Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Move ajstelecom.com.mx to wildcard domain list #362

Conversation

g0d33p3rsec
Copy link
Contributor

Domain/URL/IP(s) where you have found the Phishing:

https://ajstelecom.com.mx/M1YyMjRKOXEwdDczNFo=
https://ajstelecom.com.mx/M1UyRjBFNkg3WTV2MHM=
https://ajstelecom.com.mx/M0cyYzVtMUgyNDJaMGw=
https://ajstelecom.com.mx/M3gyTzVGMlYxRjBON2U=
https://ajstelecom.com.mx/M04yeDVwMHg2QTRuM1Q=
https://ajstelecom.com.mx/M1MyMTVvMTA4YjhoNnE=
https://ajstelecom.com.mx/M3YyODVqMWw4VjgzNkg=
https://ajstelecom.com.mx/M1YwTDk5MkgxZzE1MXY=
https://ajstelecom.com.mx/M0syMjVqMWI5NDl4N0I=
https://ajstelecom.com.mx/M0kybDVGMUk3UzJrNDM 
https://ajstelecom.com.mx/M1AySjRCODM1czBnNUU=
https://ajstelecom.com.mx/Mnc5MzF0MFI5WjhFNFI= 
https://ajstelecom.com.mx/M2wxRjNYMmgwVDJ1MXo=
https://ajstelecom.com.mx/M20yUjU0MXU0TzRYNWc=
https://ajstelecom.com.mx/Mm04YTJpOHU0STloNHQ=
https://ajstelecom.com.mx/Mks5QjhONXEyMjcyMmE= 
https://ajstelecom.com.mx/M00ybzI2NG83YjdpNDg=
https://ajstelecom.com.mx/M0cwTDNGOXMxZzBWMGY=
https://ajstelecom.com.mx/MzIyMDV6MkE3ODFxMzg=
https://ajstelecom.com.mx/M3EyYTR6Nkw3djdaM0Y=
https://ajstelecom.com.mx/M1gyRDVBMHI0TjQyMVQ=
https://ajstelecom.com.mx/M3AyazVkMlAzbTdHNW0=
https://ajstelecom.com.mx/MzgyQTRuMzU0ODBtNG4=
https://ajstelecom.com.mx/MnA0OThTMzA1RTRpN2w=
https://ajstelecom.com.mx/M3gxRTIxODkxdzFLNmQ=
https://ajstelecom.com.mx/M04xNjJOMkQzbzk2NUs= 
https://ajstelecom.com.mx/MzcydzE3N0IyNDVnOFQ= 
https://ajstelecom.com.mx/M0wxVDJIMFc0ZDBNMzQ=
https://ajstelecom.com.mx/M3kxazd6NEcwZjBaNHI=
https://ajstelecom.com.mx/M04yTDU5M0gzMjJsMU0=
https://ajstelecom.com.mx/Mkk5TjhHODQyZTlpNmM= 
https://ajstelecom.com.mx/M3QyNTQ2Nm00MzZRN3g=
https://ajstelecom.com.mx/M3AyazVkMlAzbTdHNW0=
https://ajstelecom.com.mx/M1kxQThCNTYzYjMzNEk=
https://ajstelecom.com.mx/M1QxUzExMzM0TzJsNnA=
https://ajstelecom.com.mx/M1IyMTVQMHc2cDRkOHU=
https://ajstelecom.com.mx/M2wyNjU5MUUzNjdLMXc=
https://ajstelecom.com.mx/M20yVTVrMm01MjN3N3I=
https://ajstelecom.com.mx/M1kyMjUyM24yMTFaMDY=
https://ajstelecom.com.mx/M3cyTjVlMjMyRjVhNHg=
https://ajstelecom.com.mx/M3QyMDU1Mnk1MzNFN1A=
https://ajstelecom.com.mx/M3MyTTI0MVYxdjdzNUc=
https://ajstelecom.com.mx/M2UwNDNBN0w1YThGNUw=
https://ajstelecom.com.mx/M00ybzI2NG83YjdpNDg=
https://ajstelecom.com.mx/M00xSDlINkg5VDZLNXU=
https://ajstelecom.com.mx/M1IyZzRMMlY3NDZ5NHo= 
https://ajstelecom.com.mx/M3gxRTIxODkxdzFLNmQ=
https://ajstelecom.com.mx/M0MyQzQzNlY0UTByMW0=
https://ajstelecom.com.mx/M0MyUDVpMmswWDh6MXQ=
https://ajstelecom.com.mx/M0UwRzhQNHY2eTM3OFc=
https://ajstelecom.com.mx/M2wyeTVMNHoxMThVMlM=
https://ajstelecom.com.mx/MzQyMDV6M3U3TzhjMEw= 
https://ajstelecom.com.mx/M1EyMzVGMlg1bjVhOXY=
https://ajstelecom.com.mx/M2QyVDNjOXIzVDJVOHE=
https://ajstelecom.com.mx/M0IyNDNaM0M4bTU4NHE=
https://ajstelecom.com.mx/M2YybzVONDI3azV5MjY=
https://ajstelecom.com.mx/Mlk4VjVvNDE4VDViODc=
https://ajstelecom.com.mx/MnI4bjNGNDM5ejJQMDk=
https://ajstelecom.com.mx/M04ycjF3OHo1ODZBOW8=
https://ajstelecom.com.mx/MnM4bjN6NHI0UTNwN0c= 
https://ajstelecom.com.mx/M2IxQzdZMnYxVjEzMGU=
https://ajstelecom.com.mx/M2IxMzhHODUwSjIzMks=
https://ajstelecom.com.mx/M2oyaDVzNWg2ejNaNlo=
https://ajstelecom.com.mx/MzkybzUzMnI0SDlPOEI=
https://ajstelecom.com.mx/M0QyZDVCNWE2QzJBNzY=
https://ajstelecom.com.mx/M1EybDVYMzYwdDEyOXU=
https://ajstelecom.com.mx/M00yVTVJMUEzRjVINDg=
https://ajstelecom.com.mx/M1YybTVLM3YxcDBNMGI=
https://ajstelecom.com.mx/M00yODVBMjc1QTVYOXc=
https://ajstelecom.com.mx/M1gyNjV1MWo0MTRwMXI=
https://ajstelecom.com.mx/M0QydzRKN3gxRDlFNUw=
https://ajstelecom.com.mx/M1QyTjRLMHM0bzJNNTY=
https://ajstelecom.com.mx/M1YyMDVRMjgzTDJoOEk=
