Return-path: <>
Envelope-to: solusito@nuna.solusitotal.com
Delivery-date: Tue, 03 Sep 2013 03:25:31 +0700
Received: from mailnull by nuna.solusitotal.com with local (Exim 4.80.1)
	id 1VGagl-0006NS-Bk
	for solusito@nuna.solusitotal.com; Tue, 03 Sep 2013 03:25:31 +0700
X-Failed-Recipients: rizkyseluler@yahoo.co.id
Auto-Submitted: auto-replied
From: Mail Delivery System <Mailer-Daemon@nuna.solusitotal.com>
To: solusito@nuna.solusitotal.com
Subject: Mail delivery failed: returning message to sender
Message-Id: <E1VGagl-0006NS-Bk@nuna.solusitotal.com>
Date: Tue, 03 Sep 2013 03:25:31 +0700

This message was created automatically by mail delivery software.

A message that you sent could not be delivered to one or more of its
recipients. This is a permanent error. The following address(es) failed:

  rizkyseluler@yahoo.co.id
    (ultimately generated from ridlwan@solusitotal.com)
    SMTP error from remote mail server after end of data:
    host mx-apac.mail.gm0.yahoodns.net [106.10.166.54]:
    554 Message not allowed - [PH01] Email not accepted for policy reasons.  Please visit http://postmaster.yahoo.com/errors/postmaster-27.html [120]

------ This is a copy of the message, including all the headers. ------

Return-path: <solusito@nuna.solusitotal.com>
Received: from solusito by nuna.solusitotal.com with local (Exim 4.80.1)
	(envelope-from <solusito@nuna.solusitotal.com>)
	id 1VGagd-0006N3-6X; Tue, 03 Sep 2013 03:25:23 +0700
To: "antiphishing@s21sec.com" <antiphishing@s21sec.com>
Subject: [Ticket ID: 528783] Re: Fraudulent Web Site Found on Server (http://207.7.87.183/~paranach/Frances/2da.html) [BBVAR20130901(2)]
X-PHP-Script: solusitotal.com/mutiakusayang/supporttickets.php for 223.255.224.77
Date: Tue, 3 Sep 2013 03:25:23 +0700
From: SolusiTOTAL Abuse <do_not_reply@solusitotal.com>
Message-ID: <16d03cad1e9dd19e0be75f8927a437cc@solusitotal.com>
X-Priority: 3
X-Mailer: SolusiTOTAL
MIME-Version: 1.0
Content-Type: multipart/alternative;
	boundary="b1_16d03cad1e9dd19e0be75f8927a437cc"

--b1_16d03cad1e9dd19e0be75f8927a437cc
Content-Type: text/plain; charset=utf-8
Content-Transfer-Encoding: quoted-printable




Ticket ID: #528783
Department: Abuse
Priority:&nbsp;High
Ticket URL: https://solusitotal.com/viewticket.php?tid=3D528783&c=3DSPqX7b9=
a




Dear s21sec.com,



Thanks you have been contact us, we have removed all the content on the par=
anach account and we have also suspend paranach account.



Copy of the original your complaint(s):

=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D

Estimated Sir/Madam,



S21sec has been informed that there is currently a website hosted by your c=
ompany that is involved in a Phishing scheme to obtain personal account inf=
ormation from the customers of BBVA Banco Franc=C3=A9s (Argentina). S21sec =
has received numerous complaints and e-mails regarding the Web site listed =
below:



http://207.7.87.183/~paranach/Frances/2da.html   





The ip resolve to solusitotal.com



We enclose below the legitimate urls for BBVA Banco Franc=C3=A9s (Argentina=
):

https://www.bancofrances.com.ar

https://hb.bbv.com.ar/hbbf/login_popup.jsp?tipo=3DE

https://www.francesnetcash.com.ar



According to published WHOIS and DNS data, the Web Site involved is owned a=
nd hosted by:

[Preguntando whois.arin.net]

[whois.arin.net]



