120.72
  213. computerfilrecovery.net 185.53.178.22
  214. datacapturetracker.com 209.239.120.72
  215. desbrokes.com
  216. dfwu1019.info 65.111.187.83
  217. digiatto.com 8.5.1.36
  218. dischvusocks.us 209.239.120.72
  219. dizie.org 173.224.112.44
  220. dogillust.com
  221. dolatebahar.co 104.238.129.233
  222. domain-host-this-script.com 209.239.120.72
  223. dpmkt.com 69.64.147.242
  224. eetshares.com 209.239.120.72
  225. elpalomar.us 209.239.120.72
  226. essaey.com 209.239.120.72
  227. eswtransfer.com 66.96.134.78
  228. exqiu.com 141.8.224.169
  229. f205de2.info 209.239.120.72
  230. fasassesment.org 173.224.112.44
  231. fdgekiwi.biz 209.239.120.72
  232. filesteam.me 185.53.179.6
  233. finazip.com 209.239.120.72
  234. forexbokerinc.com 127.0.0.4
  235. forexest.info 209.239.120.72
  236. forexinvestgruop.info 209.239.120.72
  237. foxcasino8.com 185.53.179.23
  238. freeimagehostin.co 185.53.177.13
  239. freelanche.com 64.74.223.44
  240. gene2.net 54.72.9.51
  241. getairmail.co 173.224.112.44
  242. gretdeel.biz 209.239.120.72
  243. h1f9lixwm5z3ebidrejhj.com 209.239.120.72
  244. helizet.com 85.158.203.190
  245. heveryday.com 50.63.202.52
  246. hipacrm.com 209.239.120.72
  247. hipdail.com 209.239.120.72
  248. horay4d.com 69.43.161.179
  249. i14sz1o3ebg8a8.com 209.239.120.72
  250. ibiztracking.com 8.5.1.37
  251. ibrgyhab.com
  252. idtracking.info 173.224.112.44
  253. insiderstrading.net 185.53.179.10
  254. insipidcoronadoionized.com 209.239.120.72
  255. insuranceohio.net 185.53.177.10
  256. ip2area.com
  257. iptorrents.co
  258. jacfor.me 192.64.147.200
  259. javfoe.me 192.64.147.200
  260. jiang-men.net 141.8.226.5
  261. jifeilin.com 103.224.182.247
  262. jmcdn.co 209.239.120.72
  263. jrotcd1.com 209.208.78.145
  264. jungtetho.info 173.224.112.44
  265. kakiping.com 8.5.1.48
  266. kismai.com 209.239.120.72
  267. kodelagu.net 69.43.161.161
  268. komli.asia 50.63.202.11
  269. labsmedia.net 103.247.10.50
  270. lionvip.us 209.239.120.72
  271. live-conversion.com 52.0.217.44
  272. livinggroomcandidate.org 192.64.147.138
  273. mb4mz.com 103.224.182.250
  274. mdlera.xyz 192.64.147.200
  275. minecrafttoptips.com 52.0.217.44
  276. moatsgptvs.com 209.239.120.72
  277. mobikim.tv 192.64.147.200
  278. mobileamateurmatch.com 209.239.120.72
  279. mobilephonegpstracker.com 52.0.217.44
  280. mobtrks11.com
  281. mp3rocketdownloadfiles.com 185.53.177.12
  282. multilivelpeople.com 209.239.120.72
  283. mycdn.info 209.222.14.3
  284. mycdnter.com 185.59.221.28
  285. mymusicbaran4.co 192.64.147.200
  286. najvagame.com 46.4.82.104
  287. nectourrier.com 209.239.120.72
  288. newsxxxx.com 209.239.120.72
  289. ngoctan.us 209.239.120.72
  290. noatmpindebit.net 209.239.120.72
  291. nrfort.com 98.124.243.39
  292. nstracking.com 205.178.190.121
  293. nulllinkbokep.biz 104.238.129.233
  294. ocmsnowcdn.com
  295. onque.net 76.73.228.17
  296. openloadqewereq.co 209.239.120.72
  297. our-affiliate-program.com 141.8.224.169
  298. ousbou.com
  299. paidcix.net 209.239.120.72
  300. parkerlawnmowing.com 72.167.191.69
  301. pasarmp3.com 8.5.1.48
  302. penload.co 173.224.112.44
  303. porteghal.info 104.238.129.233
  304. posterfiles.com 141.8.225.48
  305. predcitz.com 104.238.129.233
  306. pro-sc.biz 173.224.112.44
  307. radio51510.com 209.239.120.72
  308. rankstats.org 173.224.112.44
  309. realcasinoslotonline.com 185.53.179.6
  310. rolledwil.biz 104.238.129.233
  311. sammierules.me 104.24.114.129
  312. servingvsys.com
  313. sexdating96.com 78.31.67.23
  314. shellicio.us 104.167.103.240
  315. simplestreams.us 127.0.0.1
  316. simplysendverify.com 209.239.120.72
