<?xml version="1.0" encoding="iso-8859-15"?>
<output>
	<response>
		<error>0</error>
		<hits>1000</hits>
	</response>
<entries>
<entry>
	<line>1</line>
	<id>11233850</id>
	<first>1369081244</first>
	<last>0</last>
	<md5>4672e500141453930946725f8a35168a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4672e500141453930946725f8a35168a</virustotal>
	<vt_score>19/47 (40.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[JS%2FiFrame.PU]]></virusname>
	<url><![CDATA[http://www.beweplan.at/]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>93.185.104.29</ip>
	<as>AS43541</as>
	<review>93.185.104.29</review>
	<domain>beweplan.at</domain>
	<country>CZ</country>
	<source>RIPE</source>
	<email>lir@vshosting.cz</email>
	<inetnum>93.185.104.0 - 93.185.109.255</inetnum>
	<netname>PIPNI-NET</netname>
	<descr><![CDATA[PIPNI s.r.o.VSHOSTING II.]]></descr>
	<ns1>ns.pipni.cz</ns1>
	<ns2>ns2.pipni.cz</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>2</line>
	<id>11233844</id>
	<first>1369081054</first>
	<last>0</last>
	<md5>e468d2b15e3734687c09b49a61afbaf0</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e468d2b15e3734687c09b49a61afbaf0</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[JS%2FCrypt.GG]]></virusname>
	<url><![CDATA[http://www.bars-concepts.com/]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>109.237.132.8</ip>
	<as>AS16097</as>
	<review>109.237.132.8</review>
	<domain>bars-concepts.com</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>hostmaster@hlkomm.de</email>
	<inetnum>109.237.132.0 - 109.237.133.255</inetnum>
	<netname>ALFAHOSTING-NET</netname>
	<descr><![CDATA[Alfahosting GmbHAlfahosting GmbH]]></descr>
	<ns1>cns3.alfahosting.info</ns1>
	<ns2>cns1.alfahosting.info</ns2>
	<ns3>cns2.alfahosting.info</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>3</line>
	<id>11233839</id>
	<first>1369086070</first>
	<last>0</last>
	<md5>e63e8faa74d306c691309b20f1478ff4</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e63e8faa74d306c691309b20f1478ff4</virustotal>
	<vt_score>6/46 (13%)</vt_score>
	<scanner>Avast</scanner>
	<virusname><![CDATA[JS%3AAgent-BDN+Trj]]></virusname>
	<url><![CDATA[http://www.gererfactu.com/profil/dbff248bee9c58b4bf332846768aa014]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>98.139.134.174</ip>
	<as>AS26101</as>
	<review>98.139.134.174</review>
	<domain>gererfactu.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>network-abuse@cc.yahoo-inc.com</email>
	<inetnum>98.136.0.0 - 98.139.255.255</inetnum>
	<netname>A-YAHOO-US9</netname>
	<descr><![CDATA[Yahoo! Inc. YHOO 701 First Ave Sunnyvale CA 94089]]></descr>
	<ns1>yns2.yahoo.com</ns1>
	<ns2>yns1.yahoo.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>4</line>
	<id>11233834</id>
	<first>1369080999</first>
	<last>0</last>
	<md5>b5ffdd9de4789d39baff402a7bd8cd71</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b5ffdd9de4789d39baff402a7bd8cd71</virustotal>
	<vt_score>29/47 (61.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FGendal.6053000]]></virusname>
	<url><![CDATA[http://files.download-at.de/dl/The_Sims_3_1.12.70_+_3_Trainer.rar]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>91.121.164.139</ip>
	<as>AS16276</as>
	<review>91.121.164.139</review>
	<domain>download-at.de</domain>
	<country>FR</country>
	<source>RIPE</source>
	<email>abuse@ovh.net</email>
	<inetnum>91.121.160.0 - 91.121.191.255</inetnum>
	<netname>OVH</netname>
	<descr><![CDATA[OVH SASDedicated Servershttp]]></descr>
	<ns1>ns2.net2daymedia.de</ns1>
	<ns2>ns1.net2daymedia.de</ns2>
	<ns3>ns3.net2daymedia.de</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>5</line>
	<id>11233801</id>
	<first>1369080979</first>
	<last>0</last>
	<md5>dfb09d04ba1b89ced41df861daf7ae3d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=dfb09d04ba1b89ced41df861daf7ae3d</virustotal>
	<vt_score>17/44 (38.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[JS%2FRedirector.EV.2]]></virusname>
	<url><![CDATA[http://www.avtopraktika.ru/images/news.js]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>195.24.65.30</ip>
	<as>AS25537</as>
	<review>195.24.65.30</review>
	<domain>avtopraktika.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@gpt.ru</email>
	<inetnum>195.24.64.0 - 195.24.71.255</inetnum>
	<netname>PARKLINE-1-WEB</netname>
	<descr><![CDATA[Garant-Park-TelecomScience Park, MSULebedeva St., Leninskie GoryMoscow 119899, Russia]]></descr>
	<ns1>ns2.r01.ru</ns1>
	<ns2>ns3.parkhost.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>6</line>
	<id>11233799</id>
	<first>1369086062</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://zw.t7.filmwit.com/down/2ht/71601.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>7</line>
	<id>11233797</id>
	<first>1369086062</first>
	<last>0</last>
	<md5>3d766bd0f55fe84cb1a5bfb03a3ebc61</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3d766bd0f55fe84cb1a5bfb03a3ebc61</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://zk.pi.filmwit.com/down/q8p/72743.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>8</line>
	<id>11233778</id>
	<first>1369080860</first>
	<last>0</last>
	<md5>6ed626690c293185977b18f42a9e2658</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6ed626690c293185977b18f42a9e2658</virustotal>
	<vt_score>19/44 (43.2%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[JS%2FRedirect.AC]]></virusname>
	<url><![CDATA[http://www.pantheruniforms.com/uniform_files/function.js]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>208.109.181.40</ip>
