<?xml version="1.0" encoding="iso-8859-1"?>
<rss version="2.0" xmlns:media="http://search.yahoo.com/mrss/" xml:lang="en-US">
	<channel>
		<title>clean-mx realtime database</title>
		<link>http://support.clean-mx.de/clean-mx/rss?scope=viruses</link>
		<description><![CDATA[Live information from clean-mx.de 76 items in this issue]]></description>
		<item>
			<title><![CDATA[http://adham.nl/index.php?men=&amp;p=87&amp;page=guest]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=11115103</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[HTML/TwitScroll.B]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=11115103</guid>
			<pubDate>2013-05-18T03:40:16+02:00</pubDate>
			<description><![CDATA[id:	11115103<br />first:	1368841216<br />last:	0<br />md5:	2c2c9e7093453e0270998ae875c0a6fd<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=2c2c9e7093453e0270998ae875c0a6fd<br />vt_score:	22/46 (47.8%)<br />scanner:	AntiVir<br />virusname:	HTML/TwitScroll.B<br />url:	http://adham.nl/index.php?men=&amp;p=87&amp;page=guest<br />recent:	up<br />response:	alive<br />ip:	5.200.9.10<br />as:	AS49544<br />review:	5.200.9.10<br />domain:	adham.nl<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	5.200.0.0 - 5.200.31.255<br />netname:	<br />descr:	<br />ns1:	ns2.nitroserve.com<br />ns2:	ns1.nitroserve.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://adham.nl/index.php]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=11111546</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[HTML/TwitScroll.B]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=11111546</guid>
			<pubDate>2013-05-18T01:40:17+02:00</pubDate>
			<description><![CDATA[id:	11111546<br />first:	1368834017<br />last:	0<br />md5:	2c2c9e7093453e0270998ae875c0a6fd<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=2c2c9e7093453e0270998ae875c0a6fd<br />vt_score:	22/46 (47.8%)<br />scanner:	AntiVir<br />virusname:	HTML/TwitScroll.B<br />url:	http://adham.nl/index.php<br />recent:	up<br />response:	alive<br />ip:	5.200.9.10<br />as:	AS49544<br />review:	5.200.9.10<br />domain:	adham.nl<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	5.200.0.0 - 5.200.31.255<br />netname:	<br />descr:	<br />ns1:	ns2.nitroserve.com<br />ns2:	ns1.nitroserve.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://adham.nl/index.php?page=guest&men=&p=189]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=11106069</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[HTML/Framer]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=11106069</guid>
			<pubDate>2013-05-17T20:40:22+02:00</pubDate>
			<description><![CDATA[id:	11106069<br />first:	1368816022<br />last:	0<br />md5:	deb7350d564bc35d9f1d96be0dd16e71<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=deb7350d564bc35d9f1d96be0dd16e71<br />vt_score:	21/47 (44.7%)<br />scanner:	undef<br />virusname:	HTML/Framer<br />url:	http://adham.nl/index.php?page=guest&men=&p=189<br />recent:	up<br />response:	alive<br />ip:	5.200.9.10<br />as:	AS49544<br />review:	5.200.9.10<br />domain:	adham.nl<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	5.200.0.0 - 5.200.31.255<br />netname:	<br />descr:	<br />ns1:	ns1.nitroserve.com<br />ns2:	ns2.nitroserve.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://adham.nl/index.php?page=guest&men=&p=69]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=11104081</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[unknown_html]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=11104081</guid>
			<pubDate>2013-05-17T20:10:07+02:00</pubDate>
			<description><![CDATA[id:	11104081<br />first:	1368814207<br />last:	0<br />md5:	0d6d6f70b5ef704666a741eea3178189<br />virustotal:	<br />vt_score:	<br />scanner:	undef<br />virusname:	unknown_html<br />url:	http://adham.nl/index.php?page=guest&men=&p=69<br />recent:	up<br />response:	alive<br />ip:	5.200.9.10<br />as:	AS49544<br />review:	5.200.9.10<br />domain:	adham.nl<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	5.200.0.0 - 5.200.31.255<br />netname:	<br />descr:	<br />ns1:	ns1.nitroserve.com<br />ns2:	ns2.nitroserve.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://adham.nl/index.php?page=guest&men=&p=192]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=11104080</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[HTML/TwitScroll.B]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=11104080</guid>
			<pubDate>2013-05-17T20:10:07+02:00</pubDate>
			<description><![CDATA[id:	11104080<br />first:	1368814207<br />last:	0<br />md5:	d21bfa53d5033a48abd49e390313cd89<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=d21bfa53d5033a48abd49e390313cd89<br />vt_score:	17/36 (47.2%)<br />scanner:	AntiVir<br />virusname:	HTML/TwitScroll.B<br />url:	http://adham.nl/index.php?page=guest&men=&p=192<br />recent:	up<br />response:	alive<br />ip:	5.200.9.10<br />as:	AS49544<br />review:	5.200.9.10<br />domain:	adham.nl<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	5.200.0.0 - 5.200.31.255<br />netname:	<br />descr:	<br />ns1:	ns1.nitroserve.com<br />ns2:	ns2.nitroserve.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://eyes.wap.sh/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=11090004</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Backdoor.Script.HTML.C99shell.b]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=11090004</guid>
			<pubDate>2013-05-17T09:41:41+02:00</pubDate>
			<description><![CDATA[id:	11090004<br />first:	1368776501<br />last:	0<br />md5:	87acfc445055b2c83a2a88367041a003<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=87acfc445055b2c83a2a88367041a003<br />vt_score:	1/47 (2.1%)<br />scanner:	undef<br />virusname:	Backdoor.Script.HTML.C99shell.b<br />url:	http://eyes.wap.sh/<br />recent:	up<br />response:	alive<br />ip:	188.95.50.114<br />as:	AS49544<br />review:	188.95.50.114<br />domain:	wap.sh<br />country:	NL<br />source:	RIPE<br />email:	abuse@as49544.net<br />inetnum:	188.95.50.0 - 188.95.50.255<br />netname:	SERVERBOOST<br />descr:	****************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers, hosting and VPSFor abuse, please e-mail only<br />ns1:	ns2.xtgem.com<br />ns2:	ns1.xtgem.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://host0r.net/devand.exe]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=11080048</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[WORM/Gamarue.itza]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=11080048</guid>
			<pubDate>2013-05-17T04:31:05+02:00</pubDate>
			<description><![CDATA[id:	11080048<br />first:	1368757865<br />last:	0<br />md5:	49d2efdcb8db7caa6d513888a9a14ebd<br />virustotal:	<br />vt_score:	41/46 (89.1%)<br />scanner:	avira<br />virusname:	WORM/Gamarue.itza<br />url:	http://host0r.net/devand.exe<br />recent:	up<br />response:	alive<br />ip:	188.95.48.213<br />as:	AS49544<br />review:	188.95.48.213<br />domain:	host0r.net<br />country:	NL<br />source:	RIPE<br />email:	abuse@serverboost.nl<br />inetnum:	188.95.48.0 - 188.95.48.255<br />netname:	SERVERBOOST<br />descr:	****************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers, hosting and VPSFor abuse, please e-mail onlyAbuse messages will be handled within 24 hours time*********************************************<br />ns1:	you2.coolsamhosting.info<br />ns2:	you1.coolsamhosting.info<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://keukenconcept.nl/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=11044603</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[unknown_html]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=11044603</guid>
			<pubDate>2013-05-16T11:10:15+02:00</pubDate>
			<description><![CDATA[id:	11044603<br />first:	1368695415<br />last:	0<br />md5:	565e1aea68ef56be6f75ec6cf313da82<br />virustotal:	<br />vt_score:	<br />scanner:	undef<br />virusname:	unknown_html<br />url:	http://keukenconcept.nl/<br />recent:	up<br />response:	alive<br />ip:	89.104.167.11<br />as:	AS49544<br />review:	89.104.167.11<br />domain:	keukenconcept.nl<br />country:	NL<br />source:	RIPE<br />email:	ripe@duximus.nl<br />inetnum:	89.104.160.0 - 89.104.191.255<br />netname:	NL-ODON-20060313<br />descr:	DuximusDuximus route object under Interactive3D<br />ns1:	ns11.multi-action.nl<br />ns2:	ns2.multi-action.nl<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://www.nikelunarshop.com/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=11043546</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[HTML:RedirBA-inf Trj]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=11043546</guid>
			<pubDate>2013-05-16T10:10:54+02:00</pubDate>
			<description><![CDATA[id:	11043546<br />first:	1368691854<br />last:	0<br />md5:	80651a5c94ba225dbc3e413edfcc5bec<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=80651a5c94ba225dbc3e413edfcc5bec<br />vt_score:	2/34 (5.9%)<br />scanner:	Avast<br />virusname:	HTML:RedirBA-inf Trj<br />url:	http://www.nikelunarshop.com/<br />recent:	up<br />response:	alive<br />ip:	109.232.224.191<br />as:	AS49544<br />review:	109.232.224.191<br />domain:	nikelunarshop.com<br />country:	NL<br />source:	RIPE<br />email:	abuse@serverboost.nl<br />inetnum:	109.232.224.64 - 109.232.224.255<br />netname:	SERVERBOOST<br />descr:	*************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers in premium networkFor abuse, please e-mail only<br />ns1:	freedns5.registrar-servers.com<br />ns2:	freedns4.registrar-servers.com<br />ns3:	freedns2.registrar-servers.com<br />ns4:	freedns3.registrar-servers.com<br />ns5:	freedns1.registrar-servers.com<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://nikelunarshop.com/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=11043449</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[unknown_html]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=11043449</guid>
