Next on the list of cybercrime friendly ISP's, is root eSolutions, who amongst many others, are providing home for a range known as "Financial company "Titan" LTD" (18.104.22.168/23, AS49353 (TITAN)). This range has been the home of many a fake AV, exploits and various other things for longer than I'd like, and seemingly, root eSolutions don't give a hoot. Something we need to change.
Just some of the stuffage seen within this range includes;
Other ranges root eSolutions have include (and yep, there's malware on all of them);
Personally I recommend blackholing the lot of them, but I tend to take a zero tolerance approach, especially in cases such as this where the ISP's seem to care more about the money than anything else, and as such, don't bother either responding to abuse reports, or killing the malicious content and booting the clients responsible.
In the meantime, I'd absolutely love to hear both theirs and their clients explanations for their being nothing but malicious content on the vast majority of the ranges. Should make for interesting reading.