FYI
62.139.252.30 IS LISTED BY:
spammers.v6net.org 65.77.130.111
xbl.selwerd.cx 203.119.12.63
block.blars.org 127.1.0.1
blackholes.five-ten-sg.com 62 139 185 165 misc spam
http://www.dslreports.com/whois - use 62.139.252.30
Routes through flagtel.com as an ISP, African origin registered.
Would appear to be a server used for these activities as trace attempts give a blank using normal means - although I'm guessing with response times and final reply it is actually UK based.
More info - if this means anything to anyone.
'Click-to Ionedge_website from Equipment_Directory
on 3/12/2005 at 8:22 by IP address 62.139.252.30'
http://www.finishing.com/
Seems a weird hobby so I don't think it's a kiddy attempt but a sustained one.
Info from the
Honeypot Project
Subnet located in France, and is a mail (only) server. Bloody bulletproof again no doubt and bouncing.
Example Messages Sent From This IP
From: "service@paypal.com"<service@paypal.com>
Subject: Important Notification: Please update your account
I'll see if I can run some other tracers and give the results.