CLEAN MX realtime database    
public access query for virus URL statistics
Totally watched: 649528 As of 2013-05-19 21:54:41 CEST
Subscribe to the VirusWatch Mailing list, updated hourly

This database consists of Virus URI, collected and verified since Feb 2006
Tweet
If you detect URI'S concerning your netblock, already closed... you have made a good job, otherwise please close them as soon as possible.

to look at some nice charts, there are complete statisticsstatistics for this database
Attention: all URI'S are manually verified, but not cross-checked for real viruses function in this moment you make this query.(Sites may have been closed already..)
Our automatic Viruswalker process is scheduled every hour, so you may see now a incident and this one will be resolved later on.
So please keep on sending close-feedbacks to us...

if you have questions, criticism, wishes or ... do not hesitate to contact us at abuse@clean-mx.de
Our PBX is down you may reach us by cell phone +49 171 4802507 ...
Query as xml: Same query as xml output
TIMERS: Runtime Query: 2.6563 Seconds 10 hits
helpLine help#descendigascending helpDatedescendigascending helpCloseddescendigascending helphours helpcontributordescendigascending helpvirusnamedescendigascending helpURLdescendigascending helpip state helpresponsedescendigascending helpIp initialdescendigascending helpAS#descendigascending helpip reviewdescendigascending helpURLdescendigascending helpDomaindescendigascending helpcountrydescendigascending helpsourcedescendigascending helpemaildescendigascending helpinetnumdescendigascending helpnetnamedescendigascending helpdescrdescendigascending helpns1descendigascending helpns2descendigascending helpns3descendigascending helpns4descendigascending helpns5descendigascending helpURLdescendigascending
1 follow up this item(11131975) 11131975 Report false positive Report closed case make a suggestion 2013-05-18 15:36:10     follow up this itemfollow up this contributor (malwarepatrol.com) as RSS-Feed sub8possible lookup Evidence at malwaredomainlist.com
0/36 (0.0%) 
 virustotal
no
evidence 
 lookup in virustotal.com (355bf84307ebed1ba45f71718f594d62)-->[http://www.virustotal.com/latest-report.html?resource=a6c4bec6912ae23bf911eb9f1e60be83]follow up this md5sum(355bf84307ebed1ba45f71718f594d62)follow up this itemfollow up this virusname (Virus.MSWord.Marker.ab) as RSS-Feedfollow up this malware(Virus.MSWord.Marker.ab) for scanner (undef) in md5 table0/36 (0.0%) Virus.MSWord.Marker.ab
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://securenetconnect.com/downloads/  up No previous evidence recordedSaved evidence (37300 Bytes) of last contact as txt May 19 2013 07:00:44 CEST. aliveSaved log of last contact as txt May 19 2013 07:00:44 CEST. SenderBaselookup 54.246.182.45 at virustotallookup 54.246.182.45 at Rus CERT university stuttgart germanylookup 54.246.182.45 at ARINfollow up this item(ip) in same window 54.246.182.45 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS16509) in networks tablefollow up this itemfollow up this AS (AS16509) as RSS-Feed AS16509 SenderBaselookup 54.246.182.45 at virustotallookup 54.246.182.45 at Rus CERT university stuttgart germanylookup 54.246.182.45 at ARINfollow up this item(review) in same window 54.246.182.45 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://securenetconnect.com/downloads/ lookup securenetconnect.com at virustotalfollow up this domain(securenetconnect.com) securenetconnect.com follow up this itemfollow up this country (US) as RSS-Feed US follow up this itemfollow up this region (ARIN) as RSS-Feed ARIN follow up this itemfollow up this enail (ec2-abuse@amazon.com) as RSS-Feed ec2-abuse@amazon.com follow up this itemfollow up this item 54.246.0.0 - 54.246.255.255 follow up this item AMAZO-ZDUB2 follow up this item Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144 follow up this item ns43.domaincontrol.com follow up this item ns44.domaincontrol.com follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://securenetconnect.com/downloads/