	<as>AS26496</as>
	<review>208.109.181.40</review>
	<domain>pantheruniforms.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@godaddy.com</email>
	<inetnum>208.109.0.0 - 208.109.255.255</inetnum>
	<netname>GO-DADDY-SOFTWARE-INC</netname>
	<descr><![CDATA[GoDaddy.com, Inc. GODAD 14455 N Hayden Road Suite 226 Scottsdale AZ 85260]]></descr>
	<ns1>ns53.domaincontrol.com</ns1>
	<ns2>ns54.domaincontrol.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>9</line>
	<id>11233766</id>
	<first>1369086061</first>
	<last>0</last>
	<md5>ebe4b268c8850c5c83d93becde898259</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ebe4b268c8850c5c83d93becde898259</virustotal>
	<vt_score>19/47 (40.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Suspicious+file]]></virusname>
	<url><![CDATA[http://zahiretnadia.free.fr/dl/boom.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>212.27.63.132</ip>
	<as>AS12322</as>
	<review>212.27.63.132</review>
	<domain>free.fr</domain>
	<country>FR</country>
	<source>RIPE</source>
	<email>abuse@proxad.net</email>
	<inetnum>212.27.60.0 - 212.27.63.255</inetnum>
	<netname>FR-PROXAD</netname>
	<descr><![CDATA[Free SAS (ProXad)internal infrastructure (servers)Paris, FranceProXad network / Free SAParis, France]]></descr>
	<ns1>freens1-g20.free.fr</ns1>
	<ns2>freens2-g20.free.fr</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>10</line>
	<id>11233765</id>
	<first>1369086061</first>
	<last>0</last>
	<md5>aad4490760b94679df4fb2addf8b2a77</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=aad4490760b94679df4fb2addf8b2a77</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://z5.ku.filmwit.com/down/r1k/44270.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>11</line>
	<id>11233764</id>
	<first>1369086061</first>
	<last>0</last>
	<md5>05b0900c2d65f57afbe29d6ac115a93a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=05b0900c2d65f57afbe29d6ac115a93a</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://z5.43.filmwit.com/down/go4/68167.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>12</line>
	<id>11233762</id>
	<first>1369086060</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://yq.g6.filmwit.com/down/j0g/15521.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>13</line>
	<id>11233759</id>
	<first>1369086060</first>
	<last>0</last>
	<md5>4f340ffd06f69a814f7d33e63836bd26</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4f340ffd06f69a814f7d33e63836bd26</virustotal>
	<vt_score>5/47 (10.6%)</vt_score>
	<scanner>BitDefender</scanner>
	<virusname><![CDATA[Gen%3ATrojan.Heur.ZGY.1]]></virusname>
	<url><![CDATA[http://yk.71.filmwit.com/down/47/64626.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>14</line>
	<id>11233757</id>
	<first>1369086060</first>
	<last>0</last>
	<md5>2617b4b597cb5fc3f6a7353e74b6967d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=2617b4b597cb5fc3f6a7353e74b6967d</virustotal>
	<vt_score>5/36 (13.9%)</vt_score>
	<scanner>BitDefender</scanner>
	<virusname><![CDATA[Gen%3ATrojan.Heur.ZGY.1]]></virusname>
	<url><![CDATA[http://y4.m5.filmwit.com/down/rgm/74172.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>15</line>
	<id>11233756</id>
	<first>1369086060</first>
	<last>0</last>
	<md5>d766d6da599bef1edcda8e644334ad6b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d766d6da599bef1edcda8e644334ad6b</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://y4.jh.filmwit.com/down/05j/47573.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>16</line>
	<id>11233755</id>
	<first>1369086060</first>
	<last>0</last>
	<md5>39e7d3b1fb936a07cbd37a41cb5af22a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=39e7d3b1fb936a07cbd37a41cb5af22a</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://xz.ah.filmwit.com/down/sna/80969.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>17</line>
	<id>11233754</id>
	<first>1369086060</first>
	<last>0</last>
	<md5>ba5a921019a9e8d48d65f67eacb542e8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ba5a921019a9e8d48d65f67eacb542e8</virustotal>
	<vt_score>28/46 (60.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://xz5.xxooss.com/a6/pptv.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>173.252.196.117</ip>
	<as>AS20248</as>
	<review>173.252.196.117</review>
	<domain>xxooss.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ops@take2hosting.com</email>
	<inetnum>173.252.192.0 - 173.252.255.255</inetnum>
	<netname>T2H-NET4-4</netname>
	<descr><![CDATA[Take 2 Hosting, Inc. T2H 5255 Stevens Creek Blvd. #217 Santa Clara CA 95051]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>18</line>
	<id>11233751</id>
	<first>1369086059</first>
	<last>0</last>
	<md5>afeaa115f038e5bc61da73280385693d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=afeaa115f038e5bc61da73280385693d</virustotal>
	<vt_score>7/47 (14.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.WinREG.StartPage.g]]></virusname>
	<url><![CDATA[http://x.uzzf.com/YisJxc.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.251.230</ip>
	<as>AS4134</as>
	<review>61.187.251.230</review>
	<domain>uzzf.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.187.240.0 - 61.187.254.255</inetnum>
	<netname>CHINANET-HN-CZ</netname>
	<descr><![CDATA[CHINANET-HN Chenzhou node networkhunan Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>19</line>
	<id>11233748</id>
	<first>1369086059</first>
	<last>0</last>
	<md5>053bc9d6111075285b2ddb531fc5b62c</md5>
	<virustotal></virustotal>
	<vt_score>35/44 (79.5%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FStartPage.nan.10]]></virusname>
