Rx-Partners Shut Down- Domains Seized

We’ve been reporting on the activities of Rx-Partners for years. It appears like it took the FEDS a century to shut them down…..Geeeeeezeeeeee

Department of Justice
U.S. Attorney’s Office
District of South Carolina

FOR IMMEDIATE RELEASE
Tuesday, April 26, 2016

Federal Court Orders Seizure of 67 Website Domains Involved in Smuggling and Selling Misbranded and Counterfeit Prescription Drugs

Contact Person: Beth Drake (803) 929-3000

Columbia, South Carolina—- United States Attorney Bill Nettles today announced that Special Agents with U.S. Immigration and Customs Enforcement’s (ICE), Homeland Security Investigations have executed seizure orders against 67 domain names of commercial websites engaged in the illegal sale and distribution of counterfeit and prescription drugs. The seized domains are in the custody of the federal government.  Visitors to the sites will now find a seizure banner that notifies them that the domain name has been seized by federal authorities for violations of federal laws against smuggling and trademark misuse.

The domain names are subject to forfeiture under federal forfeiture laws that afford individuals who have an interest in the seized domain names a period of time after the “Notice of Seizure” to file a petition with a federal court and additional time after the “Notice of Forfeiture” to contest the forfeiture.  If no petitions or claims are filed, the domain names become property of the U.S. government.

Said Nettles: “It’s important for consumers to understand the significant risks involved in purchasing pharmaceutical drugs from these websites.  The generic versions of these prescription drugs are not approved by the Food and Drug Administration and cannot be distributed in the United States legally.  To be safe and effective, prescription drugs must be taken under the care and supervision of appropriate health care professionals; not purchased off the internet from unknown and unregulated foreign sources.”

The case was investigated by Special Agents with U.S. Immigration and Customs Enforcement’s (ICE), Homeland Security Investigations.   Assistant United States Attorney Eric Klumb is assigned to handle the forfeiture.

WhoIs Rxservicehq.com – RU

rxservicehq

http://rxservicehq.com/ is a URI.
Domain Dossier will continue with rxservicehq.com.
Address lookup
canonical name rxservicehq.com.
aliases
addresses 192.111.130.133
Domain Whois record

Queried whois.internic.net with “dom rxservicehq.com”…

Domain Name: RXSERVICEHQ.COM
Registrar: JSC REGISTRAR R01
Sponsoring Registrar IANA ID: 1426
Whois Server: whois.r01.ru
Referral URL: http://r01.ru
Name Server: NS397.RXSERVICEHQ.COM
Name Server: NS702.RXSERVICEHQ.COM
Status: clientRenewProhibited https://icann.org/epp#clientRenewProhibited
Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
Updated Date: 19-feb-2016
Creation Date: 16-dec-2015
Expiration Date: 16-dec-2018

Last update of whois database: Sat, 04 Jun 2016 22:27:46 GMT
For more information on Whois status codes, please visit https://icann.org/epp
Queried whois.r01.ru with “rxservicehq.com”…

Domain Name: RXSERVICEHQ.COM
Registry Domain ID: 1987847264_DOMAIN_COM-VRSN
Registrar WHOIS Server: whois.r01.ru
Registrar URL: http://www.r01.ru
Updated Date: 2016-04-27T12:13:09+03:00
Creation Date: 2015-12-16T23:49:46+03:00
Registrar Registration Expiration Date: 2018-12-16T23:49:46+03:00
Registrar: CJSC REGISTRAR R01
Registrar IANA ID: 1426
Registrar Abuse Contact Email: tld-abuse@r01.ru
Registrar Abuse Contact Phone: +7.4957833783

Reseller:
Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
Registry Registrant ID:
Registrant Name: Privacy protection service – r01.whoisproxy.ru.
Registrant Organization: Privacy protection service – r01.whoisproxy.ru.
Registrant Street: PO box 99, whoisproxy.ru
Registrant City: Moscow
Registrant State/Province: Moscow region
Registrant Postal Code: 123308
Registrant Country: RU
Registrant Phone: +7.4957856536
Registrant Email: rxservicehq.com@r01.whoisproxy.ru

Registry Admin ID:
Admin Name: Privacy protection service – r01.whoisproxy.ru.
Admin Organization: Privacy protection service – r01.whoisproxy.ru.
Admin Street: PO box 99, whoisproxy.ru
Admin City: Moscow
Admin State/Province: Moscow region
Admin Postal Code: 123308
Admin Country: RU
Admin Phone: +7.4957856536
Admin Email: rxservicehq.com@r01.whoisproxy.ru

