CLEAN MX realtime database    
public access query for portal URL
Totally watched: 133595, to down: 0, to up: 36, changed ip: 0
As of 2013-05-23 14:35:29 CEST

This database consists of spamming URI, collected and verified since Jul 2008

If you detect URI'S concerning your netblock, already closed... you have made a good job, otherwise please close them as soon as possible.

to look at some nice charts, there are complete statistics for this database
Attention: all URI'S are manually verified, but not cross-checked for real portals function in this moment you make this query.(Sites may have been closed already..)
Our automatic portalswalker process is scheduled every hour, so you may see now a incident and this one will be resolved later on.
So please keep on sending close-feedbacks to us...

if you have questions, criticism, wishes or ... do not hesitate to contact us at abuse@clean-mx.de
Our PBX is down you may reach us by cell phone +49 171 4802507 ...
Query as xml: Same query as xml output
TIMERS: Runtime Query: 0.1546 Seconds
Line#DateClosedhoursvirusnameip stateresponseIp initialAS#ip reviewURLDomaincountrysourceemailinetnumnetnamedescrns1ns2ns3ns4ns5URL
1 follow up this item(2179728) 2179728 Report false positive Report closed case make a suggestion 2013-05-20 00:00:02      defaced_site  toggle  alive SenderBaselookup 66.96.146.89 at virustotallookup 66.96.146.89 at Rus CERT university stuttgart germanylookup 66.96.146.89 at ARIN 66.96.146.89  AS36420, AS30315, AS13749, AS21844 SenderBaselookup 174.122.176.93 at virustotallookup 174.122.176.93 at Rus CERT university stuttgart germanylookup 174.122.176.93 at ARIN 174.122.176.93 lookup in virustotal http://www.abc-industries.net/index.htm  abc-industries.net  US  ARIN  noc@theplanet.com  174.120.0.0 - 174.123.255.255  NETBLK-THEPLANET-BLK-16  ThePlanet.com Internet Services, Inc. TPCM 315 Capitol Suite 205 Houston TX 77002  ns2.yourhostingaccount.com  ns1.yourhostingaccount.com       lookup in virustotal http://www.abc-industries.net/index.htm
2 follow up this item(2142007) 2142007 Report false positive Report closed case make a suggestion 2013-05-02 21:00:57      unknown_html_RFI_php  toggle  alive SenderBaselookup 108.162.203.35 at virustotallookup 108.162.203.35 at Rus CERT university stuttgart germanylookup 108.162.203.35 at ARIN 108.162.203.35  AS13335 SenderBaselookup 108.162.204.35 at virustotallookup 108.162.204.35 at Rus CERT university stuttgart germanylookup 108.162.204.35 at ARIN 108.162.204.35 lookup in virustotal http://www.greatpethealth.com/wp-content ...  greatpethealth.com  US  ARIN  noc@cloudflare.com  108.162.192.0 - 108.162.255.255  CLOUDFLARENET  CloudFlare, Inc. CLOUD14 665 Third Street #207 San Francisco CA 94107  dave.ns.cloudflare.com  dora.ns.cloudflare.com       lookup in virustotal http://www.greatpethealth.com/wp-content ...
