palladiumgroup.biz ~ Palladium Group Inc

The Purpose of this post is to ALERT you that the job you are about to apply for or may have applied FOR or is CONSIDERING APPLYING FOR is FRAUDULENT.

These job postings are an attempt to lure you into cashing counterfeit checks and have you wire funds via Western Union or MoneyGram. Essentially You Become A Money or RePackage Mule.

The identity of an individual or entity have been stolen along with fund from their bank accounts. You are being recruited to wire transfer these funds either by WESTERN UNION, MONEYGRAM, into your bank, a DOMESTIC BANK or FOREIGN BANK ACCOUNT

  1. Understanding The Cyber Theft Ring
  2. Money Mule Explained
  3. Protecting Yourself Against Money Mule
  4. Washingtonpost.com by Brian Kerbs
  5. Interview With A Money Mule
  6. Bobbear.co.UK ~ Historical Money Mule Sites

____________________

  1. vision-systems-ltd.com
  2. vision-systems-uk.org
  3. career@bechtel-us.com
  4. pnsexpress.com
  5. widespreadlogist.com

Main Address:
Office Suites
105 POST STREET
MIDLAND MI 48640-2658E
USA

Tel: 1-989-941-0260
Fax” 1-585-410-6004

E-mail:

Administration: mail to:
admin@palladiumgroup.biz

Support: mail to:
support@palladiumgroup.biz

Job: mail to:
job@palladiumgroup.biz

Webmaster: mail to:
webmaster@palladiumgroup.biz

4 thoughts on “palladiumgroup.biz ~ Palladium Group Inc

  1. SFA Reporter says:

    The following A records are set to 178.32.101.150:
    refinthebox.com

    The domain refinthebox.com is hosted from IP address
    178.32.101.150, having reverse-lookup 178-32-101-150.ovh.net and inward-pointing nameservers

    1. ns2.mydyndns.org
    2. ns1.mydyndns.org
    3. ns3.mydyndns.org
    4. ns4.mydyndns.org
    5. ns5.mydyndns.org

    Our records show that other domains are hosted from this IP, such as eureos.net, urbanisme-meylan.com, and clic-vin.com, among others. The server hosting refinthebox.com is located in a data center in Roubaix, Nord-Pas-de-Calais, France. Judged by traffic volume, refinthebox.com is ranked beyond the top 1 million among all websites by Quantcast.

    208.76.59.169 resolves to ns2169.dns.dyn.com.

    The following A records are set to 208.76.59.169:
    ns2169.dns.dyn.com,
    ns3.websitehostingcorp.com

    Ns2.websitehostingcorp.com and ns2169.dns.dyn.com point to 208.76.59.169.

    1. Citizendeputy.net
    2. sabre4gprs.com
    3. crowncloudservices.com
    4. vulcanium.com
    5. humancommunities.org

    and at least 94 other hosts use 208.76.59.169 as a name server

    domain: refinthebox.com
    reg_created: 2009-10-25 11:02:46
    expires: 2013-10-25 11:02:46
    created: 2009-10-25 12:02:47
    changed: 2012-10-24 10:28:23
    transfer-prohibited: yes
    ns0: ns1.mydyndns.org
    ns1: ns2.mydyndns.org
    ns2: ns3.mydyndns.org
    ns3: ns4.mydyndns.org
    ns4: ns5.mydyndns.org
    owner-c:
    nic-hdl: JP1761-GANDI
    owner-name: eureos
    organisation: eureos
    person: PASCAL DUPILLE
    address: “12 allée Lac de Garde House Boat 8\r\nSavoie Technolac”
    zipcode: 73374
    city: LE BOURGET DU LAC
    country: France
    phone: +33.612784236
    fax: ”
    email: 6e7fb2c865199655f5dd7b71730d6bc5-405275@contact.gandi.net
    lastupdated: 2013-07-02 17:36:55
    admin-c:
    nic-hdl: JP1761-GANDI
    owner-name: eureos
    organisation: eureos
    person: PASCAL DUPILLE
    address: “12 allée Lac de Garde House Boat 8\r\nSavoie Technolac”
    zipcode: 73374
    city: LE BOURGET DU LAC
    country: France
    phone: +33.612784236
    fax: ”
    email: 6e7fb2c865199655f5dd7b71730d6bc5-405275@contact.gandi.net
    lastupdated: 2013-07-02 17:36:55
    tech-c:
    nic-hdl: JP1761-GANDI
    owner-name: eureos
    organisation: eureos
    person: PASCAL DUPILLE
    address: “12 allée Lac de Garde House Boat 8\r\nSavoie Technolac”
    zipcode: 73374
    city: LE BOURGET DU LAC
    country: France
    phone: +33.612784236
    fax: ”
    email: 6e7fb2c865199655f5dd7b71730d6bc5-405275@contact.gandi.net
    lastupdated: 2013-07-02 17:36:55
    bill-c:
    nic-hdl: JP1761-GANDI
    owner-name: eureos
    organisation: eureos
    person: PASCAL DUPILLE
    address: “12 allée Lac de Garde House Boat 8\r\nSavoie Technolac”
    zipcode: 73374
    city: LE BOURGET DU LAC
    country: France
    phone: +33.612784236
    fax: ”
    email: 6e7fb2c865199655f5dd7b71730d6bc5-405275@contact.gandi.net
    lastupdated: 2013-07-02 17:36:55

