PGTS G. Patterson.   T/A PGTS ABN: 99885392845

point Site Navigation

point Other Blog Threads



  Valid HTML 4.01 Transitional

   Download Kubuntu Today

   Ubuntu

   The Power Of KDE + Ubuntu






PGTS Blog Archive

Thread: Internet Security/Malware/Spam

Author Image Gerry Patterson. The world's most humble blogger
There are 10 types of people in the world. Those who understand binary and those who don't.

Tiscali repeat


Chronogical Blog Entries:



Date: Sun, 16 Jan 2005 23:50:20 +1100

Some spam just arrived from 83.154.168.192. The headers identify ppp.tiscali.fr as the domain. This is the correct name (returned by DNS lookup). It is a dial-up network.

Headers are as follows:

 From kuo@3aweb.com Sun Jan 16 23:15:39 2005
 Return-Path: <kuo@3aweb.com>
 Received: from dyn-83-154-168-192.ppp.tiscali.fr (dyn-83-154-168-192.ppp.tiscali.fr [83.154.168.192])
 	by pgts04.pgts.com.au (8.11.6/8.11.6) with SMTP id j0GCFYm41527
 	for <info@pgts.com.au>; Sun, 16 Jan 2005 23:15:36 +1100 (EST)
 	(envelope-from kuo@3aweb.com)
 Message-ID: <30e201c4fbc1$1ca00ca4$850832d0@3aweb.com>
 From: "Susan M. Taylor" <kuo@3aweb.com>
 To: info@pgts.com.au
 Subject: =?iso-8859-1?B?U3dpc3Mgd2F0Y2hlcyAtIHJlcGxpY2E=?=
 Date: Sun, 16 Jan 2005 11:52:11 +0000
 MIME-Version: 1.0
 Content-Type: multipart/related;
     type="multipart/alternative";
     boundary="----=_NextPart_000_0000_FA385981.9B2A4014"
 X-Priority: 3
 X-MSMail-Priority: Normal
 X-Mailer: Microsoft Outlook Express 6.00.2600.0000
 X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000

And according to nslookup:

    Non-authoritative answer:
    192.168.154.83.in-addr.arpa     name = dyn-83-154-168-192.ppp.tiscali.fr.

    Authoritative answers can be found from:
    154.83.in-addr.arpa     nameserver = ns3.libertysurf.net.
    154.83.in-addr.arpa     nameserver = ns.ripe.net.
    154.83.in-addr.arpa     nameserver = ns.libertysurf.net.
    154.83.in-addr.arpa     nameserver = ns2.libertysurf.net.

The address 83.154.168.192 is listed in only four lists in OpenRBL (3 lists that i do not use, since they are too agressive). It was listed in SORBS, however there was a removal request!

Tiscali seem to be an International firm providing broadband services. The fact that they are so large, may acoount for their popularity amongst spammers.

Well at least, I have finished the program that formats this blog ... so I can put it online. Next I need to finish the software for editing.


Other Blog Posts In This Thread:

Copyright     2005, Gerry Patterson. All Rights Reserved.