Canadian Pharmacy Spam – homevaried.com

Header Analysis

The following IP addresses were extracted from your headers:

IP Address Probable Country Additional Info
66.18.238.145 Canada (Calgary)* Whois Google DNSStuff Urgentmessage.org
207.115.36.154 United States (Richardson)* Whois Google DNSStuff Urgentmessage.org
* The last IP listed is usually the originating IP address

Here is the text you submitted, with the IP addresses highlighted:

From Todd Hinkle Sat Jun 13 16:47:50 2009 Return-Path: todd.hinklexs@netron.cz
Authentication-Results: mta167.sbc.mail.mud.yahoo.com from=netron.cz; domainkeys=neutral (no sig); from=netron.cz; dkim=neutral (no sig) Received: from 66.18.238.145 (EHLO nlpi140.prodigy.net) (207.115.36.154) by mta167.sbc.mail.mud.yahoo.com with SMTP;
Sat, 13 Jun 2009 16:47:48 -0700 Received: from zjl05r3 (dsl-vlan458-66-18-238-145.nucleus.com [66.18.238.145]) by nlpi140.prodigy.net (8.13.8 inb ipv6 jeff0203/8.13.8) with SMTP id n5DNlSlm031067; Sat, 13 Jun 2009 18:47:47 -0500 Message-ID: <000701c9ec81$5c956240$4a37416a@netron.cz>
Reply-To: “Todd Hinkle” todd.hinklexs@netron.cz
From: “Todd Hinkle” todd.hinklexs@netron.cz
To: ScamFraudAlert
Subject: Get anti anxiety medications online!!
Date: Sat, 13 Jun 2009 18:47:50 -0500 MIME-Version: 1.0 Content-Type: text/plain; format=flowed; charset=”windows-1250″ reply-type=original Content-Transfer-Encoding: 7bit Content-Length: 136
An Incredible CanadianPharmacy is available at your Fingertips!
No Doctor Needed! Browse our SiteToday! -> http://homevaried.com

Address lookup

canonical name homevaried.com.
aliases
addresses 60.191.221.123
60.191.239.166
61.191.191.241
203.93.208.86
58.17.3.41

Domain Whois record

Queried whois.internic.net with “dom homevaried.com“…

   Domain Name: HOMEVARIED.COM
   Registrar: CHINA SPRINGBOARD INC.
   Whois Server: whois.namerich.cn
   Referral URL: http://www.namerich.cn
   Name Server: NS1.BEDPLAIN.COM
   Name Server: NS2.BEDPLAIN.COM
   Name Server: NS3.AGAINTAIL.COM
   Name Server: NS4.AGAINTAIL.COM
   Name Server: NS5.OUTMILK.IM
   Name Server: NS6.OUTMILK.IM
   Status: ok
   Updated Date: 10-jun-2009
   Creation Date: 10-jun-2009
   Expiration Date: 10-jun-2010

Last update of whois database: Thu, 18 Jun 2009 07:58:28 UTC <<<

Queried whois.namerich.cn with “homevaried.com“…

 DomainName : homevaried.com

RSP: China Springboard Inc.
URL: http://www.namerich.cn      

Name Server......................NS5.OUTMILK.IM
Name Server......................NS3.AGAINTAIL.COM
Name Server......................NS1.BEDPLAIN.COM
Name Server......................NS6.OUTMILK.IM
Name Server......................NS4.AGAINTAIL.COM
Name Server......................NS2.BEDPLAIN.COM
Status...........................ok
Creation  Date ..................2009-06-10
Expiration Date .................2010-06-10
Last Update  Date ...............2009-06-10

Registrant ID ...................V-X-57187-12492
Registrant Name .................JIANG HUA
Registrant Organization .........JIANG HUA
Registrant Address ..............LONGSHABEILU12
Registrant City..................TianJin
Registrant Province/State .......TianJin
Registrant Country Code .........CN
Registrant Postal Code ..........300009
Registrant Phone Number .........+86.02251251685
Registrant Fax ..................+86.02251251685
Registrant Email ................xianeldb@126.com

