Suspicious site ~ possible scam
Address lookup
canonical name http://www.instantretailsolutions.com
aliases
addresses 216.104.165.80
216.104.165.20
Domain Whois record
Queried whois.internic.net with “dom instantretailsolutions.com”…
Domain Name: INSTANTRETAILSOLUTIONS.COM
Registrar: TIERRANET INC. D/B/A DOMAINDISCOVER
Whois Server: whois.domaindiscover.com
Referral URL: http://www.domaindiscover.com
Name Server: NS1.TIERRA.NET
Name Server: NS2.TIERRA.NET
Status: clientTransferProhibited
Updated Date: 15-sep-2012
Creation Date: 14-sep-2010
Expiration Date: 14-sep-2013
>>> Last update of whois database: Tue, 20 Nov 2012 10:28:35 UTC <<<
Address lookup
canonical name instantretailsolutions.com.
aliases
addresses 216.104.165.80
216.104.165.20
Domain Whois record
Queried whois.internic.net with “dom instantretailsolutions.com”…
Domain Name: INSTANTRETAILSOLUTIONS.COM
Registrar: TIERRANET INC. D/B/A DOMAINDISCOVER
Whois Server: whois.domaindiscover.com
Referral URL: http://www.domaindiscover.com
Name Server: NS1.TIERRA.NET
Name Server: NS2.TIERRA.NET
Status: clientTransferProhibited
Updated Date: 15-sep-2012
Creation Date: 14-sep-2010
Expiration Date: 14-sep-2013
>>> Last update of whois database: Tue, 20 Nov 2012 10:28:35 UTC <<<
Queried whois.domaindiscover.com with “instantretailsolutions.com”…
Registrant:
THE INFORMATION REFINERY
200 State Route 17 Suite 5
Mahwah, NJ 07430
US
Domain Name: INSTANTRETAILSOLUTIONS.COM
Administrative Contact, Technical Contact, Zone Contact:
THE INFORMATION REFINERY
Gordon Clotworthy
200 State Route 17 Suite 5
Mahwah, NJ 07430
US
(201)529-2600
registrar@inforefinery.com
Domain created on 14-Sep-2010
Domain expires on 13-Sep-2013
Last updated on 15-Aug-2012
Domain servers in listed order:
NS1.TIERRA.NET
NS2.TIERRA.NET
TierraNet — web hosting, domain registration, and more.
Visit our website at http://www.tierra.net to learn about our services.
Network Whois record
Queried whois.arin.net with “n 216.104.165.80″…
NetRange: 216.104.160.0 – 216.104.191.255
CIDR: 216.104.160.0/19
OriginAS:
NetName: TIERRANET-2BLK
NetHandle: NET-216-104-160-0-1
Parent: NET-216-0-0-0-0
NetType: Direct Allocation
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
RegDate: 2000-07-17
Updated: 2012-02-24
Ref: http://whois.arin.net/rest/net/NET-216-104-160-0-1
OrgName: TierraNet Inc.
OrgId: TIER
Address: PO BOX 502010
City: San Diego
StateProv: CA
PostalCode: 92150-2010
Country: US
RegDate: 1997-11-11
Updated: 2011-09-24
Ref: http://whois.arin.net/rest/org/TIER
OrgAbuseHandle: BS261-ARIN
OrgAbuseName: Scott, Brian
OrgAbusePhone: +1-858-560-9416
OrgAbuseEmail: brian@tierra.net
OrgAbuseRef: http://whois.arin.net/rest/poc/BS261-ARIN
OrgTechHandle: BS261-ARIN
OrgTechName: Scott, Brian
OrgTechPhone: +1-858-560-9416
OrgTechEmail: brian@tierra.net
OrgTechRef: http://whois.arin.net/rest/poc/BS261-ARIN
RTechHandle: TH33-ORG-ARIN
RTechName: TierraNet Inc
RTechPhone: +1-858-560-9416
RTechEmail: ops@tierra.net
RTechRef: http://whois.arin.net/rest/poc/TH33-ORG-ARIN
Queried whois.godaddy.com with “magazinegold.com
Registered through: GoDaddy.com, LLC (http://www.godaddy.com)
Domain Name: MAGAZINEGOLD.COM
Created on: 04-Feb-11
Expires on: 04-Feb-13
Last Updated on: 17-Mar-12
Registrant:
The ReAgent Group
160 Summit Avenue
Apt 25
Summit, NJ 07901
us
Administrative Contact:
Mulcahy, Cliff cliff.mulcahy@gmail.com
The ReAgent Group
160 Summit Avenue
Apt 25
Summit, NJ 07901
us
9084516798
Technical Contact:
Mulcahy, Cliff cliff.mulcahy@gmail.com
The ReAgent Group
160 Summit Avenue
Apt 25
Summit, NJ 07901
us
9084516798
Domain servers in listed order:
NS61.DOMAINCONTROL.COM
NS62.DOMAINCONTROL.COM
Network Whois record
Queried whois.arin.net with “n ! NET-108-166-30-232-1″…
NetRange: 108.166.30.232 – 108.166.30.239
CIDR: 108.166.30.232/29
OriginAS:
NetName: RACKS-8-1329485532579360
NetHandle: NET-108-166-30-232-1
Parent: NET-108-166-0-0-1
NetType: Reassigned
RegDate: 2012-02-17
Updated: 2012-02-17
Ref: http://whois.arin.net/rest/net/NET-108-166-30-232-1
CustName: The Information Refinery Inc.
