Here’s why we didn’t list a website for AS 42055 TAMER
the March
for
Turkey from CBL data.
Various Autonomous System analysis sites, such as
TCPIPUtils.com
list numerous domains for this AS: which domain is the main one?
Hurricane Electric
provides a graphical representation of which other ASNs route to AS 42055,
and
RobTex
provides a graph with AS names as well as numbers.
And RobTex provides a couple of clues:
WARNING! 1% (1/100) of the sites on ADEOX Dummy description for (as42055) is pornographic or otherwise sensitive content!
The first clue is that the main organizational name may be Adeox. The second clue is the content warning.
Google warns everyone away:
- What happened when Google visited sites hosted on this network?
- Of the 280 site(s) we tested on this network over the past 90 days, 22 site(s), including, for example, danielrizotto.com.tr/, absferforje.com/, downturk.com/, served content that resulted in malicious software being downloaded and installed without user consent.
The last time Google tested a site on this network was on 2013-04-08, and the last time suspicious content was found was on 2013-04-08.- Has this network hosted sites acting as intermediaries for further malware distribution?
- Over the past 90 days, we found 2 site(s) on this network, including, for example, downturk.com/, asilozturk.com/, that appeared to function as intermediaries for the infection of 2 other site(s) including, for example, linkekle.net/, asilozturk.com.tr/.
- Has this network hosted sites that have distributed malware?
- Yes, this network has hosted sites that have distributed malicious software in the past 90 days. We found 4 site(s), including, for example, yorulmazmermer.com/, downturk.com/, nurkebab.com/, that infected 4 other site(s), including, for example, yorulmazgranit.com/, linkekle.net/, t.co/.
myip.ms has a pointer to what may be the real website, www.adeox.com. When I tried it, I got:
Down for Maintenance
We are currently performing maintenance and will be back shortly.
That could be because I used lynx and refused cookies, or maybe it just always says that. We will probably list one of the above AS analysis websites instead.
-jsq