This archive is retained to ensure existing URLs remain functional. It will not contain any emails sent to this mailing list after July 1, 2024. For all messages, including those sent before and after this date, please visit the new location of the archive at https://mailman.ripe.net/archives/list/anti-abuse-wg@ripe.net/
[anti-abuse-wg] Abuse contact of 85.95.235.0 - 85.95.235.255 not working (emails bounce)
- Next message (by thread): [anti-abuse-wg] Abuse contact of 85.95.235.0 - 85.95.235.255 not working (emails bounce)
Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
U.Mutlu
security at mutluit.com
Wed Oct 3 12:21:24 CEST 2012
Abuse email contact of 85.95.235.0 - 85.95.235.255 not working (emails bounce): The abuse contact email address of the the following RIPE member isn't functioning for more than 3 weeks now as all mails to that address bounce: " SMAIL SMTP-Send MX = "mail.atalaybilisim.com." SMTP = "mutluit.com" From = "security at mutluit.com" To = "dns at atalaybilisim.com" Failed ! SMTP-Error = "550 Requested action not taken: mailbox unavailable or not local" SMTP-Server = "mail.atalaybilisim.com." " Additionally, they have given their IP 85.95.235.101 the DNS hostname "localhost.mail.localdomain" . The same with their second IP 85.95.235.102. Is this legal? Isn't that an indication for a "mail server hacker collective"? The above said two IPs are among the bounced abuse reports. ############# # nslookup 85.95.235.101 Non-authoritative answer: 101.235.95.85.in-addr.arpa name = localhost.mail.localdomain. ############# # nslookup 85.95.235.102 Non-authoritative answer: 102.235.95.85.in-addr.arpa name = localhost.mail.localdomain. ############# # whois 85.95.235.101 % This is the RIPE Database query service. % The objects are in RPSL format. % % The RIPE Database is subject to Terms and Conditions. % See http://www.ripe.net/db/support/db-terms-conditions.pdf % Note: this output has been filtered. % To receive output for a database update, use the "-B" flag. % Information related to '85.95.235.0 - 85.95.235.255' inetnum: 85.95.235.0 - 85.95.235.255 netname: INETMAR descr: Turkhosting-Colocation Network remarks: ********************************************* remarks: *** Abuse Reports to: dns at atalaybilisim.com *** remarks: *** This IP block is used for web hosting,*** remarks: *** dedicated and co-located servers. In *** remarks: *** case of spam, please only deal with *** remarks: *** originator IP only. *** remarks: *** DO NOT DEAL WITH THE WHOLE IP BLOCK *** remarks: ********************************************* country: TR admin-c: OA1064-RIPE tech-c: OA1064-RIPE status: ASSIGNED PA mnt-by: TURKHOSTING-MNT source: RIPE # Filtered person: Oguz Atalay address: 189 CADDE 270 SOKAK NO: 2/A phone: +903123187847 fax-no: +903123187848 nic-hdl: OA1064-RIPE source: RIPE # Filtered % Information related to '85.95.235.0/24AS49467' route: 85.95.235.0/24 descr: INETMAR-IZMIR origin: AS49467 mnt-by: INETMAR-MNT source: RIPE # Filtered % This query was served by the RIPE Database Query Service version 1.19.9 (WHOIS4) #############
- Next message (by thread): [anti-abuse-wg] Abuse contact of 85.95.235.0 - 85.95.235.255 not working (emails bounce)
Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]