2 follow up this item(11113999) 11113999 Report false positive Report closed case make a suggestion 2013-05-17 15:22:36     follow up this itemfollow up this contributor (malwarepatrol.com) as RSS-Feed sub8possible lookup Evidence at malwaredomainlist.com
31/46 (67.4%) 
 Virtool.4729
Virtool.4729
(Suspicious)
-
DNAScan
Generic
PUP.x
Trojan
W32/Behav-Heuristic-060
W32/Heuristic-210!Eldorado
Infostealer.Gampass
TROJ_GEN.F47V0720
Win32:Malware-gen
Win32.Looked.gen
Virtool.4729
Packed/Upack
Mal/Packer
UnclassifiedMalware
Vir 
 lookup in virustotal.com (8068e489b7bbe7d9fc9e3e6ad7751951)-->[http://www.virustotal.com/latest-report.html?resource=8068e489b7bbe7d9fc9e3e6ad7751951]follow up this md5sum(8068e489b7bbe7d9fc9e3e6ad7751951)follow up this itemfollow up this virusname (TR%2FCrypt.UPKM.Gen) as RSS-Feedlookup Virusname at avirafollow up this malware(TR%2FCrypt.UPKM.Gen) for scanner (avira) in md5 table31/46 (67.4%) TR/Crypt.UPKM.Gen
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://ddl4.data.hu/get/0/1722389/  up No previous evidence recordedSaved evidence (151053 Bytes) of last contact as txt March 15 2012 08:36:27 CET. aliveSaved log of last contact as txt May 19 2013 06:59:57 CEST. SenderBaselookup 217.65.97.73 at virustotallookup 217.65.97.73 at Rus CERT university stuttgart germanylookup 217.65.97.73 at Ripefollow up this item(ip) in same window 217.65.97.73 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS5483) in networks tablefollow up this itemfollow up this AS (AS5483) as RSS-Feed AS5483 SenderBaselookup 217.65.97.73 at virustotallookup 217.65.97.73 at Rus CERT university stuttgart germanylookup 217.65.97.73 at Ripefollow up this item(review) in same window 217.65.97.73 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://ddl4.data.hu/get/0/1722389/ lookup data.hu at virustotalfollow up this domain(data.hu) data.hu follow up this itemfollow up this country (HU) as RSS-Feed HU follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (abuse@t-online.hu) as RSS-Feed abuse@t-online.hu follow up this itemfollow up this item 217.65.96.0 - 217.65.97.255 follow up this item TISZANET follow up this item TiszaneT CorporationPublic Internet Service Provider, HungaryT-Online Hungary.Public Internet Access ProviderSzeged, HungaryHUT-Online Hungary.Public Internet Access ProviderSzeged, HungaryHU follow up this item jim.ns.cloudflare.com follow up this item sara.ns.cloudflare.com follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://ddl4.data.hu/get/0/1722389/
3 follow up this item(11107534) 11107534 Report false positive Report closed case make a suggestion 2013-05-17 12:01:03     follow up this itemfollow up this contributor (malwarepatrol.com) as RSS-Feed sub8possible lookup Evidence at malwaredomainlist.com
3/35 (8.6%) 
 
JS:Agent-AXA
Trj
Troj/BrowPick-A
JS:Agent-AXA 
 lookup in virustotal.com (d36ef6356fa2aa546f1da2bb003c17b1)-->[http://www.virustotal.com/latest-report.html?resource=493a3f6915aa0a4568be3dc24b8caf6d]follow up this md5sum(d36ef6356fa2aa546f1da2bb003c17b1)follow up this itemfollow up this virusname (JS%3AAgent-AXA+%5BTrj%5D) as RSS-Feedfollow up this malware(JS%3AAgent-AXA+%5BTrj%5D) for scanner (Avast) in md5 table3/35 (8.6%) JS:Agent-AXA [Trj]
