CLEAN MX realtime database
public access query for virus URL statistics
Totally watched: 20282, to down: 0, to up: 0, changed ip: 0
As of 2010-09-02 22:05:27 CEST
Subscribe to the VirusWatch Mailing list, updated hourly

This database consists of Virus URI, collected and verified since Feb 2006

If you detect URI'S concerning your netblock, already closed... you have made a good job, otherwise please close them as soon as possible.

to look at some nice charts, there are complete statisticsstatistics for this database
Attention: all URI'S are manually verified, but not cross-checked for real viruses function in this moment you make this query.(Sites may have been closed already..)
Our automatic Viruswalker process is scheduled every hour, so you may see now a incident and this one will be resolved later on.
So please keep on sending close-feedbacks to us...

if you have questions, criticism, wishes or ... do not hesitate to contact us at abuse@clean-mx.de
Our PBX is down you may reach us by cell phone +49 171 4802507 ...
Welcome back, would be fine to get some feedback from your site..
Query as xml: Same query as xml output
TIMERS: Runtime Query: 0.0330 Seconds
helpLine help#descendigascending helpDatedescendigascending helpCloseddescendigascending helphours helpcontributordescendigascending helpvirusnamedescendigascending helpURLdescendigascending helpip state helpresponsedescendigascending helpIp initialdescendigascending helpAS#descendigascending helpip reviewdescendigascending helpURLdescendigascending helpDomaindescendigascending helpcountrydescendigascending helpsourcedescendigascending helpemaildescendigascending helpinetnumdescendigascending helpnetnamedescendigascending helpdescrdescendigascending helpns1descendigascending helpns2descendigascending helpns3descendigascending helpns4descendigascending helpns5descendigascending helpURLdescendigascending
1 642826Report false positive Report closed case make a suggestion 2010-08-28 05:40:02     follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/37 (0.00%) 
 virustotal
no
evidence 
 lookup in virustotal.com (2f2d986b224603a5d3d0d4cd606bbdcd)-->[http://www.virustotal.com/file-scan/report.html?id=a1df7f4c3f8a860fc867288d7eadfae29485a3472c73577298fbce59e410e913-1282968769]follow up this md5sum(2f2d986b224603a5d3d0d4cd606bbdcd)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/37 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (704 Bytes) of first contact as txt August 28 2010 06:03:54 CEST.Saved evidence (203 Bytes) of last contact as txt August 29 2010 17:13:36 CEST. alive-501Saved log of last contact as txt August 29 2010 17:13:36 CEST. SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(ip) in same window 79.135.152.30 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
2 635663Report false positive Report closed case make a suggestion 2010-08-13 23:40:03     follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/38 (0.00%) 
 virustotal
no
evidence 
 lookup in virustotal.com (08805ac81440e3319db7885e0e788d81)-->[http://www.virustotal.com/file-scan/report.html?id=112d1ba09491fa8a9054cc529446898893966b44024d47f4dfcfdcfa25f96c78-1281737866]follow up this md5sum(08805ac81440e3319db7885e0e788d81)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/38 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (811 Bytes) of first contact as txt August 14 2010 00:05:34 CEST.Saved evidence (435 Bytes) of last contact as txt August 29 2010 19:33:38 CEST. alive-376Saved log of last contact as txt August 29 2010 19:33:38 CEST. SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(ip) in same window 79.135.152.30 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free02.editdns.net follow up this item free01.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
3 635671Report false positive Report closed case make a suggestion 2010-08-13 23:40:03     follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/37 (0.00%) 
 virustotal
no
evidence 
 lookup in virustotal.com (1ecdcd8a962bdeba304f9019c2b5b4e4)-->[http://www.virustotal.com/file-scan/report.html?id=a1ae2497125026db9b9f7e9dfa5eb494e0ecbf585302de314f1c54ccdff200e0-1281737767]follow up this md5sum(1ecdcd8a962bdeba304f9019c2b5b4e4)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/37 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (851 Bytes) of first contact as txt August 14 2010 00:04:48 CEST.Saved evidence (303 Bytes) of last contact as txt August 29 2010 19:33:07 CEST. alive-548Saved log of last contact as txt August 29 2010 19:33:07 CEST. SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(ip) in same window 79.135.152.30 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free02.editdns.net follow up this item free01.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
4 635685Report false positive Report closed case make a suggestion 2010-08-13 23:40:03     follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/37 (0.00%) 
 virustotal
no
evidence 
 lookup in virustotal.com (e48289385334dc19fee734d173badf5c)-->[http://www.virustotal.com/file-scan/report.html?id=47a37d1795b0c90ab45e754a7b335bf1ad029e2a374c0fd2a791f62bb266aac2-1281737704]follow up this md5sum(e48289385334dc19fee734d173badf5c)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/37 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (800 Bytes) of first contact as txt August 14 2010 00:03:46 CEST.Saved evidence (344 Bytes) of last contact as txt August 29 2010 19:32:55 CEST. alive-456Saved log of last contact as txt August 29 2010 19:32:55 CEST. SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(ip) in same window 79.135.152.30 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
5 634777Report false positive Report closed case make a suggestion 2010-08-12 00:40:06     follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/36 (0.00%) 
 virustotal
no
evidence 
 lookup in virustotal.com (d7b89299e932a4f8c19b62bed4546276)-->[http://www.virustotal.com/file-scan/report.html?id=ea1507ca7b1fcbd09c7f425400c6cff8af32e5f762c1d79e86689e61e07ff1bd-1281568056]follow up this md5sum(d7b89299e932a4f8c19b62bed4546276)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/36 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (819 Bytes) of first contact as txt August 12 2010 01:06:34 CEST.Saved evidence (413 Bytes) of last contact as txt August 29 2010 19:50:41 CEST. alive-406Saved log of last contact as txt August 29 2010 19:50:41 CEST. SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(ip) in same window 79.135.152.30 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
6 634780Report false positive Report closed case make a suggestion 2010-08-12 00:40:06     follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/38 (0.00%) 
 virustotal
no
evidence 
 lookup in virustotal.com (08c19db8f8dd9af347fdb8747db36d32)-->[http://www.virustotal.com/file-scan/report.html?id=28f0e62bc00b63b4469a8a85104d5d06543e50a3fddef97d2b63f7c96cfed23a-1281568032]follow up this md5sum(08c19db8f8dd9af347fdb8747db36d32)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/38 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (652 Bytes) of first contact as txt August 12 2010 01:06:22 CEST.Saved evidence (242 Bytes) of last contact as txt August 29 2010 19:50:40 CEST. alive-410Saved log of last contact as txt August 29 2010 19:50:40 CEST. SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(ip) in same window 79.135.152.30 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
7 634782Report false positive Report closed case make a suggestion 2010-08-12 00:40:06     follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/38 (0.00%) 
 virustotal
no
evidence 
 lookup in virustotal.com (5d6dcd265930a99bf81275c2acabe97a)-->[http://www.virustotal.com/file-scan/report.html?id=cbc89cf5c7e847cc52acdfad94cba37542cb6a9bff658752b62e1f116a4d1ae7-1281568034]follow up this md5sum(5d6dcd265930a99bf81275c2acabe97a)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/38 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (642 Bytes) of first contact as txt August 12 2010 01:06:19 CEST.Saved evidence (336 Bytes) of last contact as txt August 29 2010 19:50:38 CEST. alive-306Saved log of last contact as txt August 29 2010 19:50:38 CEST. SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(ip) in same window 79.135.152.30 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
8 634783Report false positive Report closed case make a suggestion 2010-08-12 00:40:06     follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/38 (0.00%) 
 virustotal
no
evidence 
 lookup in virustotal.com (3a8123bbdf8399a142088bac3df49929)-->[http://www.virustotal.com/file-scan/report.html?id=99647f5f2ecc30256e55aabcca39230ca05834697f6392f49aee2f2dcbfa4340-1281568033]follow up this md5sum(3a8123bbdf8399a142088bac3df49929)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/38 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (741 Bytes) of first contact as txt August 12 2010 01:06:17 CEST.Saved evidence (279 Bytes) of last contact as txt August 29 2010 19:50:36 CEST. alive-462Saved log of last contact as txt August 29 2010 19:50:36 CEST. SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(ip) in same window 79.135.152.30 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
9 634273 2010-08-10 21:01:46 2010-08-10 21:02:37 0 follow up this itemfollow up this contributor (sub15) as RSS-Feed sub15possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt August 10 2010 21:02:37 CEST. SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(ip) in same window 79.135.152.30 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
10 633225Report false positive Report closed case make a suggestion 2010-08-06 23:40:02 OVERDUE! Overdue!647.2 follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/41 (0.00%) 
 Virustotal.
MD5:
4fcddbb59667b86fb4305c0435e732bd
 
