Suncoastscam

3

Click here to load reader

Transcript of Suncoastscam

Page 1: Suncoastscam

http://www.nbc-2.com/story/22240525/text-scam-involves-suncoast-schools-fcu

I seen you posted this^^I tried to contact fcu and they was not open on Sunday and the lady that I did get in touch with could only say they working on it..I figure they would want the valuable intel behind who is doing this. Below this email is a report of the computer/server that is making such calls/text messages it is however located in GermanyI do not know which agency the FCU is working with to resolve such matter, I also don�t know if there is a reward for information leading to the arrest of whoever.I will be tracing the server information details down (owner of server, ip addresses of users logging into the server and such)But so far the server has blocked my scans so I will haft to take a more technical route.

Here is the information on the criminal behind such scam:3:37pm sunday 8/4/2012 24 hour banking account centersuncoast fedreal credit union

http://www.suncoastfcu.org/Default.aspx?tabid=348^^wrong number: Example: Please call us immediately at 866-515-0597.Verification needed on your debit/ATM card. Thank You.866-515-0597 goes to locksmithAlso their IIS server(webserver) is vulnerable to about 9 exploits I found which allows remote access to the server.

I received a text message from [email protected]//Suncoast Schools FCU alert. It was a text requesting me to call customer service at 813-217-5090.

Tracing route to tonline.com [217.6.164.164]over a maximum of 30 hops:

1 2 ms 1 ms 1 ms 192.168.1.1 2 39 ms 22 ms 28 ms 71.196.112.1 3 10 ms 10 ms 9 ms xe-7-2-0-32767-sur03.pompanobeach.fl.pompano.comcast.net [68.85.83.209] 4 16 ms 14 ms 14 ms te-0-7-0-5-ar03.northdade.fl.pompano.comcast.net [162.151.2.221] 5 12 ms 14 ms 14 ms he-2-6-0-0-cr01.miami.fl.ibone.comcast.net [68.86.95.217] 6 26 ms 30 ms 29 ms 68.86.88.217 7 40 ms 41 ms 42 ms he-0-4-0-0-cr01.ashburn.va.ibone.comcast.net [68.86.89.153] 8 41 ms 42 ms 42 ms pos-0-1-0-0-pe01.ashburn.va.ibone.comcast.net [68.86.86.30] 9 46 ms 46 ms 45 ms 80.150.169.197 10 130 ms 134 ms 133 ms f-eb9-i.F.DE.NET.DTAG.DE [62.154.16.114] 11 126 ms 128 ms 127 ms 80.156.161.230 12 * * * Request timed out. 13 129 ms 128 ms 135 ms www.t-online.de [217.6.164.164]

Trace complete.

domain: tonline.comregistrant-hdl: RDT-DTA404admin-c: RDT-DA550tech-c: RDT-HTO1zone-c: RDT-HTO1nserver: dns00.sda.t-online.de

Page 2: Suncoastscam

nserver: dns01.sda.t-online.denserver: dns00.sul.t-online.denserver: dns01.sul.t-online.destatus: connectedchanged: 2013-03-13created: 2002-12-14expires: 2013-12-14source: DEUTSCHE TELEKOM AG

nic-hdl: RDT-DTA404type: orgname of the organisation: Deutsche Telekom AG, Domainmanagementaddress: Friedrich-Ebert-Allee 140pcode: D-53113city: Bonncountry: DEe-mail: [email protected]: +49 228 181 94033fax-no: +49 228 181 94402changed: 2011-08-24source: DEUTSCHE TELEKOM AG

nic-hdl: RDT-DA550type: personfirstname: domainlastname: adminname of the organisation: Deutsche Telekom AG, Domainmanagementaddress: Friedrich-Ebert-Allee 140pcode: D-53113city: Bonncountry: DEe-mail: [email protected]: +49 228 181 94033fax-no: +49 228 181 94402changed: 2011-08-24source: DEUTSCHE TELEKOM AG

nic-hdl: RDT-HTO1type: personfirstname: Hostmasterlastname: T-Onlinename of the organisation: Deutsche Telekom AG, T-Com (T-Online)address: T-Online Allee 1pcode: D-64295city: Darmstadtcountry: DEe-mail: [email protected]: +49 6151 680 5938fax-no: +49 6151 680 519changed: 2006-06-11source: DEUTSCHE TELEKOM AG

inetnum: 217.6.164.0 - 217.6.167.255netname: TOIAG-FFM-001descr: Deutsche Telekom AGdescr: Products & Innovationcountry: DEadmin-c: DTIPtech-c: DTSTstatus: ASSIGNED PAmnt-by: DTAG-NICsource: RIPE #Filtered

Page 3: Suncoastscam

person: DTAG Global IP-Addressingaddress: Deutsche Telekom AGaddress: D-90492 Nuernbergaddress: Germanyphone: +49 180 2 33 1000fax-no: +49 6151 6809399nic-hdl: DTIPmnt-by: DTAG-NICsource: RIPE #Filtered

person: Security Teamaddress: Deutsche Telekom AGaddress: Germanyphone: +49 180 2 33 1000fax-no: +49 6151 6809399nic-hdl: DTSTmnt-by: DTAG-NICsource: RIPE #Filtered