CLEAN MX realtime database    
public access query for virus URL statistics
Totally watched: 821847 As of 2013-06-19 10:08:42 CEST
Subscribe to the VirusWatch Mailing list, updated hourly

This database consists of Virus URI, collected and verified since Feb 2006
Tweet
If you detect URI'S concerning your netblock, already closed... you have made a good job, otherwise please close them as soon as possible.

to look at some nice charts, there are complete statisticsstatistics for this database
Attention: all URI'S are manually verified, but not cross-checked for real viruses function in this moment you make this query.(Sites may have been closed already..)
Our automatic Viruswalker process is scheduled every hour, so you may see now a incident and this one will be resolved later on.
So please keep on sending close-feedbacks to us...

if you have questions, criticism, wishes or ... do not hesitate to contact us at abuse@clean-mx.de
Our PBX is down you may reach us by cell phone +49 171 4802507 ...
Query as xml: Same query as xml output
TIMERS: Runtime Query: 0.0026 Seconds 10 hits
helpLine help#descendigascending helpDatedescendigascending helpCloseddescendigascending helphours helpcontributordescendigascending helpvirusnamedescendigascending helpURLdescendigascending helpip state helpresponsedescendigascending helpIp initialdescendigascending helpAS#descendigascending helpip reviewdescendigascending helpURLdescendigascending helpDomaindescendigascending helpcountrydescendigascending helpsourcedescendigascending helpemaildescendigascending helpinetnumdescendigascending helpnetnamedescendigascending helpdescrdescendigascending helpns1descendigascending helpns2descendigascending helpns3descendigascending helpns4descendigascending helpns5descendigascending helpURLdescendigascending
1 follow up this item(9896551) 9896551  2013-03-26 08:55:00 2013-03-26 22:43:59 13.8 follow up this itemfollow up this contributor (malwaredomainlist.com) as RSS-Feed sub4lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (mdl_Zeus+drop+zone) as RSS-Feedfollow up this malware(mdl_Zeus+drop+zone) for scanner () in md5 table mdl_Zeus drop zone
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://www.paypal-servcies.com/server/ga ...  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt March 26 2013 22:43:59 CET. SenderBaselookup 69.10.52.162 at virustotallookup 69.10.52.162 at Rus CERT university stuttgart germanylookup 69.10.52.162 at ARINfollow up this item(ip) in same window 69.10.52.162 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS19318) in networks tablefollow up this itemfollow up this AS (AS19318) as RSS-Feed AS19318 SenderBaselookup 69.10.52.162 at virustotallookup 69.10.52.162 at Rus CERT university stuttgart germanylookup 69.10.52.162 at ARINfollow up this item(review) in same window 69.10.52.162 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://www.paypal-servcies.com/server/ga ... lookup paypal-servcies.com at virustotalfollow up this domain(paypal-servcies.com) paypal-servcies.com follow up this itemfollow up this country (US) as RSS-Feed US follow up this itemfollow up this region (ARIN) as RSS-Feed ARIN follow up this itemfollow up this enail (abuse@trouble-free.net) as RSS-Feed abuse@trouble-free.net follow up this itemfollow up this item 69.10.32.0 - 69.10.63.255 follow up this item INTERSERVER follow up this item Interserver, Inc INTER-83 110 Meadowlands Pkwy 1st Floor Secaucus NJ 07094 follow up this item ns1.nexgenz.com follow up this item ns2.nexgenz.com follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://www.paypal-servcies.com/server/ga ...
