ALERT SCAM alert

MarcinG

New Member
Joined
Dec 5, 2022
Messages
8
Reaction score
1
We had 2 attempts of signups for VoIP service, 2 days in a row. On the surface it looks legit, one more then the other, but the persons had stolen identities.


One was a 73 year old gentleman from Grand Prairie TX, the communication ended when we requested a copy of the government issued ID, IRS SS-4 and bank statement or utility bill.


The other was also an 83 year old lady from Detroit MI, but this is where things got a lot more interesting. We were provided with LLC Certificate of Good Standing for APEX VOIP SOLUTIONS LLC, front and back of Michigan Driver License, and a 4 month old copy of a phone/internet bill. We checked FCC 499 and what do you know — APEX VOIP SOLUTIONS LLC is listed and current, but when we got in touch with the daughter of the 83 year old, we were assured that this is impossible.


APEX VOIP SOLUTIONS LLC even has a registered domain name and a website. This scam runs deep.


In both cases the signups were from VPN IPs and both callers had a slight accent, never asked any questions, not even about price. Both wanted a user/pass for an unlimited package on their own device/PBX.


I hope you understand I am not going to share the names of the victims here, but do your research.
 
We just got one more signup using stolen identity from :
Business: felipe consulting cloud
Email: [email protected]
Phone: 5714939068
IP: 37.19.221.244
 
We had 2 attempts of signups for VoIP service, 2 days in a row. On the surface it looks legit, one more then the other, but the persons had stolen identities.


One was a 73 year old gentleman from Grand Prairie TX, the communication ended when we requested a copy of the government issued ID, IRS SS-4 and bank statement or utility bill.


The other was also an 83 year old lady from Detroit MI, but this is where things got a lot more interesting. We were provided with LLC Certificate of Good Standing for APEX VOIP SOLUTIONS LLC, front and back of Michigan Driver License, and a 4 month old copy of a phone/internet bill. We checked FCC 499 and what do you know — APEX VOIP SOLUTIONS LLC is listed and current, but when we got in touch with the daughter of the 83 year old, we were assured that this is impossible.


APEX VOIP SOLUTIONS LLC even has a registered domain name and a website. This scam runs deep.


In both cases the signups were from VPN IPs and both callers had a slight accent, never asked any questions, not even about price. Both wanted a user/pass for an unlimited package on their own device/PBX.


I hope you understand I am not going to share the names of the victims here, but do your research.
This is crazy
 
Federal Communications Commission (FCC) unanimously approved a Further Notice of Proposed Rulemaking (FNPRM) on April 30, 2026, to strengthen "Know-Your-Customer" (KYC) rules for voice service providers.

The comment period has passed, but will be months before we know if the rules will go into effect.
 
We had 2 attempts of signups for VoIP service, 2 days in a row. On the surface it looks legit, one more then the other, but the persons had stolen identities.


One was a 73 year old gentleman from Grand Prairie TX, the communication ended when we requested a copy of the government issued ID, IRS SS-4 and bank statement or utility bill.


The other was also an 83 year old lady from Detroit MI, but this is where things got a lot more interesting. We were provided with LLC Certificate of Good Standing for APEX VOIP SOLUTIONS LLC, front and back of Michigan Driver License, and a 4 month old copy of a phone/internet bill. We checked FCC 499 and what do you know — APEX VOIP SOLUTIONS LLC is listed and current, but when we got in touch with the daughter of the 83 year old, we were assured that this is impossible.


APEX VOIP SOLUTIONS LLC even has a registered domain name and a website. This scam runs deep.


In both cases the signups were from VPN IPs and both callers had a slight accent, never asked any questions, not even about price. Both wanted a user/pass for an unlimited package on their own device/PBX.