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://204.45.64.154/  up No previous evidence recordedSaved evidence (1433 Bytes) of last contact as txt February 22 2003 02:48:30 CET. aliveSaved log of last contact as txt May 17 2013 22:14:35 CEST. SenderBaselookup 204.45.64.154 at virustotallookup 204.45.64.154 at Rus CERT university stuttgart germanylookup 204.45.64.154 at ARINfollow up this item(ip) in same window 204.45.64.154 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS30058) in networks tablefollow up this itemfollow up this AS (AS30058) as RSS-Feed AS30058 SenderBaselookup 204.45.64.154 at virustotallookup 204.45.64.154 at Rus CERT university stuttgart germanylookup 204.45.64.154 at ARINfollow up this item(review) in same window 204.45.64.154 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://204.45.64.154/ lookup 204.45.64.154 at virustotalfollow up this domain(204.45.64.154) 204.45.64.154 follow up this itemfollow up this country (US) as RSS-Feed US follow up this itemfollow up this region (ARIN) as RSS-Feed ARIN follow up this itemfollow up this enail (abuse@fdcservers.net) as RSS-Feed abuse@fdcservers.net follow up this itemfollow up this item 204.45.0.0 - 204.45.255.255 follow up this item FDCSERVERS follow up this item FDCservers.net FDCSE 141 w jackson blvd. suite #1135 Chicago IL 60098 follow up this item  follow up this item  follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://204.45.64.154/
4 follow up this item(11077687) 11077687 Report false positive Report closed case make a suggestion 2013-05-16 22:51:03     follow up this itemfollow up this contributor (malwarepatrol.com) as RSS-Feed sub8possible lookup Evidence at malwaredomainlist.com
1/45 (2.2%) 
 Redir.IG 
 lookup in virustotal.com (d183e7521ce46538172f25fc6f9b1b81)-->[http://www.virustotal.com/latest-report.html?resource=d183e7521ce46538172f25fc6f9b1b81]follow up this md5sum(d183e7521ce46538172f25fc6f9b1b81)follow up this itemfollow up this virusname (Trojan-Spy.Win32.Agent.cbot) as RSS-Feedfollow up this malware(Trojan-Spy.Win32.Agent.cbot) for scanner (undef) in md5 table1/45 (2.2%) Trojan-Spy.Win32.Agent.cbot
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://dnf.jdbbx.duoluona.com/  up No previous evidence recordedSaved evidence (24573 Bytes) of last contact as txt May 16 2013 12:21:35 CEST. aliveSaved log of last contact as txt May 17 2013 07:10:20 CEST. SenderBaselookup 119.147.158.203 at virustotallookup 119.147.158.203 at Rus CERT university stuttgart germanylookup 119.147.158.203 at apnicfollow up this item(ip) in same window 119.147.158.203 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS4134) in networks tablefollow up this itemfollow up this AS (AS4134) as RSS-Feed AS4134 SenderBaselookup 119.147.158.203 at virustotallookup 119.147.158.203 at Rus CERT university stuttgart germanylookup 119.147.158.203 at apnicfollow up this item(review) in same window 119.147.158.203 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://dnf.jdbbx.duoluona.com/ lookup duoluona.com at virustotalfollow up this domain(duoluona.com) duoluona.com follow up this itemfollow up this country (CN) as RSS-Feed CN follow up this itemfollow up this region (APNIC) as RSS-Feed APNIC follow up this itemfollow up this enail (anti-spam@ns.chinanet.cn.net) as RSS-Feed anti-spam@ns.chinanet.cn.net follow up this itemfollow up this item 119.144.0.0 - 119.147.255.255 follow up this item CHINANET-GD follow up this item CHINANET Guangdong province networkData Communication DivisionChina Telecom follow up this item ns104.dnsever.com follow up this item ns34.dnsever.com follow up this item ns110.dnsever.com follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://dnf.jdbbx.duoluona.com/
5 follow up this item(11044481) 11044481 Report false positive Report closed case make a suggestion 2013-05-16 07:31:02     follow up this itemfollow up this contributor (malwarepatrol.com) as RSS-Feed sub8possible lookup Evidence at malwaredomainlist.com
38/46 (82.6%) 
 Trojan.Agent.AHMM
Backdoor.VB.kyx
Generic
PWS.g
Virus.Constructor
Backdoor
Hacktool
Trojan.Win32.Kaker.llch
W32/Backdoor2.DNXS
Trojan.Gen
VBTroj.NSPX
Virus.Win32.Heur.p
TROJ_GEN.F4AHZLF
Win32:VB-AEAP
[Trj]
Win32.Kryptik.Zeg
Trojan.VB-7822
Backdoor.Win32. 
