[nsp-sec] Stolen FTP credentials

Stijn Jonker sjcjonker at sjc.nl
Tue Feb 15 10:40:10 EST 2011


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Dirk,

Thanks!

Stijn

- --
Yours Sincerly,

Stijn Jonker
Security Manager
UPC Broadband
+31 20 7789993
SJonker at UPCBroadband.com
SJCJonker at SJC.nl
Skype: sjcjonker






On 15 Feb 2011, at 14:35, Dirk Stander wrote:

> ----------- nsp-security Confidential --------
> 
> Hi Teams,
> 
> please find attached a list of stolen FTP-credentials, which have
> been used to inject IFrames (pointing to visions7[.]net or axstat[.]com)
> into legitimate web sites.
> 
> The format of the list is:
> <ASN> | <IP> | <CC> | <domain name> <user> <pass> | <AS desc>
> 
>    kind regards, Dirk Stander (1&1 Internet AG) :.
> 
> 
> NA | 194.49.96.3 | DE | gtueftp1.intern.msh.de 99999999 NjO***** | NA
> NA | 195.184.84.73 | PL | 195.184.84.73 "serveur n\xB0 329" abs***** | NA

-----BEGIN PGP SIGNATURE-----

iEYEARECAAYFAk1anloACgkQjU9r45tKnOAgegCgkAOwVWPDwF4cJOGR59F5sgnj
N0kAnRCVFgJYNE9eq7TwlFuSjM6tkaxl
=Aies
-----END PGP SIGNATURE-----




More information about the nsp-security mailing list