Is this suspicious?

Dazed_75 lthielster at gmail.com
Thu Apr 1 10:18:54 MST 2010


Appscout had an article about a "new" cleanup program for windows.  The
article pointed to http://www.cleanme.tk/ for downloading it.  But I was
leary of the TLD so did some checking.  This looks suspicious to me.  Am I
right?  Or overcautious?

larry at triggerfish:~$ whois cleanme.tk
>
>    Rights restricted by copyright. See
>    http://www.dot.tk/en/pageF00.html
>
>    Domain name:
>       CLEANME.TK
>
>    Organisation:
>       BV Dot TK
>       Dot TK administrator
>       P.O. Box 11774
>       1001 GT  Amsterdam
>       Netherlands
>       Phone: +31 20 5315725
>       Fax: +31 20 5315721
>       E-mail: abuse: abuse at dot.tk, copyright infringement:
> copyright at dot.tk
>
>    Domain Nameservers:
>       NS01.DOT.TK
>       NS02.DOT.TK
>       NS03.DOT.TK
>       NS04.DOT.TK
>
>    Your selected domain name is a Free Domain. That means that,
>    according to the terms and conditions of Free Domain domain names
>    the registrant is BV Dot TK in Amsterdam, Netherlands.
>
>    Due to restrictions in Dot TK's Privacy Statement personal information
>    about the user of the domain name cannot be released.
>
>    ABUSE OF A DOMAIN NAME
>    If you want to report abuse of this domain name, please send a
>    detailed email with your complaint to abuse at dot.tk.
>    In most cases Dot TK responds to abuse complaints within one business
> day.
>
>    COPYRIGHT INFRINGEMENT
>    If you want to report a case of copyright infringement, please send
>    an email to copyright at dot.tk, and include the full name and address of
>    your organization. Within 5 business days copyright infringement notices
>    will be investigated.
>
>    Record maintained by: Dot TK Domain Registry
>
> larry at triggerfish:~$ dig cleanme.tk
>
> ; <<>> DiG 9.6.1-P2 <<>> cleanme.tk
> ;; global options: +cmd
> ;; Got answer:
> ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 34012
> ;; flags: qr rd ra; QUERY: 1, ANSWER: 4, AUTHORITY: 7, ADDITIONAL: 0
>
> ;; QUESTION SECTION:
> ;cleanme.tk.            IN    A
>
> ;; ANSWER SECTION:
> cleanme.tk.        300    IN    A    94.103.151.195
> cleanme.tk.        300    IN    A    193.33.61.2
> cleanme.tk.        300    IN    A    209.172.59.196
> cleanme.tk.        300    IN    A    217.119.57.22
>
> ;; AUTHORITY SECTION:
> tk.            12242    IN    NS    ROOT-F.TALOHA.tk.
> tk.            12242    IN    NS    ROOT-D.TALOHA.tk.
> tk.            12242    IN    NS    ROOT-G.TALOHA.tk.
> tk.            12242    IN    NS    ROOT-E.TALOHA.tk.
> tk.            12242    IN    NS    ROOT-A.TALOHA.tk.
> tk.            12242    IN    NS    ROOT-C.TALOHA.tk.
> tk.            12242    IN    NS    ROOT-B.TALOHA.tk.
>
> ;; Query time: 120 msec
> ;; SERVER: 192.168.1.1#53(192.168.1.1)
> ;; WHEN: Thu Apr  1 10:12:01 2010
> ;; MSG SIZE  rcvd: 246
>
> larry at triggerfish:~$
>


-- 
Dazed_75 a.k.a. Larry

The spirit of resistance to government is so valuable on certain occasions,
that I wish it always to be kept alive.
 - Thomas Jefferson
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.PLUG.phoenix.az.us/pipermail/plug-discuss/attachments/20100401/a6393800/attachment.htm>


More information about the PLUG-discuss mailing list