https://ajstelecom.com.mx/MnQ3MDdFMWQ5SzE4NG8= 
https://ajstelecom.com.mx/M2QyUTRWMXoxeDNmNmE= 
https://ajstelecom.com.mx/M0cyQzVoMkk5ODI4MnE=
https://ajstelecom.com.mx/M0oyTzJaNUc1TTRNMWE= 
https://ajstelecom.com.mx/M3gyMzVKMmw3azIyMnQ=
https://ajstelecom.com.mx/M3UycjVqMnA0bzdNMWI= 
https://ajstelecom.com.mx/M3oyZDU3MXk0TjFVOGw=
https://ajstelecom.com.mx/MzIxMzJnOVEyOTBwNXI=
https://ajstelecom.com.mx/M0ExbjM1MWE5VzdrNEE=
https://ajstelecom.com.mx/MzMxTzA3N2wwTDB5M08=
https://ajstelecom.com.mx/M3IybTV4Mnc0bzJSMUo= 
https://ajstelecom.com.mx/M1AyVTR2NlA5TDVMMkg= 
https://ajstelecom.com.mx/M20yUjJLNUc1UTQ4MVY= 
https://ajstelecom.com.mx/M0kyZTVmMXYybDZCMTU=
https://ajstelecom.com.mx/M1oyRzVVM2wyQzBhM3M=
https://ajstelecom.com.mx/M3oyejVvMnA1YTBXOXA= 
https://ajstelecom.com.mx/MVk5WDNwNlgzYTloMmQ= 
https://ajstelecom.com.mx/M1EyQTRCMFE0YjJjNTg=
https://ajstelecom.com.mx/M2UyMjVZNG40VjBCMmE=
https://ajstelecom.com.mx/M2EyOTV2NWM1ejM5MVY=
https://ajstelecom.com.mx/M20ySTV4M1E5YjVWM1Q=
https://ajstelecom.com.mx/M1QyYjVEM3g5VzVOM3E=
https://ajstelecom.com.mx/M3cydzVrMnk5aDhUN3I=
https://ajstelecom.com.mx/M1gyNTU0NUs1dDl6MFc=
https://ajstelecom.com.mx/M1YyaDVqMlA5ZzhvNzI=
https://ajstelecom.com.mx/M3cybDRmOU03cTIyODc=
https://ajstelecom.com.mx/MzUyeTBWNzQyazE3OFA=
https://ajstelecom.com.mx/M00xbzJiNjYzZTJhMTI=
https://ajstelecom.com.mx/MzIwNjcxOTkwcTNFM2g=
https://ajstelecom.com.mx/M28yaDFLM0syczFhNEQ=
https://ajstelecom.com.mx/M20xdDlkMUk1bDFCMlM=
https://ajstelecom.com.mx/M3YyUjVoNFQzcTNhM0k= 
https://ajstelecom.com.mx/MzMxaDc2M2w2ZDlxOHg=
https://ajstelecom.com.mx/MzcyZjVhNWQ2eDhVMTM=
https://ajstelecom.com.mx/M2QyZjVrNVA4RzJtOFc=
https://ajstelecom.com.mx/M3cwUDU1NDM4ajkzNG0=
https://ajstelecom.com.mx/M3MyUTVKNWc4OTE5MGg= 
https://ajstelecom.com.mx/M2IxbjRUOVcxOTRSNnk=
https://ajstelecom.com.mx/MzIydDV4NWQ2dTBzNEE=
https://ajstelecom.com.mx/M2kyVzVYNWw1dDJLN3I=
https://ajstelecom.com.mx/M0YyMjVBMm84SDNkMXQ=
https://ajstelecom.com.mx/M0cySjVrNWk1UTY3OUQ=
https://ajstelecom.com.mx/MjM5dDJNOVo4OTE3MFY=
https://ajstelecom.com.mx/M24ycDRSOGg4WTNWNGs=
https://ajstelecom.com.mx/M0oyeTNlMnQ1MDlUMGk= 
https://ajstelecom.com.mx/M3cyZzN6NXIwMDdvNUM=
https://ajstelecom.com.mx/MUIwVjdHMGk3RDdyMjg=
https://ajstelecom.com.mx/MzEyZDVlMTc1VzlRMjY= 
https://ajstelecom.com.mx/M2gyaTR4Mk84QjJDMnI=
https://ajstelecom.com.mx/M3kxVjhzOWg1UDBaM1k=
https://ajstelecom.com.mx/M3YyVzVSNFIzMDdjNVg=
https://ajstelecom.com.mx/M3AydzRxNHkwRjMyMjM= 
https://ajstelecom.com.mx/M2YxaTZ5M2Q3NzVYMHY=
https://ajstelecom.com.mx/M0QxNzlNNUI4MzBGMHY=
https://ajstelecom.com.mx/M0cyaDVSMUg3RzZRNUI=
https://ajstelecom.com.mx/M1UyQTV3NXoxUDhnOWg=
https://ajstelecom.com.mx/MmQ4QThWMlM5aTJGMU4=
https://ajstelecom.com.mx/M3AwajhpMzk2QTRqNjk=
https://ajstelecom.com.mx/OW0wTThIMFMxWA==
https://ajstelecom.com.mx/MzIyMzRnOEMzRTh0OEs=
https://ajstelecom.com.mx/M0EwTjRNM083WDg1M1I=
https://ajstelecom.com.mx/M0oyYTRJOHo4WDlwNG8=
https://ajstelecom.com.mx/MzUyQzRTOFExSTUwN0w=
https://ajstelecom.com.mx/M2oyeTVIMjgwcDlONXk=
https://ajstelecom.com.mx/M3QxNzlkMXU1Wjl5OUw=
https://ajstelecom.com.mx/M0wyTjRVM3UyeDNQNEI=
https://ajstelecom.com.mx/MzQySTVxNEM2Mjd2N0k=
https://ajstelecom.com.mx/MzAxNjhzN3o1NDRUMVM=
https://ajstelecom.com.mx/M0kycjJWNk01dDVINXA=
https://ajstelecom.com.mx/M0gyNjVXM0QxbDI2OFc=
https://ajstelecom.com.mx/M1cyTzVkMVc4cDNoNGk=
https://ajstelecom.com.mx/M1kyeTFkOVY3MzFZNEE=
https://ajstelecom.com.mx/M1oyZTV6NVg3cjdEMk4=
https://ajstelecom.com.mx/M04yODViNHgxODlOMDQ=
https://ajstelecom.com.mx/M2oyOTVUMVg4dzRnMVI=
https://ajstelecom.com.mx/MnQ5MjhPOEUyUDlRNjY=
https://ajstelecom.com.mx/M0QyWDVGM0cwcDhENFc=
