| Author |
Message |
dr stephen williams
Baiting Guru

Joined: 06 Aug 2007
Posts: 16750
Location: Dreadful Hater-ville

|
Posted:
Tue May 20, 2008 3:00 am |
  |
http://211.182.3.85/eppicard.com/sec/online/ is a copy of https://eppicard.com/ Text and graphics lifted directly.
This appears to be a phishing site from South Korea. Do we kill phishing sites? Also, should I report this to Alan?
I received a phishing email with a link to this site:
| Quote: |
From: [email protected]
Subject: **SPAM** EPPICard - Being informed is your best defense!
Date: May 19, 2008 5:34:51 PM GMT-06:00
To: iXXXXX
Return-Path: <[email protected]>
Received: from localhost by maia with LMTP; Mon, 19 May 2008 23:34:52 +0000
Received: from mx3.[74.52.209.130]) by.com (Switch-3.1.6/Switch-3.1.0) with ESMTP id m4JNYqbw013064 for <XXXX>; Mon, 19 May 2008 23:34:52 GMT
Received: from eppicard.com ([74.231.181.133]) (authenticated user [email protected]) by smeta.ru (Kerio MailServer 6.3.1) for ; Tue, 20 May 2008 03:33:58 +0400
X-Spam-Status: Yes, hits=6.4 required=4.0 tests=AWL: -1.075,BAYES_50: 1.567,HTML_IMAGE_ONLY_28: 1.9, HTML_MESSAGE: 0.001,HTML_MIME_NO_HTML_TAG: 1.082,MIME_HTML_ONLY: 0.001, NORMAL_HTTP_TO_IP: 0.175,URIBL_PH_SURBL: 2.8,TOTAL_SCORE: 6.451
X-Spam-Flag: YES
X-Spam-Level: ******
X-Original-Subject: EPPICard - Being informed is your best defense!
Message-Id: <[email protected]>
Mime-Version: 1.0
Content-Type: text/html; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
Mh-Spam-Sp: Clean
Mh-Spam-Bc: Clean
Mh-Spam-Confidence: 99.99300%
X-Virus-Scanned: ClamAV version 0.91.2, clamav-milter version 0.91.2 on mx3.mhostmail.com
X-Virus-Status: Clean
Attention:
Please beware that there are current reports of phishing emails. Phishing is a type of scam designed to steal your personal information.
We will never request your information such as social security number, card number or PIN through email. Please do not respond to email
requests for this information. Being informed is your best defense. See the Protect Yourself link for ways of avoiding identity theft.
To help protect your account, we may occasionally need to take immediate action to block transactions in a particular area of the country.
For your protection, we have temporary deactivate your MasterCard/Debit Card.
How to reactivate your card
Activate your card online.
Enter your card number and Personal Identification Number (PIN)
After your card is activated, you are directed to additional information and shopping discounts |
Who is?
| Quote: |
lookup failed 211.182.3.85
Could not find a domain name corresponding to this IP address.
Domain Whois record
Don't have a domain name for which to get a record
Network Whois record
Queried whois.apnic.net with "211.182.3.85"...
% [whois.apnic.net node-1]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html
inetnum: 211.172.0.0 - 211.199.255.255
netname: KRNIC-KR
descr: KRNIC
descr: Korea Network Information Center
country: KR
admin-c: HM127-AP
tech-c: HM127-AP
remarks: ******************************************
remarks: KRNIC is the National Internet Registry
remarks: in Korea under APNIC. If you would like to
remarks: find assignment information in detail
remarks: please refer to the KRNIC Whois DB
remarks: http://whois.nic.or.kr/english/index.html
remarks: ******************************************
mnt-by: APNIC-HM
mnt-lower: MNT-KRNIC-AP
changed: [email protected] 20000607
changed: [email protected] 20010606
status: ALLOCATED PORTABLE
source: APNIC
person: Host Master
address: 11F, KTF B/D, 1321-11, Seocho2-Dong, Seocho-Gu,
address: Seoul, Korea, 137-857
country: KR
phone: +82-2-2186-4500
fax-no: +82-2-2186-4496
e-mail: [email protected]
nic-hdl: HM127-AP
mnt-by: MNT-KRNIC-AP
changed: [email protected] 20020507
source: APNIC
inetnum: 211.182.0.0 - 211.182.255.255
netname: PETINET-KR
descr: BUSAN EDUCATION RESEARCH & INFORMATION CENTER
country: KR
admin-c: JA68-KR
tech-c: JA68-KR
status: ALLOCATED PORTABLE
mnt-by: MNT-KRNIC-AP
remarks: This information has been partially mirrored by APNIC from
remarks: KRNIC. To obtain more specific information, please use the
remarks: KRNIC whois server at whois.krnic.net.
changed: [email protected]
source: KRNIC
person: JinYoung An
address: Yangjeong 2-dong Busanjin-gu BUSAN
address: 273-57
country: KR
phone: +82-51-860-6255
e-mail: [email protected]
nic-hdl: JA68-KR
mnt-by: MNT-KRNIC-AP
changed: [email protected]
source: KRNIC
DNS records
DNS query for 85.3.182.211.in-addr.arpa returned an error from the server: ServerFailure
No records to display |
|
_________________
x10 Acra-Ctnu Tgo-Pnjari Lgos-Ctnu Lgos-Ynde Lgos-Mndmba Lgs-Prku PrtHrcrt-Abche Lgos-Nttngu Bmko-Ctnu (wDQ) Frnce-Dbln (wPadme)
x2 x7 x7 x6 Team Turd Lgs-Dla Bnn-Lbra Acra-Dkar Dkr-Bnjul- Dkr-Tmbktu-Abche-Adre-N'djmna Lgos-Cairo-Aswn-Jail Ctnu-Lgos Ctnu-acra Lgos-Jbrg-Drbn-Prt-Elzbth-CT-Sprngbk-CT-Drbn-CT-Hrre-Lska-DsSlm-Mmbsa-Nirbi-Kmpla 28,510 Miles
x2 x6 x4 Team Woody Acra-Sngpre Acra-Dkr-Rsso-Bmko Acra-Ctnu
Lgos-Dkr-Rsso (wKLG)
x22 SS x3 x303 :
  
Last edited by dr stephen williams on Tue May 20, 2008 1:09 pm; edited 2 times in total |
|
|
|
 |
Akai Ryu
Chuck Norris

Joined: 11 Jun 2007
Posts: 1357

|
Posted:
Tue May 20, 2008 5:42 am |
  |
|
|
|
 |
|
|
|
View next topic
View previous topic
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
|