 lookup in virustotal.com (18b47f4f70a6b1feb1a0db91a75fc55e)-->[http://www.virustotal.com/latest-report.html?resource=18b47f4f70a6b1feb1a0db91a75fc55e]follow up this md5sum(18b47f4f70a6b1feb1a0db91a75fc55e)follow up this itemfollow up this virusname (TR%2FAgent.32768.95) as RSS-Feedlookup Virusname at avirafollow up this malware(TR%2FAgent.32768.95) for scanner (avira) in md5 table38/46 (82.6%) TR/Agent.32768.95
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://n22.file-cdn.com/ff/MThiNDdmNGY3M ...  up Saved evidence (1760216 Bytes) of first contact as txt June 30 2012 12:22:59 CEST.Saved evidence (1760216 Bytes) of last contact as txt June 30 2012 12:22:59 CEST. aliveSaved log of last contact as txt May 16 2013 12:47:51 CEST. SenderBaselookup 212.113.32.185 at virustotallookup 212.113.32.185 at Rus CERT university stuttgart germanylookup 212.113.32.185 at Ripefollow up this item(ip) in same window 212.113.32.185 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS16124) in networks tablefollow up this itemfollow up this AS (AS16124) as RSS-Feed AS16124 SenderBaselookup 212.113.32.185 at virustotallookup 212.113.32.185 at Rus CERT university stuttgart germanylookup 212.113.32.185 at Ripefollow up this item(review) in same window 212.113.32.185 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://n22.file-cdn.com/ff/MThiNDdmNGY3M ... lookup file-cdn.com at virustotalfollow up this domain(file-cdn.com) file-cdn.com follow up this itemfollow up this country (UA) as RSS-Feed UA follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (noc@utel.net.ua) as RSS-Feed noc@utel.net.ua follow up this itemfollow up this item 212.113.32.0 - 212.113.36.255 follow up this item UKRTELECOM-DC-32-36 follow up this item Colocation servicesUkrtelecom-DCAGGREGATE BLOCK FOR UKRTELECOMJSC Ukrtelecom Data Center hosting follow up this item ns4.ipromogroup.com follow up this item ns.iname.com.ua follow up this item ns3.ipromogroup.com follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://n22.file-cdn.com/ff/MThiNDdmNGY3M ...
