[79017] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: phishing sites report - March/2005

daemon@ATHENA.MIT.EDU (Gadi Evron)
Mon Mar 28 14:19:38 2005

Date: Mon, 28 Mar 2005 21:19:07 +0200
From: Gadi Evron <gadi@tehila.gov.il>
To: Daniel Golding <dgolding@burtongroup.com>
Cc: nanog@merit.edu
In-Reply-To: <BE6DC0AC.9953%dgolding@burtongroup.com>
Errors-To: owner-nanog@merit.edu


Daniel Golding wrote:
> Forgive me for being skeptical, but...

I would prefer you being skeptical. Please don't take my word on any of 
this.

> How do you come up with these? Are these the direct upstream ISPs of the

These are the digested results from the reports sent to the malicious 
websites and phishing research and mitigation list.

> phishing sites or the next hop AS's from your test site?

Plainly put, these are the results you get when you feed the IP's of the 
hosting web sites to the Cymru whois.

> Is there a link to the original data?

Nope. We hope to release more data in our next reports. Please let us 
know what kind of data you'd like available. We'll do our best to 
provide it.

One of our main goals is public awareness, so we are very interested in 
feedback.
If you have further questions on the process itself, I'd gladly direct 
you to the guy who actually does the data mining and statistics - but 
the list data itself is not open to the public.

	Gadi.

home help back first fref pref prev next nref lref last post