Quantcast
Channel: XyliBox
Browsing all 128 articles
Browse latest View live

Image may be NSFW.
Clik here to view.

spamb0x.com, World Wide Spam

• dns: 1 ›› ip: 37.221.170.207 - adresse: SPAMB0X.COMRegistrant Contact Details:SPAM B0X (spam@b0x.com)35030 PardoWestlandMichigan,48185USTel. +363.8601482Fax. +363.8601482LoginNewsBuy accountsMy...

View Article


Image may be NSFW.
Clik here to view.

adminshop2013.com (Carder shop)

• dns: 2 ›› ip: 98.139.135.22 - adresse: ADMINSHOP2013.COMAdmin Name: Admin PrivateRegContactAdmin Address: PO Box 61359Admin Address: registered post accepted only Admin Address: SunnyvaleAdmin...

View Article


Image may be NSFW.
Clik here to view.

Counterfeit euro notes

500:100:50 Euro Hologram:According to carders, EURO is the hardest currency to counterfeit.See also...

View Article

Image may be NSFW.
Clik here to view.

Win32/Pikboclick.A (Trojan.Clicker)

Sample: https://www.virustotal.com/file/9a3fb37aae8e5784a0a968c974a148b7cff875b92fd8917d840accc7e0c8066b/analysis/Unpack:...

View Article

Image may be NSFW.
Clik here to view.

Alina 3.4 (POS Malware)

The malware come from: http://vxvault.siri-urz.net/ViriFiche.php?ID=23179Hosted on the site of a deputy.GetPCname:Create a mutex:Create /%appdata%/java.exeIf the malware can't he will try with...

View Article


Image may be NSFW.
Clik here to view.

Phish-BankFraud (EDF, CAF, and now Carrefour)

These days they do EDF+CAF and back with Carrefour. EDF: http://www.phishtank.com/phish_detail.php?phish_id=1720045 > 2/33bigcave.php:$send="Ayoub.boos7@hotmai1.fr";$subject="EDF : $ip";$from="From:...

View Article

Image may be NSFW.
Clik here to view.

Serenity Scanner (Private AV Checker)

Serenity Scanner is the new project of Oakley.• dns: 1 ›› ip: 37.221.163.154 - adresse: SERENITYSCANNER.COMAdvert:Homepage:Register:Homepage (when logged)Scan:Report...

View Article

Image may be NSFW.
Clik here to view.

Phish-BankFraud (Orange)

Found on a compromised server who run Wordpress.It's the same actor as http://www.xylibox.com/2013/02/phish-bankfraud-edf-caf-and-now.htmlBut instead of EDF, Orange is targeted.Phishing...

View Article


Image may be NSFW.
Clik here to view.

Plastic Services: Fake United States Cards

Found this guys who seem to de severals account on the same forum, he do credit cards and fake driver license:Connecticut:Florida:New Jersey:Pennsylvania:Rhode Island : Ohio :Wisconsin:Credit...

View Article


Image may be NSFW.
Clik here to view.

You're valentine is a carder

Small research done on severals compromissed RDP (and compromissed machines include a Medical one)Mail...

View Article

Image may be NSFW.
Clik here to view.

Citadel cracked builder ?

Found recently this on a carding forum.No idea if it's true or...Многие тут знают историю того, как создатель цитадели AquaBox киданул меня и лишил поддержки по причине того, что я задолбал обращаться...

View Article

Image may be NSFW.
Clik here to view.

Phish-BankFraud: RDP Spam

I've already do severals posts about EDF phishings:Phish-BankFraud/PHP.Mailer/PHP.ShellPhish-BankFraud (EDF+CAF)Phish-BankFraud (EDF, CAF, and now Carrefour)Still active:But this time let's see one...

View Article

Image may be NSFW.
Clik here to view.

Spamming on compromised RDP

Sometime hackers lock the compromised RDP to avoid others hackers to use it,on this screenshot: 497400 emails sent.Subject: Director Telex/Foreign Operation (OB)Attn: ,Sometimes, I do wonder if you are...

View Article


Image may be NSFW.
Clik here to view.

Carding on compromised RDP

I don't think i need to explain the screenshots.---No mail found on this one:---And too many others, logs are full of mails adress and credit cards informations...

View Article

Image may be NSFW.
Clik here to view.

Phish-BankFraud EDF again and again

Small fast post.EDF phishers are still active.http://www.phishtank.com/phish_detail.php?phish_id=1744379chichi.php: $send="vbv.se2013@gmail.com,x-vbv2013@voila.fr";Dump:...

View Article


Image may be NSFW.
Clik here to view.

octavian.su (carder shop)

Adv:domain: OCTAVIAN.SUnserver: fns1.dnspark.net.nserver: fns2.dnspark.net.state: REGISTERED, DELEGATEDperson: Private Persone-mail: fpolev@mail.ruIP: 186.2.160.6inetnum: 186.2.160/22status:...

View Article

Image may be NSFW.
Clik here to view.

Liberty Reserve phishing

Since some days i receive Liberty reserve (a Costa Rica-based payment processor) phishings, i usually don't see LR phishs.no_reply@libertyreseve.comRecevied yesterday, 13.3.7 (07/03/13)  Leading on a...

View Article


Image may be NSFW.
Clik here to view.

Kawaii Security (カワイイセキュリティ)

I recently came across a book called Kawaii Securityhttp://pandalabs.pandasecurity.com/kawaii-security-japan-is-different/I don't understand Japaness but the book is quite nice, paper quality is very...

View Article

Image may be NSFW.
Clik here to view.

VMADUMPS (Carding shop)

Another carder shop, similar to dumpslogs, they sell track2.vmadumps.cc - 80.82.64.21Registrant Contact:noneonofrio castaldi ()Fax:via DOMENICO CUCCHIARI nr.60rome, rome 00159ITCreation date: 20 Sep...

View Article

Image may be NSFW.
Clik here to view.

Embosser and BSR

You guessed it i bought some new toys for my cybercrime object collection...The first is a PVC ID Credit Card Embossing  machine, who costed me 275,48 EUR:Manual:Tools:Demo-card:Machine:And A barcode...

View Article
Browsing all 128 articles
Browse latest View live