https://ajstelecom.com.mx/M1UyNjMyNjIyZTRjODM=
https://ajstelecom.com.mx/M3YySTQxNlQ1UTNpNDg
https://ajstelecom.com.mx/M0cyQzVXMGkzdzRFOFM=
https://ajstelecom.com.mx/M3gyTzVGMlYxRjBON2U=
https://ajstelecom.com.mx/M3EyQjVKMW40TzRlNGY=
https://ajstelecom.com.mx/MzgyRjU2NHc3TjlhMHE=
https://ajstelecom.com.mx/MzUyTDQ1OFozaDFMOGI=
https://ajstelecom.com.mx/M20yUzVHMFk3ODF0MWc= 
https://ajstelecom.com.mx/MzYyTDV4M3Q3djRRN3o=
https://ajstelecom.com.mx/MzgyazVXNUk3WDlrNmM=
https://ajstelecom.com.mx/M3EycDVPMlU4djRsNUE=
https://ajstelecom.com.mx/M2QyVTU0MkQxODN2OFc=
https://ajstelecom.com.mx/M3oyMDFiNWYwSzZEMXE=
https://ajstelecom.com.mx/M0UyZzVqMUE5ZzBPNzI= 
https://ajstelecom.com.mx/M0EyYzVjNUc0MTNtNDg=
https://ajstelecom.com.mx/MzkxODJ1MkkzdDllNTQ=
https://ajstelecom.com.mx/M3YxdTBRMG8wRTJFOWc=
https://ajstelecom.com.mx/M3kyYzU5NnM4NDh0MlE=
https://ajstelecom.com.mx/M3kyYzU5NnM4NDh0MlE=
https://ajstelecom.com.mx/M2QyQzVZNjkwdDk2OGk=
https://ajstelecom.com.mx/Mm84QjJUOEw0MzlUNWc=
https://ajstelecom.com.mx/M3YyVzNHNEY3WjJWMXk=
https://ajstelecom.com.mx/M2wyZDU4NmI3TzRWNWo=
https://ajstelecom.com.mx/MzMyMzJiM2U4YTY3NEI=
https://ajstelecom.com.mx/M0MyaDVvN24wODRmNEk=
https://ajstelecom.com.mx/M3YyYzVENUk2Qjh4MUs=
https://ajstelecom.com.mx/MzQyUDV2MUQ5eTdHMWY=
https://ajstelecom.com.mx/M1QyRzVUNWw1ajExNTI=
https://ajstelecom.com.mx/MzUycDVvNUwxZzN0MEk=
https://ajstelecom.com.mx/M0gxZTlrMUk0MTJKNGs=
https://ajstelecom.com.mx/MkM5cjh1OFIybDlONmU=
https://ajstelecom.com.mx/M0YxdjlsOWc2TzBKMXY=
https://ajstelecom.com.mx/M1EyTDF6OVk1TzNUNmU=
https://ajstelecom.com.mx/M3YyUTVUNzcwMDIzM1g=
https://ajstelecom.com.mx/MzgyWjRUMjg4NjJmMjE=
https://ajstelecom.com.mx/M04yZDRGNk4zNjhuOTg=
https://ajstelecom.com.mx/M3EyUDV6MXU5RTh6OHI=
https://ajstelecom.com.mx/M2oyWTU4NVQ1MDFuOVM=
https://ajstelecom.com.mx/MzAydjU5MWw4SjMzMVg=
https://ajstelecom.com.mx/M1QyaTV1N3IxVjE1OXg=
https://ajstelecom.com.mx/M2QySjVSNW82NjhMMTU=
https://ajstelecom.com.mx/M0QyUTU1M3U5eTlzNVg=
https://ajstelecom.com.mx/MzUyejVxN080VDJZMDc=
https://ajstelecom.com.mx/MzYyRjV2N0wwNDJsNlY=
https://ajstelecom.com.mx/MzEyVzJqNDA2SDlhMXc=
https://ajstelecom.com.mx/M2YyTjRWM1U1RDJ2NXc=
https://ajstelecom.com.mx/M0IyZjNQNFg3QjRpN1Q=
https://ajstelecom.com.mx/MzgybDV1N3E0YTh2Nmg=
https://ajstelecom.com.mx/M2cyVzU5NzY1YzVEOGw=
https://ajstelecom.com.mx/M0cyUDVlN0g0czBpN1I=
https://ajstelecom.com.mx/MzMycTVJM1Q5TDVMM2s= 
https://ajstelecom.com.mx/M1QyMzV3N0QzSzQ4OTQ=
https://ajstelecom.com.mx/M1gySTRlMnQ4OTJIMlI=
https://ajstelecom.com.mx/M2kyQjViNVM1ZjZQOWg=
https://ajstelecom.com.mx/M3EyYjV5N3AxejFLMVU=
https://ajstelecom.com.mx/M3IyYTRTMlYwNzdnNm4=
https://ajstelecom.com.mx/M1QyYjUzNnU2eDlGMjI=
https://ajstelecom.com.mx/M28xNjJiNkExZThXM20=
https://ajstelecom.com.mx/M3IyUDV0NzMwYzRhMEg=
https://ajstelecom.com.mx/M3IyRDU0Nnc2TjFSNmo= 
https://ajstelecom.com.mx/MzkyTzNBNGk5MjBTNHE=
https://ajstelecom.com.mx/M0syODV5Nk40YzFGMUE=
https://ajstelecom.com.mx/M1oyajVLMDk2ajdZNHk=
https://ajstelecom.com.mx/M0sxczNNMGs1YTM0NVk=
https://ajstelecom.com.mx/M1AyUjVXN2kzaTVnMzM= 
https://ajstelecom.com.mx/M0cyTzFhM0w2RzRIMXg=
https://ajstelecom.com.mx/M3EyUjV3Nlg2azFxNzA=
https://ajstelecom.com.mx/M1oyRDVUOXg3VDloOWs=
https://ajstelecom.com.mx/M3oyYzU0OEQ5WTVXNnE=
https://ajstelecom.com.mx/M20yUTJmOFE3ZzhXNUg=
https://ajstelecom.com.mx/M0syeTUxNEU0djVPNTA=
https://ajstelecom.com.mx/MzIyTDM1NmM0SzVRMHk=
https://ajstelecom.com.mx/M2IxcDFrNUQ2cjdvOGI=
https://ajstelecom.com.mx/MzcyWDI2MXM1YjRXNWI=
https://ajstelecom.com.mx/MzMyVjVTMjIxejd2M3E=
https://ajstelecom.com.mx/MzQxNDhnNUo1djdOOVI=
https://ajstelecom.com.mx/MnM5bjdEMTI1czFYN1M=
https://ajstelecom.com.mx/MlM4QjRqNEQxYzRlMUs=