#

# ARIN WHOIS data and services are subject to the Terms of Use

# available at: https://www.arin.net/whois_tou.html

#





#

# Query terms are ambiguous. The query is assumed to be:

# &quot;n 207.7.87.183&quot;

#

# Use &quot;?&quot; to get help.

#



#

# The following results may also be obtained via:

# http://whois.arin.net/rest/nets;q=3D207.7.87.183?showDetails=3Dtrue&amp;s=
howARIN=3Dfalse&amp;ext=3Dnetref2

#



PrivateSystems Networks TX PRIVATE-TX-3 (NET-207-7-80-0-2) 207.7.80.0 - 207=
=2E7.87.255

PrivateSystems Networks PRIVATE-3 (NET-207-7-80-0-1) 207.7.80.0 - 207.7.95.=
255







#

# ARIN WHOIS data and services are subject to the Terms of Use

# available at: https://www.arin.net/whois_tou.html

#



On behalf of BBVA Banco Franc=C3=A9s (Argentina), S21sec requests that the =
Web site(s) listed above be deactivated and removed from your servers. BBVA=
 Banco Franc=C3=A9s (Argentina) would like you to provide S21sec the source=
 code, including any data collected, of this Web site for analysis to help =
prevent further phishing schemes. If any customer data has been collected, =
it will be forwarded to BBVA Banco Franc=C3=A9s (Argentina) so that they ma=
y notify their customers regarding this issue and take other appropriate ac=
tions as needed.



S21sec is the leading company specialized in computer security services. It=
 was founded in 2000 with the aim of preventing and managing organization r=
isks and people in the digital world.



Please contact us if any further information is required to expedite the pr=
ocess of removing this Web site from service. If needed, forward this e-mai=
l and request to the appropriate contact that is able to deactivate this si=
te.



Thank you for your time and consideration.



=E2=80=94



Security Operations Center (S.O.C.)

e-mail: antiphishing@s21sec.com

Telephone: +34902111521

www.s21sec.com 

=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D





Regards,



SolusiTOTAL.Com





----------------------------------------------------


Ticket ID: #528783
Subject: Re: Fraudulent Web Site Found on Server (http://207.7.87.183/~para=
nach/Frances/2da.html) [BBVAR20130901(2)]
Department: Abuse
Priority:&nbsp;High
Status: Open
Ticket URL: https://solusitotal.com/viewticket.php?tid=3D528783&c=3DSPqX7b9=
a


----------------------------------------------------



--b1_16d03cad1e9dd19e0be75f8927a437cc
Content-Type: text/html; charset=utf-8
Content-Transfer-Encoding: quoted-printable

