(RESOLVED) AS29550 Simply Transit Ltd / PoundHost

It’s not often that it occurs to you to list an entire Internet service provider’s network, but we’re there now.

When they write to you to ask for a delisting, naming a specific customer in their initial message that you’ve identified as a problem, telling you they have terminated them…

I understand that this was added due to an issue with enet*blaster on one of our subsidiaries. We have suspended and terminated a large number of accounts relating to these spammers and believe that we have removed them from our network. If you have evidence of further issues from these spammers please share this with us so that we can take further action.

We identified the following accounts, all live, to them, in response. We asked for the removal of reverse DNS associated with the spamming customer. We also asked them to let us know who were behind Poundhost-9201, 9203, 10420, 10439, 11314 and what their current status was. No reply.

inetnum:        213.229.76.8 - 213.229.76.15
netname:        Poundhost-9203

inetnum:        85.234.147.8 - 85.234.147.8
netname:        Poundhost-10420

inetnum:        213.229.69.136 - 213.229.69.137
netname:        Poundhost-10439

inetnum:        92.48.88.254 - 92.48.88.254
netname:        Poundhost-11314

inetnum:        92.48.114.88 - 92.48.114.91
netname:        Poundhost-10420

inetnum:        92.48.109.88 - 92.48.109.95
netname:        Poundhost-11314

inetnum:        213.229.64.216 - 213.229.64.223
netname:        Poundhost-10439

inetnum:        92.48.86.148 - 92.48.86.151
netname:        Poundhost-9201

inetnum:        92.48.125.56 - 92.48.125.63
netname:        Poundhost-11314

Yesterday, then, this gem:

Unfortunately the information you have provided us with so far is not sufficient for us to take any action regarding the apparent spam issue. Please provide evidence of the spamming in the form of copies of the spam emails including the headers.

So they were shining us on in the first place and had not actually terminated anything.

So, 92.48.64.0/18, 213.229.64.0/18, and

inetnum:        91.186.19.82 - 91.186.19.83
netname:        Poundhost-11314

91.186.0.0/19 are now listed in their entirety. Thanks for playing, Poundhost.

Update 27 Jun 2016

The escalation listings for 91.186.0.0/19, 92.48.64.0/18, 94.76.192.0/18 and 213.229.64.0/18 have been removed following detailed enough communications from the operator regarding the removal of certain spammers and assurances that they will have a reasonably hard time trying to obtain services again. Thank you, Poundhost.

One thought on “(RESOLVED) AS29550 Simply Transit Ltd / PoundHost

  1. Marevin

    I have been receiving tremendous amounts of spam from IP addresses owned by Simply Hosting (PoundHost Internet Ltd.) and so far no action seems to have been taken even after reporting the spam.

    The latest spam I received was from the IP 213.229.100.210 (https://www.whois.com/whois/213.229.100.210).

    The whole DADA SpA group which owns PoundHost and other companies such as Register.it, Namesco etc. is a known spammer haven. I recommend listing this AS again.

    Reply

Leave a Reply to Marevin Cancel reply

Your email address will not be published. Required fields are marked *