Impersonated domain

https://facebook.com/
https://www.instagram.com/
https://www.betway.co.za
https://ff.garena.com
https://aviatorgame.net/
https://www.getmailbird.com/setup/access-bluewin-ch-via-imap-smtp
https://www.microsoft.com/en-us/microsoft-365/onedrive/online-cloud-storage
https://www.office.com/
https://www.google.com/gmail/about/
https://www.tiktok.com/en/
https://www.1voucher.co.za/
https://www.paypal.com/
https://www.nbc.com/chicago-fire
https://m.facebook.com/empleosriverahn/
https://ptfi.co.id/
https://www.ufs.ac.za/
https://ww1.ukzn.ac.za/
https://www.tut.ac.za/
https://www.uwc.ac.za/
https://www.ufh.ac.za/
https://www.unisa.ac.za/
https://www.wsu.ac.za/
https://www.cput.ac.za/

Describe the issue

It has been a week and the only response I've received from the host is a ticket number assignment, which was on March 21, 2024. The domain is now detected by 13 engines on Virus Total and has been tagged as a "known infection source" and "phishing and fraud". At this point, I feel it is probably best to heed the advice @spirillen gave me in #353 and move this domain to the wild card list until either the host or site owner can properly respond and get the situation under control.

Related external source

https://www.shodan.io/host/162.241.63.224
https://www.virustotal.com/gui/domain/ajstelecom.com.mx
https://urlscan.io/result/b370d0cb-e11f-4025-9689-7b0ce90aa96c/
https://urlscan.io/result/e2705202-9baa-4df5-8265-482c1527fe9f/
https://urlscan.io/result/a2624d51-689f-4940-8360-77e82ce68d23/
https://urlscan.io/result/5f69456f-dc43-407d-aab5-837c36d9dd38/
https://urlscan.io/result/b2b1c2ff-3ce1-4e2d-b381-4dbf88b07380/
https://urlscan.io/result/961d509f-61cd-4a13-91ef-6e3f2b42fa61/
https://urlscan.io/result/32a36ae2-29d1-47c9-a32e-22c370f2f3ef/
https://urlscan.io/result/c7c8287f-e63d-43a1-9921-5c275c0f8689/
https://urlscan.io/result/e6a6de31-90e7-4100-9207-2f0e82ae0ebc/
https://urlscan.io/result/10a9c663-86ed-4295-8d46-240cb70b8da6/
https://urlscan.io/result/9e9d0a7d-6651-49b5-8721-69e472f6fe02/
https://radar.cloudflare.com/scan/b06fa80b-cc53-4ce7-92b1-548eebb08bb0/
https://urlscan.io/result/e06609b1-8abd-4393-890c-c420405b526f/
https://radar.cloudflare.com/scan/61c40842-fedc-4c5e-8fd3-d387dc4be0a9/
https://urlscan.io/result/aa1fde3f-4eff-4f10-950c-8663f4f4fcdb/
https://radar.cloudflare.com/scan/b55dc186-a9e1-4417-b1e0-e414e8219f2c/
https://urlscan.io/result/002b4d81-700c-4954-bfda-82492bec23c1/
https://urlscan.io/result/a465d9ec-6a55-44c0-be8a-c9fd54fd4234/
https://urlscan.io/result/08ab6a33-d687-46a5-ac63-ac2970127622/
https://urlscan.io/result/8c8c3821-67e3-4639-a120-ef5507adefd4/
https://urlscan.io/result/57c21fce-628b-4e5d-8abe-e354ea0ea9f1/
https://urlscan.io/result/2d7cb5d8-796e-4a35-a03a-e3a129889341/
https://radar.cloudflare.com/scan/cc3fe5ea-3c4c-47e6-9fd6-073e700035e5/
https://urlscan.io/result/2d85beb5-8e17-423f-abfe-0dc37a22f7c8/
https://urlscan.io/result/11ec8ec5-c9ed-43d1-b3f4-586d17dd56ae/
https://radar.cloudflare.com/scan/8e3255a7-1ffd-437a-abe8-3448366ed537/
https://urlscan.io/result/82ab0c44-bfe9-4a0c-9080-c48a58b4a571/
https://radar.cloudflare.com/scan/db22404c-6571-4a3c-9e28-525443681dd1/
https://urlscan.io/result/d4a4c99a-6012-4f40-97c3-6719b988a618/
https://urlscan.io/result/bebd23a5-6e16-4a21-8367-4ae77b1408c2/
https://urlscan.io/result/7f2f7832-4af4-4c45-9f3f-24622ebbc416/
https://urlscan.io/result/36e1c529-1c43-4e88-a382-e3afc4648f76/
https://urlscan.io/result/727ddb11-5299-4501-b3b3-277fce1feb36/
https://urlscan.io/result/84ec271c-be1f-4a77-bff4-200390cb4624/
https://urlscan.io/result/46b04855-4243-4d42-93c4-76f6f3d14df0/
https://urlscan.io/result/22fc3301-011f-47d4-8f0c-8b648dd9c69c/
https://radar.cloudflare.com/scan/180bf741-0503-4913-a62b-1f6a408359c7/
https://urlscan.io/result/ac4daf58-7789-45cc-887e-17e5bdc2e0c6/
https://urlscan.io/result/5c6f7bce-368d-487a-b843-ceb309919553/
https://urlscan.io/result/43476c89-069a-45c1-90f7-59d182a8297f/
https://radar.cloudflare.com/scan/192fa5d8-4f3a-4541-9967-209f5181352d/
https://urlscan.io/result/c4b3024d-2267-4eef-b37b-483bf1904db3/
https://urlscan.io/result/3378b32c-77d5-4af8-8998-a81aa99f5c5d/
https://urlscan.io/result/79785749-56e4-49de-8ec6-8c48bc6f7037/
https://urlscan.io/result/c77ad56f-bfb3-4d0f-80e7-d9d6b318bae7/
https://urlscan.io/result/56c2dfce-830f-4c45-9ecd-9401bb3ecf23/
https://urlscan.io/result/4273bfd7-574e-4b00-8a1c-9934423b74df/
https://radar.cloudflare.com/scan/6ca8575c-9baa-426e-b10a-bbdd45f9f362/
https://urlscan.io/result/a97beb02-534b-4690-8159-501820959287/
https://urlscan.io/result/2cad1120-202f-490c-bd81-d6890f047e7f/
https://urlscan.io/result/c87d595f-7860-44fe-8e69-893a16ca4a1a/
https://urlscan.io/result/db32406f-2704-4c97-b9c3-e1b514a91db9/
https://urlscan.io/result/07034026-a2a7-4023-938b-17f1e528a16d/
https://urlscan.io/result/98a155c7-11be-4a5e-98e6-5bab58ca377f/
https://urlscan.io/result/73ab531d-e6cc-4471-a40a-d0e0130949e1/
https://urlscan.io/result/e6ab7c1f-b58e-4182-bf1a-bb8d3c27cc98/
https://urlscan.io/result/f8fdc9ef-8ae5-4ea0-9e5c-b9427d48cbd3/
https://urlscan.io/result/e22ac587-fe08-4193-8fdb-e473d2bc6058/
https://urlscan.io/result/2fa92928-a5b1-40db-b582-686c6adeee8f/
https://urlscan.io/result/b4c90a46-1dda-4b77-b44b-ef923ca62fd6/
https://urlscan.io/result/82390846-b290-4d15-8a14-a0473cf6268c/
https://urlscan.io/result/fc74bf77-5f04-48b2-b1ee-2efc3634962f/
https://radar.cloudflare.com/scan/99cab95c-ef7e-4342-9599-98afc43c99cd/
https://urlscan.io/result/5781b583-265b-4026-84be-32310625abc8/
https://urlscan.io/result/354cc0e5-1bf8-49b0-bb7d-5d6f67adc014/
https://urlscan.io/result/1397bede-b214-44ee-81f0-0fff26882fbf/