 lookup in virustotal.com (4fcddbb59667b86fb4305c0435e732bd)-->[http://www.virustotal.com/analisis/41228949a7d11ac96e118a2a0f5dbfb315b863a358d5fd9c0d680d95f9fc3362-1281134453]follow up this md5sum(4fcddbb59667b86fb4305c0435e732bd)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/41 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (621 Bytes) of first contact as txt August 07 2010 00:06:34 CEST.Saved evidence (352 Bytes) of last contact as txt August 29 2010 20:15:40 CEST. alive-269Saved log of last contact as txt August 29 2010 20:15:40 CEST. SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(ip) in same window 79.135.152.30 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free02.editdns.net follow up this item free01.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
11 631212Report false positive Report closed case make a suggestion 2010-08-02 17:40:02 OVERDUE! Overdue!749.2 follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/42 (0.00%) 
 Virustotal.
MD5:
38ddacf0bc70fd9cd2c49e0c07bf1fc0
 
 lookup in virustotal.com (38ddacf0bc70fd9cd2c49e0c07bf1fc0)-->[http://www.virustotal.com/analisis/d1cf7b9ff831a38bcc48380b30bade6c7fc78a05bd445171df76f6d621fedd3c-1280765404]follow up this md5sum(38ddacf0bc70fd9cd2c49e0c07bf1fc0)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/42 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (795 Bytes) of first contact as txt August 02 2010 18:02:41 CEST.Saved evidence (262 Bytes) of last contact as txt August 29 2010 20:51:47 CEST. alive-533Saved log of last contact as txt August 29 2010 20:51:47 CEST. SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(ip) in same window 79.135.152.30 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
12 630796Report false positive Report closed case make a suggestion 2010-08-01 23:00:03 OVERDUE! Overdue!767.9 follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/42 (0.00%) 
 Virustotal.
MD5:
0c8a48ad0d4d85299bcd4d7d9c136105
 
 lookup in virustotal.com (0c8a48ad0d4d85299bcd4d7d9c136105)-->[http://www.virustotal.com/analisis/830f300bac0e57915941bcdf9c30a3d65701b1e0fe7862e8f080a36cb3f342d9-1280696703]follow up this md5sum(0c8a48ad0d4d85299bcd4d7d9c136105)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/42 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (581 Bytes) of first contact as txt August 01 2010 23:03:53 CEST.Saved evidence (226 Bytes) of last contact as txt August 29 2010 20:55:00 CEST. alive-355Saved log of last contact as txt August 29 2010 20:55:00 CEST. SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(ip) in same window 79.135.152.30 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free02.editdns.net follow up this item free01.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
13 630135Report false positive Report closed case make a suggestion 2010-07-31 15:00:03 OVERDUE! Overdue!799.9 follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/42 (0.00%) 
 Virustotal.
MD5:
139edc8c5b7d4ff9a8bbb7b918a7ed2a
 
 lookup in virustotal.com (139edc8c5b7d4ff9a8bbb7b918a7ed2a)-->[http://www.virustotal.com/analisis/b24a8223ca2f06505901b7677ea732f7aff71fe8261e6bd8d025d0263e7057bb-1280581571]follow up this md5sum(139edc8c5b7d4ff9a8bbb7b918a7ed2a)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/42 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (612 Bytes) of first contact as txt July 31 2010 15:03:40 CEST.Saved evidence (202 Bytes) of last contact as txt August 29 2010 21:01:21 CEST. alive-410Saved log of last contact as txt August 29 2010 21:01:21 CEST. SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(ip) in same window 79.135.152.30 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
14 628984Report false positive Report closed case make a suggestion 2010-07-29 16:00:03 OVERDUE! Overdue!846.9 follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/42 (0.00%) 
 Virustotal.
MD5:
b90187c2d54b60d00d96df874e5c1b27
 