	<url><![CDATA[http://x.uzzf.com/OpenGL.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.251.230</ip>
	<as>AS4134</as>
	<review>61.187.251.230</review>
	<domain>uzzf.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.187.240.0 - 61.187.254.255</inetnum>
	<netname>CHINANET-HN-CZ</netname>
	<descr><![CDATA[CHINANET-HN Chenzhou node networkhunan Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>20</line>
	<id>11233747</id>
	<first>1369086059</first>
	<last>0</last>
	<md5>6730f368aedc6a914ea8a8a5572b46e7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6730f368aedc6a914ea8a8a5572b46e7</virustotal>
	<vt_score>11/47 (23.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Suspicious+file]]></virusname>
	<url><![CDATA[http://x.uzzf.com/MP3Recrorde.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.251.230</ip>
	<as>AS4134</as>
	<review>61.187.251.230</review>
	<domain>uzzf.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.187.240.0 - 61.187.254.255</inetnum>
	<netname>CHINANET-HN-CZ</netname>
	<descr><![CDATA[CHINANET-HN Chenzhou node networkhunan Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>21</line>
	<id>11233746</id>
	<first>1369086059</first>
	<last>0</last>
	<md5>9077c24d7732ff7c9cb8d90c1cec1b8e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9077c24d7732ff7c9cb8d90c1cec1b8e</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FStartPage.nan.8]]></virusname>
	<url><![CDATA[http://x.uzzf.com/hyjl.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.251.230</ip>
	<as>AS4134</as>
	<review>61.187.251.230</review>
	<domain>uzzf.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.187.240.0 - 61.187.254.255</inetnum>
	<netname>CHINANET-HN-CZ</netname>
	<descr><![CDATA[CHINANET-HN Chenzhou node networkhunan Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>22</line>
	<id>11233745</id>
	<first>1369086059</first>
	<last>0</last>
	<md5>7be704d6d0b805aba92c9433c33e4abe</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7be704d6d0b805aba92c9433c33e4abe</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FStartPage.nan.10]]></virusname>
	<url><![CDATA[http://x.uzzf.com/HwServer.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.251.230</ip>
	<as>AS4134</as>
	<review>61.187.251.230</review>
	<domain>uzzf.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.187.240.0 - 61.187.254.255</inetnum>
	<netname>CHINANET-HN-CZ</netname>
	<descr><![CDATA[CHINANET-HN Chenzhou node networkhunan Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>23</line>
	<id>11233742</id>
	<first>1369086059</first>
	<last>0</last>
	<md5>4a2ff785bdc579a319f7b354bf662959</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4a2ff785bdc579a319f7b354bf662959</virustotal>
	<vt_score>36/47 (76.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FPWS.922243]]></virusname>
	<url><![CDATA[http://x.uzzf.com/eufony.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.251.230</ip>
	<as>AS4134</as>
	<review>61.187.251.230</review>
	<domain>uzzf.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.187.240.0 - 61.187.254.255</inetnum>
	<netname>CHINANET-HN-CZ</netname>
	<descr><![CDATA[CHINANET-HN Chenzhou node networkhunan Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>24</line>
	<id>11233741</id>
	<first>1369086059</first>
	<last>0</last>
	<md5>9c67e642c4ebc503859aa069e93e174a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9c67e642c4ebc503859aa069e93e174a</virustotal>
	<vt_score>31/47 (66%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FStartPage.nan.8]]></virusname>
	<url><![CDATA[http://x.uzzf.com/av-sync.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.251.230</ip>
	<as>AS4134</as>
	<review>61.187.251.230</review>
	<domain>uzzf.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.187.240.0 - 61.187.254.255</inetnum>
	<netname>CHINANET-HN-CZ</netname>
	<descr><![CDATA[CHINANET-HN Chenzhou node networkhunan Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>25</line>
	<id>11233740</id>
	<first>1369086058</first>
	<last>0</last>
	<md5>9da45779de06d4661374fd4a9d14b00d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9da45779de06d4661374fd4a9d14b00d</virustotal>
	<vt_score>40/47 (85.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FStartPage.nan.8]]></virusname>
	<url><![CDATA[http://x.uzzf.com/Almeza.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.251.230</ip>
	<as>AS4134</as>
	<review>61.187.251.230</review>
	<domain>uzzf.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.187.240.0 - 61.187.254.255</inetnum>
	<netname>CHINANET-HN-CZ</netname>
	<descr><![CDATA[CHINANET-HN Chenzhou node networkhunan Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>26</line>
	<id>11233739</id>
	<first>1369086058</first>
	<last>0</last>
	<md5>54d8178d22e1f01039210112545f8639</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=54d8178d22e1f01039210112545f8639</virustotal>
	<vt_score>38/47 (80.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FBlack.Gen2]]></virusname>
	<url><![CDATA[http://x.uzzf.com/Ajjjjl.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.251.230</ip>
	<as>AS4134</as>
	<review>61.187.251.230</review>
	<domain>uzzf.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.187.240.0 - 61.187.254.255</inetnum>
	<netname>CHINANET-HN-CZ</netname>
	<descr><![CDATA[CHINANET-HN Chenzhou node networkhunan Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>27</line>
	<id>11233736</id>
	<first>1369086058</first>
	<last>0</last>