Address: 200 State Rt. 17 Ste 5
Address: Suite 5 Mahwah
City: Mahwah
StateProv: NJ
PostalCode: 07430
Country: US
RegDate: 2012-02-17
Updated: 2012-02-17
Ref: http://whois.arin.net/rest/customer/C02934078
OrgAbuseHandle: ABUSE45-ARIN
OrgAbuseName: Abuse Desk
OrgAbusePhone: +1-210-892-4000
OrgAbuseEmail: abuse@rackspace.com
OrgAbuseRef: http://whois.arin.net/rest/poc/ABUSE45-ARIN
OrgTechHandle: IPADM17-ARIN
OrgTechName: IPADMIN
OrgTechPhone: +1-210-892-4000
OrgTechEmail: hostmaster@rackspace.com
OrgTechRef: http://whois.arin.net/rest/poc/IPADM17-ARIN
DNS records
name class type data time to live
magazinegold.com IN A 108.166.30.233 3600s (01:00:00)
magazinegold.com IN MX
preference: 10
exchange: aspmx.l.google.com
3600s (01:00:00)
magazinegold.com IN MX
preference: 20
exchange: alt1.aspmx.l.google.com
3600s (01:00:00)
magazinegold.com IN MX
preference: 30
exchange: alt2.aspmx.l.google.com
3600s (01:00:00)
magazinegold.com IN MX
preference: 40
exchange: aspmx2.googlemail.com
3600s (01:00:00)
magazinegold.com IN MX
preference: 50
exchange: aspmx3.googlemail.com
3600s (01:00:00)
magazinegold.com IN NS ns61.domaincontrol.com 3600s (01:00:00)
magazinegold.com IN NS ns62.domaincontrol.com 3600s (01:00:00)
magazinegold.com IN TXT v=spf1 a mx include:inforefinery.com ~all 3600s (01:00:00)
magazinegold.com IN TXT google-site-verification=aBkliPxZWoNKQ_BqCfNTSrP3eRSsXDm2u5hpcK5IMZo 3600s (01:00:00)
magazinegold.com IN SOA
server: ns61.domaincontrol.com
email: dns@jomax.net
serial: 2012060404
refresh: 28800
retry: 7200
expire: 604800
minimum ttl: 3600
3600s (01:00:00)
233.30.166.108.in-addr.arpa IN PTR web.magazinegoldcard.com 3600s (01:00:00)
30.166.108.in-addr.arpa IN RRSIG
type covered: NSEC (47)
algorithm: RSA/SHA-1 (5)
labels: 5
original ttl: 10800 (03:00:00)
signature expiration: 2012-11-30 01:00:09Z
signature inception: 2012-11-20 01:00:09Z
key tag: 51674
signer’s name: 108.in-addr.arpa
signature:
(1024 bits)
10799s (02:59:59)
30.166.108.in-addr.arpa IN NSEC
next domain name: 31.166.108.in-addr.arpa
record types: NS RRSIG NSEC
10799s (02:59:59)
30.166.108.in-addr.arpa IN NS ns.rackspace.com 300s (00:05:00)
30.166.108.in-addr.arpa IN NS ns2.rackspace.com 300s (00:05:00)
— end —