Www italianonlinedating com
You can see some current nastiness in action at Malware Must Die**.
But there's a second spam run as well, which appears to be similarly themed but using different servers.
In this case, the domains registered are typically .net, and emails (with and used from time-to-time).
In order to aid researchers, I have labelled this series as RU:8080*.
There do not appears to be any legitimate sites in this range. The last time Google tested a site on this network was on 2013-03-11, and the last time suspicious content was found was on 2013-03-11...
Google has already flagged some of these as malicious (marked in red), so you can safely assume that they are all malicious..." (List at the dynamoo URL above.) ** Over the past 90 days, we found 911 site(s) on this network...
that appeared to function as intermediaries for the infection of 2222 other site(s)... that infected 8762 other site(s)..." ___ Something evil on 1.64/28 - March 2013 - " is an OVH block suballocated to Sidharth Shah (mentioned in this earlier post)*.
It contains a a small number of malicious domains flagged by Google (in red), most of the rest of the sites have a very poor WOT rating (in yellow). You can safely assume that everything in this block is malicious, and I note that some of the domains are refugees from this malware site. There appear to be no legitimate sites in this block..." (List at the dynamoo URL above.) * Sidharth Shah / OVH / itechline - March 2013 - "I have now come across 184.108.40.206/27 5.1/27 220.127.116.11/27 18.104.22.168/27 22.214.171.124/27 .128/27 .0/28 126.96.36.199/28 188.8.131.52/28 .224/28 1.96/27 1.64/28 1.0/27 1.24/29 184.108.40.206/27.