[SpamCop.net - protecting the internet through technology]

[SC-Help] Re: Parser Discards Payload Website As Fake (it's not)

Mike Easter MikeE at ster.invalid
Sat Mar 12 17:58:59 EST 2005


Harry Kiri wrote:
www.spamcop.net/sc?id=z741484798ze705ff1cc04e8091f3976eff312bce9fz
>
> Why does SC discard this website (wedelivermedstoyou.net) as fake?

The parser spends a long time trying to resolve it and can't.  My
resolver sez 222.122.47.170  no rDNS  = kornet

SC also can't resolve it if you put the naked URL into the parser.

That IP along with its /29 is spamhaused anyway, indicating the provider
is unresponsive, so you aren't missing anything by not doing them the
favor of notifying them of a spamvertiser.  The only loss is that it
doesn't get named on the statistics page to be picked up by the
sc-surbl.

If you want to play with it to try to guess whether or not SC is blocked
from its nameservice or if it just has generally flakey or pokey
nameservice, you can go to dnsstuff and see about the timing of the
nameservice.  Dnsstuff handles nameservice by going up to the top and
coming back down so that you can get a 'picture' of what is happening.
There is/was [when I looked] almost a 6 second overhead getting
information from the domain's nameservers, with one timing out and the
other answering.  The nameservice was judged as C minus when I checked.
There are various reasons a nameserver functions so poorly;  sometimes
it is because it is doing some kind of big fandango to be tricky;
sometimes it is just incompetent.

Both the nameservers are handled by a non-responsive .cn provider, CNC
Group Jiangsu province network

-- 
Mike Easter
kibitzer, not SC admin



More information about the SpamCop-Help mailing list