He even included my nick on screenshots:
So... i've wrote a PM...
Moment : 13/08/2012 05:34:57
Ip : 78.***.***.205
Host : cpy94-8-**-***-133-205.fbx.proxad.net
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:14.0) Gecko/20100101 Firefox/14.0.1
Pays : France
Région : ile de france
Code postal : 94
Ip : 78.***.***.205
Host : cpy94-8-**-***-133-205.fbx.proxad.net
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:14.0) Gecko/20100101 Firefox/14.0.1
Pays : France
Région : ile de france
Code postal : 94
INSERT INTO hck_users VALUES('4357', '[REDACTED]', 'ecddad13fa84****d084cc863856e624', 'owJcD5ac', '[REDACTED]@hotmail.fr', 78.***.***.205 173.***.**.86', '89.***.**.53'
[REDACTED]:[REDACTED]@hotmail.fr:5a12c***52a29b491bc67af8aa4afafc:+A{,y_*;%&S*u!g#?Q`:Y?}"+FIR;9
[REDACTED]:[REDACTED]@hotmail.fr:5a12c***52a29b491bc67af8aa4afafc:+A{,y_*;%&S*u!g#?Q`:Y?}"+FIR;9
Some profiles:http://www.ubers.org/member.php?action=profile&uid=6470
http://piratologie.free-h.net/member.php?action=profile&uid=4357
http://www.hackforums.net/member.php?action=profile&uid=793421
http://bshades.eu/forums/User-[REDACTED]
http://www.meziamus.com/index.php?/user/7723-[REDACTED]
Some Malwares:
http://kiwi6.com/file/9rvk4rlzql
colly.exe Uploaded on December 01, 2011 by ***.***.236.78
Malware MD5: f0df686c1f696bdb1abda196bf336547
http://up.sur-la-toile.com/sW7Z
Bytes Worm.zip, From 78.***.***.205
No-ip:
mum1.no-ip.org. A 78.***.**.64 2011-08-07 13:30:10 2011-08-07 13:28:01
mum1.no-ip.org. A 78.***.***.205 2011-08-20 15:30:30 2011-08-20 15:27:01
mum1.no-ip.org. A 174.***.**.98 2011-09-01 11:58:05 2011-09-01 11:55:01
mum1.no-ip.org. A 31.***.**.153 2012-02-18 22:12:03 2012-02-18 22:13:03
http://piratologie.free-h.net/member.php?action=profile&uid=4357
http://www.hackforums.net/member.php?action=profile&uid=793421
http://bshades.eu/forums/User-[REDACTED]
http://www.meziamus.com/index.php?/user/7723-[REDACTED]
Some Malwares:
http://kiwi6.com/file/9rvk4rlzql
colly.exe Uploaded on December 01, 2011 by ***.***.236.78
Malware MD5: f0df686c1f696bdb1abda196bf336547
http://up.sur-la-toile.com/sW7Z
Bytes Worm.zip, From 78.***.***.205
No-ip:
mum1.no-ip.org. A 78.***.**.64 2011-08-07 13:30:10 2011-08-07 13:28:01
mum1.no-ip.org. A 78.***.***.205 2011-08-20 15:30:30 2011-08-20 15:27:01
mum1.no-ip.org. A 174.***.**.98 2011-09-01 11:58:05 2011-09-01 11:55:01
mum1.no-ip.org. A 31.***.**.153 2012-02-18 22:12:03 2012-02-18 22:13:03
Habite à [REDACTED].
Mobile: [REDACTED]
Tel: [REDACTED]
La prochaine fois que je te vois essayer de faire un business avec des ransomwares, c'est à la police que j'enverrai les informations.
Update17/10/17: Snipped infos (requested).
Which forum is that at the top?
ReplyDeletelampedeuza
DeleteXylitol, you speak Russian? :)
ReplyDelete:p
ReplyDeleteJe te PM :D
ReplyDeleteHave any idea where the gate to http://krebsonsecurity.com/2012/08/inside-a-reveton-ransomware-operation/ is? I want to see how it looks in my browser
ReplyDeletelampeduza is at the top
ReplyDeleteHello,
ReplyDeleteI Follow your blog for a long time, pretty good ownage !
Thank from France !
Please keep your work up
et comme vous l'aurez devinez cela vient d'un lecteur Français !
Xylitol je t'aime :D
ReplyDeleteJ'aime ce genre de post merci ;)
"Good ownage" comme la bien dit mon voisin du dessus.
Nice one - quelle bande de petits cons))
ReplyDelete