In July 2016 it was estimated that there were 326.4 million domains worldwide, and yet Trump.com, and a Russian website, and a Pro-Trump website, and one other link are the only backlink to a domain where its IP address have been accused of Malware and DNS hijacking/DNS Redirection. Records shows only one domain exist for this IP address. Records also show this IP address was registered 2012 in Boulder, Colorado.
Because the way this domain name is spelled with a period (Vdbsnbkjvnsdh.sdkbnkjsbn) in the name under some domain lookup sites this domain name would be to difficult to find. In fact some sites would consider this name invalid. However through many searches and learning how this domain sometimes alters its name I was able locates its IP address through more sophisticated domains lookup sites that have the capability to find domains that have complicated names.
On the very bottom of this blog, I have provided three websites that call the IP address for this domain; Trump.com has linked to as malicious, involved DNS Hijacking, and Malware.
“In short, backlinks are any link in or on a website page that points (or “links”) back to your website/page.
Backlinks are commonly referred to as incoming links, inbound links, inlinks, or inward links.”
Below site information showing the backlinks that are hyperlink to the domain Vdbsnbkjvnsdh.sdkbnkjsbn.
The backlink link referring to Mika Brzezinski is about Mika Brzezinski’s daughter, Emilie Hoffer, being a Trump supporter.
Coincidently the Pro-Trump mentioned in the Igogde.ru is mentioned in this instagram picture referring to the Trump campaign.
The 86 link you see above belongs to the very domain site Donald Trump, this russian website, and an article about Mika Brezezinski’s daughter supporting Trump are backlinked to the domain Vdbsnbkjvnsdh.sdkbnkjsbn.
There are different variations of the name for this domain Vdbsnbkjvnsdh.sdkbnkjsbn, but as you will see below the IP addresses are the same. The 86
!!!!Warning – This 86 backlink is not a trusted website !!!
The following is an enlarged of the image below it:
Below is the complete website page where I first notice the backlink in September of Trump and a Russian website following the domain, Vdbsnbkjvnsdh.sdkbnkjsbn . The Russian website had different information listed in its backlink
Below is the second file of the same page analysis of domain Vdbsnbkjvnsdh.sdkbnkjsbn. The russian website mentions the information you see above about hkparts.
At one point after September when I discovered this link this Russian website, Igogde.ru,eventually stopped following however it began following again this Vdbsnbkjvnsdh.sdkbnkjsbn domain. Currently this Russin link is stilling following this Vdbsnbkjvnsdh.sdkbnkjsbn domain.
This Vdbsnbkjvnsdh.sdkbnkjsbn domain uses different variations of its name. You will see below one example of the name Vdbsnbkjvnsdh.sdkbnkjsbn being altered, but as can see it has the same IP address. As previously mentioned there is only one domain for this IP address.
DNS Hijacking for IP address 220.127.116.11 in this blog by Drew Graybeal in 2015
http://drewgraybeal.blogspot.com/2015/05/level-3-dns-hijacking-4222-and-others.htmlFrom Wikipedia, the free encyclopedia
These modifications may be made for malicious purposes such as phishing, or for self-serving purposes by Internet service providers (ISPs) and public/router-based online DNS server providers to direct users’ web traffic to the ISP’s own web servers where advertisements can be served, statistics collected, or other purposes of the ISP; and by DNS service providers to block access to selected domains as a form of censorship.
Rogue DNS server
A rogue DNS server translates domain names of desirable websites (search engines, banks, brokers, etc.) into IP addresses of sites with unintended content, even malicious websites. Most users depend on DNS servers automatically assigned by their ISPs. Zombie computers use DNS-changing trojans to invisibly switch the automatic DNS server assignment by the ISP to manual DNS server assignment from rogue DNS servers. A router’s assigned DNS servers can also be altered through the remote exploitation of a vulnerability within the router’s firmware. When users try to visit websites, they are instead sent to a bogus website. This attack is termed pharming. If the site they are redirected to is a malicious website, masquerading as a legitimate website, in order to fraudulently obtain sensitive information, it is termed phishing.
Under associated files for domain Vdbsnbkjvnsdh.sdkbnkjsbn IP address 18.104.22.168 you will see files that contain such malwae such as Trojan Viruses Below I have included associated file efa3c9d9de95be6e1b5512651c94881f0197d1778074309a53b04d10c553c839.
Alien Vault Records of this IP address go back to October 22, 2015.
Is it a game of follow the leader or is it all a Coincidence that some domains have listed on their website an article on Trump and very same Russian domain, Igogde.ru is also listed concerning a different article.
!!!!Warning – This website below has a phishing scam!!!