3 follow up this item(2139283) 2139283 Report false positive Report closed case make a suggestion 2013-05-02 03:01:02      defaced_site  toggle  alive SenderBaselookup 201.235.255.41 at virustotallookup 201.235.255.41 at Rus CERT university stuttgart germanylookup 201.235.255.41 at LACNIC 201.235.255.41  AS27823 SenderBaselookup 200.58.111.129 at virustotallookup 200.58.111.129 at Rus CERT university stuttgart germanylookup 200.58.111.129 at LACNIC 200.58.111.129 lookup in virustotal http://presenciayoga.com/wp-login.php  presenciayoga.com  AR  LACNIC  ipmaster@hostmar.com  200.58.96.0 - 200.58.111.255  AR-DATT-LACNIC  Dattatec.comCordoba, 3753,2000 - Rosario - SFCordoba, 3753,2000 - Rosario - SF  dns2.servidoraweb.net  dns1.servidoraweb.net       lookup in virustotal http://presenciayoga.com/wp-login.php
4 follow up this item(2139197) 2139197 Report false positive Report closed case make a suggestion 2013-05-02 02:00:05      defaced_site  toggle  alive SenderBaselookup 66.113.131.57 at virustotallookup 66.113.131.57 at Rus CERT university stuttgart germanylookup 66.113.131.57 at ARIN 66.113.131.57  AS7215, AS20401 SenderBaselookup 64.71.35.19 at virustotallookup 64.71.35.19 at Rus CERT university stuttgart germanylookup 64.71.35.19 at ARIN 64.71.35.19 lookup in virustotal http://bambooinvasions.com  bambooinvasions.com  US  ARIN  abuse@affinity.com  64.71.32.0 - 64.71.63.255  AHNET-BLK-2  Affinity Internet, Inc AFFI Corporate headquarters 3250 W. Commercial Blvd. Ft. Lauderdale FL 33309  a.dns.hostway.net  b.dns.hostway.net       lookup in virustotal http://bambooinvasions.com
5 follow up this item(2139123) 2139123 Report false positive Report closed case make a suggestion 2013-05-01 23:14:01      cysc.fraud.pharmacy-4  toggle  alive SenderBaselookup 193.105.154.200 at virustotallookup 193.105.154.200 at Rus CERT university stuttgart germanylookup 193.105.154.200 at Ripe 193.105.154.200  AS5577 SenderBaselookup 94.242.251.239 at virustotallookup 94.242.251.239 at Rus CERT university stuttgart germanylookup 94.242.251.239 at Ripe 94.242.251.239 lookup in virustotal http://ebgfhb.doctorcore.ru/%3F7bb4b%3D4 ...  doctorcore.ru  LU  RIPE  abuse@as5577.net  94.242.224.0 - 94.242.255.255  SERVER-NETWORK  root SA           lookup in virustotal http://ebgfhb.doctorcore.ru/%3F7bb4b%3D4 ...
6 follow up this item(2139009) 2139009 Report false positive Report closed case make a suggestion 2013-05-01 23:48:03      defaced_site  toggle  alive SenderBaselookup 173.237.137.227 at virustotallookup 173.237.137.227 at Rus CERT university stuttgart germanylookup 173.237.137.227 at ARIN 173.237.137.227  AS3595 SenderBaselookup 205.251.133.94 at virustotallookup 205.251.133.94 at Rus CERT university stuttgart germanylookup 205.251.133.94 at ARIN 205.251.133.94 lookup in virustotal http://www.blueholidays-srilanka.com  blueholidays-srilanka.com  US  ARIN  engineering@gnax.net  205.251.128.0 - 205.251.159.255  GNAXNET  Global Net Access, LLC GNAL-2 1100 White St SW Atlanta GA 30310  ns1.speedydns.net  ns2.speedydns.net       lookup in virustotal http://www.blueholidays-srilanka.com
