CLEAN MX realtime database    
public access query for portal URL
Totally watched: 136039, to down: 0, to up: 32, changed ip: 0
As of 2013-06-19 15:33:25 CEST

This database consists of spamming URI, collected and verified since Jul 2008

If you detect URI'S concerning your netblock, already closed... you have made a good job, otherwise please close them as soon as possible.

to look at some nice charts, there are complete statistics for this database
Attention: all URI'S are manually verified, but not cross-checked for real portals function in this moment you make this query.(Sites may have been closed already..)
Our automatic portalswalker process is scheduled every hour, so you may see now a incident and this one will be resolved later on.
So please keep on sending close-feedbacks to us...

if you have questions, criticism, wishes or ... do not hesitate to contact us at abuse@clean-mx.de
Our PBX is down you may reach us by cell phone +49 171 4802507 ...
Query as xml: Same query as xml output
TIMERS: Runtime Query: 2.8000 Seconds
Line#DateClosedhoursvirusnameip stateresponseIp initialAS#ip reviewURLDomaincountrysourceemailinetnumnetnamedescrns1ns2ns3ns4ns5URL
1 follow up this item(983040) 983040 Report false positive Report closed case make a suggestion 2012-02-22 13:39:23 OVERDUE! 11593.4  defaced_site  up  alive SenderBaselookup 67.228.132.128 at virustotallookup 67.228.132.128 at Rus CERT university stuttgart germanylookup 67.228.132.128 at ARIN 67.228.132.128  AS36351 SenderBaselookup 67.228.132.128 at virustotallookup 67.228.132.128 at Rus CERT university stuttgart germanylookup 67.228.132.128 at ARIN 67.228.132.128 lookup in virustotal http://yingshanzhiyuan.com/x.htm  yingshanzhiyuan.com  US  ARIN  abuse@softlayer.com  67.228.0.0 - 67.228.255.255  SOFTLAYER-4-5  SoftLayer Technologies Inc. SOFTL 1950 N Stemmons Freeway Dallas TX 75207  ns2.ivy.arvixe.com  ns1.ivy.arvixe.com       lookup in virustotal http://yingshanzhiyuan.com/x.htm
2 follow up this item(1835008) 1835008 Report false positive Report closed case make a suggestion 2013-02-22 09:30:03 OVERDUE! 2813.5  defaced_site  up  alive SenderBaselookup 31.22.7.47 at virustotallookup 31.22.7.47 at Rus CERT university stuttgart germanylookup 31.22.7.47 at Ripe 31.22.7.47  AS34119 SenderBaselookup 31.22.7.47 at virustotallookup 31.22.7.47 at Rus CERT university stuttgart germanylookup 31.22.7.47 at Ripe 31.22.7.47 lookup in virustotal http://sophiemartinjember.id.tc  id.tc  GB  RIPE  abuse@wildcard.net.uk  31.22.0.0 - 31.22.7.255  UK-WILDCARD-20110325  Wildcard UK Limited  ns2.hosting-server-1022.com  ns1.hosting-server-1022.com       lookup in virustotal http://sophiemartinjember.id.tc
3 follow up this item(2228224) 2228224 Report false positive Report closed case make a suggestion 2013-06-04 10:00:14      unknown_html_RFI_shell  up  alive SenderBaselookup 213.180.204.221 at virustotallookup 213.180.204.221 at Rus CERT university stuttgart germanylookup 213.180.204.221 at Ripe 213.180.204.221  AS13238 SenderBaselookup 213.180.204.221 at virustotallookup 213.180.204.221 at Rus CERT university stuttgart germanylookup 213.180.204.221 at Ripe 213.180.204.221 lookup in virustotal http://clck.ru/8gNxj  clck.ru  RU  RIPE  abuse@yandex.ru  213.180.204.32 - 213.180.204.255  YANDEX-204-32  Yandex corporate networkYandex networkYandex enterprise network  ns1.yandex.ru  ns2.yandex.ru       lookup in virustotal http://clck.ru/8gNxj