https://urlscan.io/result/56782dcd-4f1c-4099-b812-e731f9a6788c/
https://urlscan.io/result/ad751393-4c85-48cd-93b4-3c1150aa1c56/
https://urlscan.io/result/d51bc477-0479-4839-aad6-c8bb7c72f166/
https://radar.cloudflare.com/scan/6cdedc50-c3b3-4823-bda2-b3df64a3c790/
https://urlscan.io/result/a79529a5-c87d-4f48-9401-abe89809011c/
https://urlscan.io/result/8a0299ec-1013-44ca-af73-b54ee6f400af/
https://urlscan.io/result/2488d36b-99f1-4807-b33b-ef4d02eaaabc/
https://www.virustotal.com/gui/file/0a110c6eeda652a51c99857b60d3b38317386cd131d7e3d490e2e4ca7c649b12
https://urlscan.io/result/38e94839-1bd2-4932-aef7-54b4ef91960d/
https://urlscan.io/result/5648688b-287b-4787-a1f9-44e930ede16b/
https://urlscan.io/result/bd740bdd-10ab-4176-915e-5c3de946574e/
https://urlscan.io/result/7f8b40c0-4b2f-4e98-a09a-ac4e9ba175b6/
https://urlscan.io/result/a2a8122e-6dc2-4a03-9330-f379377d6ba2/
https://urlscan.io/result/3a648225-bc1b-4157-8fe1-01fd7d9961af/
https://urlscan.io/result/be95b6ea-35e3-4c03-8330-b10ac43d54ee/
https://radar.cloudflare.com/scan/ed236db8-584a-496d-b311-32e92f6fa605/
https://urlscan.io/result/3250c3ec-dacb-41bc-96f8-c6499bd88fd6/
https://urlscan.io/result/272a9724-0479-4185-b4aa-674b1103506a/
https://urlscan.io/result/f1c24ff2-a563-4761-bbba-f9be2ec1140c/
https://radar.cloudflare.com/scan/5f931b96-0a64-472a-938a-613fcf47f594/
https://urlscan.io/result/a73ee717-b3a9-46ed-b8b9-23337245eb4f/
https://urlscan.io/result/ca826e1c-f924-434a-875d-f311ec6e2b8b/
https://urlscan.io/result/3ae676a4-d411-4d8b-b3ec-f16fd9e37ef5/
https://urlscan.io/result/d1129c78-43c6-4139-addc-42ea96c1689e/
https://urlscan.io/result/5cdd2c7b-5de5-46b8-b36b-4caf11599c8f/
https://urlscan.io/result/32cafd03-fd8e-4949-ac7d-e91b2fc3f942/
https://urlscan.io/result/72220b92-f399-4008-addf-ab15f104c47e/
https://urlscan.io/result/3d478561-1f11-41f8-9d00-b494a5cf8c44/
https://urlscan.io/result/8a3b9380-5133-4c96-bff1-a2d9152c5187/
https://urlscan.io/result/0c672e1b-9628-4251-b7a6-9a1c2d280417/
https://urlscan.io/result/f7c6bcd9-07b3-4c6e-bc24-95a42d5a0a8d/
https://urlscan.io/result/62c0d8dd-ce2c-4900-a0d6-d475aa2006af/
https://urlscan.io/result/9acac697-736f-4758-855a-da634b7df510/
https://urlscan.io/result/a7292653-447d-4bbb-be04-e1c89954154c/
https://urlscan.io/result/075c56e3-1c2e-45dc-9c88-4e48cbe9f86e/
https://urlscan.io/result/dc387105-885c-439b-b6cb-c4df59611fb2/
https://urlscan.io/result/f9294c20-ecc6-4910-92bd-e64ca6ad558a/
https://urlscan.io/result/1d943413-1932-4cd7-895e-d0ba6ec2337a/
https://urlscan.io/result/a599c887-9f32-48e7-9279-e103d33508a6/
https://urlscan.io/result/2077185e-6cd0-46d1-99e6-94cfdeb3074d/
https://urlscan.io/result/5f00de32-95d8-4b1c-8994-6fffb8c1b853/
https://urlscan.io/result/ff9d4612-5e46-48dc-8f8a-a2e732c7b673/
https://urlscan.io/result/5e6d6734-485c-4b0c-94ab-f586ca1cb808/
https://urlscan.io/result/7b23e361-65a9-449c-88c1-c20b2d2579ef/
https://urlscan.io/result/2736217b-a60b-4487-8958-75d850ba4b9d/
https://urlscan.io/result/4946af48-366b-4012-99ee-929b0c32696a/
https://urlscan.io/result/bbdd81da-f631-4452-9be0-33b4bb588a00/
https://urlscan.io/result/faac00f0-9f78-499b-8d77-192598498b9a/
https://urlscan.io/result/75d0824c-912c-40b0-9d8e-d11063b58b2c/
https://urlscan.io/result/a88a1f4c-84a2-4450-b5bb-346424da4efa/
https://urlscan.io/result/869924a7-ff6d-42d0-ba02-a9d99d6744bd/
https://urlscan.io/result/da1449cc-0e01-4d60-aaa7-b9291c358dee/
https://urlscan.io/result/47c0a5d0-ee70-4c50-b0d9-114f037afc5d/
https://urlscan.io/result/9abe792a-8fb8-48db-b5cb-20945801d918/
https://urlscan.io/result/c5c9c5dc-adcd-4dd2-942e-32b4b1fde2cd/
https://urlscan.io/result/981fabb1-52ff-43c6-9b99-410c0b445ab2/
https://urlscan.io/result/f83fbc70-044d-40dc-b18c-bf7612dfc47c/
https://urlscan.io/result/1b796ccb-3f67-4468-8ea0-1a68fd8da424/
https://urlscan.io/result/4dcdb88b-fc7e-4eef-9bda-edaba964c62a/
https://urlscan.io/result/64940d06-ee1d-4ef0-bb5d-dd0ced59dd3f/
https://urlscan.io/result/7c7d5689-be65-4f29-8f8d-c303f2cb4dc5/
https://urlscan.io/result/1b688563-6848-423c-bdc3-82ec2479a5b4/
https://urlscan.io/result/9162cde9-d99d-4174-979e-a7d6e7ee262b/
https://urlscan.io/result/790cbc94-eac5-4c3b-97e6-44ad8b6a9f48/
https://urlscan.io/result/d6c92e81-29ca-4046-9c7b-68bc3daa6073/
https://urlscan.io/result/19be4475-b084-4005-885c-be1b93b742a5/
https://urlscan.io/result/a9251ae3-bacf-4707-a571-ef4fd3b5ab75/
https://urlscan.io/result/eb3f37df-3df1-4d0a-85bb-f3f91012aa19/
https://urlscan.io/result/3b4d021d-7a4f-43a3-a00b-5db6c0e6e049/
https://urlscan.io/result/705afb16-518c-4793-a65a-32f7b9ba689c/
https://urlscan.io/result/3048be70-65a1-4707-aa6b-96dd7599089f/
https://urlscan.io/result/eb51df60-8c48-43f2-ae9f-9b1b8092e1b6/
https://urlscan.io/result/1a8eac9a-24e1-488b-b361-fff2616782e3/
https://urlscan.io/result/a5fde202-c1b2-43de-8429-ea13b2c18434/
https://urlscan.io/result/2e67db5f-c2c1-417a-8de8-2075120dae04/
https://urlscan.io/result/2a9411de-2468-4700-a164-7f483a5b5162/
https://urlscan.io/result/f5b0fc74-936c-44e0-a958-6462e62a9698/
https://urlscan.io/result/2396c64b-34c9-4432-87dc-841c32b354f1/
https://urlscan.io/result/e5c392b3-2720-4390-b4ff-e2c6827fc201/
https://urlscan.io/result/2569412a-3fee-4366-8b42-8f162b53bd52/
https://urlscan.io/result/c83a53fa-d6ad-4518-9900-aa82e8297b9d/
https://urlscan.io/result/c89098be-e308-4b53-9b3b-c33d5824f4b7/
https://urlscan.io/result/52708067-b829-41c1-ada4-ba96cbdfa191/
https://urlscan.io/result/78228fdc-e543-49be-8be4-3f9835c8f1d9/
https://urlscan.io/result/7e01fd79-5f8a-429b-9876-cff0ce47fca3/
https://urlscan.io/result/0d16422c-cdbe-43f8-a2d7-b81164d52e80/
https://urlscan.io/result/a665c1c1-a697-4ac5-be35-ffc69f3a22fe/
https://urlscan.io/result/e6f586af-90d9-4ff8-a1f9-1293c54aa53f/