7 follow up this item(2138994) 2138994 Report false positive Report closed case make a suggestion 2013-05-01 23:42:06      defaced_site  toggle  alive SenderBaselookup 64.79.90.234 at virustotallookup 64.79.90.234 at Rus CERT university stuttgart germanylookup 64.79.90.234 at Ripe 64.79.90.234  AS25074 SenderBaselookup 78.138.101.121 at virustotallookup 78.138.101.121 at Rus CERT university stuttgart germanylookup 78.138.101.121 at Ripe 78.138.101.121 lookup in virustotal http://amincomposite.com  amincomposite.com  DE  RIPE  abuse@inetbone.net  78.138.64.0 - 78.138.127.255  DE-INET-PEOPLE-20070611  MESH GmbH  dns1.rayanegarco.com  dns2.rayanegarco.com       lookup in virustotal http://amincomposite.com
8 follow up this item(2138915) 2138915 Report false positive Report closed case make a suggestion 2013-05-01 23:01:06      defaced_site  toggle  alive SenderBaselookup 84.42.189.101 at virustotallookup 84.42.189.101 at Rus CERT university stuttgart germanylookup 84.42.189.101 at Ripe 84.42.189.101  AS31246 SenderBaselookup 83.240.118.72 at virustotallookup 83.240.118.72 at Rus CERT university stuttgart germanylookup 83.240.118.72 at Ripe 83.240.118.72 lookup in virustotal http://hprokit.aetnadata.com  aetnadata.com  CZ  RIPE  ripe@netbox.cz  83.240.0.0 - 83.240.126.255  NETBOX  SMART Comp. a.s.Brno - Czech RepublicNETBOX  ns.forpsi.net  ns.forpsi.cz  ns.forpsi.us     lookup in virustotal http://hprokit.aetnadata.com
9 follow up this item(2138782) 2138782 Report false positive Report closed case make a suggestion 2013-05-01 22:49:19      defaced_site  toggle  alive SenderBaselookup 84.42.189.101 at virustotallookup 84.42.189.101 at Rus CERT university stuttgart germanylookup 84.42.189.101 at Ripe 84.42.189.101  AS31246 SenderBaselookup 83.240.118.72 at virustotallookup 83.240.118.72 at Rus CERT university stuttgart germanylookup 83.240.118.72 at Ripe 83.240.118.72 lookup in virustotal http://www.makejsmapei.cz  makejsmapei.cz  CZ  RIPE  ripe@netbox.cz  83.240.0.0 - 83.240.126.255  NETBOX  SMART Comp. a.s.Brno - Czech RepublicNETBOX  ns.forpsi.it  ns.forpsi.net  ns.forpsi.cz     lookup in virustotal http://www.makejsmapei.cz
10 follow up this item(2138779) 2138779 Report false positive Report closed case make a suggestion 2013-05-01 22:49:19      defaced_site  toggle  alive SenderBaselookup 84.42.189.101 at virustotallookup 84.42.189.101 at Rus CERT university stuttgart germanylookup 84.42.189.101 at Ripe 84.42.189.101  AS31246 SenderBaselookup 83.240.118.72 at virustotallookup 83.240.118.72 at Rus CERT university stuttgart germanylookup 83.240.118.72 at Ripe 83.240.118.72 lookup in virustotal http://www.mesicvavionu.cz/index.html  mesicvavionu.cz  CZ  RIPE  ripe@netbox.cz  83.240.0.0 - 83.240.126.255  NETBOX  SMART Comp. a.s.Brno - Czech RepublicNETBOX  ns.forpsi.net  ns.forpsi.cz  ns.forpsi.it     lookup in virustotal http://www.mesicvavionu.cz/index.html
11 follow up this item(2138775) 2138775 Report false positive Report closed case make a suggestion 2013-05-01 22:49:19      defaced_site  toggle  alive SenderBaselookup 84.42.189.101 at virustotallookup 84.42.189.101 at Rus CERT university stuttgart germanylookup 84.42.189.101 at Ripe 84.42.189.101  AS31246 SenderBaselookup 83.240.118.72 at virustotallookup 83.240.118.72 at Rus CERT university stuttgart germanylookup 83.240.118.72 at Ripe 83.240.118.72 lookup in virustotal http://www.r52.cz  r52.cz  CZ  RIPE  ripe@netbox.cz  83.240.0.0 - 83.240.126.255  NETBOX  SMART Comp. a.s.Brno - Czech RepublicNETBOX  ns.forpsi.net  ns.forpsi.cz  ns.forpsi.it     lookup in virustotal http://www.r52.cz
