IP Address Inspector

ATTENTION
  • This IP has not seen any suspicious activity within the last 3 months. This IP is most likely clean and trustworthy now. (This record will remain public for historical purposes, however.)

41.207.162.6

The Project Honey Pot system has detected behavior from the IP address consistent with that of a spam harvester, mail server and dictionary attacker. Below we've reported some other data associated with this IP. This interrelated data helps map spammers' networks and aids in law enforcement efforts. If you know something about this IP, please leave a comment.

Lookup IP In: Domain Tools | SpamHaus | Spamcop | SenderBase | Google Groups | Google

Geographic Location Togo

Harvester First Seen approximately 4 years, 3 months, 4 weeks ago
Harvester Last Seen within 1 year, 8 months, 2 weeks
Harvester Sightings 56 visit(s) to 10 honey pot(s)
Harvester Results 0.5 messages per visit
28 message(s) resulting from harvests
- First: approximately 4 years, 3 months, 3 weeks ago
- Last: approximately 2 years, 6 months, 4 weeks ago
71 email address(es) harvested
- First: approximately 4 years, 3 months, 4 weeks ago
- Last: Tue, 07 Jul 2009 05:23:26 -0700
Time From Harvest
To First Spam
Fastest: 6 mins, 47 secs
Slowest: 2 days, 16 hours, 34 mins, 14 secs
Average: 1 day, 14 hours, 28 mins, 3 secs
Std Dev: 1 day, 6 hours, 40 mins, 38 secs

First Received From approximately 4 years, 7 months, 3 weeks ago
Last Received From within 1 year, 8 months, 2 weeks
Number Received 4,080 email(s) sent from this IP

Dictionary Attacks 737 email(s) sent from this IP
First Received From approximately 3 years, 8 months, 4 weeks ago
Last Received From within 1 year, 8 months, 2 weeks