4 follow up this item(2228480) 2228480 Report false positive Report closed case make a suggestion 2013-06-04 14:01:04      defaced_site  up  alive SenderBaselookup 202.170.122.77 at virustotallookup 202.170.122.77 at Rus CERT university stuttgart germanylookup 202.170.122.77 at apnic 202.170.122.77  AS23884 SenderBaselookup 202.170.122.77 at virustotallookup 202.170.122.77 at Rus CERT university stuttgart germanylookup 202.170.122.77 at apnic 202.170.122.77 lookup in virustotal http://www.sicc.ac.th  sicc.ac.th  TH  APNIC  kittipan@proen.co.th  202.170.112.0 - 202.170.127.255  PROENNET  Proen Internet, Internet Service Provider, Bangkok, Thailand  ns1.skc.co.th  ns3.isanidc.com  ns3.isanconnect.com  ns7.isanconnect.com   lookup in virustotal http://www.sicc.ac.th
5 follow up this item(2228736) 2228736 Report false positive Report closed case make a suggestion 2013-06-04 18:30:05      unknown_html  up  alive SenderBaselookup 89.111.178.50 at virustotallookup 89.111.178.50 at Rus CERT university stuttgart germanylookup 89.111.178.50 at Ripe 89.111.178.50  AS41126 SenderBaselookup 89.111.178.50 at virustotallookup 89.111.178.50 at Rus CERT university stuttgart germanylookup 89.111.178.50 at Ripe 89.111.178.50 lookup in virustotal http://xn----7sbe7af1ba.xn--p1ai/wp-cont ...  xn----7sbe7af1ba.xn--p1ai  RU  RIPE  abuse@gpt.ru  89.111.176.0 - 89.111.179.255  CCC-HC  Garant-Park-Telecom, Ltd.  ns2.r01.ru  ns1.r01.ru       lookup in virustotal http://xn----7sbe7af1ba.xn--p1ai/wp-cont ...
6 follow up this item(459520) 459520 Report false positive Report closed case make a suggestion 2011-11-27 09:26:23 OVERDUE! 13685.6  defaced_site  up  alive SenderBaselookup 72.233.2.58 at virustotallookup 72.233.2.58 at Rus CERT university stuttgart germanylookup 72.233.2.58 at ARIN 72.233.2.58  AS22576 SenderBaselookup 72.233.2.59 at virustotallookup 72.233.2.59 at Rus CERT university stuttgart germanylookup 72.233.2.59 at ARIN 72.233.2.59 lookup in virustotal http://blog.letteddywin.com  letteddywin.com  US  ARIN  abuse@layeredtech.com  72.232.0.0 - 72.233.127.255  LAYERED-TECH-  Layered Technologies, Inc. LAYER-3 5085 W Park Blvd Suite 700 Plano TX 75093  ns58.1and1.com  ns57.1and1.com       lookup in virustotal http://blog.letteddywin.com
7 follow up this item(1901312) 1901312 Report false positive Report closed case make a suggestion 2013-03-15 16:01:06 OVERDUE! 2303  defaced_site  up  alive SenderBaselookup 91.219.195.25 at virustotallookup 91.219.195.25 at Rus CERT university stuttgart germanylookup 91.219.195.25 at Ripe 91.219.195.25  AS49505 SenderBaselookup 91.219.195.25 at virustotallookup 91.219.195.25 at Rus CERT university stuttgart germanylookup 91.219.195.25 at Ripe 91.219.195.25 lookup in virustotal http://limanekka.ru  limanekka.ru  RU  RIPE  michelin@best-hoster.ru  91.219.192.0 - 91.219.195.255  BEST-HOSTER-NET  Best-Hoster Group Co. Ltd.Best-Hoster Group Co. Ltd.  ns72.dns-rus.net  ns71.dns-rus.net       lookup in virustotal http://limanekka.ru
8 follow up this item(2163456) 2163456 Report false positive Report closed case make a suggestion 2013-05-11 04:54:03      defaced_site  up  alive SenderBaselookup 184.172.187.158 at virustotallookup 184.172.187.158 at Rus CERT university stuttgart germanylookup 184.172.187.158 at ARIN 184.172.187.158  AS36420, AS30315, AS13749, AS21844 SenderBaselookup 184.172.187.158 at virustotallookup 184.172.187.158 at Rus CERT university stuttgart germanylookup 184.172.187.158 at ARIN 184.172.187.158 lookup in virustotal http://mapleleafsnation.co/CeLLaTReiS.ht ...  mapleleafsnation.co  US  ARIN  noc@theplanet.com  184.172.0.0 - 184.173.255.255  NETBLK-THEPLANET-BLK-17  ThePlanet.com Internet Services, Inc. TPCM 315 Capitol Suite 205 Houston TX 77002  ns2909.hostgator.com  ns2910.hostgator.com       lookup in virustotal http://mapleleafsnation.co/CeLLaTReiS.ht ...
