I
I
IvanMolotovich2013-11-27 04:25:07
Mail server
IvanMolotovich, 2013-11-27 04:25:07

What is this strange mx record for 149487 domains in the ru, rf, su zones?

Did not conduct a large study of Runet for the article.
According to the statistics of mx domain records, it turned out that out of 5.8 million domains (ru, su, rf).
Nearly 150,000 domains send mail via dial-148-240-4-32.zone-1.ip.dial.net.mx
This is the second largest "mailer" in RuNet.
Mail goes through Yandex for 243212 domains.
But the fact is that dial-148-240-4-32.zone-1.ip.dial.net.mx is 127.0.0.1 which is very strange in my opinion.
# dig a +short @8.8.8.8 dial-148-240-4-32.zone-1.ip.dial.net.mx
127.0.0.1
There is one more strange entry in my opinion.
80 thousand domains have ip address 148.240.4.32
1 in mx. should be FQDN
2. it is very doubtful that some Mexican provider
person: Administrador Avantel
address: Parque Industrial Kalos Nave 6, 6,
address: 66600 - Apodaca - NL
country: MX
will serve Russian mail in such volumes
Have you come across these strange mail domains?
Do you have any idea why this is happening?
I looked at several sites on these domains - all this is parking.
It turns out that the parking attendant is just joking by sending mail of 150 thousand domains to localhost and 80 thousand domains to Mexico?
Here are examples of domains for dial-148-240-4-32.zone-1.ip.dial.net.mx:
car-air.ru
berezina.ru
mobvision.ru
goldfirm.ru
subside.ru
artinter.ru
c-climat. en
matreshky.ru
avtomagaziny.ru
antalya-tur.ru
sportcat.ru
rzf.ru
ruswire.ru
cdporno.ru prikolisti.ru semer.ru
flowersbook.ru comonline.ru lotio.ru zerech.ru Here are examples of domains for 148.240.4.32: galmash .ru prosto-dengi.ru usbr.ru xn--80adchdpcuvhre0b.xn--p1ai arcvoyager.ru bearded.ru energozashita.ru xn--j1aqc7aq.xn--p1ai grand-buket.ru installd.ru verbi.ru prodmet. ru goodcredit.ru web-building.ru xn--80ah0al9c.xn--p1ai kptv.ru cards-online.ru
zaborovie.ru
alpdoor.ru
artukraine.ru

Answer the question

In order to leave comments, you need to log in

4 answer(s)
I
IvanMolotovich, 2013-11-29
@IvanMolotovich

Yes. they are cybersquatters, but the scale is amazing.
I don’t know how much it costs to renew domains in bulk, but even if it’s $ 1, then very serious amounts run up a year.
150k$ and 80k$ per year for each of the sites
, it is not entirely clear what they earn on just to cover the costs of not renewing

V
Vlad Zhivotnev, 2013-11-27
@inkvizitor68sl

Cybersquatters-s. The meaning is not entirely clear to me yet, but you just stumbled upon a large bunch of cybersquatters who have the same settings on DNS servers for all domains. Yes, and there is only one zone config, most likely.

V
Viktor Taran, 2013-11-27
@shambler81

it is perfectly normal if the DNS server is on the same machine as the mail.
And to the question where the server honestly says here.

D
Denis Swarovski, 2015-03-16
@W3Bank

They earn on advertising and on the sale of these domains from 1000 euros.

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question