Hi folks,
Seems that this IP block is given valid as I read from malwarebytes forums,
The IP is blocked because it's part of a Voxility range (there's a plethora of abuse over there, and no response from them to date).
quote source MBAM forum mod MysteryFCM, re:
http://forums.malwarebytes.org/index.php?showtopic=104985I found no additional proof at bizimbal: the IP is not in their list. BrightCloud gives a yellow 40 rep index meaning
Suspicious
There is a higher than average probability that the user will be exposed to malicious links or payloads.
Another example of a Voxility range block ny MBAM and that was not a false positive:
http://forums.malwarebytes.org/index.php?showtopic=105236link author answering request to have it removed = MysteryFCM again.
Seems that this domain was involved: htxp://i2.lulzimg.com/383df8b6ec.jpg and that more than one instances of it are no longer responsive, so closed.
That IP is still up, so there might be new malware activity from that domain.. See htxp://sitecheck.sucuri.net/results/http://i2.lulzimg.com Site with warnings, but not blacklisted according Sucuri's. As it is a Malaysian file multi-sharing site, who knows what may be out there? This is some background info that I could dug up so far,
polonus