<style>
body,td { font-family: verdana; font-size: 11px; font-weight: normal; }
a { color: #0000ff; }
</style>
<p><a href=3D"https://solusitotal.com/index.php" target=3D"_blank"><img src=
=3D"https://solusitotal.com/images/logo.png" alt=3D"SolusiTOTAL" border=3D"=
0" /></a></p>
<p>Ticket ID: #528783<br />Department: Abuse<br />Priority:&nbsp;High<br />=
Ticket URL: <a href=3D"https://solusitotal.com/viewticket.php?tid=3D528783&=
c=3DSPqX7b9a">https://solusitotal.com/viewticket.php?tid=3D528783&c=3DSPqX7=
b9a</a><br /><br /><br /><br />
Dear s21sec.com,<br />
<br />
Thanks you have been contact us, we have removed all the content on the par=
anach account and we have also suspend paranach account.<br />
<br />
Copy of the original your complaint(s):<br />
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D<br=
 />
Estimated Sir/Madam,<br />
<br />
S21sec has been informed that there is currently a website hosted by your c=
ompany that is involved in a Phishing scheme to obtain personal account inf=
ormation from the customers of BBVA Banco Franc=C3=A9s (Argentina). S21sec =
has received numerous complaints and e-mails regarding the Web site listed =
below:<br />
<br />
<a href=3D"http://207.7.87.183/~paranach/Frances/2da.html" target=3D"_blank=
">http://207.7.87.183/~paranach/Frances/2da.html</a>   <br />
<br />
<br />
The ip resolve to solusitotal.com<br />
<br />
We enclose below the legitimate urls for BBVA Banco Franc=C3=A9s (Argentina=
):<br />
<a href=3D"https://www.bancofrances.com.ar" target=3D"_blank">https://www.b=
ancofrances.com.ar</a><br />
<a href=3D"https://hb.bbv.com.ar/hbbf/login_popup.jsp?tipo=3DE" target=3D"_=
blank">https://hb.bbv.com.ar/hbbf/login_popup.jsp?tipo=3DE</a><br />
<a href=3D"https://www.francesnetcash.com.ar" target=3D"_blank">https://www=
=2Efrancesnetcash.com.ar</a><br />
<br />
According to published WHOIS and DNS data, the Web Site involved is owned a=
nd hosted by:<br />
[Preguntando whois.arin.net]<br />
[whois.arin.net]<br />
<br />
#<br />
# ARIN WHOIS data and services are subject to the Terms of Use<br />
# available at: <a href=3D"https://www.arin.net/whois_tou.html" target=3D"_=
blank">https://www.arin.net/whois_tou.html</a><br />
#<br />
<br />
<br />
#<br />
# Query terms are ambiguous. The query is assumed to be:<br />
# &quot;n 207.7.87.183&quot;<br />
#<br />
# Use &quot;?&quot; to get help.<br />
#<br />
<br />
#<br />
# The following results may also be obtained via:<br />
# <a href=3D"http://whois.arin.net/rest/nets;q=3D207.7.87.183?showDetails=
=3Dtrue&amp;showARIN=3Dfalse&amp;ext=3Dnetref2" target=3D"_blank">http://wh=
ois.arin.net/rest/nets;q=3D207.7.87.183?showDetails=3Dtrue&amp;showARIN=3Df=
alse&amp;ext=3Dnetref2</a><br />
#<br />
<br />
PrivateSystems Networks TX PRIVATE-TX-3 (NET-207-7-80-0-2) 207.7.80.0 - 207=
=2E7.87.255<br />
PrivateSystems Networks PRIVATE-3 (NET-207-7-80-0-1) 207.7.80.0 - 207.7.95.=
255<br />
<br />
<br />
<br />
#<br />
# ARIN WHOIS data and services are subject to the Terms of Use<br />
# available at: <a href=3D"https://www.arin.net/whois_tou.html" target=3D"_=
blank">https://www.arin.net/whois_tou.html</a><br />
#<br />
<br />
On behalf of BBVA Banco Franc=C3=A9s (Argentina), S21sec requests that the =
Web site(s) listed above be deactivated and removed from your servers. BBVA=
 Banco Franc=C3=A9s (Argentina) would like you to provide S21sec the source=
 code, including any data collected, of this Web site for analysis to help =
prevent further phishing schemes. If any customer data has been collected, =
it will be forwarded to BBVA Banco Franc=C3=A9s (Argentina) so that they ma=
y notify their customers regarding this issue and take other appropriate ac=
tions as needed.<br />
<br />
S21sec is the leading company specialized in computer security services. It=
 was founded in 2000 with the aim of preventing and managing organization r=
isks and people in the digital world.<br />
<br />
Please contact us if any further information is required to expedite the pr=
ocess of removing this Web site from service. If needed, forward this e-mai=
l and request to the appropriate contact that is able to deactivate this si=
te.<br />
<br />
Thank you for your time and consideration.<br />
<br />
=E2=80=94<br />
<br />
Security Operations Center (S.O.C.)<br />
e-mail: antiphishing@s21sec.com<br />
Telephone: +34902111521<br />
<a href=3D"http://www.s21sec.com" target=3D"_blank">www.s21sec.com</a> <br =
/>
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D<br=
 />
<br />
<br />
Regards,<br />
<br />
SolusiTOTAL.Com<br /><br /><br /></p>
<p>----------------------------------------------------</p>
<p>Ticket ID: #528783<br />Subject: Re: Fraudulent Web Site Found on Server=
 (http://207.7.87.183/~paranach/Frances/2da.html) [BBVAR20130901(2)]<br />D=
epartment: Abuse<br />Priority:&nbsp;High<br />Status: <span style=3D"color=
:#779500">Open</span><br />Ticket URL: <a href=3D"https://solusitotal.com/v=
iewticket.php?tid=3D528783&c=3DSPqX7b9a">https://solusitotal.com/viewticket=
=2Ephp?tid=3D528783&c=3DSPqX7b9a</a></p>
<p>----------------------------------------------------</p>


--b1_16d03cad1e9dd19e0be75f8927a437cc--

