Is this suspicious?
Tuna
tuna at supertunaman.com
Thu Apr 1 12:55:53 MST 2010
Excerpts from James Finstrom's message of Thu Apr 01 10:41:26 -0700 2010:
> Looking it over I do have issues but not with the domain.
>
> Author is a "handle"
> Software distributed under GPL V3 but no source!
>
None in sight. I ran the installer in Wine just to see what would happen.
It installed, still no source. That by itself sends up red flags. Although
Softpedia says it has no malware.
http://www.softpedia.com/progClean/CleanMe-Clean-151081.html
Does anyone know what their testing involves?
Also, on this guy's "About page":
"For Download Sites: You are free to publish this application but the download link must be to my hompage or ask for permission."
I guess he just doesn't get it.
> I will do some digging
>
>
> On Thu, Apr 1, 2010 at 10:35 AM, James Finstrom <
> jfinstrom at rhinoequipment.com> wrote:
>
> > http://en.wikipedia.org/wiki/.tk
> >
> > On Thu, Apr 1, 2010 at 10:18 AM, Dazed_75 <lthielster at gmail.com> wrote:
> >
> >> Appscout had an article about a "new" cleanup program for windows. The
> >> article pointed to http://www.cleanme.tk/ for downloading it. But I was
> >> leary of the TLD so did some checking. This looks suspicious to me. Am I
> >> right? Or overcautious?
> >>
> >> larry at triggerfish:~$ whois cleanme.tk
> >>>
> >>> Rights restricted by copyright. See
> >>> http://www.dot.tk/en/pageF00.html
> >>>
> >>> Domain name:
> >>> CLEANME.TK
> >>>
> >>> Organisation:
> >>> BV Dot TK
> >>> Dot TK administrator
> >>> P.O. Box 11774
> >>> 1001 GT Amsterdam
> >>> Netherlands
> >>> Phone: +31 20 5315725
> >>> Fax: +31 20 5315721
> >>> E-mail: abuse: abuse at dot.tk, copyright infringement:
> >>> copyright at dot.tk
> >>>
> >>> Domain Nameservers:
> >>> NS01.DOT.TK
> >>> NS02.DOT.TK
> >>> NS03.DOT.TK
> >>> NS04.DOT.TK
> >>>
> >>> Your selected domain name is a Free Domain. That means that,
> >>> according to the terms and conditions of Free Domain domain names
> >>> the registrant is BV Dot TK in Amsterdam, Netherlands.
> >>>
> >>> Due to restrictions in Dot TK's Privacy Statement personal information
> >>> about the user of the domain name cannot be released.
> >>>
> >>> ABUSE OF A DOMAIN NAME
> >>> If you want to report abuse of this domain name, please send a
> >>> detailed email with your complaint to abuse at dot.tk.
> >>> In most cases Dot TK responds to abuse complaints within one business
> >>> day.
> >>>
> >>> COPYRIGHT INFRINGEMENT
> >>> If you want to report a case of copyright infringement, please send
> >>> an email to copyright at dot.tk, and include the full name and address
> >>> of
> >>> your organization. Within 5 business days copyright infringement
> >>> notices
> >>> will be investigated.
> >>>
> >>> Record maintained by: Dot TK Domain Registry
> >>>
> >>> larry at triggerfish:~$ dig cleanme.tk
> >>>
> >>> ; <<>> DiG 9.6.1-P2 <<>> cleanme.tk
> >>> ;; global options: +cmd
> >>> ;; Got answer:
> >>> ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 34012
> >>> ;; flags: qr rd ra; QUERY: 1, ANSWER: 4, AUTHORITY: 7, ADDITIONAL: 0
> >>>
> >>> ;; QUESTION SECTION:
> >>> ;cleanme.tk. IN A
> >>>
> >>> ;; ANSWER SECTION:
> >>> cleanme.tk. 300 IN A 94.103.151.195
> >>> cleanme.tk. 300 IN A 193.33.61.2
> >>> cleanme.tk. 300 IN A 209.172.59.196
> >>> cleanme.tk. 300 IN A 217.119.57.22
> >>>
> >>> ;; AUTHORITY SECTION:
> >>> tk. 12242 IN NS ROOT-F.TALOHA.tk.
> >>> tk. 12242 IN NS ROOT-D.TALOHA.tk.
> >>> tk. 12242 IN NS ROOT-G.TALOHA.tk.
> >>> tk. 12242 IN NS ROOT-E.TALOHA.tk.
> >>> tk. 12242 IN NS ROOT-A.TALOHA.tk.
> >>> tk. 12242 IN NS ROOT-C.TALOHA.tk.
> >>> tk. 12242 IN NS ROOT-B.TALOHA.tk.
> >>>
> >>> ;; Query time: 120 msec
> >>> ;; SERVER: 192.168.1.1#53(192.168.1.1)
> >>> ;; WHEN: Thu Apr 1 10:12:01 2010
> >>> ;; MSG SIZE rcvd: 246
> >>>
> >>> larry at triggerfish:~$
> >>>
> >>
> >>
> >> --
> >> Dazed_75 a.k.a. Larry
> >>
> >> The spirit of resistance to government is so valuable on certain
> >> occasions, that I wish it always to be kept alive.
> >> - Thomas Jefferson
> >>
> >> ---------------------------------------------------
> >> PLUG-discuss mailing list - PLUG-discuss at lists.plug.phoenix.az.us
> >> To subscribe, unsubscribe, or to change your mail settings:
> >> http://lists.PLUG.phoenix.az.us/mailman/listinfo/plug-discuss
> >>
> >
> >
> >
> > --
> > James Finstrom
> > Rhino Equipment Corp.
> > http://rhinoequipment.com ~ http://postug.com
> > Phone: 1-877-RHINO-T1 ~ FAX: +1 (480) 961-1826
> > Twitter: http://twitter.com/rhinoequipment
> > IP: guest at asterisk.rhinoequipment.com
> >
> >
> >
>
More information about the PLUG-discuss
mailing list