	<md5>b89a3a327def32019b98cccac19c2f86</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b89a3a327def32019b98cccac19c2f86</virustotal>
	<vt_score>41/45 (91.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[W32%2FParite]]></virusname>
	<url><![CDATA[http://xinqd.cn/download/jingzuoxinlixue.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>208.81.166.139</ip>
	<as>AS17048, AS6939</as>
	<review>208.81.166.139</review>
	<domain>xinqd.cn</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>HOSTMASTER@cnservers.com</email>
	<inetnum>208.81.164.0 - 208.81.167.255</inetnum>
	<netname>CNSERVERS-PDX</netname>
	<descr><![CDATA[CNSERVERS LLC CL-17 13727 SE SIERRA DR. CLACKAMAS OR 97015]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>28</line>
	<id>11233735</id>
	<first>1369086058</first>
	<last>0</last>
	<md5>86a0cb5b747089e3547a992d5e868bd5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=86a0cb5b747089e3547a992d5e868bd5</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://xd.s3.filmwit.com/down/ows/69124.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>29</line>
	<id>11233734</id>
	<first>1369086058</first>
	<last>0</last>
	<md5>6875d202731cecce9f413a0ea18b1a16</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6875d202731cecce9f413a0ea18b1a16</virustotal>
	<vt_score>10/35 (28.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADWARE%2FAdware.Gen]]></virusname>
	<url><![CDATA[http://x1.zhuti.com/down/2013/5/08-xp/wmhsrl.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.166</ip>
	<as>AS4134</as>
	<review>222.187.220.166</review>
	<domain>zhuti.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>30</line>
	<id>11233732</id>
	<first>1369080828</first>
	<last>0</last>
	<md5>cf99fdd5269c81f00a248737b6396b41</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=cf99fdd5269c81f00a248737b6396b41</virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[JS%2FAgent.Inf.651]]></virusname>
	<url><![CDATA[http://techstack.com/forum/websphere/25254-stellenangebote-fuer-deutsche-im-ausland-www-arbeit-im-ausland-arbeitsamt-ausland-krankenversicherung-bei-arbeit-im-ausland-agentur-fuer-arbeit-jobs-im-ausland.html]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>50.17.200.145</ip>
	<as>AS14618</as>
	<review>50.17.200.145</review>
	<domain>techstack.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>50.16.0.0 - 50.19.255.255</inetnum>
	<netname>AMAZON-EC2-8</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1925.awsdns-48.co.uk</ns1>
	<ns2>ns-66.awsdns-08.com</ns2>
	<ns3>ns-836.awsdns-40.net</ns3>
	<ns4>ns-1256.awsdns-29.org</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>31</line>
	<id>11233731</id>
	<first>1369086058</first>
	<last>0</last>
	<md5>e87ec31c683de60aacf88c36d1d8ecf7</md5>
	<virustotal></virustotal>
	<vt_score>12/47 (25.5%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADWARE%2FAdware.Gen]]></virusname>
	<url><![CDATA[http://x1.zhuti.com/down/2013/4/20-win7/gdhs.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.166</ip>
	<as>AS4134</as>
	<review>222.187.220.166</review>
	<domain>zhuti.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>32</line>
	<id>11233730</id>
	<first>1369086058</first>
	<last>0</last>
	<md5>bddd43e6f586952012c1b4d220d84539</md5>
	<virustotal></virustotal>
	<vt_score>10/47 (21.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADWARE%2FAdware.Gen]]></virusname>
	<url><![CDATA[http://x1.zhuti.com/down/2012/12/30/mldal.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.166</ip>
	<as>AS4134</as>
	<review>222.187.220.166</review>
	<domain>zhuti.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>33</line>
	<id>11233729</id>
	<first>1369086058</first>
	<last>0</last>
	<md5>48d7c26dad56535e7e3ff9c99e61d32c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=48d7c26dad56535e7e3ff9c99e61d32c</virustotal>
	<vt_score>10/46 (21.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADWARE%2FAdware.Gen]]></virusname>
	<url><![CDATA[http://x1.zhuti.com/down/2012/12/22-win7/jg.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.166</ip>
	<as>AS4134</as>
	<review>222.187.220.166</review>
	<domain>zhuti.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>34</line>
	<id>11233728</id>
	<first>1369086058</first>
	<last>0</last>
	<md5>817421f7b7c9917d518745cb07227577</md5>
	<virustotal></virustotal>
	<vt_score>7/47 (14.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADWARE%2FAdware.Gen]]></virusname>
	<url><![CDATA[http://x1.zhuti.com/down/2012/11/30-xp/bltt.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.166</ip>
	<as>AS4134</as>
	<review>222.187.220.166</review>
	<domain>zhuti.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>35</line>
	<id>11233727</id>
	<first>1369086058</first>
	<last>0</last>
	<md5>6b567c382955df4d43610c419555a0ee</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6b567c382955df4d43610c419555a0ee</virustotal>
	<vt_score>5/36 (13.9%)</vt_score>
	<scanner>BitDefender</scanner>
	<virusname><![CDATA[Gen%3ATrojan.Heur.ZGY.1]]></virusname>
	<url><![CDATA[http://wz.i3.filmwit.com/down/vi/33040.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>36</line>
	<id>11233723</id>
	<first>1369086058</first>
	<last>0</last>
	<md5>a86754753432df26c7d4f8988c2a64ae</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a86754753432df26c7d4f8988c2a64ae</virustotal>
	<vt_score>2/36 (5.6%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Toolbar.156]]></virusname>