9 follow up this item(2228992) 2228992 Report false positive Report closed case make a suggestion 2013-06-04 20:24:03      defaced_site  up  alive SenderBaselookup 200.58.111.63 at virustotallookup 200.58.111.63 at Rus CERT university stuttgart germanylookup 200.58.111.63 at LACNIC 200.58.111.63  AS27823 SenderBaselookup 200.58.111.63 at virustotallookup 200.58.111.63 at Rus CERT university stuttgart germanylookup 200.58.111.63 at LACNIC 200.58.111.63 lookup in virustotal http://www.pedidodelsuper.com.ar  pedidodelsuper.com.ar  AR  LACNIC  ipmaster@hostmar.com  200.58.96.0 - 200.58.111.255  AR-DATT-LACNIC  Dattatec.comCordoba, 3753,2000 - Rosario - SFCordoba, 3753,2000 - Rosario - SF  ns3.hostmar.com  ns4.hostmar.com       lookup in virustotal http://www.pedidodelsuper.com.ar
10 follow up this item(2229248) 2229248 Report false positive Report closed case make a suggestion 2013-06-04 22:30:03      defaced_site  up  alive SenderBaselookup 195.128.175.53 at virustotallookup 195.128.175.53 at Rus CERT university stuttgart germanylookup 195.128.175.53 at Ripe 195.128.175.53  AS43059 SenderBaselookup 195.128.175.53 at virustotallookup 195.128.175.53 at Rus CERT university stuttgart germanylookup 195.128.175.53 at Ripe 195.128.175.53 lookup in virustotal http://nykreditny.monk-fleet.dk/HZ.htm  monk-fleet.dk  DK  RIPE  abuse@talkactive.net  195.128.174.0 - 195.128.175.255  NN-TALKACTIVE  TalkActive  ns3.talkactive.net  ns.talkactive.net  ns2.talkactive.net     lookup in virustotal http://nykreditny.monk-fleet.dk/HZ.htm
11 follow up this item(1639680) 1639680 Report false positive Report closed case make a suggestion 2013-01-17 21:30:03 OVERDUE! 3665.5  defaced_site  up  alive SenderBaselookup 216.235.242.60 at virustotallookup 216.235.242.60 at Rus CERT university stuttgart germanylookup 216.235.242.60 at ARIN 216.235.242.60  AS14751, AS13407, AS13609 SenderBaselookup 216.235.242.60 at virustotallookup 216.235.242.60 at Rus CERT university stuttgart germanylookup 216.235.242.60 at ARIN 216.235.242.60 lookup in virustotal http://www.doversherborn.org/doversherbo ...  doversherborn.org  US  ARIN  abuse@onecommunications.com  216.235.240.0 - 216.235.255.255  ONECOM-216-235-240  One Communications Corporation ONECO-9 5 Wall St Burlington MA 01803  bdns.cs.siteprotect.com  adns.cs.siteprotect.com       lookup in virustotal http://www.doversherborn.org/doversherbo ...