 lookup in virustotal.com (b90187c2d54b60d00d96df874e5c1b27)-->[http://www.virustotal.com/analisis/ea0f29482e52f020c83efeed9e504d1b0c04a3af873cad1aec5f7aed44ebf2b2-1280416903]follow up this md5sum(b90187c2d54b60d00d96df874e5c1b27)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/42 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (586 Bytes) of first contact as txt July 29 2010 16:05:53 CEST.Saved evidence (374 Bytes) of last contact as txt August 29 2010 21:10:20 CEST. alive-212Saved log of last contact as txt August 29 2010 21:10:20 CEST. SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(ip) in same window 79.135.152.30 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free02.editdns.net follow up this item free01.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
15 626920Report false positive Report closed case make a suggestion 2010-07-26 17:40:02 OVERDUE! Overdue!917.2 follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/42 (0.00%) 
 Virustotal.
MD5:
ba900ce836a80e056b83ff28d2a7774b
 
 lookup in virustotal.com (ba900ce836a80e056b83ff28d2a7774b)-->[http://www.virustotal.com/analisis/cfc88c60fe1992937421f2447d133e7a24b94537d77d4b3fb1aa2aef7b302ec6-1280160778]follow up this md5sum(ba900ce836a80e056b83ff28d2a7774b)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/42 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (607 Bytes) of first contact as txt July 26 2010 18:12:16 CEST.Saved evidence (420 Bytes) of last contact as txt August 29 2010 21:28:29 CEST. alive-187Saved log of last contact as txt August 29 2010 21:28:29 CEST. SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(ip) in same window 79.135.152.30 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
16 626903Report false positive Report closed case make a suggestion 2010-07-26 16:40:02 OVERDUE! Overdue!918.2 follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/42 (0.00%) 
 Virustotal.
MD5:
935d8737df1c0aa5e2d70de7c302759f
 
 lookup in virustotal.com (935d8737df1c0aa5e2d70de7c302759f)-->[http://www.virustotal.com/analisis/14dcd2fc663498044620af6668ae26e7fe040f4e355b587021da4bd667b99a24-1280157091]follow up this md5sum(935d8737df1c0aa5e2d70de7c302759f)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/42 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (589 Bytes) of first contact as txt July 26 2010 17:03:36 CEST.Saved evidence (244 Bytes) of last contact as txt August 29 2010 21:28:31 CEST. alive-345Saved log of last contact as txt August 29 2010 21:28:31 CEST. SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(ip) in same window 79.135.152.30 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
17 623634 2010-07-20 10:02:56 2010-07-21 00:51:13 14.8 follow up this itemfollow up this contributor (sub9) as RSS-Feed sub9possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
3/42 (7.14%) 
 Virustotal.
MD5:
78098e46eb9e0c5881c24ae6ecd10167
Suspicious.Emit
Trojan.PWS.Panda.171
Suspicious
file
 
 lookup in virustotal.com (78098e46eb9e0c5881c24ae6ecd10167)-->[http://www.virustotal.com/analisis/f74106ba50453fd4c9882f8a9d3b4c10a7ccd0a21d9646adfdb98a06e758249d-1279613985]lookup in threatexpert.comlookup the sha256(f74106ba50453fd4c9882f8a9d3b4c10a7ccd0a21d9646adfdb98a06e758249d) in comodo.comfollow up this md5sum(78098e46eb9e0c5881c24ae6ecd10167)follow up this itemfollow up this virusname (Trojan.PWS.Panda.171) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(Trojan.PWS.Panda.171) for scanner (DrWeb) in md5 table3/42 (7.14%) Trojan.PWS.Panda.171
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (104448 Bytes) of first contact as txt July 20 2010 10:16:23 CEST.No evidence recorded deadSaved log of last contact as txt July 21 2010 00:51:13 CEST. SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(ip) in same window 79.135.152.30 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
18 618238 2010-07-08 18:15:24 2010-07-12 06:57:01 84.7 follow up this itemfollow up this contributor (sub9) as RSS-Feed sub9possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
Saved local log of joebox July 08 2010 18:34:32 CEST.0/41 (0.00%) 
 Virustotal.
MD5:
706903d7203d9e0cb0a3a2ec58d1a451
 
 lookup in virustotal.com (706903d7203d9e0cb0a3a2ec58d1a451)-->[http://www.virustotal.com/analisis/0f20500ec6b13b26226f5ad1752d1fd2ffa30dfbcebd3ca7a670694deb39637b-1278591520]lookup in threatexpert.comlookup the sha256(0f20500ec6b13b26226f5ad1752d1fd2ffa30dfbcebd3ca7a670694deb39637b) in comodo.comfollow up this md5sum(706903d7203d9e0cb0a3a2ec58d1a451)follow up this itemfollow up this virusname (unknown_exe) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_exe) for scanner (undef) in md5 table0/41 (0.00%) unknown_exe
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (392720 Bytes) of first contact as txt July 08 2010 18:19:17 CEST.No evidence recorded deadSaved log of last contact as txt July 12 2010 06:57:01 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
19 618239 2010-07-08 18:15:24 2010-07-12 06:57:00 84.7 follow up this itemfollow up this contributor (sub9) as RSS-Feed sub9possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
Saved local log of joebox July 08 2010 18:28:44 CEST.15/41 (36.59%) 
 Virustotal.
MD5:
ad9aa0cb03cb6ab0b8b22b7b134f198e
Suspicious.Emit
Artemis!AD9AA0CB03CB
Trojan.Generic.KD.18835
 
