IP Address Inspector

ATTENTION
  • This IP has not seen any suspicious activity within the last 3 months. This IP is most likely clean and trustworthy now. (This record will remain public for historical purposes, however.)

80.255.62.234

The Project Honey Pot system has detected behavior from the IP address consistent with that of a mail server and dictionary attacker. Below we've reported some other data associated with this IP. This interrelated data helps map spammers' networks and aids in law enforcement efforts. If you know something about this IP, please leave a comment.

Lookup IP In: Domain Tools | SpamHaus | Spamcop | SenderBase | Google Groups | Google

Geographic Location United States (Oklahoma)
Spider First Seen approximately 4 years, 5 months, 1 week ago
Spider Last Seen within 3 years, 6 months, 1 week
Spider Sightings 3 visit(s)
User-Agents seen with 3 user-agent(s)

First Received From approximately 4 years, 10 months, 4 weeks ago
Last Received From within 9 months, 4 weeks
Number Received 703 email(s) sent from this IP

Dictionary Attacks 127 email(s) sent from this IP
First Received From approximately 2 years, 3 months, 2 weeks ago
Last Received From within 9 months, 4 weeks

Associated Harvesters
24.49.222.41 | H
24.69.53.23 | H
24.125.22.27 | H
61.145.185.15 | H
62.163.33.234 | H
65.23.156.33 | H
65.75.171.150 | H
66.96.216.133 | HS
66.131.212.214 | H
66.149.234.48 | H
66.199.236.50 | H
66.199.246.138 | H
67.19.250.26 | H
69.41.171.15 | H
69.41.173.16 | H
69.50.208.24 | H
69.94.193.169 | HS
70.84.55.114 | HC
70.85.113.242 | H
70.86.161.50 | HC
70.87.196.242 | H
74.53.249.34 | HW
74.86.209.74 | H
75.125.52.82 | H
75.125.52.146 | H
77.160.114.45 | H
85.120.152.208 | H
86.75.120.77 | H
87.118.98.62 | H
90.5.84.198 | H
91.189.162.4 | HS
208.66.195.2 | H
208.66.195.4 | H
208.66.195.8 | H
208.66.195.9 | H
209.160.32.70 | H
216.40.220.18 | H
216.40.220.34 | H
216.40.222.66 | H
201.248.67.244 | H
80.80.172.67 | HS
75.125.47.162 | HSDW
90.35.194.41 | H
74.124.192.3 | H
75.125.18.178 | H
209.62.25.34 | HC
59.14.91.171 | HS
208.189.114.161 | H
88.254.119.160 | H
82.228.48.139 | HS
64.56.65.125 | H
75.125.52.162 | H
216.40.222.98 | H
67.19.114.226 | H
216.40.222.50 | H
86.105.205.50 | HSD
90.6.29.81 | H
209.160.65.42 | H
216.40.222.82 | HSD
208.101.44.3 | H
85.204.225.133 | H
62.193.27.250 | H
83.86.144.173 | HC
74.86.14.10 | H
24.4.248.106 | H
66.90.101.66 | H
208.66.195.7 | H
208.53.147.137 | H
208.53.147.136 | H
85.220.19.229 | H
208.65.60.105 | H
208.66.195.3 | H
67.228.201.58 | H
75.125.52.98 | HS
80.50.233.58 | HSD
IPs In The Neighborhood
80.255.62.182 | S
80.255.62.236 | SD
80.255.63.28
80.255.63.30
80.255.63.62
80.255.63.130 | S
80.255.63.132 | SD
80.255.63.138 | SD
80.255.62.234's User Agent Strings
ISC Systems iRc Search 2.1
Mozilla/4.0 (compatible; MSIE 6.0; Windows 98) XX
Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.8.1.11) Gecko/20071127 Firefox/2.0.0.11
Example Messages Sent From 80.255.62.234
From:
Subject: Организация масштабной реклам
From:
Subject: Самоучитель англ
From:
Subject: АРЕНДА СКЛАДА В МОСКВЕ
From:
Subject: ПРОДАЁТСЯ ДВУХЭТАЖН
From:
Subject: Hi carolin.cathell@honey.carpedp.com, we invite yo
From:
Subject: E-сигареты -
From:
Subject: Все для оф
From:
Subject: =?windows-1251?B?z8XQxcLOx8rIIM/OIMzO0crCxSwg0M7R0=?=
From:
Subject: =?windows-1251?B?z8XQxcLOx8rIIM/OIMzO0crCxSwg0M7R0=?=
From:
Subject: =?windows-1251?B?xO7x8uDi6uAg4/Dz5+7iLiDS4Ozu5uXt7=?=
From:
Subject: =?windows-1251?B?xO7x8uDi6uAg4/Dz5+7iLiDS4Ozu5uXt7=?=
From:
Subject: =?windows-1251?B?0uDs7ubl7e3u5SDu9O7w7Ovl7ejlIOgg5=?=
From:
Subject: СЕРТ
From:
Subject: Бумажные салфетки и парфиниро
From:
Subject: Доставка контейнеров, сборных
From:
Subject: Mr. pserano1999@supercon.type-2.org, Great Sale co
From:
Subject: Mr cletadollyhigh@gateway.dimmeria.com, 85% OFF fo
From:
Subject: duflowers1999@mail2.flaccidmail.com, 72% OFF on Pf
From:
Subject: RE: US MensHealth Discount ID08141
From:
Subject: wai.c.mayer@mailhost.irc.org, 87% great discount o
From:
Subject: В
From:
Subject: alyce_s_jenison Rolex.com For You -32%
From:
Subject: Электростанции, генераторы, к
From:
Subject: Шедевры индустрии аксессуаров
From:
Subject: Качественн
Example User Names Used By 80.255.62.234
User-name: 0jeansfocal04
User-name: buh
User-name: buhg
User-name: buhgalter
User-name: buhgalteria
User-name: bux
User-name: caringi
User-name: dir
User-name: director
User-name: direktor
User-name: finance
User-name: haeck
User-name: hr
User-name: iamjustsendingthisleter
User-name: info
User-name: ira
User-name: irina
User-name: it
User-name: jo
User-name: job
User-name: laforest
User-name: meridethgrosskopf
User-name: nhih
User-name: odfnddjfayfjdkj
User-name: odkncdjfabfsdcj
User-name: odknddjfaufqdmj
User-name: odonxdjfawfpdcj
User-name: odrnldjfarfodwj
User-name: odxnqdjfalfhdrj
User-name: petgord34truew
H.User6573 commented...
Used to login to phished email accounts on Mar 13 2009, Mar 25 2009 and Mar 26 2010.
April 07 2010 09:06 AM

S.Loura commented...
This ip (80.255.62.234) sent emails by using our servers. We suppose there is a kind of worm that steals users and passwords from e-mail programs such as outlook and fedora in common users machines. Well, when we checked our mail queue on postfix, there was more than 10.000 emails to be sent. They would send emails from @loan.com to many people (they really did a little bit). We are now looking for more information about this address and gonna try to make this people pay legally for it. I hope it works and helps more people with the same problem.


Regards.
November 13 2009 01:34 PM

Page generated on: February 15 2012 06:21:49 AM
do not follow this link

Privacy Policy | Terms of Use | About Project Honey Pot | FAQ | CloudFlare Site Protection | Contact Us

Copyright © 2004–12, Unspam Technologies, Inc. All rights reserved.

Advertisements displayed on this page are not necessarily endorsed by Project Honey Pot

contact | wiki | email