Administrative ID ...............V-X-57187-12492
Administrative Name .............JIANG HUA
Administrative Organization .....JIANG HUA
Administrative Address ..........LONGSHABEILU12
Administrative City..............TianJin
Administrative Province/State ...TianJin
Administrative Country Code .....CN
Administrative Postal Code ......300009
Administrative Phone Number .....+86.02251251685
Administrative Fax ..............+86.02251251685
Administrative Email ............xianeldb@126.com

Billing ID ......................V-X-57187-12492
Billing Name ....................JIANG HUA
Billing Organization ............JIANG HUA
Billing Address .................LONGSHABEILU12
Billing City.....................TianJin
Billing Province/State ..........TianJin
Billing Country Code ............CN
Billing Postal Code .............300009
Billing Phone Number ............+86.02251251685
Billing Fax .....................+86.02251251685
Billing Email ...................xianeldb@126.com

Technical ID ....................V-X-57187-12492
Technical Name ..................JIANG HUA
Technical Organization...........JIANG HUA
Technical Address ...............LONGSHABEILU12
Technical City...................TianJin
Technical Province/State.........TianJin
Technical Country Code ..........CN
Technical Postal Code ...........300009
Technical Phone Number ..........+86.02251251685
Technical Fax ...................+86.02251251685
Technical Email .................xianeldb@126.com

; Please register your domains at
; http://www.namerich.cn

Network Whois record

Queried whois.apnic.net with “60.191.221.123“…

inetnum:      60.191.221.0 - 60.191.221.255
netname:      JINHUA-TELECOM-LTD
country:      CN
descr:        Jinhua Telecom Co.,ltd IDC Center
descr:
admin-c:      LW1143-AP
tech-c:       CJ54-AP
status:       ASSIGNED NON-PORTABLE
changed:      auto-dbm@dcb.hz.zj.cn 20070618
mnt-by:       MAINT-CN-CHINANET-ZJ-JH
source:       APNIC

role:         CHINANET-ZJ Jinhua
address:      No.155 Xishi street,Jinhua,Zhejiang.321000
country:      CN
phone:        +86-579-2300779
fax-no:       +86-579-2330035
e-mail:       anti_spam@mail.jhptt.zj.cn
trouble:      send spam reports to anti_spam@mail.jhptt.zj.cn
trouble:      and abuse reports to anti_spam@mail.jhptt.zj.cn
trouble:      Please include detailed information and times in UTC
admin-c:      CH55-AP
tech-c:       CH55-AP
nic-hdl:      CJ54-AP
mnt-by:       MAINT-CHINANET-ZJ
changed:      master@dcb.hz.zj.cn 20031204
source:       APNIC

person:       Lujiang Wang
nic-hdl:      LW1143-AP
e-mail:       anti_spam@mail.jhptt.zj.cn
address:      NO.155 Xishi Street,Jinhua,Zhejiang.Postcode:321000
phone:        +86-579-83285460
country:      CN
changed:      auto-dbm@dcb.hz.zj.cn 20070618
mnt-by:       MAINT-CN-CHINANET-ZJ-JH
source:       APNIC

DNS records

DNS query for 123.221.191.60.in-addr.arpa returned an error from the server: NameError

name class type data time to live
homevaried.com IN A 58.17.3.41 3600s (01:00:00)
homevaried.com IN A 60.191.239.166 3600s (01:00:00)
homevaried.com IN A 60.191.221.123 3600s (01:00:00)
homevaried.com IN A 61.191.191.241 3600s (01:00:00)
homevaried.com IN A 203.93.208.86 3600s (01:00:00)

— end —


Leave a Comment

This site uses Akismet to reduce spam. Learn how your comment data is processed.