 lookup in virustotal.com (ad9aa0cb03cb6ab0b8b22b7b134f198e)-->[http://www.virustotal.com/analisis/a01b208c744f15da0819bd4db07ebbb730eecafca63b5b57b8e5734a1a041e1e-1278591470]lookup in threatexpert.comlookup the sha256(a01b208c744f15da0819bd4db07ebbb730eecafca63b5b57b8e5734a1a041e1e) in comodo.comfollow up this md5sum(ad9aa0cb03cb6ab0b8b22b7b134f198e)follow up this itemfollow up this virusname (Trojan.SuspectCRC%21IK) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(Trojan.SuspectCRC%21IK) for scanner (a_squared) in md5 table15/41 (36.59%) Trojan.SuspectCRC!IK
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (68608 Bytes) of first contact as txt July 08 2010 18:17:52 CEST.No evidence recorded deadSaved log of last contact as txt July 12 2010 06:57:00 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
20 618237 2010-07-08 18:15:06 2010-07-12 06:57:01 84.7 follow up this itemfollow up this contributor (sub9) as RSS-Feed sub9possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
Saved local log of joebox July 08 2010 18:40:46 CEST.4/41 (9.76%) 
 Virustotal.
MD5:
dcddb7a1f70af718e2eed52cc094fb42
a
variant
of
Win32/Kryptik.FGP
TR/Crypt.ZPACK.Gen
Trojan.Packed.447
 
 lookup in virustotal.com (dcddb7a1f70af718e2eed52cc094fb42)-->[http://www.virustotal.com/analisis/7db44c615dff365e96a7004a275e2703cca81bad56929177b3e2e01b9bd912cd-1278606410]lookup in threatexpert.comlookup the sha256(7db44c615dff365e96a7004a275e2703cca81bad56929177b3e2e01b9bd912cd) in comodo.comfollow up this md5sum(dcddb7a1f70af718e2eed52cc094fb42)follow up this itemfollow up this virusname (TR%2FCrypt.ZPACK.Gen) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagelookup Virusname at avirafollow up this malware(TR%2FCrypt.ZPACK.Gen) for scanner (avira) in md5 table4/41 (9.76%) TR/Crypt.ZPACK.Gen
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (50688 Bytes) of first contact as txt July 08 2010 18:20:22 CEST.No evidence recorded deadSaved log of last contact as txt July 12 2010 06:57:01 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
21 618180 2010-07-08 14:16:15 2010-07-12 06:58:23 88.7 follow up this itemfollow up this contributor (sub9) as RSS-Feed sub9possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
Saved local log of joebox July 08 2010 18:34:32 CEST.0/41 (0.00%) 
 Virustotal.
MD5:
706903d7203d9e0cb0a3a2ec58d1a451
 
 lookup in virustotal.com (706903d7203d9e0cb0a3a2ec58d1a451)-->[http://www.virustotal.com/analisis/0f20500ec6b13b26226f5ad1752d1fd2ffa30dfbcebd3ca7a670694deb39637b-1278591520]lookup in threatexpert.comlookup the sha256(0f20500ec6b13b26226f5ad1752d1fd2ffa30dfbcebd3ca7a670694deb39637b) in comodo.comfollow up this md5sum(706903d7203d9e0cb0a3a2ec58d1a451) multiple instances recorded!follow up this itemfollow up this virusname (unknown_exe) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_exe) for scanner (undef) in md5 table0/41 (0.00%) unknown_exe
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (392720 Bytes) of first contact as txt July 08 2010 14:17:15 CEST.No evidence recorded deadSaved log of last contact as txt July 12 2010 06:58:23 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
22 618181 2010-07-08 14:16:15 2010-07-12 06:58:22 88.7 follow up this itemfollow up this contributor (sub9) as RSS-Feed sub9possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
Saved local log of joebox July 08 2010 18:28:44 CEST.15/41 (36.59%) 
 Virustotal.
MD5:
ad9aa0cb03cb6ab0b8b22b7b134f198e
Suspicious.Emit
Artemis!AD9AA0CB03CB
Trojan.Generic.KD.18835
 
 lookup in virustotal.com (ad9aa0cb03cb6ab0b8b22b7b134f198e)-->[http://www.virustotal.com/analisis/a01b208c744f15da0819bd4db07ebbb730eecafca63b5b57b8e5734a1a041e1e-1278591470]lookup in threatexpert.comlookup the sha256(a01b208c744f15da0819bd4db07ebbb730eecafca63b5b57b8e5734a1a041e1e) in comodo.comfollow up this md5sum(ad9aa0cb03cb6ab0b8b22b7b134f198e) multiple instances recorded!follow up this itemfollow up this virusname (Trojan.SuspectCRC%21IK) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(Trojan.SuspectCRC%21IK) for scanner (a_squared) in md5 table15/41 (36.59%) Trojan.SuspectCRC!IK
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (68608 Bytes) of first contact as txt July 08 2010 14:17:10 CEST.No evidence recorded deadSaved log of last contact as txt July 12 2010 06:58:22 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
23 616186 2010-07-04 23:35:18 2010-07-06 21:51:48 46.3 follow up this itemfollow up this contributor (sub9) as RSS-Feed sub9possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
Saved local log of joebox July 05 2010 09:46:54 CEST.3/41 (7.32%) 
 Virustotal.
MD5:
4caefdc68c8e70e723fd38da4ab2904b
Suspicious.Emit
Trojan.MulDrop1.35667
Suspicious
file
 
