Friday, December 01, 2023

Cybercrime-Friendly Forum Communities - Part Two

The following is a compilation of currently active cybercrime-friendly forum communities.
 








Cybercrime-friendly forum communities include:

hxxp://crdforum.cc/

hxxp://darkwebmafias.net/

hxxp://darkstash.com/

hxxp://crdpro.cc/

hxxp://www.cardingclub.net/

hxxp://www.russiancarders.se/

hxxp://validmarket.io/

hxxp://cardingforum.cx/

hxxp://carding.sh/

hxxp://bitcarder.com

hxxp://cardingleaks.ws/

hxxp://www.verifiedcarder.net/

hxxp://www.legitcarder.ru/

hxxp://www.crdworld.com/

hxxp://cardingmafia.to/

hxxp://cardingforum.cx

hxxp://crdforum.cc

hxxp://darkstash.com

hxxp://carders.biz

hxxp://crdpro.cc

hxxp://carders.mx

hxxp://carding-forum.com

hxxp://crdclub.su

hxxp://procrd.pw

hxxp://cardmafia.cc

hxxp://cardingforum.info

hxxp://cardingleaks.ws

hxxp://darkpro.net

hxxp://crackingforum.to

hxxp://cardingworld.ru

hxxp://darkwebmafias.ws

hxxp://leetforums.ru

hxxp://legitcarders.ws

hxxp://crdcrew.cc

hxxp://prtship.pro

hxxp://verifiedcarder.net

hxxp://legitcarder.ru

hxxp://carders.zone

hxxp://drdark.ru

hxxp://darknetweb.ru

hxxp://bpcforum.ru

hxxp://wc-club.com

hxxp://cybercarders.com

hxxp://bitorder.pw

Rewards for Justice - Dancho Danchev

The following are domains and personally identifiable information on a bulletproof hosting provider mentioned by the Conti Ransomware gang.

hxxp://school-global.ru

hxxp://youladance.ru

Телефон: +373 775 96666

E-mail: info@morene[.]host

Skype: morene[.]host

Jabber: morene@jabber[.]morene[.]host

ICQ: 700812649 / 702647156

Telegram: @hostmorene

Viber: +373 775 96666

WhatsApp: +373 775 96666

Онлайн-чат: https://morene[.]host

Full Names of Ashiyane Digital Security Team Members

The following compilation is a set of full names of Ashiyane Digital Security Team Members. 







The following are the full names of Ashiyane Digital Security Team Members:

Keyvan Sedaghati — keivan

Ramin Baz Ghandi — fr0nk

Erfan Zadpoor — PrinceofHacking

Hamid Norouzi — eychenz

Poorya Mohammadrezaei — Hijacker

Omid Norouzi — Sha2ow

Milad Bokharaei — ®Maste

Vahid Maani — WAHID 2

Kaveh Jasri — root3r

Ali Hayati — Zend

Milad Mazaheri — mmilad200

Mohammad Reza — iNJECTOR

Mohammad Mohammadi — Classic

Nima Salehi — Q7X

Milad Jafari — Milad-Bushehr

Shahin Salak Tootonchi — ruiner_blackhat

Amin Bandali — anti206

Mohammad Hadi Nasiri — unique2world

Mahdi Chinichi — Virangar

Amir Hossein Tahmasebi — __amir__

Ashkan Hosseini — Askn

Mohammad Tajik — taghva

Meghdad Mohammadi — M3QD4D

Sina Ahmadi Neshat — Encoder

Behrouz Kamalian — Behrouz_ice)

Farshid Sargheini — Azazel

Armin — n3me3iz

Mahdi K. — r3d.z0nE

Iman Honarvar — iman_taktaz

Ali Seid Nejad — Ali_Eagle

Mohammad Reza Ali Babaei — mzhacker

Navid Naghdi — elvator

Mohammad Reza Dolati — HIDDEN-HUNTER

Mehrab Akherati — AliAkh

Amin Javid — Gladiator

Cybercrime-Friendly Forum Communities

The following is a recently obtained compilation of currently active cybercrime-friendly forum communities.
 

Sample cybercrime-friendly forum communities include:

hxxp://www.darkteam.se/

hxxp://crdforum.cc/

hxxp://legitcarders.ws/

hxxp://cardingworld.ru

hxxp://carders.biz/

hxxp://carding.cm/

hxxp://cardmafia.cc/

hxxp://cardingforum.cx/

hxxp://carder.market/

hxxp://www.russiancarders.se/

hxxp://darkwebmafias.net/

hxxp://legendzforum.com/

hxxp://procrax.cx/

Iran's Afkar System Yazd Co Ransomware

The following is all the associated ransomware themed domains known to have been associated with Iran's Afkar System Yazd Co ransomware.
 









Sample domains known to have been involved in the campaign include:

hxxp://newdesk.top

hxxp://onedriver-srv.ml

hxxp://symantecserver.co

hxxp://microsoft-updateserver.cf

hxxp://msupdate.us

hxxp://service-management.tk

hxxp://aptmirror.eu

hxxp://winstore.us

hxxp://my-logford.ml

hxxp://gupdate.us

hxxp://tcp443.org

Sample email address accounts known to have been involved in the campaign include:

amirbitminer[.]gmail.com

thund3rz[.]protonmail.com

Email Address Accounts Known To Belong To Owners of E-Shops for Stolen Credit Card Details - Part Two

The following are personally identifiable email address accounts including domains known to belong to owners of E-Shops for stolen credit card data.
 




Sample email address accounts include:

admin@accessltd[.]ru

rubensamvelich@gmail[.]com

rubensamvelich@yahoo[.]com

bulbacc@rocketmail[.]com

bulbacc@yahoo[.]com

ooo.service@yahoo[.]com

dumps.cc@safe-mail[.]net

b2b.maxim@gmail[.]com

lvjiecong@yahoo[.]com[.]cn

roger.sroy@yahoo[.]com

elche011@yahoo[.]com

keikomiyahara@yahoo[.]com

dcb725@gmail[.]com

wattt80@yahoo[.]com

yurtan20@e1[.]ru

vipforexbiz@gmail[.]com

kachanaburi@yahoo[.]com

persiks@online[.]ua

alexandanns@gmail[.]com

bestdumpssu@live[.]com

admin@mycc[.]su

admin@bestdumps[.]biz

tonchang2011@yahoo[.]com

ccstoreru@yahoo[.]com

bdsupport@jabber[.]org

Stay tuned!

Email Address Accounts Known To Belong To Owners of E-Shops for Stolen Credit Card Details

The following are personally identifiable email address accounts including domains known to belong to owners of E-Shops for stolen credit card data.
 






Sample domains involved include:

ccmall.cc

track2.name

trackstore.su

magic-numbers.cc

allfresh.us

freshstock.biz

bulba.cc

approven.su

cv2shop.com

vzone.tc

ccStore.ru

dumps.cc

privateservices.ws

perfect-numbers.cc

mega4u.biz

accessltd.ru

pwnshop.cc

bestdumps.su

mycc.su

bestdumps.biz

dumpshop.bz

cardshop.bz

dumpscheck.com

Sample email address accounts involved include:

roger.sroy@yahoo[.]com

keikomiyahara@yahoo[.]com

bulbacc@yahoo[.]com

yurtan20@e1[.]ru

ccstoreru@yahoo[.]com

persiks@online[.]ua

admin@accessltd[.]ru

bestdumpssu@live[.]com

admin@mycc[.]su

admin@bestdumps[.]biz

bdsupport@jabber[.]org

Stay tuned!