[SpamCop-List] Re: Inactive nameservers still work, why?
Anonymous
none at domain.invalid
Wed Jul 14 17:26:05 EDT 2004
"Mike Easter" <MikeE at ster.invalid> wrote in message
news:cd4c1q$3qf$1 at news.spamcop.net...
> The geobytes tool likes to give that kind of information, including the
> Indian currency and the flag. Sometimes it is outawhack. Whenever I
> need to doublecheck geobytes I do some traceroutes from various places.
> That IP and all of the last 8 hops to it are some kind of chinanet
> guangdong as far as I'm concerned, not India.
Except that there's a big, quiet gap between hops 23 and 39... it could be
some sort of VPN, as Graeme stated... so the ability to determine where it
is would be very beneficial. Then at least we'd know which ISPs were in that
area, so we could contact them and ask them to look for a constant
connection coming from the IP in China to one of their machines. If they
find that, they find the spammer.
What if a large majority of the spammers start using VPN connections to make
it appear as though they are in one location, although they're really in
another? How do we track them down then?
More information about the SpamCop-List
mailing list