			<pubDate>2013-05-16T10:10:37+02:00</pubDate>
			<description><![CDATA[id:	11043449<br />first:	1368691837<br />last:	0<br />md5:	c6157f4875827604ac4ca207a8e622c0<br />virustotal:	<br />vt_score:	<br />scanner:	undef<br />virusname:	unknown_html<br />url:	http://nikelunarshop.com/<br />recent:	up<br />response:	alive<br />ip:	109.232.224.191<br />as:	AS49544<br />review:	109.232.224.191<br />domain:	nikelunarshop.com<br />country:	NL<br />source:	RIPE<br />email:	abuse@serverboost.nl<br />inetnum:	109.232.224.64 - 109.232.224.255<br />netname:	SERVERBOOST<br />descr:	*************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers in premium networkFor abuse, please e-mail only<br />ns1:	freedns3.registrar-servers.com<br />ns2:	freedns5.registrar-servers.com<br />ns3:	freedns1.registrar-servers.com<br />ns4:	freedns4.registrar-servers.com<br />ns5:	freedns2.registrar-servers.com<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://genopro.com/archives/InstallGenoProBeta13h.exe]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=11041025</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Heuristic.LooksLike.Win32.Suspicious.Q]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=11041025</guid>
			<pubDate>2013-05-16T08:30:43+02:00</pubDate>
			<description><![CDATA[id:	11041025<br />first:	1368685843<br />last:	0<br />md5:	1cf80cc1a7d913cd617eb2cee93d692a<br />virustotal:	<br />vt_score:	1/46 (2.2%)<br />scanner:	undef<br />virusname:	Heuristic.LooksLike.Win32.Suspicious.Q<br />url:	http://genopro.com/archives/InstallGenoProBeta13h.exe<br />recent:	up<br />response:	alive<br />ip:	128.204.199.33<br />as:	AS49544<br />review:	128.204.199.33<br />domain:	genopro.com<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	128.204.192.0 - 128.204.207.255<br />netname:	<br />descr:	<br />ns1:	ns15.domaincontrol.com<br />ns2:	ns16.domaincontrol.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://jimmiks.com/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=11037883</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=11037883</guid>
			<pubDate>2013-05-16T06:10:20+02:00</pubDate>
			<description><![CDATA[id:	11037883<br />first:	1368677420<br />last:	0<br />md5:	60cd40f13e3aac59184c7a92f4293df5<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=60cd40f13e3aac59184c7a92f4293df5<br />vt_score:	2/46 (4.3%)<br />scanner:	undef<br />virusname:	JS:ScriptIP-inf<br />url:	http://jimmiks.com/<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	jimmiks.com<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	ns2.white-host.net<br />ns2:	ns1.white-host.net<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://www.genopro.com/archives/InstallGenoProBeta13h.exe]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=11003383</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Heuristic.LooksLike.Win32.Suspicious.Q]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=11003383</guid>
			<pubDate>2013-05-15T11:10:54+02:00</pubDate>
			<description><![CDATA[id:	11003383<br />first:	1368609054<br />last:	0<br />md5:	1cf80cc1a7d913cd617eb2cee93d692a<br />virustotal:	<br />vt_score:	1/46 (2.2%)<br />scanner:	undef<br />virusname:	Heuristic.LooksLike.Win32.Suspicious.Q<br />url:	http://www.genopro.com/archives/InstallGenoProBeta13h.exe<br />recent:	up<br />response:	alive<br />ip:	128.204.199.33<br />as:	AS49544<br />review:	128.204.199.33<br />domain:	genopro.com<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	128.204.192.0 - 128.204.207.255<br />netname:	<br />descr:	<br />ns1:	ns16.domaincontrol.com<br />ns2:	ns15.domaincontrol.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://hackershomepage.com/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=11000678</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf Trj]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=11000678</guid>
			<pubDate>2013-05-15T09:40:29+02:00</pubDate>
			<description><![CDATA[id:	11000678<br />first:	1368603629<br />last:	0<br />md5:	cb4b68483667168367087275311d848b<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=cb4b68483667168367087275311d848b<br />vt_score:	2/35 (5.7%)<br />scanner:	Avast<br />virusname:	JS:ScriptIP-inf Trj<br />url:	http://hackershomepage.com/<br />recent:	up<br />response:	alive<br />ip:	79.142.67.59<br />as:	AS49544<br />review:	79.142.67.59<br />domain:	hackershomepage.com<br />country:	NL<br />source:	RIPE<br />email:	abuse@altushost.com<br />inetnum:	79.142.67.0 - 79.142.67.255<br />netname:	ALTUSHOST-NET<br />descr:	AltusHost Inc.<br />ns1:	ns1.offshorehosting.com<br />ns2:	ns2.offshorehosting.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://off-rules.by/antibmw/function.mysql-41.html]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10922353</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[SCRIPT.Virus]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10922353</guid>
			<pubDate>2013-05-13T23:40:42+02:00</pubDate>
			<description><![CDATA[id:	10922353<br />first:	1368481242<br />last:	0<br />md5:	319ed64f99a2f8d239a674937c75abef<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=319ed64f99a2f8d239a674937c75abef<br />vt_score:	5/46 (10.9%)<br />scanner:	undef<br />virusname:	SCRIPT.Virus<br />url:	http://off-rules.by/antibmw/function.mysql-41.html<br />recent:	up<br />response:	alive<br />ip:	91.224.140.108<br />as:	AS49544<br />review:	91.224.140.108<br />domain:	off-rules.by<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	ns1.livehosting2.ru<br />ns2:	ns2.livehosting2.ru<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://megatc.kiev.ua/xxx/126663-molodye-lyubiteli-seksa.html]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10894136</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10894136</guid>
			<pubDate>2013-05-13T08:40:58+02:00</pubDate>
			<description><![CDATA[id:	10894136<br />first:	1368427258<br />last:	0<br />md5:	70a53c29a532f269ebbac55e1e5f5338<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=70a53c29a532f269ebbac55e1e5f5338<br />vt_score:	2/46 (4.3%)<br />scanner:	undef<br />virusname:	JS:ScriptIP-inf<br />url:	http://megatc.kiev.ua/xxx/126663-molodye-lyubiteli-seksa.html<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	kiev.ua<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	ho1.ns.kiev.ua<br />ns2:	k.ns.com.ua<br />ns3:	nix.ns.ua<br />ns4:	ba1.ns.ua<br />ns5:	sns-pb.isc.org<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://jimmiks.com/page/162]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10894081</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10894081</guid>
			<pubDate>2013-05-13T08:40:53+02:00</pubDate>
			<description><![CDATA[id:	10894081<br />first:	1368427253<br />last:	0<br />md5:	5c67fe7953cbf90d9f2f8746859e0178<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=5c67fe7953cbf90d9f2f8746859e0178<br />vt_score:	2/46 (4.3%)<br />scanner:	undef<br />virusname:	JS:ScriptIP-inf<br />url:	http://jimmiks.com/page/162<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	jimmiks.com<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	ns2.white-host.net<br />ns2:	ns1.white-host.net<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://host0r.net/wang.exe]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10879891</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Trojan/Win32.Chifrax.gen]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10879891</guid>
			<pubDate>2013-05-12T18:30:44+02:00</pubDate>
			<description><![CDATA[id:	10879891<br />first:	1368376244<br />last:	0<br />md5:	7a69c6d1895f6bca0eab943cf7881c2c<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=7a69c6d1895f6bca0eab943cf7881c2c<br />vt_score:	5/46 (10.9%)<br />scanner:	Antiy_AVL<br />virusname:	Trojan/Win32.Chifrax.gen<br />url:	http://host0r.net/wang.exe<br />recent:	up<br />response:	alive<br />ip:	188.95.48.213<br />as:	AS49544<br />review:	188.95.48.213<br />domain:	host0r.net<br />country:	NL<br />source:	RIPE<br />email:	abuse@serverboost.nl<br />inetnum:	188.95.48.0 - 188.95.48.255<br />netname:	SERVERBOOST<br />descr:	****************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers, hosting and VPSFor abuse, please e-mail onlyAbuse messages will be handled within 24 hours time*********************************************<br />ns1:	you1.coolsamhosting.info<br />ns2:	you2.coolsamhosting.info<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://host0r.net/sss.exe]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10879890</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Trojan/Win32.Chifrax.gen]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10879890</guid>
			<pubDate>2013-05-12T18:30:44+02:00</pubDate>
			<description><![CDATA[id:	10879890<br />first:	1368376244<br />last:	0<br />md5:	60b65988d24e5c06c45e392b25006b0e<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=60b65988d24e5c06c45e392b25006b0e<br />vt_score:	4/46 (8.7%)<br />scanner:	Antiy_AVL<br />virusname:	Trojan/Win32.Chifrax.gen<br />url:	http://host0r.net/sss.exe<br />recent:	up<br />response:	alive<br />ip:	188.95.48.213<br />as:	AS49544<br />review:	188.95.48.213<br />domain:	host0r.net<br />country:	NL<br />source:	RIPE<br />email:	abuse@serverboost.nl<br />inetnum:	188.95.48.0 - 188.95.48.255<br />netname:	SERVERBOOST<br />descr:	****************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers, hosting and VPSFor abuse, please e-mail onlyAbuse messages will be handled within 24 hours time*********************************************<br />ns1:	you1.coolsamhosting.info<br />ns2:	you2.coolsamhosting.info<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://host0r.net/plz.exe]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10879889</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Trojan/Win32.Chifrax.gen]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10879889</guid>
