CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

$9736.22 of $21422.68
left sidedonated so farneed $11686.46 donated to reach our goalright side, our goal
Help CastleCops serve the community on new servers, Donate Here to reach our goal.

Donation/Premium
spacer
block bottom
Security Central
spacer
· Home
· PIRT/Fried Phish
· MIRT
· SIRT
· Deutsch
· Wiki
· Newsletter
· O16/ActiveX
· CLSID List
· Contest2007
· Downloads
· Feedback (send)
· Forums
· HijackThis
· Hijacktrend
· LSPs
· My Downloads
· O18
· O20
· O21
· O22
· O23
· O9
· Premium
· Private Messages
· Proxomitron
· Reviews
· Search
· StartupList
· Stories Archive
· Submit News
· WsIRT
· Your Account
· Acceptable Use Policy
block bottom
Survey
spacer
Was 2007 a good year?

Yes it was a wonderful year
Yes, but there is always room for improvement
Status quo
It was a challenge
Other (leave comment)



Results
Polls

Votes: 934
Comments: 25
block bottom
spacer spacer PIRT Squad

Fried Phish(TM)

Phishing Incident Reporting and Termination (PIRT) Squad(SM)

A global phishing termination and intelligence system operated by CastleCops. Become a PIRT Squad terminator by reporting phish today!

[ How-To / FAQ ]

Fried Phish -> Confirmed Phish | Terminated Phish


status: confirmed phish

HTTP Response
14 Jul, 2008
06:08:04
HTTP/1.1 200 OK
ID878692 (termination link)
TitleHalifax
Entry
PIRT Squad
Reporter
Submitted anonymously thru the web, or sent to pirt (at) castlecops (dot) com.
Timestamp26 Jun, 2008 @ 05:57:17
Topic ID224232 - Read/respond to PIRT commentary.
Handler Note:
27 Jun, 2008
18:48:06
s0tet: View CIDR AS30099 Report: http://www.cidr-report.org/cgi-bin/as-report?as=30099

"30099 | US | arin | 2003-07-21 | SB-2 - ServerBeach"

Handler Note:
27 Jun, 2008
18:48:07
s0tet: Extended information for AS30099:
State/Province: tx
Country: us
Responsible Domain: serverbeach.com
Abuse Email: abuse@serverbeach.com
Handler Note:
27 Jun, 2008
18:58:42
s0tet: reoccurring phishing site, looks like file manager is compromised.
Handler Note:
27 Jun, 2008
19:05:32
s0tet: Generated and sent email phish alert to respective parties.
Fetched URLs

Report for at 26 Jun, 2008 @ 06:06:24


fetched page

thumbnail
at 26 Jun, 2008 @ 06:06:27
MD5 Fingerprint: 85fedb647da496a23cc3cb0728fe120c
SHA1 Fingerprint: f4cad8bd0a968cb3b04e28be4878cf1b34ac611a

fetched page

at 27 Jun, 2008 @ 18:43:32
MD5 Fingerprint: d41d8cd98f00b204e9800998ecf8427e
SHA1 Fingerprint: da39a3ee5e6b4b0d3255bfef95601890afd80709

fetched page

at 27 Jun, 2008 @ 18:43:53
MD5 Fingerprint: cc4b3c76bffc3f4260d29e984cb51168
SHA1 Fingerprint: cd7a0d2b22aaed589dd985d377a665be668bded5

fetched page

at 27 Jun, 2008 @ 18:48:33
MD5 Fingerprint: 85fedb647da496a23cc3cb0728fe120c
SHA1 Fingerprint: f4cad8bd0a968cb3b04e28be4878cf1b34ac611a

fetched page

at 27 Jun, 2008 @ 18:49:55
MD5 Fingerprint: 4b06f91d8d098615b4548516aed70648
SHA1 Fingerprint: ce5929150b82dcd09723bbd34b11862887ae6de1
Version 1.0