12 follow up this item(1836288) 1836288 Report false positive Report closed case make a suggestion 2013-02-22 21:38:33 OVERDUE! 2801.4  defaced_site  up  alive SenderBaselookup 108.168.150.234 at virustotallookup 108.168.150.234 at Rus CERT university stuttgart germanylookup 108.168.150.234 at ARIN 108.168.150.234  AS36351 SenderBaselookup 108.168.150.234 at virustotallookup 108.168.150.234 at Rus CERT university stuttgart germanylookup 108.168.150.234 at ARIN 108.168.150.234 lookup in virustotal http://abundantlifetorrance.org/  abundantlifetorrance.org  US  ARIN  abuse@softlayer.com  108.168.128.0 - 108.168.255.255  SOFTLAYER-4-11  SoftLayer Technologies Inc. SOFTL 4849 Alpha Rd. Dallas TX 75244  ns6.stellarhosting.com  ns5.stellarhosting.com       lookup in virustotal http://abundantlifetorrance.org/
13 follow up this item(2229504) 2229504 Report false positive Report closed case make a suggestion 2013-06-04 23:48:03      defaced_site  up  alive SenderBaselookup 67.210.103.109 at virustotallookup 67.210.103.109 at Rus CERT university stuttgart germanylookup 67.210.103.109 at ARIN 67.210.103.109  AS15244 SenderBaselookup 67.210.103.109 at virustotallookup 67.210.103.109 at Rus CERT university stuttgart germanylookup 67.210.103.109 at ARIN 67.210.103.109 lookup in virustotal http://www.lifeworkserie.org  lifeworkserie.org  US  ARIN  hostmaster@lunarpages.com  67.210.96.0 - 67.210.111.255  ADD2NET-DOT-COM  ADDD2NET COM INC DBA LUNARPAGES ACIDL Add2Net, Inc. Lunarpages Division 100 East La Habra Blvd. La Habra CA 90631  dns4.name-services.com  dns1.name-services.com  dns3.name-services.com  dns5.name-services.com  dns2.name-services.com lookup in virustotal http://www.lifeworkserie.org
14 follow up this item(1902080) 1902080 Report false positive Report closed case make a suggestion 2013-03-15 21:54:03 OVERDUE! 2297.1  defaced_site  up  alive SenderBaselookup 217.174.103.224 at virustotallookup 217.174.103.224 at Rus CERT university stuttgart germanylookup 217.174.103.224 at Ripe 217.174.103.224  AS20655 SenderBaselookup 217.174.103.224 at virustotallookup 217.174.103.224 at Rus CERT university stuttgart germanylookup 217.174.103.224 at Ripe 217.174.103.224 lookup in virustotal http://automay.ru  automay.ru  RU  RIPE  lir@sunet.ru  217.174.103.192 - 217.174.103.255  RU-SUNET2000-20010411  PROVIDER Local RegistryE-Style ISPE-Style ISP  ns2.multihost.ru  ns1.multihost.ru       lookup in virustotal http://automay.ru
15 follow up this item(2164224) 2164224 Report false positive Report closed case make a suggestion 2013-05-11 17:42:04      defaced_site  up  alive SenderBaselookup 208.115.199.125 at virustotallookup 208.115.199.125 at Rus CERT university stuttgart germanylookup 208.115.199.125 at ARIN 208.115.199.125  AS46475 SenderBaselookup 208.115.199.125 at virustotallookup 208.115.199.125 at Rus CERT university stuttgart germanylookup 208.115.199.125 at ARIN 208.115.199.125 lookup in virustotal http://www.essencialotus.com  essencialotus.com  US  ARIN  noc@limestonenetworks.com  208.115.192.0 - 208.115.255.255  LSN-DLLSTX-5  Limestone Networks, Inc. LIMES-2 400 S. Akard Street Suite 200 Dallas TX 75202  ns8.opticalhost.com.br  ns7.opticalhost.com.br       lookup in virustotal http://www.essencialotus.com
16 follow up this item(2229760) 2229760 Report false positive Report closed case make a suggestion 2013-06-05 01:30:04      unknown_html  up  alive SenderBaselookup 185.17.0.7 at virustotallookup 185.17.0.7 at Rus CERT university stuttgart germanylookup 185.17.0.7 at Ripe 185.17.0.7  AS199388 SenderBaselookup 185.17.0.7 at virustotallookup 185.17.0.7 at Rus CERT university stuttgart germanylookup 185.17.0.7 at Ripe 185.17.0.7 lookup in virustotal http://restdom.ru/wp-content/themes/zees ...  restdom.ru  RU  RIPE    185.17.0.0 - 185.17.3.255      dns102.dc47.com  dns101.dc47.com       lookup in virustotal http://restdom.ru/wp-content/themes/zees ...