			<pubDate>2013-05-12T18:30:44+02:00</pubDate>
			<description><![CDATA[id:	10879889<br />first:	1368376244<br />last:	0<br />md5:	206a7ff0fb09862639ece898c4e31373<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=206a7ff0fb09862639ece898c4e31373<br />vt_score:	4/46 (8.7%)<br />scanner:	Antiy_AVL<br />virusname:	Trojan/Win32.Chifrax.gen<br />url:	http://host0r.net/plz.exe<br />recent:	up<br />response:	alive<br />ip:	188.95.48.213<br />as:	AS49544<br />review:	188.95.48.213<br />domain:	host0r.net<br />country:	NL<br />source:	RIPE<br />email:	abuse@serverboost.nl<br />inetnum:	188.95.48.0 - 188.95.48.255<br />netname:	SERVERBOOST<br />descr:	****************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers, hosting and VPSFor abuse, please e-mail onlyAbuse messages will be handled within 24 hours time*********************************************<br />ns1:	you1.coolsamhosting.info<br />ns2:	you2.coolsamhosting.info<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://megatc.kiev.ua/xxx/126507-simpotichnye-malenkie-zadnicy-5-cute-little-asses-5-2007-g-teens-anal-dvdrip.html]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10865912</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf Trj]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10865912</guid>
			<pubDate>2013-05-12T06:41:05+02:00</pubDate>
			<description><![CDATA[id:	10865912<br />first:	1368333665<br />last:	0<br />md5:	ee5c265e9192057dcea74bc9834efe3a<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=ee5c265e9192057dcea74bc9834efe3a<br />vt_score:	2/35 (5.7%)<br />scanner:	Avast<br />virusname:	JS:ScriptIP-inf Trj<br />url:	http://megatc.kiev.ua/xxx/126507-simpotichnye-malenkie-zadnicy-5-cute-little-asses-5-2007-g-teens-anal-dvdrip.html<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	kiev.ua<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	ho1.ns.kiev.ua<br />ns2:	sns-pb.isc.org<br />ns3:	k.ns.com.ua<br />ns4:	nix.ns.ua<br />ns5:	ba1.ns.ua<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://host0r.net/Razorcrypt.exe]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10861419</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[TR/Dropper.Gen]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10861419</guid>
			<pubDate>2013-05-12T02:00:59+02:00</pubDate>
			<description><![CDATA[id:	10861419<br />first:	1368316859<br />last:	0<br />md5:	0c078036813e1ffc7dff755fd05d3ac5<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=0c078036813e1ffc7dff755fd05d3ac5<br />vt_score:	19/46 (41.3%)<br />scanner:	avira<br />virusname:	TR/Dropper.Gen<br />url:	http://host0r.net/Razorcrypt.exe<br />recent:	up<br />response:	alive<br />ip:	188.95.48.213<br />as:	AS49544<br />review:	188.95.48.213<br />domain:	host0r.net<br />country:	NL<br />source:	RIPE<br />email:	abuse@serverboost.nl<br />inetnum:	188.95.48.0 - 188.95.48.255<br />netname:	SERVERBOOST<br />descr:	****************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers, hosting and VPSFor abuse, please e-mail onlyAbuse messages will be handled within 24 hours time*********************************************<br />ns1:	you2.coolsamhosting.info<br />ns2:	you1.coolsamhosting.info<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://nevromed.com.ua/xxx/132608-choknutyy-professor-mad-proffesor-2011-dvdrip.html]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10848114</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10848114</guid>
			<pubDate>2013-05-11T15:43:25+02:00</pubDate>
			<description><![CDATA[id:	10848114<br />first:	1368279805<br />last:	0<br />md5:	f04cd795770bfe76dc4fe732aaf3d314<br />virustotal:	<br />vt_score:	2/46 (4.3%)<br />scanner:	undef<br />virusname:	JS:ScriptIP-inf<br />url:	http://nevromed.com.ua/xxx/132608-choknutyy-professor-mad-proffesor-2011-dvdrip.html<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	nevromed.com.ua<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	ns1.white-host.net<br />ns2:	ns2.white-host.net<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://nevromed.com.ua/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10834522</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf [Trj]]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10834522</guid>
			<pubDate>2013-05-11T02:42:07+02:00</pubDate>
			<description><![CDATA[id:	10834522<br />first:	1368232927<br />last:	0<br />md5:	55f1364b060b5933788afaf23871418d<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=55f1364b060b5933788afaf23871418d<br />vt_score:	2/46 (4.3%)<br />scanner:	Avast<br />virusname:	JS:ScriptIP-inf [Trj]<br />url:	http://nevromed.com.ua/<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	nevromed.com.ua<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	ns1.white-host.net<br />ns2:	ns2.white-host.net<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://www.nikelunarshop.com/nike-air-presto-c-95.html]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10833919</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[HTML:RedirBA-inf]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10833919</guid>
			<pubDate>2013-05-11T02:12:22+02:00</pubDate>
			<description><![CDATA[id:	10833919<br />first:	1368231142<br />last:	0<br />md5:	698f4f443a0ef1fa603ed9a7a607d56a<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=698f4f443a0ef1fa603ed9a7a607d56a<br />vt_score:	2/46 (4.3%)<br />scanner:	undef<br />virusname:	HTML:RedirBA-inf<br />url:	http://www.nikelunarshop.com/nike-air-presto-c-95.html<br />recent:	up<br />response:	alive<br />ip:	109.232.224.191<br />as:	AS49544<br />review:	109.232.224.191<br />domain:	nikelunarshop.com<br />country:	NL<br />source:	RIPE<br />email:	abuse@serverboost.nl<br />inetnum:	109.232.224.64 - 109.232.224.255<br />netname:	SERVERBOOST<br />descr:	*************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers in premium networkFor abuse, please e-mail only<br />ns1:	freedns1.registrar-servers.com<br />ns2:	freedns2.registrar-servers.com<br />ns3:	freedns3.registrar-servers.com<br />ns4:	freedns4.registrar-servers.com<br />ns5:	freedns5.registrar-servers.com<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://www.lunareclipse2.org/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10833551</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[HTML:RedirBA-inf Trj]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10833551</guid>
			<pubDate>2013-05-11T01:42:40+02:00</pubDate>
			<description><![CDATA[id:	10833551<br />first:	1368229360<br />last:	0<br />md5:	c122b7693b8b38f99ca964fd41abd02e<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=c122b7693b8b38f99ca964fd41abd02e<br />vt_score:	2/35 (5.7%)<br />scanner:	Avast<br />virusname:	HTML:RedirBA-inf Trj<br />url:	http://www.lunareclipse2.org/<br />recent:	up<br />response:	alive<br />ip:	109.232.224.191<br />as:	AS49544<br />review:	109.232.224.191<br />domain:	lunareclipse2.org<br />country:	NL<br />source:	RIPE<br />email:	abuse@serverboost.nl<br />inetnum:	109.232.224.64 - 109.232.224.255<br />netname:	SERVERBOOST<br />descr:	*************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers in premium networkFor abuse, please e-mail only<br />ns1:	freedns3.registrar-servers.com<br />ns2:	freedns1.registrar-servers.com<br />ns3:	freedns2.registrar-servers.com<br />ns4:	freedns5.registrar-servers.com<br />ns5:	freedns4.registrar-servers.com<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://nevromed.com.ua/xxx/140308-domashniy-anal-molodenkih-vol26.html]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10825513</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10825513</guid>
			<pubDate>2013-05-10T21:41:48+02:00</pubDate>
			<description><![CDATA[id:	10825513<br />first:	1368214908<br />last:	0<br />md5:	822e3f4a22057ff7c1d9914f2d83a490<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=822e3f4a22057ff7c1d9914f2d83a490<br />vt_score:	2/46 (4.3%)<br />scanner:	undef<br />virusname:	JS:ScriptIP-inf<br />url:	http://nevromed.com.ua/xxx/140308-domashniy-anal-molodenkih-vol26.html<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	nevromed.com.ua<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	ns1.white-host.net<br />ns2:	ns2.white-host.net<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://darkplace.com.ua/soft/84250-menyu-dlya-avtonavigatorov-480x272-so-smenoj-skinov.html]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10823507</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10823507</guid>
			<pubDate>2013-05-10T20:40:35+02:00</pubDate>
			<description><![CDATA[id:	10823507<br />first:	1368211235<br />last:	0<br />md5:	8d9fc325e30751cfcf8a3b1b8422d2d1<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=8d9fc325e30751cfcf8a3b1b8422d2d1<br />vt_score:	2/45 (4.4%)<br />scanner:	undef<br />virusname:	JS:ScriptIP-inf<br />url:	http://darkplace.com.ua/soft/84250-menyu-dlya-avtonavigatorov-480x272-so-smenoj-skinov.html<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	darkplace.com.ua<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	ns1.white-host.net<br />ns2:	ns2.white-host.net<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://adham.nl/index.php?men=]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10794399</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[HTML/TwitScroll.B]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10794399</guid>
			<pubDate>2013-05-10T02:40:17+02:00</pubDate>
