I once ran into a similar situation.
I kept getting phishing emails from a certain domain so I did a lookup and called the number listed in the whois. At first when I called I was gonna call and tell the guy off, but apparently it was a stolen card, so I decided to help

The whois info was the info of the credit card owner and I actually talked to his wife. She was a bit surprised and I told her what she needed to do and she was very thankful.