https://urlscan.io/result/931c0a43-cbb8-4f74-966b-a091787e7383/
https://urlscan.io/result/e46dc38b-d21f-438f-9f0b-9c38e66672ca/
https://urlscan.io/result/7812d40a-30fd-4ca1-8db8-6f36c0589683/
https://urlscan.io/result/b9b51ac4-2d15-4748-8890-6025c700b868/
https://urlscan.io/result/e6816179-1486-44e4-8938-51300a0de188/
https://urlscan.io/result/661923f6-9677-42fa-8a79-ff35f6a9ea1e/
https://urlscan.io/result/e9e61c08-07f3-465d-9228-b51b8ed479a2/
https://urlscan.io/result/f466c41e-6eb4-4e4d-8b42-65e5fdc49887/
https://urlscan.io/result/50a6ef04-c04d-4604-87cb-1bea6d89aa99/
https://urlscan.io/result/83711d41-548c-410c-8429-af185a35261e/
https://urlscan.io/result/bb63bb73-382c-4ad9-ae13-1dac24cc8abb/
https://urlscan.io/result/e1e4ac86-8937-4ea3-9e5c-1f52f83c4107/
https://urlscan.io/result/7c3a3ecb-40bb-4dab-ae2e-669bd007426f/
https://urlscan.io/result/7465c111-0b51-4fcc-86ea-4b1182b06e31/
https://urlscan.io/result/0d72a420-c0a2-4b19-a995-5170606d2243/
https://urlscan.io/result/4c2277f2-f5b0-4b7b-9748-b89c5ed1cedc/
https://urlscan.io/result/a3300921-8b16-4935-a366-c89cc960c5dc/
https://urlscan.io/result/1109296d-0c0a-4a5b-8e48-0426c6347764/
https://urlscan.io/result/44c5ac18-d78d-4593-bc48-da9644401171/
https://urlscan.io/result/7243c088-dd61-4e85-a880-422d495ec68c/
https://urlscan.io/result/97e407ed-67b0-41bc-810a-c0675316bc66/
https://urlscan.io/result/c14ebef5-2d6c-457e-b700-c506bab08e5c/
https://urlscan.io/result/9f81c1f0-9dd9-4dca-afca-b05750effdca/
https://urlscan.io/result/cb30e85f-ea16-4efd-bd89-80655e8f72cd/
https://urlscan.io/result/3552dcb9-50ee-4cc4-aa64-e2c0ee657e08/
https://urlscan.io/result/7c1bdde1-84f9-4aeb-8a6d-62255eca2639/
https://urlscan.io/result/845905d7-268f-4135-9d8f-fb6a85d9c623/
https://urlscan.io/result/901abe12-a942-48a6-bba0-b79cf4179a6f/
https://urlscan.io/result/1a7b4eaf-9170-453f-b1fc-35f7e1efc033/
https://urlscan.io/result/bf24209b-a6a1-4113-9420-9d95a146b6ed/
https://urlscan.io/result/60ad4d6b-a460-4d2e-899c-a6d83bfe40ab/
https://urlscan.io/result/05b626f1-83fa-4b1a-a0ca-81943778bfc1/
https://urlscan.io/result/7d5fc859-f26a-416d-89f4-19e784a35396/
https://urlscan.io/result/1bdc98ef-b765-4803-a325-e7ca452e9ffa/
https://urlscan.io/result/3017d137-3c51-4566-b3f2-1c0df9dec925/
https://urlscan.io/result/2b3844b5-fe2d-4e51-b7eb-e9ec823c4e6e/
https://urlscan.io/result/29ec6d39-0e10-474f-8b25-e952e11be7db/
https://urlscan.io/result/42eab32f-b2f1-469b-9e07-a4422cf1aa68/
https://urlscan.io/result/8b164d0c-d861-4973-8418-9d448df19f15/
https://urlscan.io/result/1e689b33-a60c-4d60-bf8d-b489adb2e5ec/
https://urlscan.io/result/3c2f24c8-3f2a-4861-9c4f-8d2ba40e9528/
https://urlscan.io/result/634248d6-8f52-4fa5-a1e2-e8599122a4b9/
https://urlscan.io/result/53733195-763a-4462-8c55-ed4f376710fa/
https://urlscan.io/result/434d95a1-6303-472c-b851-99c583973abf/
https://urlscan.io/result/794eba27-3bfc-43b7-95fc-52102983119f/
https://urlscan.io/result/8b74e2b7-e5b9-475d-b0da-1ed896c70ab7/
https://urlscan.io/result/86e1d50d-d09d-48a4-8bc7-3898fa8bef10/
https://urlscan.io/result/4bf21381-51f3-46e9-b2e9-855a31a43e79/
https://urlscan.io/result/3b7006be-1ee6-483e-aea9-3ea695597792/
https://urlscan.io/result/24bb7c52-2439-4535-b404-29b0e5a793e5/
https://urlscan.io/result/a48dc6d0-b884-4b4f-97da-c459c418fd06/
https://urlscan.io/result/aa2db795-db91-429d-b835-36127a16cd06/
https://urlscan.io/result/44f57bb9-f591-4bd0-bcd0-d01a6ae66b18/
https://urlscan.io/result/9c003816-e19c-4ca6-9b8c-bd8f4e076552/
https://urlscan.io/result/cfbd8d43-782b-46b1-b7ed-1d744cc3f7f8/
https://urlscan.io/result/1db40171-cbfa-4863-8fed-01c396075d7d/
https://urlscan.io/result/7f7f06d9-373d-48db-9818-689def8f7acf/
https://urlscan.io/result/fa1f9521-4087-44e9-917f-eafa4d2c5a6c/
https://urlscan.io/result/e022ecb1-c7c7-4adb-8a1a-39d9110c5c3c/
https://urlscan.io/result/df4288d8-7c70-40ac-9fd5-d53976802298/
https://urlscan.io/result/6d74741e-938e-4f96-ad1a-1cf87bb5ffa3/
https://urlscan.io/result/32432b8f-6540-46b3-8b7f-4fabec336425/
https://urlscan.io/result/c112fb89-b5b6-4f53-afdd-4ef7cd143bd3/
https://urlscan.io/result/c5837c07-bf37-4e49-a6d2-2e7c5efe5ee4/
https://urlscan.io/result/48525187-1825-4a9e-a788-32dda3c57873/
https://urlscan.io/result/058f7555-d252-41cd-93b6-f5bcf97f0c39/
https://urlscan.io/result/153ad2c6-14da-4349-a60f-85b6c01d73a1/
https://urlscan.io/result/86f193b1-8f90-4ee0-b784-86a62e4a26a5/
https://urlscan.io/result/541e33cb-ab7c-423a-a4ba-062695671c4e/
https://urlscan.io/result/06dbd2c6-a84c-4ef6-b928-bad2513d2ead/
https://urlscan.io/result/5866202d-c164-4baf-95ca-776b07714b89/
https://urlscan.io/result/e79d695f-716b-4836-b23e-14f6cd4a6594/
https://urlscan.io/result/635b08aa-cbc5-4053-9a59-d92f022002c5/
https://urlscan.io/result/cbac247c-68da-4c75-9ea4-166cd62ad7fe/
https://urlscan.io/result/ad4d7828-0c74-42b7-bf2f-09afe28421b9/
https://urlscan.io/result/731f8ec1-0f3e-4c85-a655-7ff8fd898347/
https://urlscan.io/result/cd9e2fb0-d85e-4619-b56e-b99c4e1b866d/
https://urlscan.io/result/917cb764-bbc5-44e0-946f-4804c0f62634/
https://urlscan.io/result/308a1d7b-3210-4589-af53-7e8a300d862d/
https://urlscan.io/result/4209d450-4d75-41ae-9123-f75d63e9c72a/
https://urlscan.io/result/3d14f711-f5ff-4b07-99cd-61b96028def6/
https://urlscan.io/result/d2ca1244-f9d9-4ffb-8ba7-31d2b08f5e9b/
https://urlscan.io/result/cf2a4fd7-2bb4-4e08-9994-de6e75d43ec4/
https://urlscan.io/result/046cc062-4b29-4603-ab64-1932b6fb3ed4/
https://urlscan.io/result/670f7774-b3c2-456b-b80a-b4409fb365a0/
https://urlscan.io/result/19a2edad-5696-4fd7-a63a-ce11656947fb/
https://urlscan.io/result/b69495f1-47a6-4b91-ad27-1bc52265fb43/
https://urlscan.io/result/adf19c93-5155-4874-bc55-249a54fb1b63/