			<description><![CDATA[id:	10794399<br />first:	1368146417<br />last:	0<br />md5:	2c2c9e7093453e0270998ae875c0a6fd<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=2c2c9e7093453e0270998ae875c0a6fd<br />vt_score:	22/46 (47.8%)<br />scanner:	AntiVir<br />virusname:	HTML/TwitScroll.B<br />url:	http://adham.nl/index.php?men=<br />recent:	up<br />response:	alive<br />ip:	5.200.9.10<br />as:	AS49544<br />review:	5.200.9.10<br />domain:	adham.nl<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	5.200.0.0 - 5.200.31.255<br />netname:	<br />descr:	<br />ns1:	ns1.nitroserve.com<br />ns2:	ns2.nitroserve.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://adham.nl/index.php?men=&p=87&page=guest]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10769173</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[HTML/Framer]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10769173</guid>
			<pubDate>2013-05-09T10:40:09+02:00</pubDate>
			<description><![CDATA[id:	10769173<br />first:	1368088809<br />last:	0<br />md5:	41da197800981d78499a8c20b533c290<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=41da197800981d78499a8c20b533c290<br />vt_score:	21/46 (45.7%)<br />scanner:	undef<br />virusname:	HTML/Framer<br />url:	http://adham.nl/index.php?men=&p=87&page=guest<br />recent:	up<br />response:	alive<br />ip:	5.200.9.10<br />as:	AS49544<br />review:	5.200.9.10<br />domain:	adham.nl<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	5.200.0.0 - 5.200.31.255<br />netname:	<br />descr:	<br />ns1:	ns2.nitroserve.com<br />ns2:	ns1.nitroserve.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://www.zorgtuinderijdees.nl/zorg.html]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10758133</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS/Redir]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10758133</guid>
			<pubDate>2013-05-08T23:40:58+02:00</pubDate>
			<description><![CDATA[id:	10758133<br />first:	1368049258<br />last:	0<br />md5:	0b887f82e00f5c3aeed85686f63d6a82<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=0b887f82e00f5c3aeed85686f63d6a82<br />vt_score:	17/46 (37%)<br />scanner:	undef<br />virusname:	JS/Redir<br />url:	http://www.zorgtuinderijdees.nl/zorg.html<br />recent:	up<br />response:	alive<br />ip:	5.200.9.10<br />as:	AS49544<br />review:	5.200.9.10<br />domain:	zorgtuinderijdees.nl<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	5.200.0.0 - 5.200.31.255<br />netname:	<br />descr:	<br />ns1:	ns2.nitroserve.com<br />ns2:	ns1.nitroserve.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://adham.nl/index.php?page=guest&men=&p=87]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10756966</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[HTML/Framer]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10756966</guid>
			<pubDate>2013-05-08T23:40:06+02:00</pubDate>
			<description><![CDATA[id:	10756966<br />first:	1368049206<br />last:	0<br />md5:	41da197800981d78499a8c20b533c290<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=41da197800981d78499a8c20b533c290<br />vt_score:	21/46 (45.7%)<br />scanner:	undef<br />virusname:	HTML/Framer<br />url:	http://adham.nl/index.php?page=guest&men=&p=87<br />recent:	up<br />response:	alive<br />ip:	5.200.9.10<br />as:	AS49544<br />review:	5.200.9.10<br />domain:	adham.nl<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	5.200.0.0 - 5.200.31.255<br />netname:	<br />descr:	<br />ns1:	ns2.nitroserve.com<br />ns2:	ns1.nitroserve.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://boutiqueribelle.be/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10742448</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Trojan.JS.Agent]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10742448</guid>
			<pubDate>2013-05-08T15:41:13+02:00</pubDate>
			<description><![CDATA[id:	10742448<br />first:	1368020473<br />last:	0<br />md5:	39b0c083294d6c1966dd3070d34b0adc<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=39b0c083294d6c1966dd3070d34b0adc<br />vt_score:	14/46 (30.4%)<br />scanner:	undef<br />virusname:	Trojan.JS.Agent<br />url:	http://boutiqueribelle.be/<br />recent:	up<br />response:	alive<br />ip:	5.200.9.10<br />as:	AS49544<br />review:	5.200.9.10<br />domain:	boutiqueribelle.be<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	5.200.0.0 - 5.200.31.255<br />netname:	<br />descr:	<br />ns1:	ns1.nitroserve.com<br />ns2:	ns2.nitroserve.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://konspekt.com.ua/xxx/53499-devushka-zanimaetsja-seksom-s-poni..html]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10739562</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf [Trj]]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10739562</guid>
			<pubDate>2013-05-08T14:40:16+02:00</pubDate>
			<description><![CDATA[id:	10739562<br />first:	1368016816<br />last:	0<br />md5:	129e75f690bd2dda9b9bda0fbaf77e4f<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=129e75f690bd2dda9b9bda0fbaf77e4f<br />vt_score:	3/46 (6.5%)<br />scanner:	Avast<br />virusname:	JS:ScriptIP-inf [Trj]<br />url:	http://konspekt.com.ua/xxx/53499-devushka-zanimaetsja-seksom-s-poni..html<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	konspekt.com.ua<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	ns2.white-host.net<br />ns2:	ns1.white-host.net<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://e2o.com.ua/soft/102830-zagruzochnaya-fleshka-usb-reanimator-filth-edition-20-russkiy-angliyskiy.html]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10726584</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf [Trj]]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10726584</guid>
			<pubDate>2013-05-08T02:10:10+02:00</pubDate>
			<description><![CDATA[id:	10726584<br />first:	1367971810<br />last:	0<br />md5:	b56f3beb20657ad45989295a45a9772b<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=b56f3beb20657ad45989295a45a9772b<br />vt_score:	3/46 (6.5%)<br />scanner:	Avast<br />virusname:	JS:ScriptIP-inf [Trj]<br />url:	http://e2o.com.ua/soft/102830-zagruzochnaya-fleshka-usb-reanimator-filth-edition-20-russkiy-angliyskiy.html<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	e2o.com.ua<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	ns1.white-host.net<br />ns2:	ns2.white-host.net<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://www.boutiqueribelle.be/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10705657</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS/Agent.HO.1]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10705657</guid>
			<pubDate>2013-05-06T21:02:36+02:00</pubDate>
			<description><![CDATA[id:	10705657<br />first:	1367866956<br />last:	0<br />md5:	39b0c083294d6c1966dd3070d34b0adc<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=39b0c083294d6c1966dd3070d34b0adc<br />vt_score:	12/35 (34.3%)<br />scanner:	AntiVir<br />virusname:	JS/Agent.HO.1<br />url:	http://www.boutiqueribelle.be/<br />recent:	up<br />response:	alive<br />ip:	5.200.9.10<br />as:	AS49544<br />review:	5.200.9.10<br />domain:	boutiqueribelle.be<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	5.200.0.0 - 5.200.31.255<br />netname:	<br />descr:	<br />ns1:	ns2.nitroserve.com<br />ns2:	ns1.nitroserve.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://webagent.kiev.ua/page/137]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10673940</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf [Trj]]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10673940</guid>
			<pubDate>2013-05-05T13:50:29+02:00</pubDate>
			<description><![CDATA[id:	10673940<br />first:	1367754629<br />last:	0<br />md5:	ad26ec4f0649d8dedcdf1d5b57faf4a9<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=ad26ec4f0649d8dedcdf1d5b57faf4a9<br />vt_score:	2/35 (5.7%)<br />scanner:	Avast<br />virusname:	JS:ScriptIP-inf [Trj]<br />url:	http://webagent.kiev.ua/page/137<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	kiev.ua<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	nix.ns.ua<br />ns2:	ba1.ns.ua<br />ns3:	ho1.ns.kiev.ua<br />ns4:	k.ns.com.ua<br />ns5:	sns-pb.isc.org<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://webagent.kiev.ua/mobile/73918-jimm-v.0.6.0b-ot-xattaba-mobilnaja-asja-s.html]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10673939</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf Trj]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10673939</guid>
			<pubDate>2013-05-05T13:50:29+02:00</pubDate>
			<description><![CDATA[id:	10673939<br />first:	1367754629<br />last:	0<br />md5:	bab58ef351743923b53104123bd71eca<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=3316f8f4b7ded23f4781bbfae88ed86f<br />vt_score:	2/35 (5.7%)<br />scanner:	Avast<br />virusname:	JS:ScriptIP-inf Trj<br />url:	http://webagent.kiev.ua/mobile/73918-jimm-v.0.6.0b-ot-xattaba-mobilnaja-asja-s.html<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	kiev.ua<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	nix.ns.ua<br />ns2:	ba1.ns.ua<br />ns3:	ho1.ns.kiev.ua<br />ns4:	k.ns.com.ua<br />ns5:	sns-pb.isc.org<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://rus-warez.com/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10664623</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf Trj]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10664623</guid>
			<pubDate>2013-05-05T08:50:09+02:00</pubDate>
			<description><![CDATA[id:	10664623<br />first:	1367736609<br />last:	0<br />md5:	6fc7d498465a6871648c2d83ea93f52e<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=6fc7d498465a6871648c2d83ea93f52e<br />vt_score:	2/35 (5.7%)<br />scanner:	Avast<br />virusname:	JS:ScriptIP-inf Trj<br />url:	http://rus-warez.com/<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	rus-warez.com<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	ns1.white-host.net<br />ns2:	ns2.white-host.net<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://dannyfile.com/xxx/255365-russkaya-golaya-devushka-zimoj-snoshaetsya-so-snegovikom.html]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10656228</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf [Trj]]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10656228</guid>