I hope you understand I am not going to share the names of the victims here, but do your research.
Hello Everyone,
I am writing directly from the management team at APEX VOIP SOLUTIONS LLC to respond to Marcin Groszek’s post. While Marcin is busy trying to paint our company as a fraud risk due to VPN signups, his own unprotected server reveals a massive, deeply disturbing truth.
Marcin’s wide-open directory at orange.voipplus.net:8441/RECORDINGS/ORIG/ contains thousands of live call recordings. We have downloaded and listened to these logs, and they expose the exact anatomy of an offshore, inbound tech-support and financial scam ring.
The audio files prove exactly how this criminal operation works on VoipPlus's network:
  1. Postcard / Mailer Traps: The bad actors mail fraudulent postcards to elderly Americans tricking them into calling an inbound number.
  2. "Card Ban" Deception: When victims call in, scammers use scripts claiming the victim's card or bank account has been banned or locked.
  3. Merchant Account Draining: The agents coerce victims into handing over fresh credit card details, which are immediately run through rogue merchant processing accounts to steal their funds.
The voice traffic on these recordings consists of offshore agents handling these illicit transactions.
Marcin is trying to act like a security gatekeeper, but his open server proves VoipPlus is actively providing the telecommunications pipeline for international fraud syndicates. By hosting an unprotected web index filled with active scam operations, he is exposing sensitive financial data, violating compliance regulations, and facilitating elder abuse on his own network.
APEX VOIP SOLUTIONS LLC is an absolute victim of corporate identity theft. Bad actors are using stolen driver's licenses and our public corporate registry to look legitimate. We have already handed over all logs, VPN IPs, and copies of Marcin’s exposed directory directly to the FBI’s IC3 division and the FTC.
Marcin, instead of pointing fingers at companies dealing with identity theft, you need to look at your own routing architecture. We demand you immediately shut down this illegal traffic, protect consumer data, and explain to this forum why your servers are actively hosting inbound merchant fraud.
Sincerely,
Management
APEX VOIP SOLUTIONS LLC
 
Hello Everyone,
I am writing directly from the management team at APEX VOIP SOLUTIONS LLC to respond to Marcin Groszek’s post. While Marcin is busy trying to paint our company as a fraud risk due to VPN signups, his own unprotected server reveals a massive, deeply disturbing truth.
Marcin’s wide-open directory at orange.voipplus.net:8441/RECORDINGS/ORIG/ contains thousands of live call recordings. We have downloaded and listened to these logs, and they expose the exact anatomy of an offshore, inbound tech-support and financial scam ring.
The audio files prove exactly how this criminal operation works on VoipPlus's network:
  1. Postcard / Mailer Traps: The bad actors mail fraudulent postcards to elderly Americans tricking them into calling an inbound number.
  2. "Card Ban" Deception: When victims call in, scammers use scripts claiming the victim's card or bank account has been banned or locked.
  3. Merchant Account Draining: The agents coerce victims into handing over fresh credit card details, which are immediately run through rogue merchant processing accounts to steal their funds.
The voice traffic on these recordings consists of offshore agents handling these illicit transactions.
Marcin is trying to act like a security gatekeeper, but his open server proves VoipPlus is actively providing the telecommunications pipeline for international fraud syndicates. By hosting an unprotected web index filled with active scam operations, he is exposing sensitive financial data, violating compliance regulations, and facilitating elder abuse on his own network.
APEX VOIP SOLUTIONS LLC is an absolute victim of corporate identity theft. Bad actors are using stolen driver's licenses and our public corporate registry to look legitimate. We have already handed over all logs, VPN IPs, and copies of Marcin’s exposed directory directly to the FBI’s IC3 division and the FTC.
Marcin, instead of pointing fingers at companies dealing with identity theft, you need to look at your own routing architecture. We demand you immediately shut down this illegal traffic, protect consumer data, and explain to this forum why your servers are actively hosting inbound merchant fraud.
Sincerely,
Management
APEX VOIP SOLUTIONS LLC
HERE A AUDIO SAMPLE OF SCAMMER
 

Attachments

The comment period has passed, but will be months before we know if the rules will go into effect.
It will go into effect 30 days after it has been published in the Federal Registry. You guys probably will not like what it brings. The current KYC framework is loosey goosey, leaving a lot of it up to individual carriers/providers. Things like collecting ID or not allowing calls until X,Y,Z has been checked will become the norm.

Every VoIP provider in the US will be legally required to collect these main pieces of information from new (or existing) customers:
  • Legal name
  • Physical address
  • Government ID
  • Alternative contact info.
We will also be legally required to no allow any calls until vetting is fully completed. So Bye, Felicia to the whole "sign-up and make calls in 5 minutes" or "Just pre-pay $15 and start making calls".

Additionally, if an existing account (even already vetted) hits a renewal, contract change, service change they are required to be re-vetted (or vetted if they haven't been). Along with if their traffic patterns change, they have bursts of traffic out of norm or if they are a subject of a traceback or ITG complaint...all traffic must be frozen and the customer re-vetted.
 
It will go into effect 30 days after it has been published in the Federal Registry. You guys probably will not like what it brings. The current KYC framework is loosey goosey, leaving a lot of it up to individual carriers/providers. Things like collecting ID or not allowing calls until X,Y,Z has been checked will become the norm.