Screenshot

Click to expand

b370d0cb-e11f-4025-9689-7b0ce90aa96c
e2705202-9baa-4df5-8265-482c1527fe9f
a2624d51-689f-4940-8360-77e82ce68d23
5f69456f-dc43-407d-aab5-837c36d9dd38
b2b1c2ff-3ce1-4e2d-b381-4dbf88b07380
961d509f-61cd-4a13-91ef-6e3f2b42fa61
c7c8287f-e63d-43a1-9921-5c275c0f8689
e6a6de31-90e7-4100-9207-2f0e82ae0ebc
10a9c663-86ed-4295-8d46-240cb70b8da6
screenshot
screenshot-1
screenshot
002b4d81-700c-4954-bfda-82492bec23c1
a465d9ec-6a55-44c0-be8a-c9fd54fd4234
08ab6a33-d687-46a5-ac63-ac2970127622
8c8c3821-67e3-4639-a120-ef5507adefd4
57c21fce-628b-4e5d-8abe-e354ea0ea9f1
screenshot
2d85beb5-8e17-423f-abfe-0dc37a22f7c8
screenshot
d4a4c99a-6012-4f40-97c3-6719b988a618
bebd23a5-6e16-4a21-8367-4ae77b1408c2
7f2f7832-4af4-4c45-9f3f-24622ebbc416
36e1c529-1c43-4e88-a382-e3afc4648f76
727ddb11-5299-4501-b3b3-277fce1feb36
84ec271c-be1f-4a77-bff4-200390cb4624
46b04855-4243-4d42-93c4-76f6f3d14df0
screenshot
ac4daf58-7789-45cc-887e-17e5bdc2e0c6
5c6f7bce-368d-487a-b843-ceb309919553
c4b3024d-2267-4eef-b37b-483bf1904db3
3378b32c-77d5-4af8-8998-a81aa99f5c5d
79785749-56e4-49de-8ec6-8c48bc6f7037
c77ad56f-bfb3-4d0f-80e7-d9d6b318bae7
56c2dfce-830f-4c45-9ecd-9401bb3ecf23
screenshot
a97beb02-534b-4690-8159-501820959287
c87d595f-7860-44fe-8e69-893a16ca4a1a
db32406f-2704-4c97-b9c3-e1b514a91db9
07034026-a2a7-4023-938b-17f1e528a16d
98a155c7-11be-4a5e-98e6-5bab58ca377f
73ab531d-e6cc-4471-a40a-d0e0130949e1
e6ab7c1f-b58e-4182-bf1a-bb8d3c27cc98
e22ac587-fe08-4193-8fdb-e473d2bc6058
2fa92928-a5b1-40db-b582-686c6adeee8f
screenshot
354cc0e5-1bf8-49b0-bb7d-5d6f67adc014
1397bede-b214-44ee-81f0-0fff26882fbf
56782dcd-4f1c-4099-b812-e731f9a6788c
ad751393-4c85-48cd-93b4-3c1150aa1c56
screenshot
a79529a5-c87d-4f48-9401-abe89809011c
8a0299ec-1013-44ca-af73-b54ee6f400af
2488d36b-99f1-4807-b33b-ef4d02eaaabc
38e94839-1bd2-4932-aef7-54b4ef91960d
bd740bdd-10ab-4176-915e-5c3de946574e
7f8b40c0-4b2f-4e98-a09a-ac4e9ba175b6
a2a8122e-6dc2-4a03-9330-f379377d6ba2
3a648225-bc1b-4157-8fe1-01fd7d9961af
screenshot
3250c3ec-dacb-41bc-96f8-c6499bd88fd6
screenshot
a73ee717-b3a9-46ed-b8b9-23337245eb4f
ca826e1c-f924-434a-875d-f311ec6e2b8b
3ae676a4-d411-4d8b-b3ec-f16fd9e37ef5
d1129c78-43c6-4139-addc-42ea96c1689e
5cdd2c7b-5de5-46b8-b36b-4caf11599c8f
32cafd03-fd8e-4949-ac7d-e91b2fc3f942
72220b92-f399-4008-addf-ab15f104c47e
3d478561-1f11-41f8-9d00-b494a5cf8c44
8a3b9380-5133-4c96-bff1-a2d9152c5187
0c672e1b-9628-4251-b7a6-9a1c2d280417
f7c6bcd9-07b3-4c6e-bc24-95a42d5a0a8d
62c0d8dd-ce2c-4900-a0d6-d475aa2006af
9acac697-736f-4758-855a-da634b7df510
dc387105-885c-439b-b6cb-c4df59611fb2
1d943413-1932-4cd7-895e-d0ba6ec2337a
2077185e-6cd0-46d1-99e6-94cfdeb3074d
5f00de32-95d8-4b1c-8994-6fffb8c1b853
ff9d4612-5e46-48dc-8f8a-a2e732c7b673
2736217b-a60b-4487-8958-75d850ba4b9d
faac00f0-9f78-499b-8d77-192598498b9a
75d0824c-912c-40b0-9d8e-d11063b58b2c
a88a1f4c-84a2-4450-b5bb-346424da4efa
869924a7-ff6d-42d0-ba02-a9d99d6744bd
47c0a5d0-ee70-4c50-b0d9-114f037afc5d
9abe792a-8fb8-48db-b5cb-20945801d918
f83fbc70-044d-40dc-b18c-bf7612dfc47c
1b796ccb-3f67-4468-8ea0-1a68fd8da424
4dcdb88b-fc7e-4eef-9bda-edaba964c62a
64940d06-ee1d-4ef0-bb5d-dd0ced59dd3f
7c7d5689-be65-4f29-8f8d-c303f2cb4dc5
1b688563-6848-423c-bdc3-82ec2479a5b4
790cbc94-eac5-4c3b-97e6-44ad8b6a9f48
d6c92e81-29ca-4046-9c7b-68bc3daa6073
19be4475-b084-4005-885c-be1b93b742a5
eb3f37df-3df1-4d0a-85bb-f3f91012aa19
3b4d021d-7a4f-43a3-a00b-5db6c0e6e049
705afb16-518c-4793-a65a-32f7b9ba689c
3048be70-65a1-4707-aa6b-96dd7599089f
eb51df60-8c48-43f2-ae9f-9b1b8092e1b6
1a8eac9a-24e1-488b-b361-fff2616782e3
a5fde202-c1b2-43de-8429-ea13b2c18434
2e67db5f-c2c1-417a-8de8-2075120dae04
2a9411de-2468-4700-a164-7f483a5b5162
2396c64b-34c9-4432-87dc-841c32b354f1
e5c392b3-2720-4390-b4ff-e2c6827fc201
2569412a-3fee-4366-8b42-8f162b53bd52
52708067-b829-41c1-ada4-ba96cbdfa191
78228fdc-e543-49be-8be4-3f9835c8f1d9
0d16422c-cdbe-43f8-a2d7-b81164d52e80
a665c1c1-a697-4ac5-be35-ffc69f3a22fe
e6f586af-90d9-4ff8-a1f9-1293c54aa53f
931c0a43-cbb8-4f74-966b-a091787e7383
661923f6-9677-42fa-8a79-ff35f6a9ea1e
e9e61c08-07f3-465d-9228-b51b8ed479a2
f466c41e-6eb4-4e4d-8b42-65e5fdc49887
50a6ef04-c04d-4604-87cb-1bea6d89aa99
83711d41-548c-410c-8429-af185a35261e
bb63bb73-382c-4ad9-ae13-1dac24cc8abb
e1e4ac86-8937-4ea3-9e5c-1f52f83c4107
7465c111-0b51-4fcc-86ea-4b1182b06e31
0d72a420-c0a2-4b19-a995-5170606d2243
1109296d-0c0a-4a5b-8e48-0426c6347764
44c5ac18-d78d-4593-bc48-da9644401171
97e407ed-67b0-41bc-810a-c0675316bc66
c14ebef5-2d6c-457e-b700-c506bab08e5c
9f81c1f0-9dd9-4dca-afca-b05750effdca
cb30e85f-ea16-4efd-bd89-80655e8f72cd
3552dcb9-50ee-4cc4-aa64-e2c0ee657e08
7c1bdde1-84f9-4aeb-8a6d-62255eca2639
845905d7-268f-4135-9d8f-fb6a85d9c623
bf24209b-a6a1-4113-9420-9d95a146b6ed
29ec6d39-0e10-474f-8b25-e952e11be7db
42eab32f-b2f1-469b-9e07-a4422cf1aa68
8b164d0c-d861-4973-8418-9d448df19f15
1e689b33-a60c-4d60-bf8d-b489adb2e5ec
634248d6-8f52-4fa5-a1e2-e8599122a4b9
53733195-763a-4462-8c55-ed4f376710fa
794eba27-3bfc-43b7-95fc-52102983119f
8b74e2b7-e5b9-475d-b0da-1ed896c70ab7-1
86e1d50d-d09d-48a4-8bc7-3898fa8bef10
4bf21381-51f3-46e9-b2e9-855a31a43e79
3b7006be-1ee6-483e-aea9-3ea695597792
9c003816-e19c-4ca6-9b8c-bd8f4e076552
cfbd8d43-782b-46b1-b7ed-1d744cc3f7f8
1db40171-cbfa-4863-8fed-01c396075d7d
7f7f06d9-373d-48db-9818-689def8f7acf
fa1f9521-4087-44e9-917f-eafa4d2c5a6c
e022ecb1-c7c7-4adb-8a1a-39d9110c5c3c
5866202d-c164-4baf-95ca-776b07714b89
e79d695f-716b-4836-b23e-14f6cd4a6594
635b08aa-cbc5-4053-9a59-d92f022002c5
cbac247c-68da-4c75-9ea4-166cd62ad7fe
ad4d7828-0c74-42b7-bf2f-09afe28421b9
731f8ec1-0f3e-4c85-a655-7ff8fd898347-1
c2706ebd-e544-4709-915b-b3ee6baa6b1d
fb490e81-04bf-444e-97f2-539b571f5be9
28343d64-47d5-4998-a9c4-9805a0ae7f92
8b35b686-a66f-4c3c-82fd-ea3bc1edb55b
a582c451-d9b9-4e44-a330-eaa1c85b54f9
917cb764-bbc5-44e0-946f-4804c0f62634
308a1d7b-3210-4589-af53-7e8a300d862d
4209d450-4d75-41ae-9123-f75d63e9c72a
3d14f711-f5ff-4b07-99cd-61b96028def6
d2ca1244-f9d9-4ffb-8ba7-31d2b08f5e9b
cf2a4fd7-2bb4-4e08-9994-de6e75d43ec4
046cc062-4b29-4603-ab64-1932b6fb3ed4
670f7774-b3c2-456b-b80a-b4409fb365a0
19a2edad-5696-4fd7-a63a-ce11656947fb
b69495f1-47a6-4b91-ad27-1bc52265fb43
adf19c93-5155-4874-bc55-249a54fb1b63