			<pubDate>2013-05-04T18:53:25+02:00</pubDate>
			<description><![CDATA[id:	10656228<br />first:	1367686405<br />last:	0<br />md5:	b75f219eefc4b2fdad7cb129ea0475b6<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=b75f219eefc4b2fdad7cb129ea0475b6<br />vt_score:	2/46 (4.3%)<br />scanner:	Avast<br />virusname:	JS:ScriptIP-inf [Trj]<br />url:	http://dannyfile.com/xxx/255365-russkaya-golaya-devushka-zimoj-snoshaetsya-so-snegovikom.html<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	dannyfile.com<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	ns1.white-host.net<br />ns2:	ns2.white-host.net<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://antiglobal.kiev.ua/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10643096</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf Trj]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10643096</guid>
			<pubDate>2013-05-04T09:50:05+02:00</pubDate>
			<description><![CDATA[id:	10643096<br />first:	1367653805<br />last:	0<br />md5:	cc39948d125df05e7a0291e35589a62c<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=cc39948d125df05e7a0291e35589a62c<br />vt_score:	2/46 (4.3%)<br />scanner:	Avast<br />virusname:	JS:ScriptIP-inf Trj<br />url:	http://antiglobal.kiev.ua/<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	kiev.ua<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	sns-pb.isc.org<br />ns2:	ho1.ns.kiev.ua<br />ns3:	nix.ns.ua<br />ns4:	ba1.ns.ua<br />ns5:	k.ns.com.ua<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://kapetanios.org/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10573647</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Exploit]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10573647</guid>
			<pubDate>2013-05-01T08:45:58+02:00</pubDate>
			<description><![CDATA[id:	10573647<br />first:	1367390758<br />last:	0<br />md5:	4cdc6b85e52987d0e7034d0a77a3df24<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=4cdc6b85e52987d0e7034d0a77a3df24<br />vt_score:	12/46 (26.1%)<br />scanner:	undef<br />virusname:	Exploit<br />url:	http://kapetanios.org/<br />recent:	up<br />response:	alive<br />ip:	188.95.51.84<br />as:	AS49544<br />review:	188.95.51.84<br />domain:	kapetanios.org<br />country:	NL<br />source:	RIPE<br />email:	abuse@as49544.net<br />inetnum:	188.95.51.0 - 188.95.51.255<br />netname:	SERVERBOOST<br />descr:	****************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers, hosting and VPSFor abuse, please e-mail only<br />ns1:	ns65.cretaforce.gr<br />ns2:	ns66.cretaforce.gr<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://forum.i3d.net/downloads.php?do=file&id=1440&act=down&actionhash=guest]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10478219</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[unknown_exe]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10478219</guid>
			<pubDate>2013-04-28T03:10:10+02:00</pubDate>
			<description><![CDATA[id:	10478219<br />first:	1367111410<br />last:	0<br />md5:	4f23e55722fa223656f3e8758067cbb9<br />virustotal:	<br />vt_score:	0/43 (0.0%)<br />scanner:	undef<br />virusname:	unknown_exe<br />url:	http://forum.i3d.net/downloads.php?do=file&id=1440&act=down&actionhash=guest<br />recent:	up<br />response:	alive<br />ip:	213.163.76.180<br />as:	AS49544<br />review:	213.163.76.180<br />domain:	i3d.net<br />country:	NL<br />source:	RIPE<br />email:	abuse@i3d.net<br />inetnum:	213.163.64.0 - 213.163.95.255<br />netname:	NL-INTERACTIVE3D-20081112<br />descr:	Interactive 3D<br />ns1:	ns2.transip.net<br />ns2:	ns0.transip.net<br />ns3:	ns1.transip.net<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://adham.nl/index.php?page=guest]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10436365</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[HTML/TwitScroll.B]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10436365</guid>
			<pubDate>2013-04-26T10:30:20+02:00</pubDate>
			<description><![CDATA[id:	10436365<br />first:	1366965020<br />last:	0<br />md5:	b263978f85871b86795b1ccc5ecaef3b<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=b263978f85871b86795b1ccc5ecaef3b<br />vt_score:	17/35 (48.6%)<br />scanner:	AntiVir<br />virusname:	HTML/TwitScroll.B<br />url:	http://adham.nl/index.php?page=guest<br />recent:	up<br />response:	alive<br />ip:	5.200.9.10<br />as:	AS49544<br />review:	5.200.9.10<br />domain:	adham.nl<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	5.200.0.0 - 5.200.31.255<br />netname:	<br />descr:	<br />ns1:	ns1.nitroserve.com<br />ns2:	ns2.nitroserve.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://adham.nl/index.php?page=guest&men=&p=190]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10404666</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[HTML/TwitScroll.B]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10404666</guid>
			<pubDate>2013-04-25T16:00:23+02:00</pubDate>
			<description><![CDATA[id:	10404666<br />first:	1366898423<br />last:	0<br />md5:	91e44d0925b626ea9f918eafbf747f1c<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=91e44d0925b626ea9f918eafbf747f1c<br />vt_score:	21/46 (45.7%)<br />scanner:	AntiVir<br />virusname:	HTML/TwitScroll.B<br />url:	http://adham.nl/index.php?page=guest&men=&p=190<br />recent:	up<br />response:	alive<br />ip:	5.200.9.10<br />as:	AS49544<br />review:	5.200.9.10<br />domain:	adham.nl<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	5.200.0.0 - 5.200.31.255<br />netname:	<br />descr:	<br />ns1:	ns1.nitroserve.com<br />ns2:	ns2.nitroserve.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://adham.nl/index.php?page=guest&men=&p=176]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10404665</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[HTML/TwitScroll.B]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10404665</guid>
			<pubDate>2013-04-25T16:00:23+02:00</pubDate>
			<description><![CDATA[id:	10404665<br />first:	1366898423<br />last:	0<br />md5:	44dc20bd3f4d694620ead1b1fa467259<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=44dc20bd3f4d694620ead1b1fa467259<br />vt_score:	21/46 (45.7%)<br />scanner:	AntiVir<br />virusname:	HTML/TwitScroll.B<br />url:	http://adham.nl/index.php?page=guest&men=&p=176<br />recent:	up<br />response:	alive<br />ip:	5.200.9.10<br />as:	AS49544<br />review:	5.200.9.10<br />domain:	adham.nl<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	5.200.0.0 - 5.200.31.255<br />netname:	<br />descr:	<br />ns1:	ns1.nitroserve.com<br />ns2:	ns2.nitroserve.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://adham.nl/index.php?page=login]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10387639</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[HTML/TwitScroll.B]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10387639</guid>
			<pubDate>2013-04-24T21:00:43+02:00</pubDate>
			<description><![CDATA[id:	10387639<br />first:	1366830043<br />last:	0<br />md5:	4034f396aa9cded4797359017c9918eb<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=4034f396aa9cded4797359017c9918eb<br />vt_score:	17/35 (48.6%)<br />scanner:	AntiVir<br />virusname:	HTML/TwitScroll.B<br />url:	http://adham.nl/index.php?page=login<br />recent:	up<br />response:	alive<br />ip:	5.200.9.10<br />as:	AS49544<br />review:	5.200.9.10<br />domain:	adham.nl<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	5.200.0.0 - 5.200.31.255<br />netname:	<br />descr:	<br />ns1:	ns1.nitroserve.com<br />ns2:	ns2.nitroserve.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://buxrub.ru/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10371323</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS/BlacoleRef.CZ.8]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10371323</guid>
			<pubDate>2013-04-24T12:10:06+02:00</pubDate>
			<description><![CDATA[id:	10371323<br />first:	1366798206<br />last:	0<br />md5:	9f6544a79991cb884532b6b5b35e0f35<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=9f6544a79991cb884532b6b5b35e0f35<br />vt_score:	8/45 (17.8%)<br />scanner:	AntiVir<br />virusname:	JS/BlacoleRef.CZ.8<br />url:	http://buxrub.ru/<br />recent:	up<br />response:	alive<br />ip:	77.95.226.72<br />as:	AS49544<br />review:	77.95.226.72<br />domain:	buxrub.ru<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	77.95.224.0 - 77.95.231.255<br />netname:	<br />descr:	<br />ns1:	ns1.for-ns.com<br />ns2:	ns2.for-ns.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://flampion.com/advertising/?1]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10361891</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Heuristic.LooksLike.HTML.Suspicious-URL.K]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10361891</guid>
			<pubDate>2013-04-23T21:40:32+02:00</pubDate>
			<description><![CDATA[id:	10361891<br />first:	1366746032<br />last:	0<br />md5:	b7b7cbdad4832b0876528939459c1040<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=b7b7cbdad4832b0876528939459c1040<br />vt_score:	1/46 (2.2%)<br />scanner:	McAfee_GW_Editio<br />virusname:	Heuristic.LooksLike.HTML.Suspicious-URL.K<br />url:	http://flampion.com/advertising/?1<br />recent:	up<br />response:	alive<br />ip:	77.95.229.8<br />as:	AS49544<br />review:	77.95.229.8<br />domain:	flampion.com<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	77.95.224.0 - 77.95.231.255<br />netname:	<br />descr:	<br />ns1:	ns1.ukrnames.com<br />ns2:	ns2.ukrnames.com<br />ns3:	ns3.ukrnames.com<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://www.kapetanios.org/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10144414</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS/BlacoleRef.W.309]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10144414</guid>
			<pubDate>2013-04-15T04:31:53+02:00</pubDate>
			<description><![CDATA[id:	10144414<br />first:	1365993113<br />last:	0<br />md5:	3fb227410228121682127d74af407cba<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=3fb227410228121682127d74af407cba<br />vt_score:	8/47 (17%)<br />scanner:	AntiVir<br />virusname:	JS/BlacoleRef.W.309<br />url:	http://www.kapetanios.org/<br />recent:	up<br />response:	alive<br />ip:	188.95.51.84<br />as:	AS49544<br />review:	188.95.51.84<br />domain:	kapetanios.org<br />country:	NL<br />source:	RIPE<br />email:	abuse@as49544.net<br />inetnum:	188.95.51.0 - 188.95.51.255<br />netname:	SERVERBOOST<br />descr:	****************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers, hosting and VPSFor abuse, please e-mail only<br />ns1:	ns65.cretaforce.gr<br />ns2:	ns66.cretaforce.gr<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://faylik.net/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10142057</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf [Trj]]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10142057</guid>
			<pubDate>2013-04-15T03:12:36+02:00</pubDate>
			<description><![CDATA[id:	10142057<br />first:	1365988356<br />last:	0<br />md5:	57f90abd860f66085d4da8f5449d477c<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=57f90abd860f66085d4da8f5449d477c<br />vt_score:	2/46 (4.3%)<br />scanner:	Avast<br />virusname:	JS:ScriptIP-inf [Trj]<br />url:	http://faylik.net/<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	faylik.net<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	ns1.white-host.net<br />ns2:	ns2.white-host.net<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://www.antibmw.info/function.session-start]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10087705</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[IFrame.gen]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10087705</guid>
			<pubDate>2013-04-13T07:16:29+02:00</pubDate>
			<description><![CDATA[id:	10087705<br />first:	1365830189<br />last:	0<br />md5:	bcaf98a175c29ca67cf5a5f243d9d476<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=bcaf98a175c29ca67cf5a5f243d9d476<br />vt_score:	4/46 (8.7%)<br />scanner:	F_Prot<br />virusname:	IFrame.gen<br />url:	http://www.antibmw.info/function.session-start<br />recent:	up<br />response:	alive<br />ip:	91.224.140.108<br />as:	AS49544<br />review:	91.224.140.108<br />domain:	antibmw.info<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	ns2.livehosting2.ru<br />ns2:	ns1.livehosting2.ru<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://slap.kiev.ua/webmasteru]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=10006885</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf [Trj]]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=10006885</guid>
			<pubDate>2013-04-08T13:02:59+02:00</pubDate>
			<description><![CDATA[id:	10006885<br />first:	1365418979<br />last:	0<br />md5:	c6f53afd5ac5f32fcc0c659a9fba2315<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=c6f53afd5ac5f32fcc0c659a9fba2315<br />vt_score:	3/46 (6.5%)<br />scanner:	Avast<br />virusname:	JS:ScriptIP-inf [Trj]<br />url:	http://slap.kiev.ua/webmasteru<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	kiev.ua<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	sns-pb.isc.org<br />ns2:	nix.ns.ua<br />ns3:	ho1.ns.kiev.ua<br />ns4:	k.ns.com.ua<br />ns5:	ba1.ns.ua<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://interiks.com/page/208]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9976842</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf Trj]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9976842</guid>
			<pubDate>2013-04-05T13:23:08+02:00</pubDate>
			<description><![CDATA[id:	9976842<br />first:	1365160988<br />last:	0<br />md5:	b1d473e1914b1c8429d4129a2d1b8f2a<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=b1d473e1914b1c8429d4129a2d1b8f2a<br />vt_score:	2/36 (5.6%)<br />scanner:	Avast<br />virusname:	JS:ScriptIP-inf Trj<br />url:	http://interiks.com/page/208<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	interiks.com<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	ns2.white-host.net<br />ns2:	ns1.white-host.net<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://hopka.kiev.ua/index.php]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9967134</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS:ScriptIP-inf Trj]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9967134</guid>
			<pubDate>2013-04-04T14:45:30+02:00</pubDate>
			<description><![CDATA[id:	9967134<br />first:	1365079530<br />last:	0<br />md5:	feb74dfa24df05d1be544f80c99937c8<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=feb74dfa24df05d1be544f80c99937c8<br />vt_score:	2/36 (5.6%)<br />scanner:	Avast<br />virusname:	JS:ScriptIP-inf Trj<br />url:	http://hopka.kiev.ua/index.php<br />recent:	up<br />response:	alive<br />ip:	91.224.140.68<br />as:	AS49544<br />review:	91.224.140.68<br />domain:	kiev.ua<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	sns-pb.isc.org<br />ns2:	ho1.ns.kiev.ua<br />ns3:	ba1.ns.ua<br />ns4:	nix.ns.ua<br />ns5:	k.ns.com.ua<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://acedhacks.com/member.php?1063-ahmedddd&s=8f59e270d921f24178eb1da291c5706f]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9857797</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Mal/FBScam-A]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9857797</guid>
			<pubDate>2013-03-23T02:20:55+01:00</pubDate>
			<description><![CDATA[id:	9857797<br />first:	1364001655<br />last:	0<br />md5:	1832c82fa0bfdd9cb42940cf5b0eb501<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=1832c82fa0bfdd9cb42940cf5b0eb501<br />vt_score:	1/36 (2.8%)<br />scanner:	Sophos<br />virusname:	Mal/FBScam-A<br />url:	http://acedhacks.com/member.php?1063-ahmedddd&s=8f59e270d921f24178eb1da291c5706f<br />recent:	up<br />response:	alive<br />ip:	79.142.74.150<br />as:	AS49544<br />review:	79.142.74.150<br />domain:	acedhacks.com<br />country:	NL<br />source:	RIPE<br />email:	abuse@altushost.com<br />inetnum:	79.142.74.0 - 79.142.75.255<br />netname:	AS51430-NL<br />descr:	AltusHost Inc.ALTUSHOST INC.ALTUSHOST INC.ALTUSHOST INC.<br />ns1:	ns31.altushost.com<br />ns2:	ns32.altushost.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://acedhacks.com/member.php?979-grndfxx&s=c2faa5d5e937c0a372a5abdc3ea4eb89&tab=aboutme]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9857012</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Mal/FBScam-A]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9857012</guid>
			<pubDate>2013-03-23T02:00:32+01:00</pubDate>
			<description><![CDATA[id:	9857012<br />first:	1364000432<br />last:	0<br />md5:	b213b54180b3d5f5ed1a8d1fb87c43fa<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=b213b54180b3d5f5ed1a8d1fb87c43fa<br />vt_score:	2/46 (4.3%)<br />scanner:	Sophos<br />virusname:	Mal/FBScam-A<br />url:	http://acedhacks.com/member.php?979-grndfxx&s=c2faa5d5e937c0a372a5abdc3ea4eb89&tab=aboutme<br />recent:	up<br />response:	alive<br />ip:	79.142.74.150<br />as:	AS49544<br />review:	79.142.74.150<br />domain:	acedhacks.com<br />country:	NL<br />source:	RIPE<br />email:	abuse@altushost.com<br />inetnum:	79.142.74.0 - 79.142.75.255<br />netname:	AS51430-NL<br />descr:	AltusHost Inc.ALTUSHOST INC.ALTUSHOST INC.ALTUSHOST INC.<br />ns1:	ns31.altushost.com<br />ns2:	ns32.altushost.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://acedhacks.com/member.php?1179-trollin&s=c2faa5d5e937c0a372a5abdc3ea4eb89&tab=thanks]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9811768</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Mal/FBScam-A]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9811768</guid>
			<pubDate>2013-03-18T08:20:42+01:00</pubDate>
			<description><![CDATA[id:	9811768<br />first:	1363591242<br />last:	0<br />md5:	ac72937846398e4fb63d21b7f51abb71<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=ac72937846398e4fb63d21b7f51abb71<br />vt_score:	2/46 (4.3%)<br />scanner:	Sophos<br />virusname:	Mal/FBScam-A<br />url:	http://acedhacks.com/member.php?1179-trollin&s=c2faa5d5e937c0a372a5abdc3ea4eb89&tab=thanks<br />recent:	up<br />response:	alive<br />ip:	79.142.74.150<br />as:	AS49544<br />review:	79.142.74.150<br />domain:	acedhacks.com<br />country:	NL<br />source:	RIPE<br />email:	abuse@altushost.com<br />inetnum:	79.142.74.0 - 79.142.75.255<br />netname:	AS51430-NL<br />descr:	AltusHost Inc.ALTUSHOST INC.ALTUSHOST INC.ALTUSHOST INC.<br />ns1:	ns31.altushost.com<br />ns2:	ns32.altushost.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://blogger.com.kliverz.wap.sh/kliverz.php]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9718257</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[PhpShell.BL]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9718257</guid>
			<pubDate>2013-03-12T03:53:07+01:00</pubDate>