	<url><![CDATA[http://www.yenidosya.com/Wolfteam%20Nakit%20Hilesi.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>31.3.228.229</ip>
	<as>AS35662</as>
	<review>31.3.228.229</review>
	<domain>yenidosya.com</domain>
	<country>GB</country>
	<source>RIPE</source>
	<email>abuse@redstation.com</email>
	<inetnum>31.3.224.0 - 31.3.255.255</inetnum>
	<netname>UK-REDSTATION-20110408</netname>
	<descr><![CDATA[Redstation Limited]]></descr>
	<ns1>ns1.yenidosya.com</ns1>
	<ns2>ns2.yenidosya.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>37</line>
	<id>11233722</id>
	<first>1369086057</first>
	<last>0</last>
	<md5>1edc2aea9e30aa2ab404fc4cd33722e1</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1edc2aea9e30aa2ab404fc4cd33722e1</virustotal>
	<vt_score>41/45 (91.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[W32%2FParite]]></virusname>
	<url><![CDATA[http://www.xinqd.cn/download/aomixinlixue.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>208.81.166.139</ip>
	<as>AS17048, AS6939</as>
	<review>208.81.166.139</review>
	<domain>xinqd.cn</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>HOSTMASTER@cnservers.com</email>
	<inetnum>208.81.164.0 - 208.81.167.255</inetnum>
	<netname>CNSERVERS-PDX</netname>
	<descr><![CDATA[CNSERVERS LLC CL-17 13727 SE SIERRA DR. CLACKAMAS OR 97015]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>38</line>
	<id>11233719</id>
	<first>1369086057</first>
	<last>0</last>
	<md5>fc276d780de5a65f70239f530b7c41b3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=fc276d780de5a65f70239f530b7c41b3</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://www.windows-7-themes.com/site_tempfiles/17/windows-798.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>65.61.101.141</ip>
	<as>AS30340</as>
	<review>65.61.101.141</review>
	<domain>windows-7-themes.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@tierpoint.com</email>
	<inetnum>65.61.96.0 - 65.61.127.255</inetnum>
	<netname>TIER-1</netname>
	<descr><![CDATA[Tierpoint, LLC TIERP 23403 E Mission Ave Liberty Lake WA 99019]]></descr>
	<ns1>ns002.webdevaz.com</ns1>
	<ns2>ns001.webdevaz.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>39</line>
	<id>11233716</id>
	<first>1369086057</first>
	<last>0</last>
	<md5>be4b22dc76de38b99fb9018b5f67b272</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=be4b22dc76de38b99fb9018b5f67b272</virustotal>
	<vt_score>4/44 (9.1%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[ASD.Prevention]]></virusname>
	<url><![CDATA[http://www.website-force.com/zip/getyourhusbandback.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.60.138.169</ip>
	<as>AS30890</as>
	<review>94.60.138.169</review>
	<domain>website-force.com</domain>
	<country>RO</country>
	<source>RIPE</source>
	<email>abuse@evolva.ro</email>
	<inetnum>94.60.0.0 - 94.63.255.255</inetnum>
	<netname>RO-EVOLVA-20080623</netname>
	<descr><![CDATA[Evolva Telecom s.r.l.Evolva Telecom]]></descr>
	<ns1>ns1.mxserver.ro</ns1>
	<ns2>ns2.mxserver.ro</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>40</line>
	<id>11233715</id>
	<first>1369086057</first>
	<last>0</last>
	<md5>be4b22dc76de38b99fb9018b5f67b272</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=be4b22dc76de38b99fb9018b5f67b272</virustotal>
	<vt_score>4/44 (9.1%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[ASD.Prevention]]></virusname>
	<url><![CDATA[http://www.website-force.com/zip/BuyAcneNoMore.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.60.138.169</ip>
	<as>AS30890</as>
	<review>94.60.138.169</review>
	<domain>website-force.com</domain>
	<country>RO</country>
	<source>RIPE</source>
	<email>abuse@evolva.ro</email>
	<inetnum>94.60.0.0 - 94.63.255.255</inetnum>
	<netname>RO-EVOLVA-20080623</netname>
	<descr><![CDATA[Evolva Telecom s.r.l.Evolva Telecom]]></descr>
	<ns1>ns1.mxserver.ro</ns1>
	<ns2>ns2.mxserver.ro</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>41</line>
	<id>11233713</id>
	<first>1369080809</first>
	<last>0</last>
	<md5>53a196a6b4d8224c13b030923972f4d2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=53a196a6b4d8224c13b030923972f4d2</virustotal>
	<vt_score>16/43 (37.2%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[EXP%2FMS04-028.JPEG.A]]></virusname>
	<url><![CDATA[http://media.vorotila.net/items/c/6/1/t1@c619de5e-a775-4945-ac78-65c94323451f.jpg]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>91.212.80.163</ip>
	<as>AS48964</as>
	<review>91.212.80.163</review>
	<domain>vorotila.net</domain>
	<country>UA</country>
	<source>RIPE</source>
	<email>pvd.enterra@gmail.com</email>
	<inetnum>91.212.80.0 - 91.212.80.255</inetnum>
	<netname>ENTERRA</netname>
	<descr><![CDATA[Private Enterprise "Enterra"]]></descr>
	<ns1>ns2.trifle.net</ns1>
	<ns2>ns.igrazor.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>42</line>
	<id>11233711</id>
	<first>1369086056</first>
	<last>0</last>
	<md5>9c52eee3495a5469138f0af6065f9815</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9c52eee3495a5469138f0af6065f9815</virustotal>
	<vt_score>27/45 (60%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.ULPM.Gen]]></virusname>
	<url><![CDATA[http://www.veryboys.com/game/download/zip/waigua/mir-sf/2003/20030404.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.25.10.29</ip>
	<as>AS4837</as>
	<review>218.25.10.29</review>
	<domain>veryboys.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>218.24.0.0 - 218.25.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning province networkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>ns20.xincache.com</ns1>