17 follow up this item(2230016) 2230016 Report false positive Report closed case make a suggestion 2013-06-05 02:48:02      defaced_site  up  alive SenderBaselookup 77.222.61.14 at virustotallookup 77.222.61.14 at Rus CERT university stuttgart germanylookup 77.222.61.14 at Ripe 77.222.61.14  AS44112 SenderBaselookup 77.222.61.14 at virustotallookup 77.222.61.14 at Rus CERT university stuttgart germanylookup 77.222.61.14 at Ripe 77.222.61.14 lookup in virustotal http://extremegadget.ru  extremegadget.ru  RU  RIPE  abuse@sweb.ru  77.222.60.0 - 77.222.63.255  SpaceWeb  SpaceWeb.ru Hosting Provider  ns1.spaceweb.ru  ns2.spaceweb.ru       lookup in virustotal http://extremegadget.ru
18 follow up this item(1968384) 1968384 Report false positive Report closed case make a suggestion 2013-04-03 16:01:05 OVERDUE! 1848  defaced_site  up  alive SenderBaselookup 78.100.62.61 at virustotallookup 78.100.62.61 at Rus CERT university stuttgart germanylookup 78.100.62.61 at Ripe 78.100.62.61  AS8781 SenderBaselookup 213.130.124.77 at virustotallookup 213.130.124.77 at Rus CERT university stuttgart germanylookup 213.130.124.77 at Ripe 213.130.124.77 lookup in virustotal http://tawtheef.sec.gov.qa  sec.gov.qa  QA  RIPE  registry@qatar.net.qa  213.130.96.0 - 213.130.127.255  QA-QTEL-20020516  Qatar TelecomPROVIDER LIRQ-Tel New Allocation Block  ns2.sec.gov.qa  ns3.sec.gov.qa  ns1.sec.gov.qa     lookup in virustotal http://tawtheef.sec.gov.qa
19 follow up this item(1903104) 1903104 Report false positive Report closed case make a suggestion 2013-03-16 00:27:12 OVERDUE! 2294.6  defaced_site  up  alive SenderBaselookup 200.58.111.127 at virustotallookup 200.58.111.127 at Rus CERT university stuttgart germanylookup 200.58.111.127 at LACNIC 200.58.111.127  AS27823 SenderBaselookup 200.58.111.127 at virustotallookup 200.58.111.127 at Rus CERT university stuttgart germanylookup 200.58.111.127 at LACNIC 200.58.111.127 lookup in virustotal http://animalessilvestres.com.ar/  animalessilvestres.com.ar  AR  LACNIC  ipmaster@hostmar.com  200.58.96.0 - 200.58.111.255  AR-DATT-LACNIC  Dattatec.comCordoba, 3753,2000 - Rosario - SFCordoba, 3753,2000 - Rosario - SF  ns3.hostmar.com  ns4.hostmar.com       lookup in virustotal http://animalessilvestres.com.ar/
20 follow up this item(1968640) 1968640 Report false positive Report closed case make a suggestion 2013-04-03 17:31:51 OVERDUE! 1846.5  defaced_site  up  alive SenderBaselookup 184.173.193.219 at virustotallookup 184.173.193.219 at Rus CERT university stuttgart germanylookup 184.173.193.219 at ARIN 184.173.193.219  AS36420, AS30315, AS13749, AS21844 SenderBaselookup 184.173.193.219 at virustotallookup 184.173.193.219 at Rus CERT university stuttgart germanylookup 184.173.193.219 at ARIN 184.173.193.219 lookup in virustotal http://bhojiamededu.com  bhojiamededu.com  US  ARIN  noc@theplanet.com  184.172.0.0 - 184.173.255.255  NETBLK-THEPLANET-BLK-17  ThePlanet.com Internet Services, Inc. TPCM 315 Capitol Suite 205 Houston TX 77002  ns1419.websitewelcome.com  ns1420.websitewelcome.com       lookup in virustotal http://bhojiamededu.com
21 follow up this item(2034176) 2034176 Report false positive Report closed case make a suggestion 2013-04-07 15:18:03 OVERDUE! 1752.7  defaced_site  up  alive SenderBaselookup 175.107.130.193 at virustotallookup 175.107.130.193 at Rus CERT university stuttgart germanylookup 175.107.130.193 at apnic 175.107.130.193  AS24557 SenderBaselookup 175.107.130.193 at virustotallookup 175.107.130.193 at Rus CERT university stuttgart germanylookup 175.107.130.193 at apnic 175.107.130.193 lookup in virustotal http://wgm.net.au/x.htm  wgm.net.au  AU  APNIC  abuse-arf@aussiehq.com.au  175.107.128.0 - 175.107.191.255  AUSSIEHQ  AussieHQ Pty LtdInternet Communications and Web Hosting ProviderCanberra, Australia  ns1.jumba.net.au  ns2.jumba.net.au       lookup in virustotal http://wgm.net.au/x.htm
22 follow up this item(1051392) 1051392 Report false positive Report closed case make a suggestion 2012-04-15 10:30:04 OVERDUE! 10325.5  unknown_html  up  alive SenderBaselookup 121.52.213.186 at virustotallookup 121.52.213.186 at Rus CERT university stuttgart germanylookup 121.52.213.186 at apnic 121.52.213.186  AS4847 SenderBaselookup 121.52.213.186 at virustotallookup 121.52.213.186 at Rus CERT university stuttgart germanylookup 121.52.213.186 at apnic 121.52.213.186 lookup in virustotal http://weblog.admin.wushen.com/uv.html?p ...  wushen.com  CN  APNIC  gao@topnew.cn  121.52.208.0 - 121.52.223.255  TopnewNET  Beijing Topnew Info&Tech co,.LTD.No.9 A JintailiJia£¬Chaoyang District£¬Beijing China  ns1.dnsv4.com  ns2.dnsv4.com       lookup in virustotal http://weblog.admin.wushen.com/uv.html?p ...