  2. SFA Reporter says:

    The Following A records are set to 84.19.65.98:

    1. acoviplive.com,
    2. acoviplux.com,
    3. acoviptop.com,
    4. aextrabingokpcash.com,
    5. aextraclubkpcash.com,
    6. alinemagiceudice.com,
    7. alotlifevipsp.com,
    8. amagiccasheurodice.com,
    9. amagictopeudice.com,
    10. astarsmagiceudice.com,
    11. avivabingoseurodice.com,
    12. awebmagiceurodice.com,
    13. bestfortunaclub. com,
    14. bingograndpalace.com,
    15. bonuslotbetday.com,
    16. ecashvivaeurodice.com,
    17. ecoviplux.com,
    18. elotnetbetday.com,
    19. eluxlifelotsp.com,
    20. estarsvivaeudice.com,
    21. extracashwebkp.com,
    22. extraclubcashkp.com,
    23. extraclubkpcash.com,
    24. extrahillkpcash.com,
    25. grandpalaceline.com,
    26. grandpalaceslots.com,
    27. grandpalacewin.com,
    28. grandpalaceworld.com,
    29. ilotclubluxurysp.com,
    30. iluxurylinerealsp.com,
    31. ivivawebgoldensp.com,
    32. iweblinevivasp.com,
    33. jbonusextrabetday.com,
    34. jextralinebetday.com,
    35. jluxlifevivasp.com,
    36. joluxurylinevivasp.com,
    37. jultraextrabetday.com,
    38. jvivacashvipsp. com,
    39. jvivalifevipsp.com,
    40. jvivawebgoldensp.com,
    41. jweblifevivadsp.com,
    42. jweblinevivasp.com,
    43. jwebvivagoldensp.com,
    44. lifelinelotbetday.com,
    45. lotbetdaylife.com,
    46. lotcashvipsp.com,
    47. lotclubbetday.com,
    48. lotlinebetday.com,
    49. lotlivebetday.com,
    50. lotnetbetday.com,
    51. lotwebgoldensp.com,
    52. luxlifelotsp.com,
    53. luxlifenicesp.com,
    54. luxurylinenicesp.com,
    55. niceclubluxurysp.com,
    56. nicelifevipsp.com,
    57. nicewebgoldensp.com,
    58. olotcashvipsp.com,
    59. olotlivebetday.com,
    60. olotnetbetday.com,
    61. oluxlifevivasp.com,
    62. ovivaclubluxurysp.com,
    63. ovivawebgoldensp. com,
    64. oweblifelotdsp.com,
    65. owebrealgoldensp.com,
    66. playfortunaclub.com,
    67. qlotcashvipsp.com,
    68. qluxlifevivasp.com,
    69. qluxurylinelotsp.com,
    70. qoluxurylinevivasp.com,
    71. qvivacashvipsp.com,
    72. qvivaclubluxurysp.com,
    73. qvivalifevipsp.com,
    74. qvivawebgoldensp.com,
    75. qweblifelotdsp.com,
    76. qweblifevivadsp.com,
    77. qweblinevivasp.com,
    78. qwebvivagoldensp.com,
    79. royalrubycasino.com,
    80. rubyfortunaclub.com,
    81. rubygoldcasino.com,
    82. rubywestpoint.com,
    83. ugoldenmagiceurodice.com,
    84. ultralotbetday.com,
    85. ustarsmagiceudice.com,
    86. ustarsmagiceurodice.com,
    87. uvivaclubluxurysp.com,
    88. uweblifelotdsp. com,
    89. uweblotgoldensp.com,
    90. uwebvivagoldensp.com,
    91. weblifenicedsp.com,
    92. weblinelotsp.com,
    93. weblotbetday.com,
    94. webrubyfortuna.com,
    95. ygoldenvivaeurodice.com,
    96. ynetcovipcash.com,
    97. ynetcoviptop.com,
    98. ynicelinebetday.com,
    99. ystarsvivaeurodice.com,
    100. yultranicebetday.com,
    101. yweblotgoldensp.com