Registry Tech ID:
Tech Name: Privacy protection service – r01.whoisproxy.ru.
Tech Organization: Privacy protection service – r01.whoisproxy.ru.
Tech Street: PO box 99, whoisproxy.ru
Tech City: Moscow
Tech State/Province: Moscow region
Tech Postal Code: 123308
Tech Country: RU
Tech Phone: +7.4957856536
Tech Email: rxservicehq.com@r01.whoisproxy.ru
Name Server: ns702.rxservicehq.com
Name Server: ns397.rxservicehq.com
DNSSEC: Unsigned
URL of the ICANN WHOIS Data Problem Reporting System:
http://wdprs.internic.net/

Last update of WHOIS database: 2016-06-05T01:28:02+03 <<<
Network Whois record
Queried 208.78.43.3 with “192.111.130.133”…

rwhois V-1.0,V-1.5:00090h:00 manage.my-tss.com (Ubersmith RWhois Server V-2.3.0)
autharea=192.111.128.0/22
xautharea=192.111.128.0/22
network:Class-Name:network
network:Auth-Area:192.111.128.0/22
network:ID:NET-6429.192.111.130.128/28
network:Network-Name:192.111.130.128/28
network:IP-Network:192.111.130.128/28
network:IP-Network-Block:192.111.130.128 – 192.111.130.143
network:Org-Name:MyRSK
network:Street-Address:34 Peachtree ST
network:City:Atlanta
network:State:GA
network:Postal-Code:30303
network:Country-Code:US
network:Tech-Contact:MAINT-6429.192.111.130.128/28
network:Created:20130419134231000
network:Updated:20130419134231000
network:Updated-By:ip-admin@manage.my-tss.com

contact:POC-Name:Coloat NOC
contact:POC-Email:ip-admin@manage.my-tss.com
contact:POC-Phone:2399350520
contact:Tech-Name:Coloat NOC
contact:Tech-Email:ip-admin@manage.my-tss.com
contact:Tech-Phone:2399350520
contact:Abuse-Name:Coloat NOC
contact:Abuse-Email:noc@coloat.com
%ok

Queried whois.arin.net with “n 192.111.130.133″…

NetRange: 192.111.128.0 – 192.111.143.255
CIDR: 192.111.128.0/20
NetName: TOTAL-SERVER-SOLUTIONS
NetHandle: NET-192-111-128-0-1
Parent: NET192 (NET-192-0-0-0-0)
NetType: Direct Allocation
OriginAS: AS46562
Organization: Total Server Solutions L.L.C. (TSSL-2)
RegDate: 2013-03-06
Updated: 2015-03-19
Ref: https://whois.arin.net/rest/net/NET-192-111-128-0-1

OrgName: Total Server Solutions L.L.C.
OrgId: TSSL-2
Address: 34 Peachtree ST
Address: Suite 400
City: Atlanta
StateProv: GA
PostalCode: 30303
Country: US
RegDate: 2007-02-13
Updated: 2011-04-02
Ref: https://whois.arin.net/rest/org/TSSL-2

ReferralServer: rwhois://208.78.43.3:4321

OrgTechHandle: TSSNO-ARIN
OrgTechName: TSS NOC
OrgTechPhone: +1-877-391-9909
OrgTechEmail: noc@totalserversolutions.com
OrgTechRef: https://whois.arin.net/rest/poc/TSSNO-ARIN

OrgAbuseHandle: TSSNO-ARIN
OrgAbuseName: TSS NOC
OrgAbusePhone: +1-877-391-9909
OrgAbuseEmail: noc@totalserversolutions.com
OrgAbuseRef: https://whois.arin.net/rest/poc/TSSNO-ARIN

OrgNOCHandle: TSSNO-ARIN
OrgNOCName: TSS NOC
OrgNOCPhone: +1-877-391-9909
OrgNOCEmail: noc@totalserversolutions.com
OrgNOCRef: https://whois.arin.net/rest/poc/TSSNO-ARIN

DNS records

DNS query for 133.130.111.192.in-addr.arpa returned an error from the server: NameError
name class type data time to live
rxservicehq.com IN A 192.111.130.133 60s (00:01:00)
Traceroute

Tracing route to rxservicehq.com [192.111.130.133]…
hop rtt rtt rtt ip address fully qualified domain name
1 0 0 0 208.101.16.73 49.10.65d0.ip4.static.sl-reverse.com
2 0 0 0 66.228.118.153 ae11.dar01.sr01.dal01.networklayer.com
3 0 0 0 173.192.18.254 ae14.bbr02.eq01.dal03.networklayer.com
4 0 0 0 4.35.184.45 ae57.edge6.dallas3.level3.net
5 * * *
6 0 0 0 77.67.71.221 ae13.dal33.ip4.gtt.net
7 23 22 26 89.149.182.237 et-7-3-0.atl11.ip4.gtt.net
8 22 21 22 173.241.130.54 total-server-solutions-gw.ip4.gtt.net
9 22 22 22 184.170.248.206 xe9-1.dist-ac.atl01.coloat.com
10 22 22 22 192.111.130.133

Trace complete

— end —
URL for this output | return to CentralOps.net, a service of Hexillion