12 follow up this item(2138771) 2138771 Report false positive Report closed case make a suggestion 2013-05-01 22:49:19      defaced_site  toggle  alive SenderBaselookup 84.42.189.101 at virustotallookup 84.42.189.101 at Rus CERT university stuttgart germanylookup 84.42.189.101 at Ripe 84.42.189.101  AS31246 SenderBaselookup 83.240.118.72 at virustotallookup 83.240.118.72 at Rus CERT university stuttgart germanylookup 83.240.118.72 at Ripe 83.240.118.72 lookup in virustotal http://www.tdin.cz  tdin.cz  CZ  RIPE  ripe@netbox.cz  83.240.0.0 - 83.240.126.255  NETBOX  SMART Comp. a.s.Brno - Czech RepublicNETBOX  ns.forpsi.net  ns.forpsi.it  ns.forpsi.cz     lookup in virustotal http://www.tdin.cz
13 follow up this item(2138766) 2138766 Report false positive Report closed case make a suggestion 2013-05-01 22:49:18      defaced_site  toggle  alive SenderBaselookup 84.42.189.101 at virustotallookup 84.42.189.101 at Rus CERT university stuttgart germanylookup 84.42.189.101 at Ripe 84.42.189.101  AS31246 SenderBaselookup 83.240.118.72 at virustotallookup 83.240.118.72 at Rus CERT university stuttgart germanylookup 83.240.118.72 at Ripe 83.240.118.72 lookup in virustotal http://www.myhp.sk/hacked.txt  myhp.sk  CZ  RIPE  ripe@netbox.cz  83.240.0.0 - 83.240.126.255  NETBOX  SMART Comp. a.s.Brno - Czech RepublicNETBOX  ns.forpsi.net  ns.forpsi.it  ns.forpsi.cz     lookup in virustotal http://www.myhp.sk/hacked.txt
14 follow up this item(2138762) 2138762 Report false positive Report closed case make a suggestion 2013-05-01 22:36:03      defaced_site  toggle  alive SenderBaselookup 84.42.189.101 at virustotallookup 84.42.189.101 at Rus CERT university stuttgart germanylookup 84.42.189.101 at Ripe 84.42.189.101  AS31246 SenderBaselookup 83.240.118.72 at virustotallookup 83.240.118.72 at Rus CERT university stuttgart germanylookup 83.240.118.72 at Ripe 83.240.118.72 lookup in virustotal http://www.activatehere.cz  activatehere.cz  CZ  RIPE  ripe@netbox.cz  83.240.0.0 - 83.240.126.255  NETBOX  SMART Comp. a.s.Brno - Czech RepublicNETBOX  ns.forpsi.cz  ns.forpsi.it  ns.forpsi.net     lookup in virustotal http://www.activatehere.cz
15 follow up this item(2138558) 2138558 Report false positive Report closed case make a suggestion 2013-05-01 19:18:07      defaced_site  toggle  alive SenderBaselookup 216.245.220.66 at virustotallookup 216.245.220.66 at Rus CERT university stuttgart germanylookup 216.245.220.66 at Ripe 216.245.220.66  AS51167 SenderBaselookup 91.205.173.170 at virustotallookup 91.205.173.170 at Rus CERT university stuttgart germanylookup 91.205.173.170 at Ripe 91.205.173.170 lookup in virustotal http://javantahrir.com  javantahrir.com  DE  RIPE  abuse@giga-hosting.biz  91.205.172.0 - 91.205.175.255  GIGAHOSTING  Giga-Hosting GmbH           lookup in virustotal http://javantahrir.com
16 follow up this item(2138502) 2138502 Report false positive Report closed case make a suggestion 2013-05-01 18:54:03      defaced_site  toggle  alive SenderBaselookup 46.105.55.51 at virustotallookup 46.105.55.51 at Rus CERT university stuttgart germanylookup 46.105.55.51 at Ripe 46.105.55.51  AS16276 SenderBaselookup 178.33.249.142 at virustotallookup 178.33.249.142 at Rus CERT university stuttgart germanylookup 178.33.249.142 at Ripe 178.33.249.142 lookup in virustotal http://promenades-en-france.com  promenades-en-france.com  FR  RIPE  abuse@ovh.net  178.33.248.0 - 178.33.255.255  OVH  OVH SASDedicated Servershttp  ns.kimsufi.com  ns.pro-web-center.fr       lookup in virustotal http://promenades-en-france.com