 lookup in virustotal.com (4caefdc68c8e70e723fd38da4ab2904b)-->[http://www.virustotal.com/analisis/da800ae7a3f3560324971550ff319a1cb5cdd0c5a920e296fe77d5d4f6409aba-1278265348]lookup in threatexpert.comlookup the sha256(da800ae7a3f3560324971550ff319a1cb5cdd0c5a920e296fe77d5d4f6409aba) in comodo.comfollow up this md5sum(4caefdc68c8e70e723fd38da4ab2904b)follow up this itemfollow up this virusname (Trojan.MulDrop1.35667) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(Trojan.MulDrop1.35667) for scanner (DrWeb) in md5 table3/41 (7.32%) Trojan.MulDrop1.35667
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (78336 Bytes) of first contact as txt July 04 2010 23:36:26 CEST.No evidence recorded deadSaved log of last contact as txt July 06 2010 21:51:48 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
24 613450 2010-06-30 08:14:24 2010-06-30 08:35:33 0.4 follow up this itemfollow up this contributor (sub1) as RSS-Feed sub1possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/l/19/6be2e6d488d ...  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt June 30 2010 08:35:33 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/l/19/6be2e6d488d ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/l/19/6be2e6d488d ...
25 613451 2010-06-30 08:14:24 2010-06-30 08:35:32 0.4 follow up this itemfollow up this contributor (sub1) as RSS-Feed sub1possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/l/5/1be80731f877 ...  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt June 30 2010 08:35:32 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/l/5/1be80731f877 ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/l/5/1be80731f877 ...
helpLine help#descendigascending helpDatedescendigascending helpCloseddescendigascending helphours helpcontributordescendigascending helpvirusnamedescendigascending helpURLdescendigascending helpip state helpresponsedescendigascending helpIp initialdescendigascending helpAS#descendigascending helpip reviewdescendigascending helpURLdescendigascending helpDomaindescendigascending helpcountrydescendigascending helpsourcedescendigascending helpemaildescendigascending helpinetnumdescendigascending helpnetnamedescendigascending helpdescrdescendigascending helpns1descendigascending helpns2descendigascending helpns3descendigascending helpns4descendigascending helpns5descendigascending helpURLdescendigascending
26 613452 2010-06-30 08:14:24 2010-06-30 08:35:32 0.4 follow up this itemfollow up this contributor (sub1) as RSS-Feed sub1possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/l/6/18e2901276c3 ...  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt June 30 2010 08:35:31 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/l/6/18e2901276c3 ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/l/6/18e2901276c3 ...
27 613453 2010-06-30 08:14:24 2010-08-29 23:50:21 1455.6 follow up this itemfollow up this contributor (sub1) as RSS-Feed sub1possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
Saved local log of joebox June 30 2010 11:16:50 CEST.23/41 (56.10%) 
 Virustotal.
MD5:
81a0e5aea71818463d75fecbce147465
Backdoor.Trojan
Artemis!81A0E5AEA718
Trojan.Generic.KD.17464
 
 lookup in virustotal.com (81a0e5aea71818463d75fecbce147465)-->[http://www.virustotal.com/analisis/b9af7c18bdb7e2690ed0999b373c9c16b1bf65f7cfcc05225fe38b543e576471-1277879865]lookup in threatexpert.comlookup the sha256(b9af7c18bdb7e2690ed0999b373c9c16b1bf65f7cfcc05225fe38b543e576471) in comodo.comfollow up this md5sum(81a0e5aea71818463d75fecbce147465)follow up this itemfollow up this virusname (BDS%2FGootkit.BC) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagelookup Virusname at avirafollow up this malware(BDS%2FGootkit.BC) for scanner (avira) in md5 table23/41 (56.10%) BDS/Gootkit.BC
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/l/7/3203adc3c8d5 ...  up Saved evidence (77312 Bytes) of first contact as txt June 30 2010 08:35:29 CEST.No evidence recorded deadSaved log of last contact as txt August 29 2010 23:50:21 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/l/7/3203adc3c8d5 ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/l/7/3203adc3c8d5 ...
28 613454 2010-06-30 08:14:24 2010-06-30 08:35:28 0.4 follow up this itemfollow up this contributor (sub1) as RSS-Feed sub1possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/r/19/6be2e6d488d ...  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt June 30 2010 08:35:28 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/r/19/6be2e6d488d ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/r/19/6be2e6d488d ...
29 613455 2010-06-30 08:14:24 2010-06-30 08:35:27 0.4 follow up this itemfollow up this contributor (sub1) as RSS-Feed sub1possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/r/5/1be80731f877 ...  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt June 30 2010 08:35:27 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/r/5/1be80731f877 ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/r/5/1be80731f877 ...
30 613456 2010-06-30 08:14:24 2010-06-30 08:35:27 0.4 follow up this itemfollow up this contributor (sub1) as RSS-Feed sub1possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/r/6/18e2901276c3 ...  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt June 30 2010 08:35:27 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/r/6/18e2901276c3 ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/r/6/18e2901276c3 ...
31 613457 2010-06-30 08:14:24 2010-06-30 08:35:26 0.4 follow up this itemfollow up this contributor (sub1) as RSS-Feed sub1possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/r/7/3203adc3c8d5 ...  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt June 30 2010 08:35:26 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/r/7/3203adc3c8d5 ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/r/7/3203adc3c8d5 ...
32 613458Report false positive Report closed case make a suggestion 2010-06-30 08:14:24 OVERDUE! Overdue!1550.6 follow up this itemfollow up this contributor (sub1) as RSS-Feed sub1possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/41 (0.00%) 
 Virustotal.
MD5:
df2c1010afd4d46156b374af4a1c59ce
 
 lookup in virustotal.com (df2c1010afd4d46156b374af4a1c59ce)-->[http://www.virustotal.com/analisis/56d98822af89ed2d5d2dc6427f48e60eb6cad055a80654269a60a4ef30ddfa4f-1277879874]follow up this md5sum(df2c1010afd4d46156b374af4a1c59ce)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/41 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (386 Bytes) of first contact as txt June 30 2010 08:35:24 CEST.Saved evidence (253 Bytes) of last contact as txt August 29 2010 23:50:19 CEST. alive-133Saved log of last contact as txt August 29 2010 23:50:19 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
33 613459Report false positive Report closed case make a suggestion 2010-06-30 08:14:24 OVERDUE! Overdue!1550.6 follow up this itemfollow up this contributor (sub1) as RSS-Feed sub1possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/41 (0.00%) 
 Virustotal.
MD5:
f92c5858c91a8bce32a6bc13b8c00a16
 
 lookup in virustotal.com (f92c5858c91a8bce32a6bc13b8c00a16)-->[http://www.virustotal.com/analisis/419813dfab5b3226da99004070d2575e518de6e2672140dcd08fccea2ad5141b-1277879781]follow up this md5sum(f92c5858c91a8bce32a6bc13b8c00a16)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/41 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (261 Bytes) of first contact as txt June 30 2010 08:35:14 CEST.Saved evidence (387 Bytes) of last contact as txt August 29 2010 23:50:16 CEST. alive126Saved log of last contact as txt August 29 2010 23:50:16 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
34 613460Report false positive Report closed case make a suggestion 2010-06-30 08:14:24 OVERDUE! Overdue!1550.6 follow up this itemfollow up this contributor (sub1) as RSS-Feed sub1possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/41 (0.00%) 
 Virustotal.
MD5:
4ff637fa8a666cc7f61b1b4568e920d4
 
 lookup in virustotal.com (4ff637fa8a666cc7f61b1b4568e920d4)-->[http://www.virustotal.com/analisis/0d5d66cd5385370cf498f66787bb9ec51c532417cb34b0ab9bcbb7fcb0db02d9-1277879795]follow up this md5sum(4ff637fa8a666cc7f61b1b4568e920d4)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/41 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (350 Bytes) of first contact as txt June 30 2010 08:35:12 CEST.Saved evidence (327 Bytes) of last contact as txt August 29 2010 23:50:15 CEST. alive-23Saved log of last contact as txt August 29 2010 23:50:15 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
35 613461Report false positive Report closed case make a suggestion 2010-06-30 08:14:24 OVERDUE! Overdue!1550.6 follow up this itemfollow up this contributor (sub1) as RSS-Feed sub1possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/41 (0.00%) 
 Virustotal.
MD5:
58deaea1ad6239678461a2f23fa69d84
 
 lookup in virustotal.com (58deaea1ad6239678461a2f23fa69d84)-->[http://www.virustotal.com/analisis/4162bba26d7a9b1196b754f3688a3a1f9bc451a0af1e63724c2ddcd22e536638-1277879795]follow up this md5sum(58deaea1ad6239678461a2f23fa69d84)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/41 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (290 Bytes) of first contact as txt June 30 2010 08:35:09 CEST.Saved evidence (434 Bytes) of last contact as txt August 29 2010 23:50:13 CEST. alive144Saved log of last contact as txt August 29 2010 23:50:13 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
36 611278 2010-06-25 20:00:28 2010-08-30 00:53:30 1564.9 follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/41 (0.00%) 
 Virustotal.
MD5:
78f2ccb17dececa121ba1d7d21defade
 
 lookup in virustotal.com (78f2ccb17dececa121ba1d7d21defade)-->[http://www.virustotal.com/analisis/198949cbbd350d14763a796f62d06cb3ea395ddc85e27ca0efbbfb1715d8d01d-1277489679]follow up this md5sum(78f2ccb17dececa121ba1d7d21defade)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/41 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (790 Bytes) of first contact as txt June 25 2010 20:13:04 CEST.Saved evidence (274 Bytes) of last contact as txt August 30 2010 00:53:29 CEST. closed-516Saved log of last contact as txt August 30 2010 00:53:29 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
37 610181 2010-06-24 10:06:56 2010-06-28 00:59:57 86.9 follow up this itemfollow up this contributor (sub15) as RSS-Feed sub15possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
Saved local log of joebox June 26 2010 03:19:18 CEST.5/40 (12.50%) 
 Virustotal.
MD5:
e541b4b50995cf58b1d7b456018b5fcb
Suspicious:W32/Malware!Gemini
a
variant
of
Win32/Oficla.HM
Trojan:Win32/Oficla.R
 
 lookup in virustotal.com (e541b4b50995cf58b1d7b456018b5fcb)-->[http://www.virustotal.com/analisis/1c9781b3279415dc782d71e36016a479a9d97886f81be6f05235ecb525dfe9a6-1277367493]lookup in threatexpert.comlookup the sha256(1c9781b3279415dc782d71e36016a479a9d97886f81be6f05235ecb525dfe9a6) in comodo.comfollow up this md5sum(e541b4b50995cf58b1d7b456018b5fcb)follow up this itemfollow up this virusname (%28Suspicious%29+-+DNAScan) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(%28Suspicious%29+-+DNAScan) for scanner (CAT_QuickHeal) in md5 table5/40 (12.50%) (Suspicious) - DNAScan
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (29696 Bytes) of first contact as txt June 24 2010 10:17:01 CEST.No evidence recorded deadSaved log of last contact as txt June 28 2010 00:59:57 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
38 610182 2010-06-24 10:06:56 2010-06-24 10:17:01 0.2 follow up this itemfollow up this contributor (sub15) as RSS-Feed sub15possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt June 24 2010 10:17:00 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
39 609987Report false positive Report closed case make a suggestion 2010-06-24 00:40:31 OVERDUE! Overdue!1702.2 follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/41 (0.00%) 
 Virustotal.
MD5:
8ff5e81a168b2396011f5922ae04ca92
 
 lookup in virustotal.com (8ff5e81a168b2396011f5922ae04ca92)-->[http://www.virustotal.com/analisis/67817b6489f35baa30bb42f92e54a9144db1bc9ec0d2fd07a041af86c7c1b11d-1277335152]follow up this md5sum(8ff5e81a168b2396011f5922ae04ca92)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/41 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (712 Bytes) of first contact as txt June 24 2010 01:18:30 CEST.Saved evidence (294 Bytes) of last contact as txt August 30 2010 01:22:22 CEST. alive-418Saved log of last contact as txt August 30 2010 01:22:22 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
40 609988Report false positive Report closed case make a suggestion 2010-06-24 00:40:31 OVERDUE! Overdue!1702.2 follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/41 (0.00%) 
 Virustotal.
MD5:
ade43be62a1df6e72e520708b6bbc530
 
 lookup in virustotal.com (ade43be62a1df6e72e520708b6bbc530)-->[http://www.virustotal.com/analisis/26b1171bdd524413e0950aa401cea77cfa85d99d1c9a4a8a69077de9879712d6-1277335474]follow up this md5sum(ade43be62a1df6e72e520708b6bbc530)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/41 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (739 Bytes) of first contact as txt June 24 2010 01:18:28 CEST.Saved evidence (286 Bytes) of last contact as txt August 30 2010 01:22:20 CEST. alive-453Saved log of last contact as txt August 30 2010 01:22:20 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
41 609260 2010-06-23 09:41:24 2010-06-28 01:39:28 112 follow up this itemfollow up this contributor (sub9) as RSS-Feed sub9possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
Saved local log of joebox June 26 2010 11:43:10 CEST.7/41 (17.07%) 
 Virustotal.
MD5:
e1d6cfa1741d20168160432f99b3fe0f
Suspicious.Emit
probably
a
variant
of
Win32/Injector.CCM
Backdoor.Win32.Gootkit!IK
 
 lookup in virustotal.com (e1d6cfa1741d20168160432f99b3fe0f)-->[http://www.virustotal.com/analisis/a37fa22f7593448adbb5bdc5b159d5a4fc3858f4b3533b92297de25e120b2346-1277279234]lookup in threatexpert.comlookup the sha256(a37fa22f7593448adbb5bdc5b159d5a4fc3858f4b3533b92297de25e120b2346) in comodo.comfollow up this md5sum(e1d6cfa1741d20168160432f99b3fe0f)follow up this itemfollow up this virusname (Backdoor.Win32.Gootkit%21IK) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(Backdoor.Win32.Gootkit%21IK) for scanner (a_squared) in md5 table7/41 (17.07%) Backdoor.Win32.Gootkit!IK
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (45056 Bytes) of first contact as txt June 23 2010 09:44:35 CEST.No evidence recorded deadSaved log of last contact as txt June 28 2010 01:39:28 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free02.editdns.net follow up this item free01.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
42 608525 2010-06-22 10:03:28 2010-06-22 23:29:31 13.4 follow up this itemfollow up this contributor (sub15) as RSS-Feed sub15possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
Saved local log of joebox June 26 2010 11:43:10 CEST.2/41 (4.88%) 
 Virustotal.
MD5:
e1d6cfa1741d20168160432f99b3fe0f
Suspicious.Emit
probably
a
variant
of
Win32/Injector.CCM
 
 lookup in virustotal.com (e1d6cfa1741d20168160432f99b3fe0f)-->[http://www.virustotal.com/analisis/a37fa22f7593448adbb5bdc5b159d5a4fc3858f4b3533b92297de25e120b2346-1277194831]lookup in threatexpert.comlookup the sha256(a37fa22f7593448adbb5bdc5b159d5a4fc3858f4b3533b92297de25e120b2346) in comodo.comfollow up this md5sum(e1d6cfa1741d20168160432f99b3fe0f) multiple instances recorded!follow up this itemfollow up this virusname (probably+a+variant+of+Win32%2FInjector.CCM) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(probably+a+variant+of+Win32%2FInjector.CCM) for scanner (NOD32) in md5 table2/41 (4.88%) probably a variant of Win32/Injector.CCM
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (45056 Bytes) of first contact as txt June 22 2010 10:17:08 CEST.No evidence recorded deadSaved log of last contact as txt June 22 2010 23:29:30 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
43 608283Report false positive Report closed case make a suggestion 2010-06-21 23:00:09 OVERDUE! Overdue!1751.9 follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/41 (0.00%) 
 Virustotal.
MD5:
aecdc74720be4bcf655c387118862b1b
 
 lookup in virustotal.com (aecdc74720be4bcf655c387118862b1b)-->[http://www.virustotal.com/analisis/c8abb8690d30c23d64b7dd1d6770344c70c5df017f4f7a7f7f18d2d6695ca47a-1277156885]follow up this md5sum(aecdc74720be4bcf655c387118862b1b)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/41 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (325 Bytes) of first contact as txt June 21 2010 23:46:52 CEST.Saved evidence (301 Bytes) of last contact as txt August 30 2010 01:41:15 CEST. alive-24Saved log of last contact as txt August 30 2010 01:41:15 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free02.editdns.net follow up this item free01.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
44 607932 2010-06-21 10:04:02 2010-06-22 23:48:33 37.7 follow up this itemfollow up this contributor (sub15) as RSS-Feed sub15possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
Saved local log of joebox June 21 2010 11:14:22 CEST.6/41 (14.63%) 
 Virustotal.
MD5:
d621f8e4f8a3be77264436fd0d8652be
a
variant
of
Win32/Injector.CCM
Backdoor.Win32.Gootkit!IK
Backdoor.Win32.Gootkit
 
 lookup in virustotal.com (d621f8e4f8a3be77264436fd0d8652be)-->[http://www.virustotal.com/analisis/d1c874afdb34ea990cdd2c62f465ce59f2890b6d5067ed4be349912d46f3b4e5-1277110086]lookup in threatexpert.comlookup the sha256(d1c874afdb34ea990cdd2c62f465ce59f2890b6d5067ed4be349912d46f3b4e5) in comodo.comfollow up this md5sum(d621f8e4f8a3be77264436fd0d8652be)follow up this itemfollow up this virusname (Backdoor.Win32.Gootkit%21IK) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(Backdoor.Win32.Gootkit%21IK) for scanner (a_squared) in md5 table6/41 (14.63%) Backdoor.Win32.Gootkit!IK
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (41472 Bytes) of first contact as txt June 21 2010 10:45:18 CEST.No evidence recorded deadSaved log of last contact as txt June 22 2010 23:48:33 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free02.editdns.net follow up this item free01.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
45 607600 2010-06-20 16:13:17 2010-06-22 23:58:46 55.8 follow up this itemfollow up this contributor (sub9) as RSS-Feed sub9possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
Saved local log of joebox June 21 2010 11:14:22 CEST.3/41 (7.32%) 
 Virustotal.
MD5:
d621f8e4f8a3be77264436fd0d8652be
Backdoor.Win32.Gootkit!IK
Backdoor.Win32.Gootkit
Suspicious
file
 
 lookup in virustotal.com (d621f8e4f8a3be77264436fd0d8652be)-->[http://www.virustotal.com/analisis/d1c874afdb34ea990cdd2c62f465ce59f2890b6d5067ed4be349912d46f3b4e5-1277043400]lookup in threatexpert.comlookup the sha256(d1c874afdb34ea990cdd2c62f465ce59f2890b6d5067ed4be349912d46f3b4e5) in comodo.comfollow up this md5sum(d621f8e4f8a3be77264436fd0d8652be) multiple instances recorded!follow up this itemfollow up this virusname (Backdoor.Win32.Gootkit%21IK) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(Backdoor.Win32.Gootkit%21IK) for scanner (a_squared) in md5 table3/41 (7.32%) Backdoor.Win32.Gootkit!IK
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (41472 Bytes) of first contact as txt June 20 2010 16:14:04 CEST.No evidence recorded deadSaved log of last contact as txt June 22 2010 23:58:46 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
46 607601 2010-06-20 16:13:17 2010-06-22 23:58:46 55.8 follow up this itemfollow up this contributor (sub9) as RSS-Feed sub9possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
Saved local log of joebox June 20 2010 17:39:04 CEST.4/41 (9.76%) 
 Virustotal.
MD5:
5b0b28cde67bc851dc81512261d4d5fb
Heuristic.LooksLike.Worm.B
Trojan.Generic.KD.16970
Trojan.Generic.KD.16970
 