    route: 84.19.64.0/19
    descr: Cesky Bezdrat
    origin: AS33943
    address: Cesky bezdrat sro
    address: Jiri Panek
    Address: 592 Zámečnická
    Address: 74258 PRIBOR
    address: CZECH REPUBLIC
    phone: +420556712866
    hone: +420-556-712866
    fax-no: +420556722633

  3. SFA Reporter says:

    91.121.107.50 resolves to ks354552.kimsufi.com

    DOMAIN NAME: morter.pl
    registrant type: individual
    nameservers: ns3.morter.pl. [201.182.29.122]
    ns2.morter.pl. [91.121.107.50]
    ns1.morter.pl. [5.135.159.108]
    created: 2013.07.09 14:28:53
    last modified: 2013.07.09 14:30:27
    renewal date: 2014.07.09 14:28:53

    no option

    dnssec: Unsigned
    TECHNICAL CONTACT: data restricted

    REGISTRAR:
    Domain Silver Inc.
    1st Floor, Sham-Peng-Tong
    Plaza Building, Victoria, Mahe
    Seychelles
    e-mail: support@domainsilver.pl
    tel.: +1.3236524343
    tel.: +1.323-652-4343

    WHOIS displays data with a delay not exceeding 15 minutes in relation to the .pl Registry system
    Registrant data available at http://dns.pl/cgi-bin/en_whois.pl

  4. SFA Reporter says:

    Address lookup
    canonical name vision-systems-ltd.com

    aliases
    addresses: 64.120.46.60
    Domain Whois record

    Queried whois.internic.net with “dom vision-systems-ltd.com”…

    Domain Name: VISION-SYSTEMS-LTD.COM
    Registrar: PAKNIC (PRIVATE) LIMITED
    Whois Server: whois.paknic.com
    Referral URL: http://www.paknic.com
    Name Server: NS1.MORTER.PL
    Name Server: NS2.DZEN.PL
    Name Server: NS3.MORTER.PL
    Status: ok
    Updated Date: 19-jul-2013
    Creation Date: 19-jul-2013
    Expiration Date: 19-jul-2014

    Last update of whois database: Thu, 25 Jul 2013 23:32:04 UTC
    Queried whois.paknic.com with "vision-systems-ltd.com

    Registration Service Provided By:RV Ltd. [http://dnregistrar.ru/]

    Domain name: VISION-SYSTEMS-LTD.COM

    Created On: 7/19/2013 2:58:16 PM
    Expires On: 7/19/2014 2:58:16 PM
    Last Updated On: 7/19/2013 2:58:16 PM

    Registrant:
    Janusz Symanski
    Janusz Symanski loof@vision-systems-ltd.com
    ul. Zlotostocka 71
    Wroclaw, Wroclaw 50-511
    PL
    48.53664118 Fax: 48.53664118

    Administrative Contact:
    Janusz Symanski
    Janusz Symanski loof@vision-systems-ltd.com
    ul. Zlotostocka 71
    Wroclaw, Wroclaw 50-511
    PL
    48.53664118 Fax: 48.53664118

    Billing Contact:
    Janusz Symanski
    Janusz Symanski loof@vision-systems-ltd.com
    ul. Zlotostocka 71
    Wroclaw, Wroclaw 50-511
    PL
    48.53664118 Fax: 48.53664118

    Technical Contact:
    Janusz Symanski
    Janusz Symanski loof@vision-systems-ltd.com
    ul. Zlotostocka 71
    Wroclaw, Wroclaw 50-511
    PL
    48.53664118 Fax: 48.53664118

    Domain servers in listed order:
    ns1.morter.pl
    ns2.dzen.pl
    ns3.morter.pl