2 follow up this item(8994824) 8994824  2013-01-07 21:51:00 2013-01-08 04:10:47 6.3 follow up this itemfollow up this contributor (malwaredomainlist.com) as RSS-Feed sub4lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (mdl_Zeus+drop+zone) as RSS-Feedfollow up this malware(mdl_Zeus+drop+zone) for scanner () in md5 table mdl_Zeus drop zone
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://southwellwarez.com/obi/server/gat ...  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt January 08 2013 04:10:47 CET. SenderBaselookup 188.247.131.92 at virustotallookup 188.247.131.92 at Rus CERT university stuttgart germanylookup 188.247.131.92 at Ripefollow up this item(ip) in same window 188.247.131.92 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS50515) in networks tablefollow up this itemfollow up this AS (AS50515) as RSS-Feed AS50515 SenderBaselookup 188.247.131.92 at virustotallookup 188.247.131.92 at Rus CERT university stuttgart germanylookup 188.247.131.92 at Ripefollow up this item(review) in same window 188.247.131.92 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://southwellwarez.com/obi/server/gat ... lookup southwellwarez.com at virustotalfollow up this domain(southwellwarez.com) southwellwarez.com follow up this itemfollow up this country (RO) as RSS-Feed RO follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (mihai.saftoiu@tier.ro) as RSS-Feed mihai.saftoiu@tier.ro follow up this itemfollow up this item 188.247.130.0 - 188.247.131.255 follow up this item TIER-Data-Center follow up this item BD. DECEBAL, NR. 85, CRAIOVA, DOLJTIER SRL follow up this item ns1.coolsamhosting.info follow up this item ns2.coolsamhosting.info follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://southwellwarez.com/obi/server/gat ...
3 follow up this item(8662811) 8662811  2012-12-14 07:34:00 2012-12-14 11:48:55 4.2 follow up this itemfollow up this contributor (malwaredomainlist.com) as RSS-Feed sub4lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (mdl_Zeus+drop+zone) as RSS-Feedfollow up this malware(mdl_Zeus+drop+zone) for scanner () in md5 table mdl_Zeus drop zone
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://favorss.net/.bin/kingmaker/server ...  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt December 14 2012 11:48:55 CET. SenderBaselookup 209.140.26.216 at virustotallookup 209.140.26.216 at Rus CERT university stuttgart germanylookup 209.140.26.216 at ARINfollow up this item(ip) in same window 209.140.26.216 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS3595) in networks tablefollow up this itemfollow up this AS (AS3595) as RSS-Feed AS3595 SenderBaselookup 209.140.26.216 at virustotallookup 209.140.26.216 at Rus CERT university stuttgart germanylookup 209.140.26.216 at ARINfollow up this item(review) in same window 209.140.26.216 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://favorss.net/.bin/kingmaker/server ... lookup favorss.net at virustotalfollow up this domain(favorss.net) favorss.net follow up this itemfollow up this country (US) as RSS-Feed US follow up this itemfollow up this region (ARIN) as RSS-Feed ARIN follow up this itemfollow up this enail (abuse@jaguarpc.com) as RSS-Feed abuse@jaguarpc.com follow up this itemfollow up this item 209.140.16.0 - 209.140.31.255 follow up this item LH-GOLD-NETWORK follow up this item Landis Holdings Inc LANDI-3 PO BOX 1108 Fulshear TX 77441 follow up this item ns404.lagoshost.com follow up this item ns405.lagoshost.com follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://favorss.net/.bin/kingmaker/server ...
