From: LinkedIn.Invitations [mailto:8B44145D0@bhuna.net]The malicious payload is at [donotclick]18.104.22.168/links/assure_numb_engineers.php allocated to Data 102 in the US and then suballocated to:
Sent: 17 October 2012 10:06
Subject: New invitation is waiting for your response
User sent you an invitation to connect 6 days ago. How would you like to respond?
Accept Ignore Privately
C.H. Robinson Worldwide (Sales Director)
You are receiving Invitation emails. Unsubscribe.
This email was intended for [redacted].
Learn why we included this.
2012, LinkedIn Corporation. 2029 Stierlin Ct. Mountain View, CA 94043, USA
network:Network-Name:Buzy Bee Hosting /27
network:IP-Network-Block:22.214.171.124 - 126.96.36.199
network:Org-Name:Buzy Bee Hosting
network:Street-Address:1451 North Challenger Dr
Blocking the IP (and possibly the /27 block) is probably wise.