    Queried rwhois.nobistech.net with "64.120.46.60
    rwhois V-1.0,V-1.5:00090h:00 rwhois.nobistech.net (Ubersmith RWhois Server V-2.3.0)
    autharea=64.120.44.0/22
    xautharea=64.120.44.0/22
    network:Class-Name:network
    network:Auth-Area:64.120.44.0/22
    network:ID:NET-21133.64.120.46.56/29
    network:Network-Name:Base Assignment
    network:IP-Network:64.120.46.56/29
    network:IP-Network-Block:64.120.46.56 – 64.120.46.63
    network:Org-Name:Wright, Malcolm
    network:Street-Address:20 Ash way
    network:City:Stoke On Trent
    network:State:Staffs
    network:Postal-Code:ST2 9DZ
    network:Country-Code:GB
    network:Tech-Contact:MAINT-21133.64.120.46.56/29
    network:Created:20100216213943000
    network:Updated:20130717055104000
    network:Updated-By:admin@nobistech.net
    contact:POC-Name:Nobis Network Administration Team
    contact:POC-Email:admin@nobistech.net
    contact:POC-Phone:admin@nobistech.net
    contact:Tech-Name:Nobis Network Administration Team
    contact:Tech-Email:admin@nobistech.net
    contact:Tech-Phone:admin@nobistech.net
    contact:Abuse-Name:Nobis Network Abuse Team
    contact:Abuse-Email:abuse@nobistech.net
    contact:Abuse-Phone:abuse@nobistech.net
    %ok
    Queried whois.arin.net with "n 64.120.46.60"…

    NetRange: 64.120.0.0 – 64.120.127.255
    CIDR: 64.120.0.0/17
    OriginAS: AS15003
    NetName: NETBLK-NOBIS-TECHNOLOGY-GROUP-06
    NetHandle: NET-64-120-0-0-1
    Parent: NET-64-0-0-0-0
    NetType: Direct Allocation
    Comment: ++++++++++++++++++++++++++++++++++
    Comment: Nobis Technology Group, LLC
    Comment: http://www.nobistech.net
    Comment: For inquiries and complaints
    Comment: about any Nobis IP address
    Comment: space please contact our NOC
    Comment: via e-mail at admin@nobistech.net
    Comment: ++++++++++++++++++++++++++++++++++
    RegDate: 2009-04-24
    Updated: 2012-03-02
    Ref: http://whois.arin.net/rest/net/NET-64-120-0-0-1

    OrgName: Nobis Technology Group, LLC
    OrgId: NTGL
    Address: 6930 East Chauncey Lane
    Address: Suite 150
    City: Phoenix
    StateProv: AZ
    PostalCode: 85054
    Country: US
    RegDate: 2007-01-30
    Updated: 2011-01-10
    Comment: +++++++++++++++++++++++++++
    Comment: Nobis Technology Group, LLC
    Comment: http://www.nobistech.net
    Comment: +++++++++++++++++++++++++++
    Comment:
    Comment: For all inquiries relating
    Comment: to network abuse, network
    Comment: security, DMCA, trademark,
    Comment: legal compliance, and law
    Comment: enforcement requests, contact
    Comment: abuse@nobistech.net via e-mail
    Comment: or via postal mail as follows:
    Comment:
    Comment: Nobis Technology Group
    Comment: ATTN IP Network Operations
    Comment: 6930 East Chauncey Lane
    Comment: Suite 150
    Comment: Phoenix, AZ 85054
    Ref: http://whois.arin.net/rest/org/NTGL

    ReferralServer: rwhois://rwhois.nobistech.net:4321

    OrgNOCHandle: NOC2466-ARIN
    OrgNOCName: NOC
    OrgNOCPhone: +1-480-212-1710
    OrgNOCEmail: admin@nobistech.net
    OrgNOCRef: http://whois.arin.net/rest/poc/NOC2466-ARIN

    OrgAbuseHandle: ABUSE1601-ARIN
    OrgAbuseName: Abuse
    OrgAbusePhone: +1-480-212-1710
    OrgAbuseEmail: abuse@nobistech.net
    OrgAbuseRef: http://whois.arin.net/rest/poc/ABUSE1601-ARIN

    OrgTechHandle: AIA12-ARIN
    OrgTechName: ARIN IP Admin
    OrgTechPhone: +1-480-212-1710
    OrgTechEmail: arin@nobistech.net
    OrgTechRef: http://whois.arin.net/rest/poc/AIA12-ARIN

    RNOCHandle: NOC2466-ARIN
    RNOCName: NOC
    RNOCPhone: +1-480-212-1710
    RNOCEmail: admin@nobistech.net
    RNOCRef: http://whois.arin.net/rest/poc/NOC2466-ARIN

