景XX VPS,垃圾邮件的温床

2016/5/7 10:13:53      点击:

景XX 是个老牌的VPS供应商了,用户群相当的大,所以管理起来就未必能到位了,最近有个客户,使用的景XX的机器,做的是邮件服务器,一个正规的教育企业,由于景XX的VPS很多都被人用来架设邮件服务器发送垃圾邮件,或者是因为配置的问题成了开放中继被乱发垃圾,有的也可能是开放的代理,所以景XX的很多IP都遭到了spamhaus的封杀,不在提供在线解封IP的功能了。

特别是116.255.xxx.xxx整个段都被列入了黑名单了,所以,如果你买的服务器或者是VPS在这个段的,即使正常邮件,也可能被别人拒收了。


=================================================
This is an escalation listing because citicnet-cn failed
to address abuse issued within their IP space. Please do not
send in removal requests unless you are a security representative
of citicnet-cn. All other removal requests will be IGNORED!
=================================================
Malware, botnet and spammer hosting since months. Ignoring abuse reports sent by Spamhaus and 3rd parties:
SBL234020 116.255.202.79 zzidc.com 2014-09-10 Malware distribution @116.255.202.79
SBL233300 116.255.159.117 zzidc.com 2014-09-02 Yambo Financials bot spam nameserver
SBL231132 116.255.248.42 zzidc.com 2014-08-11 Spamvertised botnet domain DNS server
SBL230888 116.255.242.90 zzidc.com 2014-08-08 Russian botnet drug spammer DNS server
SBL220171 116.255.154.212 zzidc.com 2014-04-21 Spamvertised URL host
SBL217332 116.255.241.111 zzidc.com 2014-03-25 Chen Yu (AKA Sprincy) open proxy
SBL214864 116.255.197.136 zzidc.com 2014-03-04 Canadian Health&Care Mall spam
SBL213845 203.171.229.184 zzidc.com 2014-02-21 Trojan malware infected computer system
SBL201482 116.255.159.101 zzidc.com 2013-10-19 Malware botnet controller @116.255.159.101
SBL190932 116.255.227.238 zzidc.com 2013-07-14 Chen Yu (AKA Sprincy) open relay emitting spam
SBL184098 116.255.190.150 zzidc.com 2013-05-09 Malware DNS server @116.255.190.150
SBL180426 116.255.141.205 zzidc.com 2013-04-02 Repeat spamming
SBL175734 203.171.234.53 zzidc.com 2013-02-11 Malware DNS server @203.171.234.53
SBL167056 203.171.235.202 zzidc.com 2012-11-25 Phishing site 

SBL234698

116.255.164.161/32 zzidc.com
17-Sep-2014 20:00 GMT DNS for spam domains
SBL234639
116.255.128.0/17 zzidc.com
17-Sep-2014 07:46 GMT Cybercrime support (escalation)
SBL234020
116.255.202.79/32 zzidc.com
10-Sep-2014 21:43 GMT Malware distribution @116.255.202.79
SBL233300
116.255.159.117/32 zzidc.com
02-Sep-2014 16:36 GMT Yambo Financials bot spam nameserver
SBL231132
116.255.248.42/32 zzidc.com
11-Aug-2014 12:06 GMT Spamvertised botnet domain DNS server
SBL230888
116.255.242.90/32 zzidc.com
08-Aug-2014 12:36 GMT Russian botnet drug spammer DNS server
SBL220171
116.255.154.212/32 zzidc.com
21-Apr-2014 22:48 GMT Spamvertised URL host
SBL217332
116.255.241.111/32 zzidc.com
25-Mar-2014 11:29 GMT Chen Yu (AKA Sprincy)open proxy
SBL214864
116.255.197.136/32 zzidc.com
04-Mar-2014 15:53 GMT Canadian Health&Care Mall spam
SBL213845
203.171.229.184/32 zzidc.com
21-Feb-2014 00:38 GMT Trojan malware infected computer system
SBL201482
116.255.159.101/32 zzidc.com
19-Oct-2013 16:37 GMT Malware botnet controller @116.255.159.101
SBL190932
116.255.227.238/32 zzidc.com
14-Jul-2013 00:12 GMT Chen Yu (AKA Sprincy)
open relay emitting spam at zgkyw.cn
SBL184098
116.255.190.150/32 zzidc.com
09-May-2013 10:03 GMT Malware DNS server @116.255.190.150
SBL175734
203.171.234.53/32 zzidc.com
11-Feb-2013 15:08 GMT Malware DNS server @203.171.234.53
SBL167056
203.171.235.202/32 zzidc.com
25-Nov-2012 06:14 GMT Phishing site