remove ajstelecom[.]com[.]mx from domain list
add ajstelecom[.]com[.]mx to wildcard-domain list
@g0d33p3rsec
Copy link
Contributor Author

I attempted to rescan a sample of previously active links this morning at they are all returning 404's. Closing this request since it appears the host has finally taken some action.

Links tested:

https://ajstelecom.com.mx/M1YybDZjNDkwTTJiNG4=
https://ajstelecom.com.mx/MzUycDZzNHIwazBSN3A=
https://ajstelecom.com.mx/M1AySjRCODM1czBnNUU=
https://ajstelecom.com.mx/M0MyQjVkNXA2dDhPMWg=

Common result:

https://urlscan.io/result/9c3ae5ff-5527-4a63-8781-fd4f4bb83810/

Only the previous link was done as a public scan to try to avoid unnecessary noise in the urlscan.io domain results.
image

@g0d33p3rsec g0d33p3rsec deleted the move-ajstelecom.com.mx-to-wildcard-domain-list branch March 27, 2024 18:15
@g0d33p3rsec g0d33p3rsec restored the move-ajstelecom.com.mx-to-wildcard-domain-list branch March 28, 2024 01:49
@g0d33p3rsec
Copy link
Contributor Author

It looks like I spoke too soon. Just tried another scan, at it seems the kit is still live.
https://urlscan.io/result/b402cb63-0054-4dcc-8b3c-b4fcba1174d2/

@g0d33p3rsec g0d33p3rsec reopened this Mar 28, 2024
@g0d33p3rsec
Copy link
Contributor Author

I attempted to rescan another sample of previously active URIs and all returned 404's. I'm leaving the issue open until I either get a confirmation from the host related to my ticket or the group moves to their next domain.

@spirillen spirillen merged commit 4025774 into mitchellkrogza:main Mar 30, 2024
@spirillen
Copy link
Collaborator

I'm leaving the issue open until

Feel free to reopen anytime you have any news 😄 and good thinking about moving it to the wildcard list

@g0d33p3rsec
Copy link
Contributor Author

I'm still seeing what I'm interpreting as some effort to respond. The previously returned 404 messages have now been replaced by a generic nginx 404 page. I'll continue to monitor this site until the group moves on to their next host.

image

@g0d33p3rsec
Copy link
Contributor Author

I received this confirmation today that the host is finally working the ticket. Also, the group has moved to the domain mentioned in #366.
Screenshot 2024-04-01 214556

@spirillen
Copy link
Collaborator

Well at least they did pick up the ticket at some point...

Would however had expect a response time within a hour when you report phishing from my network... maybe that just me

Thanks for the response.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants