  jbob Reach Out and Touch Someone Premium join:2004-04-26 Little Rock, AR
·Comcast
·AT&T Southwest
| Directi and EstDomains suspend thousands of Malware sites
Maybe things will get a little better now.
»msmvps.com/blogs/hostsnews/archi···592.aspx
I have been keeping a close watch on the amount of suspended sites in the MVPS HOSTS file ... rescanning everyday lately and removing the sites that no longer return a valid DNS ... the number is huge yet again ...
Strangely enough not all of these domains are related to EstDomains ... but who's complaining! Sounds like some of these other hosting services are getting nervous about their reputations or being exposed as associated with these cyber-criminals ... folks I've been doing this (maintaining a hosts file) for over 10 years and this is the largest clearing of malware related sites in the history of the Internet!
Interesting enough Brian Krebs has another in his series of articles "Fake Antispyware Purveyor Doubles as Domain Registrar"
"Directi president Bhavin Turakhia said his company has disabled its registrant-anonymizing privacyprotect.org service for all Web site names registered through Klikdomains.com, which he said has sold roughly 100,000 Web site names through Directi during the past couple of years. Nearly half of those have been suspended due to abuse complaints, Turakhia said. More than 21,000 sites were suspended in the past 48 hours alone. Directi currently is investigating most of the remaining 50,000 domains registered through Klikdomains.com, Turakhia added."
Imagine that! ... those of us in the security field have long known of the antics of KlickDomains and their related domains ... so I thought I'd show a few examples ...
Pay attention to the link at the bottom of the page. A link to a MalwareBytes forum thread with estdomains making inputs |
|
  nwrickert sand groper Premium,MVM join:2004-09-04 Geneva, IL | Maybe things will get a little better now. Unlikely. The criminals will just find another registrar. -- AT&T dsl; Westell 327w modem/router; openSuSE 11.0; firefox 3.0.1 |
|
  Kayrac Premium join:2001-09-29 Rochester, NH
| reply to jbob Have been following a thread on another forum, with an estdomains Representative, The more experienced players there have been giving him domains, and they have been checking them out, so it does look good for disabling malware hosting sites 
-Brian |
|