s0tet
PIRT Handler
 Joined: May 21, 2005 Posts: 2945
|
Posted: Fri Oct 10, 2008 5:47 pm Post subject: [PIRT#990812] PayPal on 147.52.182.4 / AS6867 / web.ve |
|
|
Phish Alert Full Report: /PayPal_phish990812.html Changed status to confirmed phish.Consumed following related reports:
[989799] http://111t1qcgkcv3868ws3.web.ve/cmd-confirm
IP Converted: 147.52.182.4
dword = 2469705220
hex1 = 0x9334b604
hex2 = 0x93.0x34.0xb6.0x4
oct = 0223.064.0266.04
View CIDR AS6867 Report: http://www.cidr-report.org/cgi-bin/as-report?as=6867
"6867 | GR | ripencc | 1996-12-11 | UCNET University of Crete"<br />
Extended information for AS6867:
State/Province:
Country: gr
Responsible Domain: ucnet.uoc.gr
Abuse Email: postmaster@uoc.gr
www.paypal.com.rzgq1s90rmf7rzgnr.111t1qcgkcv3868ws3.web.ve is a fraudulent subdomain setup for PayPal phishing. Alerting owners of www.web.ve.WHOIS of web.ve
Titular:
Merien Van der Velden (www.web.ve-dom) nameminesales@gmail.com
MHJ Van der Velden
Ligulastraat 21
Oosterhout gem Nijmegen NL
28549264 x+316
Nombre de Dominio: www.web.ve
Contacto Administrativo:
Name Mine (www.web.ve-adm) nameminesales@gmail.com
Name Mine LLP
DEPT 108 UNIT 9D1, CARCROFT ENTERPRISE PARK, STATION ROAD
Doncaster UNITED KINGDOM
+44 - 241411046 x+44
Contacto Tecnico:
Name Mine (www.web.ve-tec) nameminesales@gmail.com
Name Mine LLP
DEPT 108 UNIT 9D1, CARCROFT ENTERPRISE PARK, STATION ROAD
Doncaster UNITED KINGDOM
+44 - 241411046 x+44
Contacto de Cobranza:
Merien Van der Velden (www.web.ve-bil) nameminesales@gmail.com
MHJ Van der Velden
Ligulastraat 21
Oosterhout gem Nijmegen NL
28549264 x+316
Fecha de Vencimiento: 2009-01-19 09:56:40
Ultima Actualizacion: 2007-04-08 05:42:53
Fecha de Creacion: 2007-01-19 09:56:40
Estatus del dominio: ACTIVO
Servidor(es) de Nombres de Dominio:
- ns1.newnameserver.com
- ns2.newnameserver.com
NIC-Venezuela - CNTI
http://www.nic.ve
| Quote: | | http://www.paypal.com.rzgq1s90rmf7rzgnr.111t1qcgkcv3868ws3.web.ve/cmd-confirm/update_ok.php |
|
|