	<ns2>ns19.xincache.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>43</line>
	<id>11233710</id>
	<first>1369080807</first>
	<last>0</last>
	<md5>df655025325f012be421747db1991f5f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=df655025325f012be421747db1991f5f</virustotal>
	<vt_score>8/35 (22.9%)</vt_score>
	<scanner>BitDefender</scanner>
	<virusname><![CDATA[Trojan.Script.46856]]></virusname>
	<url><![CDATA[http://lovelygranny.net/mr2/images/2011/12/14/1323902924.9063.jpg]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>88.208.61.114</ip>
	<as>AS39572</as>
	<review>88.208.61.114</review>
	<domain>lovelygranny.net</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>abuse@advancedhosters.com</email>
	<inetnum>88.208.60.0 - 88.208.63.255</inetnum>
	<netname>ADVANCEDHOSTERS-NET</netname>
	<descr><![CDATA[ADVANCEDHOSTERS LIMITED]]></descr>
	<ns1>ns6.public-ns.com</ns1>
	<ns2>ns5.public-ns.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>44</line>
	<id>11233708</id>
	<first>1369086056</first>
	<last>0</last>
	<md5>3ca319a7acdbc6db55afed6ffaecf197</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3ca319a7acdbc6db55afed6ffaecf197</virustotal>
	<vt_score>18/35 (51.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FRogue.kdv.629834]]></virusname>
	<url><![CDATA[http://www.un-jeu-par-jour.com/toolbar/telecharger.php?gtload2.microapp.com/telechargement/eval/10275_eval.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>212.23.46.135</ip>
	<as>AS8928</as>
	<review>212.23.46.135</review>
	<domain>un-jeu-par-jour.com</domain>
	<country>FR</country>
	<source>RIPE</source>
	<email>obouillaud@microapp.com</email>
	<inetnum>212.23.46.128 - 212.23.46.159</inetnum>
	<netname>MICROAPPLICATION-NETS</netname>
	<descr><![CDATA[MICRO APPLICATIONInteroute Telecommunications (UK) Ltd]]></descr>
	<ns1>d.ns.zerigo.net</ns1>
	<ns2>e.ns.zerigo.net</ns2>
	<ns3>a.ns.zerigo.net</ns3>
	<ns4>c.ns.zerigo.net</ns4>
	<ns5>b.ns.zerigo.net</ns5>
</entry>
<entry>
	<line>45</line>
	<id>11233707</id>
	<first>1369086056</first>
	<last>0</last>
	<md5>3ca319a7acdbc6db55afed6ffaecf197</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3ca319a7acdbc6db55afed6ffaecf197</virustotal>
	<vt_score>18/35 (51.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FRogue.kdv.629834]]></virusname>
	<url><![CDATA[http://www.un-jeu-par-jour.com/toolbar/telecharger.php?gt/;downlt/&amp;amp;amp/;amp/;lt/;br/&amp;amp;amp/;amp/;gt/;br/gt/;load2.microapp.com/telechargement/e&amp;amp;amp/;amp/;gt/;val%&amp;amp;amp/;amp/;lt/;br/&amp;amp;amp/;amp/;gt/;2f10275_eval.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>212.23.46.135</ip>
	<as>AS8928</as>
	<review>212.23.46.135</review>
	<domain>un-jeu-par-jour.com</domain>
	<country>FR</country>
	<source>RIPE</source>
	<email>obouillaud@microapp.com</email>
	<inetnum>212.23.46.128 - 212.23.46.159</inetnum>
	<netname>MICROAPPLICATION-NETS</netname>
	<descr><![CDATA[MICRO APPLICATIONInteroute Telecommunications (UK) Ltd]]></descr>
	<ns1>d.ns.zerigo.net</ns1>
	<ns2>e.ns.zerigo.net</ns2>
	<ns3>a.ns.zerigo.net</ns3>
	<ns4>c.ns.zerigo.net</ns4>
	<ns5>b.ns.zerigo.net</ns5>
</entry>
<entry>
	<line>46</line>
	<id>11233700</id>
	<first>1369086055</first>
	<last>0</last>
	<md5>4016e8c27e802b4e943e095fa4cab573</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4016e8c27e802b4e943e095fa4cab573</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Posible_Worm32]]></virusname>
	<url><![CDATA[http://www.twonext.com/download/res/up.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>174.36.200.167</ip>
	<as>AS36351</as>
	<review>174.36.200.167</review>
	<domain>twonext.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@softlayer.com</email>
	<inetnum>174.36.0.0 - 174.37.255.255</inetnum>
	<netname>SOFTLAYER-4-7</netname>
	<descr><![CDATA[SoftLayer Technologies Inc. SOFTL 1950 N Stemmons Freeway Dallas TX 75207]]></descr>
	<ns1>ns08.domaincontrol.com</ns1>
	<ns2>ns07.domaincontrol.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>47</line>
	<id>11233699</id>
	<first>1369086055</first>
	<last>0</last>
	<md5>828768af567fb8807b5a9450b7ed647f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=828768af567fb8807b5a9450b7ed647f</virustotal>
	<vt_score>35/36 (97.2%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[BDS%2FLiondoor.A.2]]></virusname>
	<url><![CDATA[http://www.truesec.net/wp-content/uploads/2013/03/HTran2.4.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>121.49.110.27</ip>
	<as>AS4538</as>
	<review>121.49.110.27</review>
	<domain>truesec.net</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>cernet-helpdesk-ip@net.edu.cn</email>
	<inetnum>121.49.64.0 - 121.49.127.255</inetnum>
	<netname>UESTCQSH-CN</netname>
	<descr><![CDATA[~{5gWS?F<<4sQ'GeK.UESTC at QingshuiheChengdu, Sichuan 610040, ChinaCERNET]]></descr>
	<ns1>ns1.ezdnscenter.com</ns1>
	<ns2>ns5.ezdnscenter.com</ns2>
	<ns3>ns2.ezdnscenter.com</ns3>
	<ns4>ns6.ezdnscenter.com</ns4>
	<ns5>ns4.ezdnscenter.com</ns5>
</entry>
<entry>
	<line>48</line>
	<id>11233698</id>
	<first>1369086055</first>
	<last>0</last>
	<md5>b8a11f8aa41dbbd13c5ac81a58282eb2</md5>
	<virustotal></virustotal>
	<vt_score>22/46 (47.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FTiny.10240.B]]></virusname>
	<url><![CDATA[http://www.trm.cn/ggt/6-18c.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>50.93.195.183</ip>
	<as>AS18779</as>
	<review>50.93.195.183</review>
	<domain>trm.cn</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>admin@jazzvps.com</email>