6 follow up this item(11033570) 11033570 Report false positive Report closed case make a suggestion 2013-05-16 01:30:02     follow up this itemfollow up this contributor (malwarepatrol.com) as RSS-Feed sub8possible lookup Evidence at malwaredomainlist.com
lookup in virustotal.com (f769845cfeec14d4040709c5972a87e4)follow up this md5sum(f769845cfeec14d4040709c5972a87e4)follow up this itemfollow up this virusname (TR%2FPSW.Delf.ILC.1) as RSS-Feedlookup Virusname at avirafollow up this malware(TR%2FPSW.Delf.ILC.1) for scanner (avira) in md5 table33/41 (80.5%) TR/PSW.Delf.ILC.1
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://z4.frix.pl/frix481/38e1e227000946 ...  up No previous evidence recordedSaved evidence (167799 Bytes) of last contact as txt July 26 2009 15:28:11 CEST. aliveSaved log of last contact as txt May 16 2013 08:58:27 CEST. SenderBaselookup 193.17.41.93 at virustotallookup 193.17.41.93 at Rus CERT university stuttgart germanylookup 193.17.41.93 at Ripefollow up this item(ip) in same window 193.17.41.93 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS31080) in networks tablefollow up this itemfollow up this AS (AS31080) as RSS-Feed AS31080 SenderBaselookup 193.17.41.93 at virustotallookup 193.17.41.93 at Rus CERT university stuttgart germanylookup 193.17.41.93 at Ripefollow up this item(review) in same window 193.17.41.93 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://z4.frix.pl/frix481/38e1e227000946 ... lookup frix.pl at virustotalfollow up this domain(frix.pl) frix.pl follow up this itemfollow up this country (PL) as RSS-Feed PL follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (abuse@firma.o2.pl) as RSS-Feed abuse@firma.o2.pl follow up this itemfollow up this item 193.17.41.0 - 193.17.41.255 follow up this item O2-NET follow up this item o2.pl Ltd follow up this item ns1.go2.pl follow up this item ns2.go2.pl follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://z4.frix.pl/frix481/38e1e227000946 ...
7 follow up this item(11029810) 11029810 Report false positive Report closed case make a suggestion 2013-05-15 23:53:02     follow up this itemfollow up this contributor (malwarepatrol.com) as RSS-Feed sub8possible lookup Evidence at malwaredomainlist.com
0/45 (0.0%) 
  
 lookup in virustotal.com (c452b1566b874978b2127b117b45885c)-->[http://www.virustotal.com/latest-report.html?resource=c452b1566b874978b2127b117b45885c]follow up this md5sum(c452b1566b874978b2127b117b45885c)follow up this itemfollow up this virusname (Trojan-Ransom.Win32.Gimemo.auts) as RSS-Feedfollow up this malware(Trojan-Ransom.Win32.Gimemo.auts) for scanner (undef) in md5 table0/45 (0.0%) Trojan-Ransom.Win32.Gimemo.auts
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://ia601605.us.archive.org/18/items/ ...  up No previous evidence recordedSaved evidence (796 Bytes) of last contact as txt May 16 2013 02:46:30 CEST. aliveSaved log of last contact as txt May 16 2013 02:46:30 CEST. SenderBaselookup 207.241.227.85 at virustotallookup 207.241.227.85 at Rus CERT university stuttgart germanylookup 207.241.227.85 at ARINfollow up this item(ip) in same window 207.241.227.85 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS7941) in networks tablefollow up this itemfollow up this AS (AS7941) as RSS-Feed AS7941 SenderBaselookup 207.241.227.85 at virustotallookup 207.241.227.85 at Rus CERT university stuttgart germanylookup 207.241.227.85 at ARINfollow up this item(review) in same window 207.241.227.85 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://ia601605.us.archive.org/18/items/ ... lookup archive.org at virustotalfollow up this domain(archive.org) archive.org follow up this itemfollow up this country (US) as RSS-Feed US follow up this itemfollow up this region (ARIN) as RSS-Feed ARIN follow up this itemfollow up this enail (jim@archive.org) as RSS-Feed jim@archive.org follow up this itemfollow up this item 207.241.224.0 - 207.241.239.255 follow up this item INTERNET-ARCHIVE-1 follow up this item Internet Archive INTERN-95 The Presidio of San Francisco 116 Sheridan Ave. San Francisco CA 94129 follow up this item ord.sns-pb.isc.org follow up this item ams.sns-pb.isc.org follow up this item ns3.archive.org follow up this item ns2.archive.org follow up this item ns1.archive.org Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://ia601605.us.archive.org/18/items/ ...