4 follow up this item(2475178) 2475178  2012-10-26 23:28:00 2012-10-27 17:16:01 17.8 follow up this itemfollow up this contributor (malwaredomainlist.com) as RSS-Feed sub4lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (mdl_Zeus+drop+zone) as RSS-Feedfollow up this malware(mdl_Zeus+drop+zone) for scanner () in md5 table mdl_Zeus drop zone
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://69.55.49.159/gate.php  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt October 27 2012 17:16:07 CEST. SenderBaselookup 69.55.49.159 at virustotallookup 69.55.49.159 at Rus CERT university stuttgart germanylookup 69.55.49.159 at ARINfollow up this item(ip) in same window 69.55.49.159 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS46652) in networks tablefollow up this itemfollow up this AS (AS46652) as RSS-Feed AS46652 SenderBaselookup 69.55.49.159 at virustotallookup 69.55.49.159 at Rus CERT university stuttgart germanylookup 69.55.49.159 at ARINfollow up this item(review) in same window 69.55.49.159 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://69.55.49.159/gate.php lookup 69.55.49.159 at virustotalfollow up this domain(69.55.49.159) 69.55.49.159 follow up this itemfollow up this country (US) as RSS-Feed US follow up this itemfollow up this region (ARIN) as RSS-Feed ARIN follow up this itemfollow up this enail (abuse@realitychecknetwork.com) as RSS-Feed abuse@realitychecknetwork.com follow up this itemfollow up this item 69.55.48.0 - 69.55.63.255 follow up this item REALITY-CHECK-NETWORK follow up this item Reality Check Network Corp. RCN-12 155 Water St Brooklyn NY 11201 follow up this item  follow up this item  follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://69.55.49.159/gate.php
5 follow up this item(1741758) 1741758  2012-06-28 21:29:00 2012-06-29 02:07:20 4.6 follow up this itemfollow up this contributor (malwaredomainlist.com) as RSS-Feed sub4lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (mdl_Zeus+drop+zone) as RSS-Feedfollow up this malware(mdl_Zeus+drop+zone) for scanner () in md5 table mdl_Zeus drop zone
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://91.223.82.58/~rivernig/19/gate.ph ...  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt June 29 2012 02:07:20 CEST. SenderBaselookup 91.223.82.58 at virustotallookup 91.223.82.58 at Rus CERT university stuttgart germanylookup 91.223.82.58 at Ripefollow up this item(ip) in same window 91.223.82.58 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS51430) in networks tablefollow up this itemfollow up this AS (AS51430) as RSS-Feed AS51430 SenderBaselookup 91.223.82.58 at virustotallookup 91.223.82.58 at Rus CERT university stuttgart germanylookup 91.223.82.58 at Ripefollow up this item(review) in same window 91.223.82.58 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://91.223.82.58/~rivernig/19/gate.ph ... lookup 91.223.82.58 at virustotalfollow up this domain(91.223.82.58) 91.223.82.58 follow up this itemfollow up this country (NL) as RSS-Feed NL follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (abuse@iws.co) as RSS-Feed abuse@iws.co follow up this itemfollow up this item 91.223.82.0 - 91.223.82.255 follow up this item IWS-NETWORK follow up this item International Widespread Services Limited follow up this item  follow up this item  follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://91.223.82.58/~rivernig/19/gate.ph ...
6 follow up this item(1693542) 1693542  2012-06-19 07:03:00 2012-06-19 10:03:59 3 follow up this itemfollow up this contributor (malwaredomainlist.com) as RSS-Feed sub4lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (mdl_zeus+drop+zone) as RSS-Feedfollow up this malware(mdl_zeus+drop+zone) for scanner () in md5 table mdl_zeus drop zone
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://www.panazan.ro/online/libraries/p ...  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt June 19 2012 10:03:58 CEST. SenderBaselookup 89.42.216.47 at virustotallookup 89.42.216.47 at Rus CERT university stuttgart germanylookup 89.42.216.47 at Ripefollow up this item(ip) in same window 89.42.216.47 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS5606) in networks tablefollow up this itemfollow up this AS (AS5606) as RSS-Feed AS5606 SenderBaselookup 89.42.216.47 at virustotallookup 89.42.216.47 at Rus CERT university stuttgart germanylookup 89.42.216.47 at Ripefollow up this item(review) in same window 89.42.216.47 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://www.panazan.ro/online/libraries/p ... lookup panazan.ro at virustotalfollow up this domain(panazan.ro) panazan.ro follow up this itemfollow up this country (ro) as RSS-Feed ro follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE follow up this itemfollow up this enail (abuse@romarg.com) as RSS-Feed abuse@romarg.com follow up this itemfollow up this item 89.42.216.0 - 89.42.223.255 follow up this item SC-ROMARG-SRL follow up this item ROMARG SRL-----------------------------ROMARG | The Hosting Provider-----------------------------Str. Transilvaniei, nr. 28Brasov Brasov Romania follow up this item ns2.wdp-gazduire.ro follow up this item ns3.wdp-gazduire.ro follow up this item ns1.wdp-gazduire.ro follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://www.panazan.ro/online/libraries/p ...