	<inetnum>50.93.192.0 - 50.93.207.255</inetnum>
	<netname>JAZZNETWORK-ARIN-1</netname>
	<descr><![CDATA[Jazz Network Inc. JN 600 TAMPA OAKS BLVD. TAMPA FL 33637]]></descr>
	<ns1>ns14.xincache.com</ns1>
	<ns2>ns18.xincache.com</ns2>
	<ns3>ns13.xincache.com</ns3>
	<ns4>ns17.xincache.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>49</line>
	<id>11233697</id>
	<first>1369086055</first>
	<last>0</last>
	<md5>d2be8ebb3f4d085aeabf4d209a962d5c</md5>
	<virustotal></virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[WS.Reputation.1]]></virusname>
	<url><![CDATA[http://www.topcerts.com/dl/demo/HP0-J26-ipad-demo.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>72.18.192.56</ip>
	<as>AS26277</as>
	<review>72.18.192.56</review>
	<domain>topcerts.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@premianet.com</email>
	<inetnum>72.18.192.0 - 72.18.207.255</inetnum>
	<netname>PREMIANET</netname>
	<descr><![CDATA[Las Vegas NV Datacenter AHOSTI 10620 Southern Highlands Suite 110-491 Las Vegas NV 89141]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>50</line>
	<id>11233689</id>
	<first>1369086054</first>
	<last>0</last>
	<md5>389530dedc62a69efb6b7de13c4e8dd1</md5>
	<virustotal></virustotal>
	<vt_score>11/47 (23.4%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Trojan.Agent-293792]]></virusname>
	<url><![CDATA[http://www.smskb.com/down/setupsm20130522.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>122.225.7.178</ip>
	<as>AS4809</as>
	<review>122.225.7.178</review>
	<domain>smskb.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>122.224.0.0 - 122.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032China Telecom Zhejiang Province]]></descr>
	<ns1>ns1.4everdns.com</ns1>
	<ns2>ns2.4everdns.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>51</line>
	<id>11233684</id>
	<first>1369086052</first>
	<last>0</last>
	<md5>9ae1a4613ad35bb4a78d860919de70a8</md5>
	<virustotal></virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.F47V0115]]></virusname>
	<url><![CDATA[http://www.scicomap.com/Downloads/WinDisp/DataView_2_02_install.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>182.160.156.224</ip>
	<as>AS38544</as>
	<review>182.160.156.224</review>
	<domain>scicomap.com</domain>
	<country>AU</country>
	<source>APNIC</source>
	<email>abuse@crucialp.com</email>
	<inetnum>182.160.128.0 - 182.160.191.255</inetnum>
	<netname>CRUCIALX-AP</netname>
	<descr><![CDATA[Crucial Paradigm Pty LtdP.O. Box 1, Surry Hills NSW 2010 Australia]]></descr>
	<ns1>nsdal01.crucial.com.au</ns1>
	<ns2>nssyd01.crucial.com.au</ns2>
	<ns3>nssyd02.crucial.com.au</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>52</line>
	<id>11233683</id>
	<first>1369086052</first>
	<last>0</last>
	<md5>618563ab229b9ffd20dd6e30917f0814</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=618563ab229b9ffd20dd6e30917f0814</virustotal>
	<vt_score>2/46 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.RC1H1IK]]></virusname>
	<url><![CDATA[http://www.scantool.net/scantool/downloads/diagnostic-software/scantool/downloads/11/scantool_net114win.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>72.47.249.15</ip>
	<as>AS31815</as>
	<review>72.47.249.15</review>
	<domain>scantool.net</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>dnsadmin@mediatemple.net</email>
	<inetnum>72.47.192.0 - 72.47.255.255</inetnum>
	<netname>MEDIATEMPLE-105</netname>
	<descr><![CDATA[Media Temple, Inc. MEDIAT-10 8520 National Blvd. Building B Culver City CA 90232]]></descr>
	<ns1>ns1.mediatemple.net</ns1>
	<ns2>ns2.mediatemple.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>53</line>
	<id>11233682</id>
	<first>1369086052</first>
	<last>0</last>
	<md5>4c6a49989c5c888a86513eb7d1456ea2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4c6a49989c5c888a86513eb7d1456ea2</virustotal>
	<vt_score>14/35 (40%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Win.Trojan.Agent-172948]]></virusname>
	<url><![CDATA[http://www.rhtec.com.cn/uploadfile/jxc.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>117.25.131.167</ip>
	<as>AS4134</as>
	<review>117.25.131.167</review>
	<domain>rhtec.com.cn</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@fjdcb.fz.fj.cn</email>
	<inetnum>117.24.0.0 - 117.31.255.255</inetnum>
	<netname>CHINANET-FJ</netname>
	<descr><![CDATA[CHINANET Fujian province networkChina Telecom7,East Street ,Fuzhou ,Fujian ,PRC]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>54</line>
	<id>11233675</id>
	<first>1369086051</first>
	<last>0</last>
	<md5>f4584b7c406768b6a4577cb23961d103</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f4584b7c406768b6a4577cb23961d103</virustotal>
	<vt_score>2/36 (5.6%)</vt_score>
	<scanner>Comodo</scanner>
	<virusname><![CDATA[Heur.Corrupt.PE]]></virusname>
	<url><![CDATA[http://www.qzyz.cn/oi/upfiles/cena.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.130.75.154</ip>
	<as>AS132524</as>
	<review>61.130.75.154</review>
	<domain>qzyz.cn</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email></email>
	<inetnum>61.130.0.0 - 61.131.255.255</inetnum>
	<netname></netname>
	<descr><![CDATA[]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>55</line>
	<id>11233674</id>
	<first>1369080785</first>
	<last>0</last>
	<md5>07e14e76bbcc0d57c3374858f2acd2f4</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=07e14e76bbcc0d57c3374858f2acd2f4</virustotal>
	<vt_score>15/45 (33.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[JS%2FIFrame+%28exact%29]]></virusname>
