Dynamoo's Blog
Malware, spam, scams and random stuff, by Conrad Longmore.
Showing posts with label
Iran
.
Show all posts
Showing posts with label
Iran
.
Show all posts
Tuesday, 24 October 2017
Malware spam: "Order acknowledgement for BEPO/N1/380006006(2)"
›
A change to the usual Necurs rubbish, this fake order has a malformed .z archive file which contains a malicious executable with an icon t...
Friday, 26 June 2015
Malware spam: "Order Confirmation RET-385236 250615" / "donotreply@royal-canin.fr"
›
This fake financial spam comes with a malicious payload: From : [1NAV PROD RCS] [mailto:donotreply@royal-canin.fr] Subject : Order Conf...
Monday, 14 October 2013
Malware sites to block 14/10/2013
›
It's been a while since I trawled around the activities of the "Amerika" gang , but here is a new set of malicious domains a...
Wednesday, 5 December 2012
Zbot sites to block 5/12/12
›
These domains and IPs are involved in malware distribution, especially the Zbot trojan. Most are using the nameservers in the dnsnum10.com...
Friday, 29 July 2011
"Iranian" Advanced Fee Fraud
›
Claiming to come from Iran, but actually originating from 115.249.131.254 in India, this allegedly Iranian scam is just a new twist on the N...
›
Home
View web version