Associated Mail Servers
41.207.171.177 | S
59.160.240.212 | S
65.54.246.76 | Se
65.54.246.99 | Se
65.54.246.170 | Se
65.54.246.171 | Se
65.54.246.175 | Se
65.54.246.202 | Se
65.54.246.208 | Se
65.54.246.212 | Se
65.54.246.230 | Se
65.54.246.236 | Se
65.55.116.94 | Se
68.142.206.221 | S
72.14.204.234 | Se
209.85.221.112 | S
Associated Harvesters
75.125.254.18 | H
89.178.68.69 | HS
66.232.123.38 | HS
24.69.53.23 | H
24.189.135.28 | H
24.239.228.11 | H
24.242.89.20 | HS
60.39.215.88 | H
61.192.200.111 | H
61.210.204.37 | H
62.117.85.87 | HSDC
62.162.245.250 | H
62.163.37.157 | H
62.163.72.171 | H
62.193.27.246 | H
62.193.27.247 | H
64.34.174.33 | H
64.38.35.162 | H
64.56.65.65 | H
64.231.101.252 | H
66.90.101.66 | H
66.98.184.81 | H
66.108.4.20 | H
66.111.59.120 | H
66.148.67.101 | H
66.148.67.102 | H
66.148.67.104 | H
66.199.236.50 | H
66.199.246.138 | H
66.220.20.73 | H
67.15.94.63 | H
67.19.114.226 | H
67.19.136.180 | H
67.19.250.26 | H
67.86.138.59 | HC
67.114.112.62 | HS
67.159.22.195 | H
67.189.180.245 | HSC
68.4.155.137 | H
68.178.242.111 | H
69.41.163.53 | H
69.41.171.48 | H
69.41.174.235 | H
70.84.55.114 | HC
70.84.212.114 | H
70.84.228.42 | H
70.84.228.106 | H
70.85.113.242 | H
70.85.172.170 | H
70.87.196.242 | H
71.158.134.213 | HC
72.21.56.42 | H
74.53.249.34 | HW
74.54.110.194 | H
74.86.209.74 | H
74.86.249.98 | H
74.124.192.3 | H
74.222.11.75 | H
74.222.11.76 | H
75.125.18.178 | H
75.125.47.162 | HSDW
75.125.52.50 | HS
75.125.52.66 | H
75.125.52.98 | HS
75.125.52.146 | H
75.125.52.162 | H
75.125.194.210 | H
75.152.159.81 | H
76.122.83.133 | HS
76.160.232.250 | HSC
77.40.76.104 | HS
77.200.246.35 | H
77.235.114.251 | H
80.80.172.67 | HS
80.90.232.1 | HSD
IPs In The Neighborhood
41.207.162.1 | HSDR
41.207.162.2 | HSD
41.207.162.3 | HSDR
41.207.162.4 | HSDC
41.207.162.5 | HSD
41.207.162.128
41.207.162.149
41.207.162.230
41.207.162.6's User Agent Strings
none/blank
Mozilla/4.0 (compatible; MSIE 5.01; Windows NT 5.0)
Mozilla/4.0 (compatible; MSIE 5.0; Windows NT; DigExt; DTS Agent
Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0)
Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0; FDM)
Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1)
Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1;1813)
Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; FDM)
Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; FunWebProducts)
Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; GTB5; InfoPath.2)
Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; GTB6)
Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; InfoPath.1)
Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; InfoPath.2)
Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; InfoPath.2; .NET CLR 2.0.50727; .NET CLR 1.1.4322)
Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30; InfoPath.1)
Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; GTB5; .NET CLR 1.1.4322)
Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; .NET CLR 2.0.50727)
Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 2.0.50727)
Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0; SLCC1; .NET CLR 2.0.50727; Media Center PC 5.0; .NET CLR 3.0.04506)
Mozilla/5.0 (Windows; U; Windows NT 5.1; en-GB; rv:1.9.0.14) Gecko/2009082707 Firefox/3.0.14 (.NET CLR 3.5.30729)
Mozilla/5.0 (Windows; U; Windows NT 5.1; en-GB; rv:1.9.0.3) Gecko/2008092417 Firefox/3.0.3
Mozilla/5.0 (Windows; U; Windows NT 5.1; fr; rv:1.8.0.8) Gecko/20061025 Firefox/1.5.0.8
Mozilla/5.0 (Windows; U; Windows NT 5.1; fr; rv:1.8.1.16) Gecko/20080702 Firefox/2.0.0.16
Mozilla/5.0 (Windows; U; Windows NT 5.1; fr; rv:1.9.0.1) Gecko/2008070208 Firefox/3.0.1
Mozilla/5.0 (Windows; U; Windows NT 5.1; fr; rv:1.9.0.3) Gecko/2008092417 Firefox/3.0.3
Mozilla/5.0 (Windows; U; Windows NT 5.1; fr; rv:1.9.0.4) Gecko/2008102920 Firefox/3.0.3
Example Messages Sent From 41.207.162.6
From:
Subject: Check out Bling Bling watches
From:
Subject: Chopard and Hermes Watches
From:
Subject: Службa дoстaвkи pекламных пис
From:
Subject: Служба доставkи почты
From:
Subject: Р A С C Ы Л К И
From:
Subject: Частные лица Москвы
From:
Subject: Replica watches
From:
Subject: You there?
From:
Subject: о Вас узнaeт вcя стрaна
From:
Subject: Sales Event get 78% off
From:
Subject: Change your style with our accessories, you will l
From:
Subject: 55% off. Famous Watches
From:
Subject: Special Discount 78% for pamilardeboe@mailfor.esma
From:
Subject: chanel_labianca VIAGRA ® Official Site -17%
From:
Subject: Tonight's deals for hairlinedania02! Up to 76% off
From:
Subject: Tonight's deals for diana_b_piscopo! Up to 76% off
From:
Subject: HELP PLZ
From:
Subject: Special Code for 73% for marybellemahr@mailfor.esm
From:
Subject: Конструктор д
From:
Subject: Don't miss our Sale, knightlytifany04! 80% better
From:
Subject: tien_w_netkowicz VIAGRA ® Official Site -61%
Example User Names Used By 41.207.162.6
User-name: 45aa22dd.1000509
User-name: a
User-name: aafljnraltmann
User-name: abindjfafdj
User-name: account
User-name: adbnkdjfafdj
User-name: adm
User-name: amndhjgfafdj
User-name: amndijwfafdj
User-name: amndpjpfafdj
User-name: amndsjnfafdj
User-name: angel
User-name: arenda
User-name: aroam
User-name: arte.dfusion
User-name: artemovimiento
User-name: aslq
User-name: avto
User-name: bandjfaafdj
User-name: bbandjfwafdj
User-name: beydoun
User-name: bgnpdnjftafdj
User-name: bgx
User-name: boals
User-name: bs
User-name: bsrlg
User-name: buh
User-name: buhg
User-name: buhgalter
User-name: buhgalteria
D.Patrick2 commented...
afredlam001@yahoo.com is related to fake bank sites used for advanced fee fraud. Recently (this week) I reported royalbank-group.com, a site impersonating the Royal Bank of Canada, and the domain is now suspended.
June 02 2009 07:22 AM

A.Wagner commented...
Caught this IP sending emails with username/password combos of our users to three email addresses: afredlam001@yahoo.com, boxtotestmailer@yahoo.no, hopew1lliams@hotmail.com all as BCC's. No actual 'to' addresses.
March 05 2009 04:16 AM

D.Morgan2 commented...
Arul traced IP to TOGO
October 24 2008 11:46 PM

Page generated on: February 12 2012 06:02:45 PM
do not follow this link

Privacy Policy | Terms of Use | About Project Honey Pot | FAQ | CloudFlare Site Protection | Contact Us

Copyright © 2004–12, Unspam Technologies, Inc. All rights reserved.

Advertisements displayed on this page are not necessarily endorsed by Project Honey Pot

contact | wiki | email