  317. sitemapgenerator.pro 209.239.120.72
  318. skyingfireworks.com 209.239.120.72
  319. slitho.com
  320. smsreceiverfree.com 141.8.224.93
  321. snvacn.com 23.253.164.103
  322. steamarket.org 209.239.120.72
  323. summotorrent.in 209.239.120.72
  324. sx77.net 167.114.64.127
  325. sxtracking.com 64.26.28.144
  326. tak-20.com 173.252.203.237
  327. takefreebitcoin.co 209.239.120.72
  328. taktaraneh-7.com
  329. talesthattickle.com 50.63.202.45
  330. telgrm.me 141.8.224.183
  331. tempail.us 209.239.120.72
  332. th3professinoal.com 192.64.147.200
  333. thevideoo.me 209.239.120.72
  334. thevideos.me 192.64.147.200
  335. thgwebmail.com 104.160.72.31
  336. ticomensajes.com 79.143.80.155
  337. tinypics.net 8.5.1.40
  338. tlgram.me 185.53.177.7
  339. tnja24.com 52.0.217.44
  340. unblockers.us 209.239.120.72
  341. upenload.co 141.8.224.183
  342. userbasekde.org 173.224.112.44
  343. uts0q6nerl54tk39p284j.com 127.0.0.1
  344. valgo.co 209.239.120.72
  345. videograbbey.com 173.224.112.44
  346. vidspot.xyz 209.239.120.72
  347. vigattin.net 119.81.117.174
  348. webclix.in 149.255.62.12
  349. webhostingfrance.net 209.239.120.72
  350. wikiubuntu.com 104.238.129.233
  351. windsribe.com 173.224.112.44
  352. wmxp4sl9vy2nayjgkhp4vut.com 209.239.120.72
  353. wordsnap.asia 54.254.186.101
  354. wwhealthgrades.com 185.53.179.8
  355. wwobi.com 209.239.120.72
  356. wwwdailydeportes.pw 52.0.217.44
  357. wwwdailyforex.com 185.53.179.22
  358. wwwstockcharts.co 185.53.177.11
  359. wwwtemplatesold.com 209.239.120.72
  360. xyinizdenish.in 209.239.120.72
  361. xyzrrentunlock.xyz 209.239.120.72
  362. yogadownload.co 192.64.147.200
  363. yourofferwillapearshortly.com
  364. zerocensorship.co 173.224.112.44
  365. zinzimo.info 88.85.75.107
  366. zlapto.org 173.224.112.44
  367. zwlhost.com 50.28.3.37
  368.  
  369. ________________________________
  370.  
  371. Removal Procedure
  372.  
  373. To have record SBL340361 (172.93.49.77/32) removed from the SBL, the
  374. Abuse/Security representative of incero[dot]com (or the Internet Service
  375. Provider responsible for supplying connectivity to 172.93.49.77/32)
  376. needs to contact the SBL Team by email (use this link) to explain how
  377. the abuse problem has been terminated (we need to know exactly how the
  378. issue has been dealt with and that this abuse problem is fully
  379. terminated). If the abuse problem that caused this listing has been
  380. terminated we will normally remove the listing from the SBL without
  381. delay.
  382.  
  383. It is essential that emails to the SBL Team about this SBL listing
  384. include this exact ticket information in the email Subject:
  385.  
  386. If you are a representative of incero[dot]com, you also need to see:
  387. Current Live incero[dot]com SBL Listings
  388.  
  389. ________________________________
  390.  
  391. The SBL is an international anti-spam system maintained by The
  392. Spamhaus Project and used by Internet networks to protect users from
  393. spam sources and spam services. The SBL lists only IP addresses (not
  394. domains, email addresses, names or anything else). If you are unable
  395. to send email to someone due to this SBL listing, please contact your
  396. Internet Service Provider and show them this page - your Service
  397. Provider needs to contact the Spamhaus SBL team to resolve the issue
  398. (if you are not the Internet Service Provider, please do not contact
  399. us.)
  400. =C2=A9 1998-2017 The Spamhaus Project Ltd. All rights reserved.
  401. Legal | Privacy
Add Comment
Please, Sign In to add comment