17 follow up this item(2138470) 2138470 Report false positive Report closed case make a suggestion 2013-05-01 18:18:03      defaced_site  toggle  alive SenderBaselookup 64.17.137.2 at virustotallookup 64.17.137.2 at Rus CERT university stuttgart germanylookup 64.17.137.2 at ARIN 64.17.137.2  AS11798 SenderBaselookup 50.87.37.151 at virustotallookup 50.87.37.151 at Rus CERT university stuttgart germanylookup 50.87.37.151 at ARIN 50.87.37.151 lookup in virustotal http://tengerleg.org  tengerleg.org  US  ARIN  netops@bluehost.com  50.87.0.0 - 50.87.255.255  BLUEHOST-NETWORK-9  Bluehost Inc. BLUEH-2 1958 South 950 East Provo UT 84606  ns15.ixwebhosting.com  ns16.ixwebhosting.com       lookup in virustotal http://tengerleg.org
18 follow up this item(2138425) 2138425 Report false positive Report closed case make a suggestion 2013-05-01 17:36:04      defaced_site  toggle  alive SenderBaselookup 216.245.220.66 at virustotallookup 216.245.220.66 at Rus CERT university stuttgart germanylookup 216.245.220.66 at ARIN 216.245.220.66  AS46606 SenderBaselookup 198.1.77.195 at virustotallookup 198.1.77.195 at Rus CERT university stuttgart germanylookup 198.1.77.195 at ARIN 198.1.77.195 lookup in virustotal http://www.vanguard.bh  vanguard.bh  US  ARIN  abuse@unifiedlayer.com  198.1.64.0 - 198.1.127.255  UNIFIEDLAYER-NETWORK-11  Unified Layer BLUEH-2 1958 South 950 East Provo UT 84606           lookup in virustotal http://www.vanguard.bh
19 follow up this item(2138417) 2138417 Report false positive Report closed case make a suggestion 2013-05-01 17:30:05      defaced_site  toggle  alive SenderBaselookup 80.243.185.100 at virustotallookup 80.243.185.100 at Rus CERT university stuttgart germanylookup 80.243.185.100 at Ripe 80.243.185.100  AS47583 SenderBaselookup 31.170.167.131 at virustotallookup 31.170.167.131 at Rus CERT university stuttgart germanylookup 31.170.167.131 at Ripe 31.170.167.131 lookup in virustotal http://www.analseksizle.org  analseksizle.org  US  RIPE  abuse@main-hosting.com  31.170.166.0 - 31.170.167.255  MAIN-HOSTING-SERVERS  Main Hosting ServersMAIN HOSTING US  ns4.lazersunucu.com  ns3.lazersunucu.com       lookup in virustotal http://www.analseksizle.org
20 follow up this item(2138174) 2138174 Report false positive Report closed case make a suggestion 2013-05-01 14:06:04      defaced_site  toggle  alive SenderBaselookup 199.204.248.104 at virustotallookup 199.204.248.104 at Rus CERT university stuttgart germanylookup 199.204.248.104 at ARIN 199.204.248.104  AS26347 SenderBaselookup 208.113.216.32 at virustotallookup 208.113.216.32 at Rus CERT university stuttgart germanylookup 208.113.216.32 at ARIN 208.113.216.32 lookup in virustotal http://blueridgemonstercrossseries.com/i ...  blueridgemonstercrossseries.com  US  ARIN  abuse@dreamhost.com  208.113.128.0 - 208.113.223.255  DREAMHOST-BLK6  New Dream Network, LLC NDN 10 Pointe Drive Suite 235 Brea CA 92821  NS1.MYHOSTCENTER.com  NS2.MYHOSTCENTER.com       lookup in virustotal http://blueridgemonstercrossseries.com/i ...
