norden.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
Moin! Dies ist die Mastodon-Instanz für Nordlichter, Schnacker und alles dazwischen. Folge dem Leuchtturm.

Administered by:

Server stats:

3.5K
active users

#spam

59 posts44 participants2 posts today

Last week I posted a thread about a #spam campaign delivering a #ConnectWise client as its payload. As of this morning, the threat actors have changed the payload (virustotal.com/gui/file/30e1d0) and it appears to try to connect to the address "relay.noscreener[.]info" which resolves to 104.194.145.66.

Embedded in the installer .msi file is a file called system.config, which contains this domain name and a base64-encoded string.

The fake Social Security website is still being hosted on a compromised site that belongs to a temp agency based on the east coast of the US.

Previous thread:

infosec.exchange/@threatresear

It seems finally (?) I got nicoled too... I got the message on my single user GoToSocial account.
The account is: nicole53@chinanews.social

I remember I saw somebody who has a gist with the already used accounts. Can someone link me, so I can block all the other accounts too?

Replied in thread
🚩🚩🚩🚩🚩 ⚠️ BEWARE ⚠️ 🚩🚩🚩🚩🚩
This individual has shown a pattern of dishonesty and should be considered a grifter unless proven otherwise. Moreover, this spam has no place in a vegan group. The focus here should be on veganism, and introducing unrelated personal issues only distracts from the purpose of this space. Clearly, this person has no regard for that. Please refrain from donating to help discourage this behavior.
#scam #spam
zotum.netZotum

Možná jste taky zaregistrovali spamující účet, co se vydává za „Nicole“. Chodí od ní otravné zprávy do DMs. Už jsem ji několikrát blokoval, ale pokaždé se registruje na jiné instanci.
Snažím se to průběžně blokovat, ale kdyby vám to taky přišlo, rovnou blokněte a případně nahlaste.
#Fediblock #CZfedi #spam

Replied in thread
🚩🚩🚩🚩🚩 ⚠️ BEWARE ⚠️ 🚩🚩🚩🚩🚩
This individual has shown a pattern of dishonesty and should be considered a grifter unless proven otherwise. Moreover, this spam has no place in a vegan group. The focus here should be on veganism, and introducing unrelated personal issues only distracts from the purpose of this space. Clearly, this person has no regard for that. Please refrain from donating to help discourage this behavior.
#scam #spam
zotum.netZotum
Replied in thread

Please, if you get DM'd by #Nicole, obviously:

- do not interact, and that includes sending money(!)
- block and report

and an urgent please:

🚨 share the handle so others can do the same. When you omit the first @ (like so: NAME@SERVER.SUFFIX), the spam account wont be triggered.

Continued thread

A list of #Nicole​s to block and report for your consideration

lucking21@livester.net
prepaved71@mstdn.plus
booth18@mstdn.xn--b4h400bgey186p.st
cosmopolitism92@qlub.social

suffixed98@chinanews.social
nicole88@chinanews.social
payola2@chinanews.social

fangas58@mstdn.ro
nicole78@mstdn.ro
unpopularity41@mstdn.ro

infected60@mastodon.holeyfox.co
resources77@mastodon.holeyfox.co

Might as well block the host servers for not kicking off those #Nicole​s weeks ago

Replied in thread
🚩🚩🚩🚩🚩 ⚠️ BEWARE ⚠️ 🚩🚩🚩🚩🚩

This individual has shown a pattern of dishonesty and should be considered a grifter unless proven otherwise. Moreover, this spam has no place in a vegan group. The focus here should be on veganism, and introducing unrelated personal issues only distracts from the purpose of this space. Clearly, this person has no regard for that. Please refrain from donating to help discourage this behavior.
#scam #spam
zotum.netZotum

Also jetzt hab ich doch echt kurz überlegt, ob das wirklich sein kann, dass ich 1,95 Euro zahlen soll, damit mir weiterhin E-Mails zugestellt werden... und wollte mich schon aufregen, dass man als zahlender Kunde nun auch noch extra zahlen muss und so. 🤡

Aber gut gemacht ist diese Spam-Mail ja...


#Telekom, #Spam, #Mail, #Phishing

Der letzte Schrei in Sachen Spam ist das „Angebot“ an Firmen, ihnen gegen Geld eine Wikipedia-Seite anzulegen. Weil die Wikipedia vertrauenswürdig ist, gut durch Google gefunden wird und man dann viele neue Kunden anlocken kann.

Geht bei mir an eine Mailadresse, die ich nie kommerziell genutzt habe, aber offenbar, also dem Spam nach, schon seit Jahren für kommerziell gehalten wird.