8 follow up this item(11021634) 11021634 Report false positive Report closed case make a suggestion 2013-05-15 19:35:02     follow up this itemfollow up this contributor (malwarepatrol.com) as RSS-Feed sub8possible lookup Evidence at malwaredomainlist.com
12/40 (30%) 
 
TR/Dldr.Delphi.Gen
Trojan.Generic.KD.530322
Trojan-Downloader.Delphi!IK
W32/Banload.M.gen!Eldorado
Trojan.Generic.KD.530322
Trojan.Generic.KD.530322
Trojan-Downloader.Delphi
Riskware
Artemis!765E98402453
Artemis!765E98402453
W32/Suspicious_Gen4.LGRN
Tro 
 lookup in virustotal.com (b897db0a5039e87b2454490d7dede5bb)-->[http://www.virustotal.com/latest-report.html?resource=765e984024532226751d380c1ac2588b]lookup in threatexpert.comlookup the sha256(efe2d84303f280b4e143f2ebf5b0420ff334d644986be49f7d11a3ff63bd0a87) in comodo.comfollow up this md5sum(b897db0a5039e87b2454490d7dede5bb)follow up this itemfollow up this virusname (TR%2FDldr.Delphi.Gen) as RSS-Feedlookup Virusname at avirafollow up this malware(TR%2FDldr.Delphi.Gen) for scanner (avira) in md5 table12/40 (30%) TR/Dldr.Delphi.Gen
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://218.38.12.110/tool/dtsys.exe?ccp1 ...  up No previous evidence recordedSaved evidence (1030800 Bytes) of last contact as txt March 15 2013 09:18:28 CET. aliveSaved log of last contact as txt May 15 2013 23:54:02 CEST. SenderBaselookup 218.38.12.110 at virustotallookup 218.38.12.110 at Rus CERT university stuttgart germanylookup 218.38.12.110 at apnicfollow up this item(ip) in same window 218.38.12.110 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS9318) in networks tablefollow up this itemfollow up this AS (AS9318) as RSS-Feed AS9318 SenderBaselookup 218.38.12.110 at virustotallookup 218.38.12.110 at Rus CERT university stuttgart germanylookup 218.38.12.110 at apnicfollow up this item(review) in same window 218.38.12.110 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://218.38.12.110/tool/dtsys.exe?ccp1 ... lookup 218.38.12.110 at virustotalfollow up this domain(218.38.12.110) 218.38.12.110 follow up this itemfollow up this country (kr) as RSS-Feed kr follow up this itemfollow up this region (APNIC) as RSS-Feed APNIC follow up this itemfollow up this enail (abuse@skbroadband.com) as RSS-Feed abuse@skbroadband.com follow up this itemfollow up this item 218.38.0.0 - 218.39.255.255 ( - 218.39.255.255 follow up this item HANANET-INFRA follow up this item  follow up this item  follow up this item  follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://218.38.12.110/tool/dtsys.exe?ccp1 ...