Every VoIP provider in the US will be legally required to collect these main pieces of information from new (or existing) customers:
  • Legal name
  • Physical address
  • Government ID
  • Alternative contact info.
We will also be legally required to no allow any calls until vetting is fully completed. So Bye, Felicia to the whole "sign-up and make calls in 5 minutes" or "Just pre-pay $15 and start making calls".

Additionally, if an existing account (even already vetted) hits a renewal, contract change, service change they are required to be re-vetted (or vetted if they haven't been). Along with if their traffic patterns change, they have bursts of traffic out of norm or if they are a subject of a traceback or ITG complaint...all traffic must be frozen and the customer re-vetted.
If this is what the FCC have in plan they a very stupid and uneducated they think this can stop illegal calling and if you believe this will solve any problem you are also uneducated more over this is a weak plan and this will allow more illegal calling if your not going to business places to verify stop wasting your efforts this run deep than you think it’s easy yo get a real driver lisence and also a selfie verification scammer are laughing with these new rules you need to do better
 
If this is what the FCC have in plan they a very stupid and uneducated they think this can stop illegal calling and if you believe this will solve any problem you are also uneducated
OK there chief, let's just burn this straw man down right now. Not a single person or entity has said this will stop illegal calling. Much like everything else this is a method of mitigation. Perhaps you should get yourself educated before you start calling other people or policies uneducated. You've been a provider for a hot minute (registered in 2025).
this will allow more illegal calling if your not going to business places to verify
Oh please, provide the data that supports this claim. It's also very clear you think the KYC stuff is a new thing. That's cute, it's been around for sometime now. These are changes to existing framework.
it’s easy yo get a real driver lisence and also a selfie verification
I mean, it's not but that's fine. Nothing about KYC cares about "can you make a fake ID?" because if the only thing you are doing is visual verification of an ID, you've already failed KYC. Also, if you had educated yourself on this, you would realize that a standard drivers license is just **one form of government ID** and it's not a required piece of ID for KYC. As the provider I could require REAL ID, Enhanced Drivers License or a Passport as the acceptable forms of government ID.

Again, if all you are doing for KYC is going "Oh I got a name, address, credit card and drivers license. It looks OK" and you don't do any real background/verification checks beyond that. You've failed KYC and under the new rules will be fined for each failure. The current rules don't have a fine penalty for failing proper KYC processes. You would know that if you had educated yourself on the matter.
 
Sounds like a couple of entities are going to be under investigation before long.
 
It will go into effect 30 days after it has been published in the Federal Registry.
Not quite how that works, There are 30 days of comment period. Then they have to evaluate the comments. If the comments are overwhelming against it, the rule does not go into effect. If they are for it, then the rule will take affect a later time in the future. Businesses have be notified of the rule has been approved, and time to prepare for the change. Though I am unsure of the time frame.
 
Not quite how that works, There are 30 days of comment period. Then they have to evaluate the comments. If the comments are overwhelming against it, the rule does not go into effect. If they are for it, then the rule will take affect a later time in the future. Businesses have be notified of the rule has been approved, and time to prepare for the change. Though I am unsure of the time frame.
I was replying to your original statement of "The comment period has passed, but will be months before we know if the rules will go into effect." and since all the comments are closed and no one can reply to them the next step would be to accept/reject it. If it's accepted then a Report and Order is issued and unless the Report and Order has a specific effective date the default is 30 days one published in the Federal Registry. That's how businesses are notified, it's published in the Federal Registry.

Per FCC rule § 1.427, any rule issued by the Commission will be made effective not less than 30 days from the time it is published in the Federal Register. If the Report and Order doesn't specify an effective date, it defaults to 30 days after Federal Register publication.
So we always know when a rule goes into effect because a Rule and Order is published in the Federal Registry which defaults to 30 days before it goes into effect unless the Rule and Order specifies the effective date.

My bad really, I should have said "if it's accepted a Rule and Order will be published in the Federal Registry with a default 30 days unless otherwise noted". I just thought it was implied since the NPRM stage was already done and thus already published in the Federal Registry.
 

Forum statistics

Threads
26,810
Messages
175,232
Members
20,364
Latest member
tucker-too
Get 3CX - Absolutely Free!

Link up your team and customers Phone System Live Chat Video Conferencing

Hosted or Self-managed. Up to 10 users free forever. No credit card. Try risk free.

3CX
A 3CX Account with that email already exists. You will be redirected to the Customer Portal to sign in or reset your password if you've forgotten it.
Back
Top