			<description><![CDATA[id:	9718257<br />first:	1363056787<br />last:	0<br />md5:	edd28501e834f3173eb394449d742db0<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=edd28501e834f3173eb394449d742db0<br />vt_score:	1/39 (2.6%)<br />scanner:	Norman<br />virusname:	PhpShell.BL<br />url:	http://blogger.com.kliverz.wap.sh/kliverz.php<br />recent:	up<br />response:	alive<br />ip:	188.95.50.114<br />as:	AS49544<br />review:	188.95.50.114<br />domain:	wap.sh<br />country:	NL<br />source:	RIPE<br />email:	abuse@as49544.net<br />inetnum:	188.95.50.0 - 188.95.50.255<br />netname:	SERVERBOOST<br />descr:	****************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers, hosting and VPSFor abuse, please e-mail only<br />ns1:	ns1.xtgem.com<br />ns2:	ns2.xtgem.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://acedhacks.com/member.php?972-azzy]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9564957</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Mal/FBScam-A]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9564957</guid>
			<pubDate>2013-02-23T01:40:29+01:00</pubDate>
			<description><![CDATA[id:	9564957<br />first:	1361580029<br />last:	0<br />md5:	851de9cdef3ea0c68dc65a1cb0d74baa<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=851de9cdef3ea0c68dc65a1cb0d74baa<br />vt_score:	2/46 (4.3%)<br />scanner:	Sophos<br />virusname:	Mal/FBScam-A<br />url:	http://acedhacks.com/member.php?972-azzy<br />recent:	up<br />response:	alive<br />ip:	79.142.74.150<br />as:	AS49544<br />review:	79.142.74.150<br />domain:	acedhacks.com<br />country:	NL<br />source:	RIPE<br />email:	abuse@altushost.com<br />inetnum:	79.142.74.0 - 79.142.75.255<br />netname:	AS51430-NL<br />descr:	AltusHost Inc.ALTUSHOST INC.ALTUSHOST INC.ALTUSHOST INC.<br />ns1:	ns31.altushost.com<br />ns2:	ns32.altushost.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://ctr-rotator-analisys.com/zondorsetupyu.php]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9541804</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[HTML_IFRAME.CGR]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9541804</guid>
			<pubDate>2013-02-20T22:38:13+01:00</pubDate>
			<description><![CDATA[id:	9541804<br />first:	1361396293<br />last:	0<br />md5:	88ed0bad4f890645d1d7dc18dee46207<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=88ed0bad4f890645d1d7dc18dee46207<br />vt_score:	2/36 (5.6%)<br />scanner:	trendmicro<br />virusname:	HTML_IFRAME.CGR<br />url:	http://ctr-rotator-analisys.com/zondorsetupyu.php<br />recent:	up<br />response:	alive<br />ip:	77.95.230.21<br />as:	AS49544<br />review:	77.95.230.21<br />domain:	ctr-rotator-analisys.com<br />country:	NL<br />source:	RIPE<br />email:	<br />inetnum:	77.95.224.0 - 77.95.231.255<br />netname:	<br />descr:	<br />ns1:	ns2.ctr-rotator-analisys.com<br />ns2:	ns1.ctr-rotator-analisys.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://khu3x.net/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9452193</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Backdoor.Script.HTML.C99shell.b]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9452193</guid>
			<pubDate>2013-02-12T15:40:26+01:00</pubDate>
			<description><![CDATA[id:	9452193<br />first:	1360680026<br />last:	0<br />md5:	c24edb99f674ab5fcbbf642d30237ecb<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=c24edb99f674ab5fcbbf642d30237ecb<br />vt_score:	1/35 (2.9%)<br />scanner:	Rising<br />virusname:	Backdoor.Script.HTML.C99shell.b<br />url:	http://khu3x.net/<br />recent:	up<br />response:	alive<br />ip:	188.95.50.114<br />as:	AS49544<br />review:	188.95.50.114<br />domain:	khu3x.net<br />country:	NL<br />source:	RIPE<br />email:	abuse@as49544.net<br />inetnum:	188.95.50.0 - 188.95.50.255<br />netname:	SERVERBOOST<br />descr:	****************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers, hosting and VPSFor abuse, please e-mail only<br />ns1:	ns2.xtgem.com<br />ns2:	ns1.xtgem.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://www.hashim.hexat.com/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9438977</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Backdoor.Script.HTML.C99shell.b]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9438977</guid>
			<pubDate>2013-02-11T20:10:54+01:00</pubDate>
			<description><![CDATA[id:	9438977<br />first:	1360609854<br />last:	0<br />md5:	b656b2a7eb5c47cbbb5d3edfdb9c105c<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=b656b2a7eb5c47cbbb5d3edfdb9c105c<br />vt_score:	1/35 (2.9%)<br />scanner:	Rising<br />virusname:	Backdoor.Script.HTML.C99shell.b<br />url:	http://www.hashim.hexat.com/<br />recent:	up<br />response:	alive<br />ip:	188.95.50.114<br />as:	AS49544<br />review:	188.95.50.114<br />domain:	hexat.com<br />country:	NL<br />source:	RIPE<br />email:	abuse@as49544.net<br />inetnum:	188.95.50.0 - 188.95.50.255<br />netname:	SERVERBOOST<br />descr:	****************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers, hosting and VPSFor abuse, please e-mail only<br />ns1:	ns2.xtgem.com<br />ns2:	ns1.xtgem.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://game159.xtgem.com/index/__xtblog_entry/437351-vi-t-h-a-i-chi-n-m-h-u-v-ng-game-hot-nh-t-th-gi-i-2011-amp-cr-ck?__xtblog_block_id=1]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9435094</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Backdoor.Script.HTML.C99shell.b]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9435094</guid>
			<pubDate>2013-02-11T11:21:33+01:00</pubDate>
			<description><![CDATA[id:	9435094<br />first:	1360578093<br />last:	0<br />md5:	e59d3b84c9e83433934f2e4753d36b22<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=e59d3b84c9e83433934f2e4753d36b22<br />vt_score:	1/35 (2.9%)<br />scanner:	Rising<br />virusname:	Backdoor.Script.HTML.C99shell.b<br />url:	http://game159.xtgem.com/index/__xtblog_entry/437351-vi-t-h-a-i-chi-n-m-h-u-v-ng-game-hot-nh-t-th-gi-i-2011-amp-cr-ck?__xtblog_block_id=1<br />recent:	up<br />response:	alive<br />ip:	188.95.50.114<br />as:	AS49544<br />review:	188.95.50.114<br />domain:	xtgem.com<br />country:	NL<br />source:	RIPE<br />email:	abuse@as49544.net<br />inetnum:	188.95.50.0 - 188.95.50.255<br />netname:	SERVERBOOST<br />descr:	****************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers, hosting and VPSFor abuse, please e-mail only<br />ns1:	ns2.xtgem.com<br />ns2:	ns1.xtgem.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://www.zweefmolenkramer.nl/wb/pages/referenties.php]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9421525</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS.Trojan.Redir-16]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9421525</guid>
			<pubDate>2013-02-10T00:53:54+01:00</pubDate>
			<description><![CDATA[id:	9421525<br />first:	1360454034<br />last:	0<br />md5:	37bc51a3943787c96a68abfdaea9f6cf<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=37bc51a3943787c96a68abfdaea9f6cf<br />vt_score:	20/34 (58.8%)<br />scanner:	clamav<br />virusname:	JS.Trojan.Redir-16<br />url:	http://www.zweefmolenkramer.nl/wb/pages/referenties.php<br />recent:	up<br />response:	alive<br />ip:	5.200.7.34<br />as:	AS49544<br />review:	5.200.7.34<br />domain:	zweefmolenkramer.nl<br />country:	NL<br />source:	RIPE<br />email:	abuse@i3d.net<br />inetnum:	5.200.7.0 - 5.200.7.127<br />netname:	CCC-HOSTING<br />descr:	CCC Hosting IP spaceInteractive 3D B.V. (AS49544)<br />ns1:	ns1.ccc24.nl<br />ns2:	ns2.ccc24.nl<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://www.zweefmolenkramer.nl/wb/pages/zweefmolens.php]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9421521</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS.Trojan.Redir-16]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9421521</guid>
			<pubDate>2013-02-10T00:53:50+01:00</pubDate>
			<description><![CDATA[id:	9421521<br />first:	1360454030<br />last:	0<br />md5:	c9f638e20a6ac4346d4fbe22ecf4c378<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=c9f638e20a6ac4346d4fbe22ecf4c378<br />vt_score:	24/45 (53.3%)<br />scanner:	clamav<br />virusname:	JS.Trojan.Redir-16<br />url:	http://www.zweefmolenkramer.nl/wb/pages/zweefmolens.php<br />recent:	up<br />response:	alive<br />ip:	5.200.7.34<br />as:	AS49544<br />review:	5.200.7.34<br />domain:	zweefmolenkramer.nl<br />country:	NL<br />source:	RIPE<br />email:	abuse@i3d.net<br />inetnum:	5.200.7.0 - 5.200.7.127<br />netname:	CCC-HOSTING<br />descr:	CCC Hosting IP spaceInteractive 3D B.V. (AS49544)<br />ns1:	ns2.ccc24.nl<br />ns2:	ns1.ccc24.nl<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://www.zweefmolenkramer.nl/wb/pages/gallery/de-zweefmolen-van-pleegvader-ap-lamor29.php]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9420906</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[JS.Trojan.Redir-16]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9420906</guid>
			<pubDate>2013-02-10T00:21:28+01:00</pubDate>
			<description><![CDATA[id:	9420906<br />first:	1360452088<br />last:	0<br />md5:	d8095b16a52820039eee1e500bef8464<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=d8095b16a52820039eee1e500bef8464<br />vt_score:	24/45 (53.3%)<br />scanner:	clamav<br />virusname:	JS.Trojan.Redir-16<br />url:	http://www.zweefmolenkramer.nl/wb/pages/gallery/de-zweefmolen-van-pleegvader-ap-lamor29.php<br />recent:	up<br />response:	alive<br />ip:	5.200.7.34<br />as:	AS49544<br />review:	5.200.7.34<br />domain:	zweefmolenkramer.nl<br />country:	NL<br />source:	RIPE<br />email:	abuse@i3d.net<br />inetnum:	5.200.7.0 - 5.200.7.127<br />netname:	CCC-HOSTING<br />descr:	CCC Hosting IP spaceInteractive 3D B.V. (AS49544)<br />ns1:	ns1.ccc24.nl<br />ns2:	ns2.ccc24.nl<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://wapmrt2.wap.sh/gamex2]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9390367</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Backdoor.Script.HTML.C99shell.b]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9390367</guid>
			<pubDate>2013-02-08T00:40:34+01:00</pubDate>
