Jump to content

Override / upstream request


mrmaxx

Recommended Posts

I'm starting to see a lot of spamvertised websites in Russia... Sites hosted on Tekcom.ru. Unfortunately there is ONE contact for this domain and that one contact bounces. Is there any hope of an upstream provider? Here's tracking URL (for all the good it's likely to do... SC didn't pick up the spamvertised URL):

http://www.spamcop.net/sc?id=z777977655z31...51fc1122a15286z

The spamvertised website in question is http://pillsblx9ffvch8t9ple.prebendaryhh.com/ which resolves to 194.126.190.17 for me... So, if anyone has a good idea for an override to any sort of upstream provider, I'd appreciate it.

Thanks.

Link to comment
Share on other sites

<snip>

The spamvertised website in question is http://pillsblx9ffvch8t9ple.prebendaryhh.com/ which resolves to 194.126.190.17 for me... So, if anyone has a good idea for an override to any sort of upstream provider, I'd appreciate it.

29525[/snapback]

...Well, I ran a tracert and before it went to the end domin (tekcom.ru) it passed through 217.239.39.58. According to G E E K T O O L S whois:
% This is the RIPE Whois query server #2.

% The objects are in RPSL format.

%

% Note: the default output of the RIPE Whois server

% is changed. Your tools may need to be adjusted. See

% http://www.ripe.net/db/news/abuse-proposal-20050331.html

% for more details.

%

% Rights restricted by copyright.

% See http://www.ripe.net/db/copyright.html

% Note: This output has been filtered.

% To receive output for a database update, use the "-B" flag

% Information related to '217.239.37.0 - 217.239.41.255'

inetnum: 217.239.37.0 - 217.239.41.255

netname: DTAG-INT1

descr: Deutsche Telekom AG, Internet Service Provider

country: DE

admin-c: WS425-RIPE

tech-c: DTST

status: ASSIGNED PA

remarks: ************************************************************

remarks: * ABUSE CONTACT: abuse[at]t-ipnet.de IN CASE OF HACK ATTACKS, *

remarks: * ILLEGAL ACTIVITY, VIOLATION, SCANS, PROBES, spam, ETC. *

remarks: ************************************************************

mnt-by: DTAG-NIC

source: RIPE # Filtered

person: WN-IPC-IIC Stuttgart

address: Deutsche Telekom AG

address: Deckerstr.35

address: 70372 Stuttgart

e-mail: WN-IPC-IIC.Stuttgart[at]Telekom.de

phone: +49 711 270 2814

fax-no: +49 711 270 2829

mnt-by: DTAG-NIC

nic-hdl: WS425-RIPE

mnt-by: DTAG-NIC

source: RIPE # Filtered

person: Security Team

address: Deutsche Telekom AG

address: Germany

phone: +49 180 5334332

fax-no: +49 180 5334252

e-mail: abuse[at]t-ipnet.de

nic-hdl: DTST

mnt-by: DTAG-NIC

source: RIPE # Filtered

% Information related to 'WS425-RIPE'

route: 217.224.0.0/11

descr: Deutsche Telekom AG, Internet service provider

origin: AS3320

member-of: AS3320:RS-PA-TELEKOM

mnt-by: DTAG-RR

source: RIPE # Filtered

So I'd report it to abuse[at]t-ipnet.de (abuse address for Deutsche Telekom AG).
Link to comment
Share on other sites

...Well, I ran a tracert and before it went to the end domin (tekcom.ru) it passed through 217.239.39.58.   According to G E E K T O O L S whois:So I'd report it to abuse[at]t-ipnet.de (abuse address for Deutsche Telekom AG).

29527[/snapback]

Ok. Thanks... I'll keep that in mind. 'Preciate it.

Link to comment
Share on other sites

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...