21 follow up this item(2138152) 2138152 Report false positive Report closed case make a suggestion 2013-05-01 14:01:04      defaced_site  toggle  alive SenderBaselookup 180.235.230.180 at virustotallookup 180.235.230.180 at Rus CERT university stuttgart germanylookup 180.235.230.180 at apnic 180.235.230.180  AS9597 SenderBaselookup 180.235.255.18 at virustotallookup 180.235.255.18 at Rus CERT university stuttgart germanylookup 180.235.255.18 at apnic 180.235.255.18 lookup in virustotal http://hotel.tokyoec.com  tokyoec.com  JP  APNIC  tech@cpi.ad.jp  180.235.248.0 - 180.235.255.255  CPI-NET  KDDI Web Communications Inc.  dns1.registrar-servers.com  dns5.registrar-servers.com  dns4.registrar-servers.com  dns3.registrar-servers.com  dns2.registrar-servers.com lookup in virustotal http://hotel.tokyoec.com
22 follow up this item(2138149) 2138149 Report false positive Report closed case make a suggestion 2013-05-01 14:01:03      defaced_site  toggle  alive SenderBaselookup 180.235.230.180 at virustotallookup 180.235.230.180 at Rus CERT university stuttgart germanylookup 180.235.230.180 at apnic 180.235.230.180  AS9597 SenderBaselookup 180.235.255.18 at virustotallookup 180.235.255.18 at Rus CERT university stuttgart germanylookup 180.235.255.18 at apnic 180.235.255.18 lookup in virustotal http://hana.tokyoec.com  tokyoec.com  JP  APNIC  tech@cpi.ad.jp  180.235.248.0 - 180.235.255.255  CPI-NET  KDDI Web Communications Inc.  dns2.registrar-servers.com  dns1.registrar-servers.com  dns3.registrar-servers.com  dns5.registrar-servers.com  dns4.registrar-servers.com lookup in virustotal http://hana.tokyoec.com
23 follow up this item(2138147) 2138147 Report false positive Report closed case make a suggestion 2013-05-01 14:01:03      defaced_site  toggle  alive SenderBaselookup 180.235.230.180 at virustotallookup 180.235.230.180 at Rus CERT university stuttgart germanylookup 180.235.230.180 at apnic 180.235.230.180  AS9597 SenderBaselookup 180.235.255.18 at virustotallookup 180.235.255.18 at Rus CERT university stuttgart germanylookup 180.235.255.18 at apnic 180.235.255.18 lookup in virustotal http://beauty.tokyoec.com  tokyoec.com  JP  APNIC  tech@cpi.ad.jp  180.235.248.0 - 180.235.255.255  CPI-NET  KDDI Web Communications Inc.  dns3.registrar-servers.com  dns1.registrar-servers.com  dns4.registrar-servers.com  dns5.registrar-servers.com  dns2.registrar-servers.com lookup in virustotal http://beauty.tokyoec.com
24 follow up this item(2138146) 2138146 Report false positive Report closed case make a suggestion 2013-05-01 14:01:03      defaced_site  toggle  alive SenderBaselookup 180.235.230.180 at virustotallookup 180.235.230.180 at Rus CERT university stuttgart germanylookup 180.235.230.180 at apnic 180.235.230.180  AS9597 SenderBaselookup 180.235.255.18 at virustotallookup 180.235.255.18 at Rus CERT university stuttgart germanylookup 180.235.255.18 at apnic 180.235.255.18 lookup in virustotal http://bay.tokyoec.com  tokyoec.com  JP  APNIC  tech@cpi.ad.jp  180.235.248.0 - 180.235.255.255  CPI-NET  KDDI Web Communications Inc.  dns3.registrar-servers.com  dns1.registrar-servers.com  dns4.registrar-servers.com  dns5.registrar-servers.com  dns2.registrar-servers.com lookup in virustotal http://bay.tokyoec.com
25 follow up this item(2138136) 2138136 Report false positive Report closed case make a suggestion 2013-05-01 14:00:03      defaced_site  toggle  alive SenderBaselookup 199.204.248.104 at virustotallookup 199.204.248.104 at Rus CERT university stuttgart germanylookup 199.204.248.104 at ARIN 199.204.248.104  AS26347 SenderBaselookup 208.97.178.74 at virustotallookup 208.97.178.74 at Rus CERT university stuttgart germanylookup 208.97.178.74 at ARIN 208.97.178.74 lookup in virustotal http://pisgahproductions.com  pisgahproductions.com  US  ARIN  abuse@dreamhost.com  208.97.128.0 - 208.97.191.255  DREAMHOST-BLK5  New Dream Network, LLC NDN 417 Associated Rd. PMB #257 Brea CA 92821  NS2.MYHOSTCENTER.com  NS1.MYHOSTCENTER.com       lookup in virustotal http://pisgahproductions.com
Click here for other vital incidents


Protected by clean MX
Access is provided for free and subject to these Terms and Conditions.