23 follow up this item(1641472) 1641472 Report false positive Report closed case make a suggestion 2013-01-18 16:24:05 OVERDUE! 3646.6  defaced_site  up  alive SenderBaselookup 199.116.77.26 at virustotallookup 199.116.77.26 at Rus CERT university stuttgart germanylookup 199.116.77.26 at ARIN 199.116.77.26  AS20115, AS54456, AS53292 SenderBaselookup 199.116.77.26 at virustotallookup 199.116.77.26 at Rus CERT university stuttgart germanylookup 199.116.77.26 at ARIN 199.116.77.26 lookup in virustotal http://cherokeecountyida.org  cherokeecountyida.org  US  ARIN  noc@cloudaccess.net  199.116.76.0 - 199.116.79.255  CLOUDACCESS-POOL  CloudAccess.net, LLC CL-69 10850 Traverse Highway Suite 4480 Traverse City MI 49684  ns98.worldnic.com  ns97.worldnic.com       lookup in virustotal http://cherokeecountyida.org
24 follow up this item(2165760) 2165760 Report false positive Report closed case make a suggestion 2013-05-12 19:12:03      defaced_site  up  alive SenderBaselookup 83.137.157.63 at virustotallookup 83.137.157.63 at Rus CERT university stuttgart germanylookup 83.137.157.63 at Ripe 83.137.157.63  AS12301 SenderBaselookup 83.137.157.63 at virustotallookup 83.137.157.63 at Rus CERT university stuttgart germanylookup 83.137.157.63 at Ripe 83.137.157.63 lookup in virustotal http://muszerkovacs.hu/keef.txt  muszerkovacs.hu  HU  RIPE  abuse@invitel.net  83.137.157.0 - 83.137.157.254  PONTKOM1  Pontkom Kft1132 Budapest Victor Hugo u. 18-22.1B Holding Zrt.1B Holding Zrt.  ns1.hungarydns.eu  ns2.hungarydns.eu       lookup in virustotal http://muszerkovacs.hu/keef.txt
25 follow up this item(1641728) 1641728 Report false positive Report closed case make a suggestion 2013-01-18 18:24:05 OVERDUE! 3644.6  defaced_site  up  alive SenderBaselookup 151.22.167.70 at virustotallookup 151.22.167.70 at Rus CERT university stuttgart germanylookup 151.22.167.70 at Ripe 151.22.167.70  AS31034 SenderBaselookup 46.37.27.84 at virustotallookup 46.37.27.84 at Rus CERT university stuttgart germanylookup 46.37.27.84 at Ripe 46.37.27.84 lookup in virustotal http://www.adfnet.it/x.txt  adfnet.it  IT  RIPE  abuse@staff.aruba.it  46.37.0.0 - 46.37.31.255  IT-TECHNORAIL-20101103  Aruba S.p.A.  dns4.arubadns.cz  dns.technorail.com  dns2.technorail.com  dns3.arubadns.net   lookup in virustotal http://www.adfnet.it/x.txt
Click here for other vital incidents


Protected by clean MX
Access is provided for free and subject to these Terms and Conditions.