 lookup in virustotal.com (5b0b28cde67bc851dc81512261d4d5fb)-->[http://www.virustotal.com/analisis/d8753f9b84b8e44c30cae856bf89b74ff84067a1da133861a8e057f4bbe7b785-1276998386]lookup in threatexpert.comlookup the sha256(d8753f9b84b8e44c30cae856bf89b74ff84067a1da133861a8e057f4bbe7b785) in comodo.comfollow up this md5sum(5b0b28cde67bc851dc81512261d4d5fb)follow up this itemfollow up this virusname (Trojan.Generic.KD.16970) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(Trojan.Generic.KD.16970) for scanner (BitDefender) in md5 table4/41 (9.76%) Trojan.Generic.KD.16970
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (246784 Bytes) of first contact as txt June 20 2010 16:13:59 CEST.No evidence recorded deadSaved log of last contact as txt June 22 2010 23:58:46 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(review) in same window 79.135.152.26 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
47 607300Report false positive Report closed case make a suggestion 2010-06-20 01:40:23 OVERDUE! Overdue!1797.2 follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/40 (0.00%) 
 Virustotal.
MD5:
f0a0748121a084efea52ea4abf276c0b
 
 lookup in virustotal.com (f0a0748121a084efea52ea4abf276c0b)-->[http://www.virustotal.com/analisis/b63f1e6d282ab1bfb812d45bba57f23763e4088b553bf86676d8c316ec121898-1276991477]follow up this md5sum(f0a0748121a084efea52ea4abf276c0b)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/40 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (456 Bytes) of first contact as txt June 20 2010 01:50:40 CEST.Saved evidence (257 Bytes) of last contact as txt August 30 2010 01:46:50 CEST. alive-199Saved log of last contact as txt August 30 2010 01:46:50 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
48 607301Report false positive Report closed case make a suggestion 2010-06-20 01:40:23 OVERDUE! Overdue!1797.2 follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/41 (0.00%) 
 Virustotal.
MD5:
7b63524f6fd3b0c5751f0c8a4d4ca783
 
 lookup in virustotal.com (7b63524f6fd3b0c5751f0c8a4d4ca783)-->[http://www.virustotal.com/analisis/d2bac6f81d534caeed46733c50f44c4d75cb58c30d8db650ab678b1cabcfca92-1276991465]follow up this md5sum(7b63524f6fd3b0c5751f0c8a4d4ca783)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/41 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (593 Bytes) of first contact as txt June 20 2010 01:50:30 CEST.Saved evidence (294 Bytes) of last contact as txt August 30 2010 01:46:49 CEST. alive-299Saved log of last contact as txt August 30 2010 01:46:49 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free01.editdns.net follow up this item free02.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
49 603921Report false positive Report closed case make a suggestion 2010-06-16 17:40:11 OVERDUE! Overdue!1877.2 follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/41 (0.00%) 
 Virustotal.
MD5:
f0298e4ef6e4f127c6b310e4846e7edb
 
 lookup in virustotal.com (f0298e4ef6e4f127c6b310e4846e7edb)-->[http://www.virustotal.com/analisis/4bbe907f766f792fa1fa1e861834561d1854155bb4b06d21dfbab76c83726ac1-1276710988]follow up this md5sum(f0298e4ef6e4f127c6b310e4846e7edb)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/41 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (270 Bytes) of first contact as txt June 16 2010 18:10:56 CEST.Saved evidence (256 Bytes) of last contact as txt August 30 2010 03:21:15 CEST. alive-14Saved log of last contact as txt August 30 2010 03:21:15 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free02.editdns.net follow up this item free01.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
50 603325Report false positive Report closed case make a suggestion 2010-06-15 17:40:12 OVERDUE! Overdue!1901.2 follow up this itemfollow up this contributor (sub13) as RSS-Feed sub13possible lookup Evidence at malwareurl.compossible lookup Evidence at malwaredomainlist.com
0/41 (0.00%) 
 Virustotal.
MD5:
9c278f80456c2cc980dbe4f657abca5c
 
 lookup in virustotal.com (9c278f80456c2cc980dbe4f657abca5c)-->[http://www.virustotal.com/analisis/692b03217fd368a32f33b30af694c5efd786e178e7a49f4ea073c7cb84b0cbd6-1276631017]follow up this md5sum(9c278f80456c2cc980dbe4f657abca5c)follow up this itemfollow up this virusname (unknown_html_google_malware) as RSS-FeedBlocked by google safebrowsing malwarelist click for analyse pagefollow up this malware(unknown_html_google_malware) for scanner (undef) in md5 table0/41 (0.00%) unknown_html_google_malware
Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...  up Saved evidence (339 Bytes) of first contact as txt June 15 2010 21:41:39 CEST.Saved evidence (344 Bytes) of last contact as txt August 30 2010 03:27:06 CEST. alive5Saved log of last contact as txt August 30 2010 03:27:06 CEST. SenderBaselookup 79.135.152.26 at Rus CERT university stuttgart germanylookup 79.135.152.26 at Ripefollow up this item(ip) in same window 79.135.152.26 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS2588) in networks tablefollow up this itemfollow up this AS (AS2588) as RSS-Feed AS2588 SenderBaselookup 79.135.152.30 at Rus CERT university stuttgart germanylookup 79.135.152.30 at Ripefollow up this item(review) in same window 79.135.152.30 Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ... follow up this domain(mcd0nalds.com) mcd0nalds.com follow up this itemfollow up this country (LV) as RSS-Feed LV follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (info@microlines.lv) as RSS-Feed info@microlines.lv follow up this itemfollow up this item 79.135.130.0 - 79.135.159.255 follow up this item MICROLINES follow up this item CUSTOMERSMicrolines follow up this item free02.editdns.net follow up this item free01.editdns.net follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to complete http://mcd0nalds.com/cp/tasksz.php?load= ...
Click here for other already closed incidents for your domain (mcd0nalds.com)

Click here for other vital incidents