			<description><![CDATA[id:	9390367<br />first:	1360280434<br />last:	0<br />md5:	26f5909accb12a9de797cf0e4efe3db7<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=26f5909accb12a9de797cf0e4efe3db7<br />vt_score:	1/35 (2.9%)<br />scanner:	Rising<br />virusname:	Backdoor.Script.HTML.C99shell.b<br />url:	http://wapmrt2.wap.sh/gamex2<br />recent:	up<br />response:	alive<br />ip:	188.95.50.114<br />as:	AS49544<br />review:	188.95.50.114<br />domain:	wap.sh<br />country:	NL<br />source:	RIPE<br />email:	abuse@as49544.net<br />inetnum:	188.95.50.0 - 188.95.50.255<br />netname:	SERVERBOOST<br />descr:	****************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers, hosting and VPSFor abuse, please e-mail only<br />ns1:	ns2.xtgem.com<br />ns2:	ns1.xtgem.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://jendral-likers.wapath.com/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9385308</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Backdoor.Script.HTML.C99shell.b]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9385308</guid>
			<pubDate>2013-02-07T16:34:12+01:00</pubDate>
			<description><![CDATA[id:	9385308<br />first:	1360251252<br />last:	0<br />md5:	50da433cf0de894be761072591087144<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=50da433cf0de894be761072591087144<br />vt_score:	1/46 (2.2%)<br />scanner:	Rising<br />virusname:	Backdoor.Script.HTML.C99shell.b<br />url:	http://jendral-likers.wapath.com/<br />recent:	up<br />response:	alive<br />ip:	188.95.50.114<br />as:	AS49544<br />review:	188.95.50.114<br />domain:	wapath.com<br />country:	NL<br />source:	RIPE<br />email:	abuse@as49544.net<br />inetnum:	188.95.50.0 - 188.95.50.255<br />netname:	SERVERBOOST<br />descr:	****************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers, hosting and VPSFor abuse, please e-mail only<br />ns1:	ns1.xtgem.com<br />ns2:	ns2.xtgem.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://atouch.ru/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9362345</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[HTML/IFrame.btzwba]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9362345</guid>
			<pubDate>2013-02-05T09:21:44+01:00</pubDate>
			<description><![CDATA[id:	9362345<br />first:	1360052504<br />last:	0<br />md5:	468d4e4fd3189e6bd290c683cdf6d496<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=468d4e4fd3189e6bd290c683cdf6d496<br />vt_score:	10/36 (27.8%)<br />scanner:	AntiVir<br />virusname:	HTML/IFrame.btzwba<br />url:	http://atouch.ru/<br />recent:	up<br />response:	alive<br />ip:	91.224.141.238<br />as:	AS49544<br />review:	91.224.141.238<br />domain:	atouch.ru<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	ns1.reg.ru<br />ns2:	ns2.reg.ru<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://www.antibmw.info/function.mysql-connect]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9360153</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[IFrame.gen]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9360153</guid>
			<pubDate>2013-02-05T06:58:01+01:00</pubDate>
			<description><![CDATA[id:	9360153<br />first:	1360043881<br />last:	0<br />md5:	5733ae97e30fab4fd328861ca29cd4d7<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=5733ae97e30fab4fd328861ca29cd4d7<br />vt_score:	4/46 (8.7%)<br />scanner:	F_Prot<br />virusname:	IFrame.gen<br />url:	http://www.antibmw.info/function.mysql-connect<br />recent:	up<br />response:	alive<br />ip:	91.224.140.108<br />as:	AS49544<br />review:	91.224.140.108<br />domain:	antibmw.info<br />country:	NL<br />source:	RIPE<br />email:	abuse@dnska.com<br />inetnum:	91.224.140.0 - 91.224.141.255<br />netname:	MIRHOSTING<br />descr:	Innovation IT Solutions Corp.<br />ns1:	ns1.livehosting2.ru<br />ns2:	ns2.livehosting2.ru<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://ffuyypazmw.jw.lt/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9258571</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[HTML:Iframe-inf]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9258571</guid>
			<pubDate>2013-01-29T04:02:45+01:00</pubDate>
			<description><![CDATA[id:	9258571<br />first:	1359428565<br />last:	0<br />md5:	62ed19b0da8a90a1a93c02fd6ba2e31f<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=62ed19b0da8a90a1a93c02fd6ba2e31f<br />vt_score:	5/46 (10.9%)<br />scanner:	Avast<br />virusname:	HTML:Iframe-inf<br />url:	http://ffuyypazmw.jw.lt/<br />recent:	up<br />response:	alive<br />ip:	188.95.50.114<br />as:	AS49544<br />review:	188.95.50.114<br />domain:	jw.lt<br />country:	NL<br />source:	RIPE<br />email:	abuse@as49544.net<br />inetnum:	188.95.50.0 - 188.95.50.255<br />netname:	SERVERBOOST<br />descr:	****************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers, hosting and VPSFor abuse, please e-mail only<br />ns1:	ns1.xtgem.com<br />ns2:	ns2.xtgem.com<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://sports2watch.com/]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9236826</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[cleanmx_generic]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9236826</guid>
			<pubDate>2013-01-28T03:00:10+01:00</pubDate>
			<description><![CDATA[id:	9236826<br />first:	1359338410<br />last:	0<br />md5:	dab0b9d6c0441ce9a732c62e534f1dd0<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=dab0b9d6c0441ce9a732c62e534f1dd0<br />vt_score:	0/35 (0.0%)<br />scanner:	undef<br />virusname:	cleanmx_generic<br />url:	http://sports2watch.com/<br />recent:	up<br />response:	alive<br />ip:	188.95.48.134<br />as:	AS49544<br />review:	188.95.48.134<br />domain:	sports2watch.com<br />country:	NL<br />source:	RIPE<br />email:	abuse@serverboost.nl<br />inetnum:	188.95.48.0 - 188.95.48.255<br />netname:	SERVERBOOST<br />descr:	****************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers, hosting and VPSFor abuse, please e-mail onlyAbuse messages will be handled within 24 hours time*********************************************<br />ns1:	ns.sports2watch.com<br />ns2:	<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://www.secureupload.eu/jquery-1.4.2.min.js]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9114274</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Win32.Trojan]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9114274</guid>
			<pubDate>2013-01-16T20:20:52+01:00</pubDate>
			<description><![CDATA[id:	9114274<br />first:	1358364052<br />last:	0<br />md5:	65b352e1ba79f0e2a3b1e014bc2571af<br />virustotal:	http://www.virustotal.com/analisis/6779927a414cbf0fe75402465415087eb51e26f9a5f466bd8c59ed2df157d9b2-1269834511<br />vt_score:	0/42 (0.00%)<br />scanner:	eSafe<br />virusname:	Win32.Trojan<br />url:	http://www.secureupload.eu/jquery-1.4.2.min.js<br />recent:	up<br />response:	alive<br />ip:	188.95.48.5<br />as:	AS49544<br />review:	188.95.48.5<br />domain:	secureupload.eu<br />country:	NL<br />source:	RIPE<br />email:	abuse@serverboost.nl<br />inetnum:	188.95.48.0 - 188.95.48.255<br />netname:	SERVERBOOST<br />descr:	****************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers, hosting and VPSFor abuse, please e-mail onlyAbuse messages will be handled within 24 hours time*********************************************<br />ns1:	ns4.secureupload.eu<br />ns2:	ns3.secureupload.eu<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://secureupload.eu/jquery-1.4.2.min.js]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=9114034</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[Win32.Trojan]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=9114034</guid>
			<pubDate>2013-01-16T20:20:34+01:00</pubDate>
			<description><![CDATA[id:	9114034<br />first:	1358364034<br />last:	0<br />md5:	65b352e1ba79f0e2a3b1e014bc2571af<br />virustotal:	http://www.virustotal.com/analisis/6779927a414cbf0fe75402465415087eb51e26f9a5f466bd8c59ed2df157d9b2-1269834511<br />vt_score:	0/42 (0.00%)<br />scanner:	eSafe<br />virusname:	Win32.Trojan<br />url:	http://secureupload.eu/jquery-1.4.2.min.js<br />recent:	up<br />response:	alive<br />ip:	188.95.48.5<br />as:	AS49544<br />review:	188.95.48.5<br />domain:	secureupload.eu<br />country:	NL<br />source:	RIPE<br />email:	abuse@serverboost.nl<br />inetnum:	188.95.48.0 - 188.95.48.255<br />netname:	SERVERBOOST<br />descr:	****************************************************Rotterdam - SmartDC datacenterIP space for dedicated servers, hosting and VPSFor abuse, please e-mail onlyAbuse messages will be handled within 24 hours time*********************************************<br />ns1:	ns3.secureupload.eu<br />ns2:	ns4.secureupload.eu<br />ns3:	<br />ns4:	<br />ns5:	<br />]]></description>
		</item>
		<item>
			<title><![CDATA[http://www.neuratron.com/downloads/PhotoScoreUltimateDemo.EXE]]></title>
			<link>http://support.clean-mx.de/clean-mx/viruses?id=8965556</link>
			<author>abuse@clean-mx.de</author>
			<category><![CDATA[PUA.Win32.Packer.SetupExeSection]]></category>
			<guid>http://support.clean-mx.de/clean-mx/viruses?id=8965556</guid>
			<pubDate>2013-01-05T20:50:14+01:00</pubDate>
			<description><![CDATA[id:	8965556<br />first:	1357415414<br />last:	0<br />md5:	3c9f2a5c66cd5e854561ca1b6986f04a<br />virustotal:	http://www.virustotal.com/latest-report.html?resource=3c9f2a5c66cd5e854561ca1b6986f04a<br />vt_score:	0/46 (0.0%)<br />scanner:	clamav<br />virusname:	PUA.Win32.Packer.SetupExeSection<br />url:	http://www.neuratron.com/downloads/PhotoScoreUltimateDemo.EXE<br />recent:	up<br />response:	alive<br />ip:	213.179.202.5<br />as:	AS49544<br />review:	213.179.202.5<br />domain:	neuratron.com<br />country:	NL<br />source:	RIPE<br />email:	abuse@solidhost.com<br />inetnum:	213.179.192.0 - 213.179.207.255<br />netname:	NL-SOLIDHOST<br />descr:	SolidHostAmsterdam, NLhttpSolidHost network<br />ns1:	ns15.dnsmadeeasy.com<br />ns2:	ns12.dnsmadeeasy.com<br />ns3:	ns11.dnsmadeeasy.com<br />ns4:	ns13.dnsmadeeasy.com<br />ns5:	ns10.dnsmadeeasy.com<br />]]></description>
		</item>
	</channel>
</rss>

