mrmaxx Posted June 23, 2005 Share Posted June 23, 2005 I'm starting to see a lot of spamvertised websites in Russia... Sites hosted on Tekcom.ru. Unfortunately there is ONE contact for this domain and that one contact bounces. Is there any hope of an upstream provider? Here's tracking URL (for all the good it's likely to do... SC didn't pick up the spamvertised URL): http://www.spamcop.net/sc?id=z777977655z31...51fc1122a15286z The spamvertised website in question is http://pillsblx9ffvch8t9ple.prebendaryhh.com/ which resolves to 194.126.190.17 for me... So, if anyone has a good idea for an override to any sort of upstream provider, I'd appreciate it. Thanks. Link to comment Share on other sites More sharing options...
turetzsr Posted June 23, 2005 Share Posted June 23, 2005 <snip> The spamvertised website in question is http://pillsblx9ffvch8t9ple.prebendaryhh.com/ which resolves to 194.126.190.17 for me... So, if anyone has a good idea for an override to any sort of upstream provider, I'd appreciate it. 29525[/snapback] ...Well, I ran a tracert and before it went to the end domin (tekcom.ru) it passed through 217.239.39.58. According to G E E K T O O L S whois:% This is the RIPE Whois query server #2. % The objects are in RPSL format. % % Note: the default output of the RIPE Whois server % is changed. Your tools may need to be adjusted. See % http://www.ripe.net/db/news/abuse-proposal-20050331.html % for more details. % % Rights restricted by copyright. % See http://www.ripe.net/db/copyright.html % Note: This output has been filtered. % To receive output for a database update, use the "-B" flag % Information related to '217.239.37.0 - 217.239.41.255' inetnum: 217.239.37.0 - 217.239.41.255 netname: DTAG-INT1 descr: Deutsche Telekom AG, Internet Service Provider country: DE admin-c: WS425-RIPE tech-c: DTST status: ASSIGNED PA remarks: ************************************************************ remarks: * ABUSE CONTACT: abuse[at]t-ipnet.de IN CASE OF HACK ATTACKS, * remarks: * ILLEGAL ACTIVITY, VIOLATION, SCANS, PROBES, spam, ETC. * remarks: ************************************************************ mnt-by: DTAG-NIC source: RIPE # Filtered person: WN-IPC-IIC Stuttgart address: Deutsche Telekom AG address: Deckerstr.35 address: 70372 Stuttgart e-mail: WN-IPC-IIC.Stuttgart[at]Telekom.de phone: +49 711 270 2814 fax-no: +49 711 270 2829 mnt-by: DTAG-NIC nic-hdl: WS425-RIPE mnt-by: DTAG-NIC source: RIPE # Filtered person: Security Team address: Deutsche Telekom AG address: Germany phone: +49 180 5334332 fax-no: +49 180 5334252 e-mail: abuse[at]t-ipnet.de nic-hdl: DTST mnt-by: DTAG-NIC source: RIPE # Filtered % Information related to 'WS425-RIPE' route: 217.224.0.0/11 descr: Deutsche Telekom AG, Internet service provider origin: AS3320 member-of: AS3320:RS-PA-TELEKOM mnt-by: DTAG-RR source: RIPE # Filtered So I'd report it to abuse[at]t-ipnet.de (abuse address for Deutsche Telekom AG). Link to comment Share on other sites More sharing options...
mrmaxx Posted June 23, 2005 Author Share Posted June 23, 2005 ...Well, I ran a tracert and before it went to the end domin (tekcom.ru) it passed through 217.239.39.58. According to G E E K T O O L S whois:So I'd report it to abuse[at]t-ipnet.de (abuse address for Deutsche Telekom AG). 29527[/snapback] Ok. Thanks... I'll keep that in mind. 'Preciate it. Link to comment Share on other sites More sharing options...
Recommended Posts
Archived
This topic is now archived and is closed to further replies.