7 follow up this item(1516065) 1516065  2012-05-09 06:59:00 2012-05-09 17:09:23 10.2 follow up this itemfollow up this contributor (malwaredomainlist.com) as RSS-Feed sub4lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (mdl_zeus+drop+zone) as RSS-Feedfollow up this malware(mdl_zeus+drop+zone) for scanner () in md5 table mdl_zeus drop zone
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://i.trizztal.info/ss/gate.php  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt May 09 2012 17:09:23 CEST. SenderBaselookup 88.216.91.123 at virustotallookup 88.216.91.123 at Rus CERT university stuttgart germanylookup 88.216.91.123 at Ripefollow up this item(ip) in same window 88.216.91.123 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS16125) in networks tablefollow up this itemfollow up this AS (AS16125) as RSS-Feed AS16125 SenderBaselookup 88.216.91.123 at virustotallookup 88.216.91.123 at Rus CERT university stuttgart germanylookup 88.216.91.123 at Ripefollow up this item(review) in same window 88.216.91.123 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://i.trizztal.info/ss/gate.php lookup trizztal.info at virustotalfollow up this domain(trizztal.info) trizztal.info follow up this itemfollow up this country (LT) as RSS-Feed LT follow up this itemfollow up this region (RIPE) as RSS-Feed RIPE   follow up this itemfollow up this item 88.216.91.0 - 88.216.91.255 follow up this item MESE-NET follow up this item MESE limitedMESE limited follow up this item ns1.cdmon.net follow up this item ns2.cdmon.net follow up this item ns3.cdmon.net follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://i.trizztal.info/ss/gate.php
8 follow up this item(1512737) 1512737  2012-05-08 05:49:00 2012-05-08 08:36:32 2.8 follow up this itemfollow up this contributor (malwaredomainlist.com) as RSS-Feed sub4lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (mdl_zeus+drop+zone) as RSS-Feedfollow up this malware(mdl_zeus+drop+zone) for scanner () in md5 table mdl_zeus drop zone
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://141.105.66.25/~cocoajui/juice/gat ...  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt May 08 2012 08:36:32 CEST. SenderBaselookup 141.105.66.25 at virustotallookup 141.105.66.25 at Rus CERT university stuttgart germanylookup 141.105.66.25 at AFRINICfollow up this item(ip) in same window 141.105.66.25 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS4134) in networks tablefollow up this itemfollow up this AS (AS4134) as RSS-Feed AS4134 SenderBaselookup 141.105.66.25 at virustotallookup 141.105.66.25 at Rus CERT university stuttgart germanylookup 141.105.66.25 at AFRINICfollow up this item(review) in same window 141.105.66.25 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://141.105.66.25/~cocoajui/juice/gat ... lookup 141.105.66.25 at virustotalfollow up this domain(141.105.66.25) 141.105.66.25 follow up this itemfollow up this country (EU) as RSS-Feed EU follow up this itemfollow up this region (AFRINIC) as RSS-Feed AFRINIC follow up this itemfollow up this enail (bitbucket@ripe.net) as RSS-Feed bitbucket@ripe.net follow up this itemfollow up this item 0.0.0.0 - 255.255.255.255 follow up this item IANA-BLK follow up this item The whole IPv4 address space follow up this item  follow up this item  follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://141.105.66.25/~cocoajui/juice/gat ...