9 follow up this item(11016639) 11016639 Report false positive Report closed case make a suggestion 2013-05-15 15:17:02     follow up this itemfollow up this contributor (malwarepatrol.com) as RSS-Feed sub8possible lookup Evidence at malwaredomainlist.com
0/46 (0.0%) 
  
 lookup in virustotal.com (1c7b413c3fa39d0fed40556d2658ac73)-->[http://www.virustotal.com/latest-report.html?resource=1020f76495b1455633d429cc7e3fe246]follow up this md5sum(1c7b413c3fa39d0fed40556d2658ac73)follow up this itemfollow up this virusname (Trojan-Downloader.Win32.Karagany.asx) as RSS-Feedfollow up this malware(Trojan-Downloader.Win32.Karagany.asx) for scanner (undef) in md5 table0/46 (0.0%) Trojan-Downloader.Win32.Karagany.asx
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://avesdaquinta.com/images/  up No previous evidence recordedSaved evidence (44 Bytes) of last contact as txt April 11 2012 21:45:40 CEST. aliveSaved log of last contact as txt May 15 2013 20:28:58 CEST. SenderBaselookup 80.172.224.143 at virustotallookup 80.172.224.143 at Rus CERT university stuttgart germanylookup 80.172.224.143 at Ripefollow up this item(ip) in same window 80.172.224.143 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS5533) in networks tablefollow up this itemfollow up this AS (AS5533) as RSS-Feed AS5533 SenderBaselookup 80.172.224.143 at virustotallookup 80.172.224.143 at Rus CERT university stuttgart germanylookup 80.172.224.143 at Ripefollow up this item(review) in same window 80.172.224.143 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://avesdaquinta.com/images/ lookup avesdaquinta.com at virustotalfollow up this domain(avesdaquinta.com) avesdaquinta.com follow up this itemfollow up this country (PT) as RSS-Feed PT follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (abuse@pt.clara.net) as RSS-Feed abuse@pt.clara.net follow up this itemfollow up this item 80.172.224.128 - 80.172.224.191 follow up this item PT-VISUALFUSION follow up this item Visual-Fusion****************************************** please send abuse or spam complains to* abuse@visual-fusion.com follow up this item dns2.trignosfera.com follow up this item dns1.trignosfera.com follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://avesdaquinta.com/images/
10 follow up this item(11012564) 11012564 Report false positive Report closed case make a suggestion 2013-05-15 13:39:03     follow up this itemfollow up this contributor (malwarepatrol.com) as RSS-Feed sub8possible lookup Evidence at malwaredomainlist.com
0/46 (0.0%) 
  
 lookup in virustotal.com (ad4f756c4dabb21d7fd9b5d2bbe12d7d)-->[http://www.virustotal.com/latest-report.html?resource=ad4f756c4dabb21d7fd9b5d2bbe12d7d]follow up this md5sum(ad4f756c4dabb21d7fd9b5d2bbe12d7d)follow up this itemfollow up this virusname (Trojan-FakeAV.Win32.Windef.pwb) as RSS-Feedfollow up this malware(Trojan-FakeAV.Win32.Windef.pwb) for scanner (undef) in md5 table0/46 (0.0%) Trojan-FakeAV.Win32.Windef.pwb
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://www.lilaccessories.com/cp/  up No previous evidence recordedSaved evidence (2148 Bytes) of last contact as txt May 15 2013 17:11:50 CEST. aliveSaved log of last contact as txt May 15 2013 17:11:50 CEST. SenderBaselookup 63.250.48.128 at virustotallookup 63.250.48.128 at Rus CERT university stuttgart germanylookup 63.250.48.128 at ARINfollow up this item(ip) in same window 63.250.48.128 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS4906) in networks tablefollow up this itemfollow up this AS (AS4906) as RSS-Feed AS4906 SenderBaselookup 63.250.48.128 at virustotallookup 63.250.48.128 at Rus CERT university stuttgart germanylookup 63.250.48.128 at ARINfollow up this item(review) in same window 63.250.48.128 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://www.lilaccessories.com/cp/ lookup lilaccessories.com at virustotalfollow up this domain(lilaccessories.com) lilaccessories.com follow up this itemfollow up this country (US) as RSS-Feed US follow up this itemfollow up this region (ARIN) as RSS-Feed ARIN follow up this itemfollow up this enail (abuse@frontline.net) as RSS-Feed abuse@frontline.net follow up this itemfollow up this item 63.250.0.0 - 63.250.63.255 follow up this item SINEP-BLOCK-3 follow up this item Sinep Corporation SINEP-1 PO Box 98 Orangeburg NY 10962 follow up this item ns4.hostmyaccount.com follow up this item ns5.hostmyaccount.com follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://www.lilaccessories.com/cp/
Click here for other vital incidents



Protected by clean MX [Valid RSS] Valid HTML 4.01 Transitional CSS ist valide!
Access is provided for free and subject to these Terms and Conditions.