Spyware Sucks
“There is no magic fairy dust protecting Macs" – Dai Zovi, author of “The Mac Hacker’s Handbook"

Lots of bad domains…

March 22nd 2012 in Uncategorized

Thank you to the source – you know who you are Smile

adpointroll.com – 85.93.18.197

adsturn.com – 85.93.18.198

adsvirginmobileusa.com – 85.93.18.200

advirginmobileusa.com – 85.93.18.200

advirginmobileusainc.com – 85.93.18.200

best-serving.com – 85.93.18.202

convertro.net – 85.93.18.201

cpmtrack.net

ctrtrack-15.com – 85.93.18.198

daviselenserver.com – 85.93.18.194, 85.93.18.201

d1openx.com – 85.93.18.208

dlopenx.com – 85.93.18.201

hostcreati.com – 85.93.18.204

interclickctr.com – 85.93.18.198

impsserv.com – 85.93.18.203

letfen.com – 85.93.18.197

novastr.com – 85.93.18.198

pedone-ads.com – 85.93.18.209

runimps.com – 85.93.18.204

statimps.com – 85.93.18.196

stats-tr.com – 85.93.18.197

track-t10.com – 85.93.18.197

t5track.com – 85.93.18.199

wellserving.com – 85.93.18.198


2 comments to...
“Lots of bad domains…”

Conrad Longmore

Hi Sandi.. glad to see some new posts!

The closest CIDR subnet I can work out is 85.93.18.192/28, I’ve just added it to our blocklist here. Thanks :)



sandi

Hi Conrad!

Yes, it has been crazy busy, but a light at the end of the tunnel. Hope that you and yours are well and happy.

Sandi


RepEquityinc.com – reported as impersonating the legitimate domain RepEquity.com and claiming to represent RealtyTrac ICANN Registrar: BIZCN.COM Created 2 March 2012 IP: 64.120.234.197 Registrant: Fern Tindell (admin@repequityinc.com) Sharing IP address with 9 other domains: 1285.ru, blackseoworld.com, canstansa.com, earthclassmail-corporate.com, legalsklad.com, mansuetocorp.com, virtualpostmail.net. vvsmail.com, wbshop.biz Provided the following [...]

Previous Entry

This email is NOT from Bigpond. Interestingly it seems to have been sent to the @bigpond.com email recipient using a compromised @bigpond.com user account. The source IP address, 180.215.155.152, is in India. If you reply to the email, your email actually goes to webaccountdept@w.cn: [...]

Next Entry