    RTechHandle: AIA12-ARIN
    RTechName: ARIN IP Admin
    RTechPhone: +1-480-212-1710
    RTechEmail: arin@nobistech.net
    RTechRef: http://whois.arin.net/rest/poc/AIA12-ARIN

    RAbuseHandle: ABUSE1601-ARIN
    RAbuseName: Abuse
    RAbusePhone: +1-480-212-1710
    RAbuseEmail: abuse@nobistech.net
    RAbuseRef: http://whois.arin.net/rest/poc/ABUSE1601-ARIN
    DNS records

    name class type data time to live
    vision-systems-ltd.com IN NS ns3.morter.pl 120s (00:02:00)
    vision-systems-ltd.com IN TXT v=spf1 a mx ip4:55.11.65.20/2 ip4:90.2.123.112/2 ip4:176.33.87.19/2 ip4:212.63.89.33/2 ?all 120s (00:02:00)
    vision-systems-ltd.com IN NS ns1.morter.pl 120s (00:02:00)
    vision-systems-ltd.com IN SOA
    server: ns1.vision-systems-ltd.com
    email: hostmaster@vision-systems-ltd.com
    serial: 3
    refresh: 300
    retry: 120
    expire: 86400
    minimum ttl: 60
    120s (00:02:00)
    vision-systems-ltd.com IN NS ns2.dzen.pl 120s (00:02:00)
    vision-systems-ltd.com IN A 64.120.46.60 120s (00:02:00)
    vision-systems-ltd.com IN MX
    preference: 10
    exchange: mx.vision-systems-ltd.com
    120s (00:02:00)
    60.46.120.64.in-addr.arpa IN PTR 64.120.46.60.rdns.ubiquity.io 14400s (04:00:00)
    46.120.64.in-addr.arpa IN RRSIG
    type covered: NSEC (47)
    algorithm: RSA/SHA-1 (5)
    labels: 5
    original ttl: 10800 (03:00:00)
    signature expiration: 2013-08-04 20:02:12Z
    signature inception: 2013-07-25 20:02:12Z
    key tag: 3584
    signer's name: 64.in-addr.arpa
    signature:
    (1024 bits)
    5750570C7A3F6E3CDFFDC7234158BAB1
    0F0556C17D8DCADAA83999D5737D3409
    25ADE31D82B3E9FC144A0B59FFC82A22
    20E22A768A748D17371FE6E59A149A2A
    92F6A3F3241C9F54F36EE72A98757737
    D3E2C6B7AC846CD43CAF310971058CC6
    1ECBB2A634701BE33F6CBEB4CB742761
    E4B54F82D3461D7214E8FF43511BD89F
    8512s (02:21:52)
    46.120.64.in-addr.arpa IN NSEC
    next domain name: 47.120.64.in-addr.arpa
    record types: NS RRSIG NSEC
    8512s (02:21:52)
    46.120.64.in-addr.arpa IN NS ns1.chi.nobistech.net 12112s (03:21:52)
    46.120.64.in-addr.arpa IN NS ns2.chi.nobistech.net 12112s (03:21:52)
    46.120.64.in-addr.arpa IN NS ns1.nyc.nobistech.net 12112s (03:21:52)
    46.120.64.in-addr.arpa IN NS ns1.dal.nobistech.net 12112s (03:21:52)
    46.120.64.in-addr.arpa IN NS ns1.atl.nobistech.net 12112s (03:21:52)
    46.120.64.in-addr.arpa IN NS ns2.sea.nobistech.net 12112s (03:21:52)
    46.120.64.in-addr.arpa IN NS ns2.nyc.nobistech.net 12112s (03:21:52)
    46.120.64.in-addr.arpa IN NS ns2.dal.nobistech.net 12112s (03:21:52)
    46.120.64.in-addr.arpa IN NS ns2.lax.nobistech.net 12112s (03:21:52)
    46.120.64.in-addr.arpa IN NS ns2.atl.nobistech.net 12112s (03:21:52)
    46.120.64.in-addr.arpa IN NS ns1.lax.nobistech.net 12112s (03:21:52)
    46.120.64.in-addr.arpa IN NS ns1.sea.nobistech.net 12112s (03:21:52)
    — end —

Leave A Comment

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out /  Change )

Google photo

You are commenting using your Google account. Log Out /  Change )

Twitter picture

You are commenting using your Twitter account. Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. Log Out /  Change )

Connecting to %s

This site uses Akismet to reduce spam. Learn how your comment data is processed.