9 follow up this item(1512735) 1512735  2012-05-08 05:49:00 2012-05-08 08:39:29 2.8 follow up this itemfollow up this contributor (malwaredomainlist.com) as RSS-Feed sub4lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (mdl_zeus+drop+zone) as RSS-Feedfollow up this malware(mdl_zeus+drop+zone) for scanner () in md5 table mdl_zeus drop zone
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://cocoajuice.in/juice/gate.php  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt May 08 2012 08:39:29 CEST. SenderBaselookup 141.105.66.25 at virustotallookup 141.105.66.25 at Rus CERT university stuttgart germanylookup 141.105.66.25 at AFRINICfollow up this item(ip) in same window 141.105.66.25 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS4134) in networks tablefollow up this itemfollow up this AS (AS4134) as RSS-Feed AS4134 SenderBaselookup 141.105.66.25 at virustotallookup 141.105.66.25 at Rus CERT university stuttgart germanylookup 141.105.66.25 at AFRINICfollow up this item(review) in same window 141.105.66.25 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://cocoajuice.in/juice/gate.php lookup cocoajuice.in at virustotalfollow up this domain(cocoajuice.in) cocoajuice.in follow up this itemfollow up this country (EU) as RSS-Feed EU follow up this itemfollow up this region (AFRINIC) as RSS-Feed AFRINIC follow up this itemfollow up this enail (bitbucket@ripe.net) as RSS-Feed bitbucket@ripe.net follow up this itemfollow up this item 0.0.0.0 - 255.255.255.255 follow up this item IANA-BLK follow up this item The whole IPv4 address space follow up this item  follow up this item  follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://cocoajuice.in/juice/gate.php
10 follow up this item(1512733) 1512733  2012-05-08 05:49:00 2012-05-08 08:39:38 2.8 follow up this itemfollow up this contributor (malwaredomainlist.com) as RSS-Feed sub4lookup Evidence at malwaredomainlist.com
follow up this itemfollow up this virusname (mdl_zeus+drop+zone) as RSS-Feedfollow up this malware(mdl_zeus+drop+zone) for scanner () in md5 table mdl_zeus drop zone
Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://cocoajuice.in/fruit/gate.php  up No previous evidence recordedNo evidence recorded deadSaved log of last contact as txt May 08 2012 08:39:38 CEST. SenderBaselookup 141.105.66.25 at virustotallookup 141.105.66.25 at Rus CERT university stuttgart germanylookup 141.105.66.25 at AFRINICfollow up this item(ip) in same window 141.105.66.25 possible lookup  in maliciousnetworks.org (FIRE: FInding RoguE Networks) pagepossible lookup in google safebrowsing pagefollow up this AS (AS4134) in networks tablefollow up this itemfollow up this AS (AS4134) as RSS-Feed AS4134 SenderBaselookup 141.105.66.25 at virustotallookup 141.105.66.25 at Rus CERT university stuttgart germanylookup 141.105.66.25 at AFRINICfollow up this item(review) in same window 141.105.66.25 Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://cocoajuice.in/fruit/gate.php lookup cocoajuice.in at virustotalfollow up this domain(cocoajuice.in) cocoajuice.in follow up this itemfollow up this country (EU) as RSS-Feed EU follow up this itemfollow up this region (AFRINIC) as RSS-Feed AFRINIC follow up this itemfollow up this enail (bitbucket@ripe.net) as RSS-Feed bitbucket@ripe.net follow up this itemfollow up this item 0.0.0.0 - 255.255.255.255 follow up this item IANA-BLK follow up this item The whole IPv4 address space follow up this item  follow up this item  follow up this item  follow up this item  follow up this item  Safe Virus-Viewer and Analyser may take a minute to completelookup in virustotal http://cocoajuice.in/fruit/gate.php
Click here for other vital incidents



Protected by clean MX [Valid RSS] Valid HTML 4.01 Transitional CSS ist valide!
Access is provided for free and subject to these Terms and Conditions.