	<url><![CDATA[http://www.vacationinoc.com/]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>67.15.130.38</ip>
	<as>AS36420, AS30315, AS13749, AS21844, AS13884</as>
	<review>67.15.130.38</review>
	<domain>vacationinoc.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@theplanet.com</email>
	<inetnum>67.15.0.0 - 67.15.255.255</inetnum>
	<netname>NETBLK-THEPLANET-BLK-EV1-14</netname>
	<descr><![CDATA[ThePlanet.com Internet Services, Inc. TPCM 315 Capitol Suite 205 Houston TX 77002]]></descr>
	<ns1>ns15.worldnic.com</ns1>
	<ns2>ns16.worldnic.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>56</line>
	<id>11233662</id>
	<first>1369080785</first>
	<last>0</last>
	<md5>4043bb596dbed6bc122460e9c20982ba</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4043bb596dbed6bc122460e9c20982ba</virustotal>
	<vt_score>19/46 (41.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[JS%2FAgent.DE.623]]></virusname>
	<url><![CDATA[http://metzgerei-christ.de/]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>82.165.127.143</ip>
	<as>AS8560</as>
	<review>82.165.127.143</review>
	<domain>metzgerei-christ.de</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>abuse@1and1.com</email>
	<inetnum>82.165.64.0 - 82.165.127.255</inetnum>
	<netname>SCHLUND-SHARED</netname>
	<descr><![CDATA[1&1 Internet AGNCC#2004115007SCHLUND-PA-4]]></descr>
	<ns1>ns38.1und1.de</ns1>
	<ns2>ns37.1und1.de</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>57</line>
	<id>11233654</id>
	<first>1369086049</first>
	<last>0</last>
	<md5>3da70fc897ac3ed9c0ae2003038bcb78</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3da70fc897ac3ed9c0ae2003038bcb78</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware.Win32.InstallMonetizer.AMN+%28A%29]]></virusname>
	<url><![CDATA[http://www.noughtsandcrosses.org/download/Setup_NoughtsAndCrossesV1.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>79.170.40.234</ip>
	<as>AS31727</as>
	<review>79.170.40.234</review>
	<domain>noughtsandcrosses.org</domain>
	<country>GB</country>
	<source>RIPE</source>
	<email>abuse@heartinternet.co.uk</email>
	<inetnum>79.170.40.0 - 79.170.42.255</inetnum>
	<netname>HEART-INTERNET</netname>
	<descr><![CDATA[Heart Internet Network]]></descr>
	<ns1>ns2.mainnameserver.com</ns1>
	<ns2>ns.mainnameserver.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>58</line>
	<id>11233652</id>
	<first>1369086049</first>
	<last>0</last>
	<md5>cdb993357a1b4af16121cbd10081e10a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=cdb993357a1b4af16121cbd10081e10a</virustotal>
	<vt_score>17/45 (37.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FVBKrypt.femh]]></virusname>
	<url><![CDATA[http://www.nimblefingers.com/program_ww/typing_data_setup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>174.122.31.3</ip>
	<as>AS36420, AS30315, AS13749, AS21844</as>
	<review>174.122.31.3</review>
	<domain>nimblefingers.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@theplanet.com</email>
	<inetnum>174.120.0.0 - 174.123.255.255</inetnum>
	<netname>NETBLK-THEPLANET-BLK-16</netname>
	<descr><![CDATA[ThePlanet.com Internet Services, Inc. TPCM 315 Capitol Suite 205 Houston TX 77002]]></descr>
	<ns1>ns1.mososh.com</ns1>
	<ns2>ns2.mososh.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>59</line>
	<id>11233650</id>
	<first>1369086049</first>
	<last>0</last>
	<md5>09865a31810b7d6471a4533ea25a8726</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=be4b22dc76de38b99fb9018b5f67b272</virustotal>
	<vt_score>4/44 (9.1%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[ASD.Prevention]]></virusname>
	<url><![CDATA[http://www.net-trekk.com/zip/seoadelaide.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>174.120.155.99</ip>
	<as>AS36420, AS30315, AS13749, AS21844</as>
	<review>174.120.155.99</review>
	<domain>net-trekk.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@theplanet.com</email>
	<inetnum>174.120.0.0 - 174.123.255.255</inetnum>
	<netname>NETBLK-THEPLANET-BLK-16</netname>
	<descr><![CDATA[ThePlanet.com Internet Services, Inc. TPCM 315 Capitol Suite 205 Houston TX 77002]]></descr>
	<ns1>ns2135.hostgator.com</ns1>
	<ns2>ns2136.hostgator.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>60</line>
	<id>11233649</id>
	<first>1369086049</first>
	<last>0</last>
	<md5>09865a31810b7d6471a4533ea25a8726</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=be4b22dc76de38b99fb9018b5f67b272</virustotal>
	<vt_score>4/44 (9.1%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[ASD.Prevention]]></virusname>
	<url><![CDATA[http://www.net-trekk.com/zip/BuyBacklinks.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>174.120.155.99</ip>
	<as>AS36420, AS30315, AS13749, AS21844</as>
	<review>174.120.155.99</review>
	<domain>net-trekk.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@theplanet.com</email>
	<inetnum>174.120.0.0 - 174.123.255.255</inetnum>
	<netname>NETBLK-THEPLANET-BLK-16</netname>
	<descr><![CDATA[ThePlanet.com Internet Services, Inc. TPCM 315 Capitol Suite 205 Houston TX 77002]]></descr>
	<ns1>ns2135.hostgator.com</ns1>
	<ns2>ns2136.hostgator.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>61</line>
	<id>11233644</id>
	<first>1369086048</first>
	<last>0</last>
	<md5>35e93e3056137d519b43c3ada05b93f4</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=35e93e3056137d519b43c3ada05b93f4</virustotal>
	<vt_score>29/36 (80.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[DIAL%2F000097]]></virusname>
	<url><![CDATA[http://www.mtreexxx.net/ss/DIALERS/sexdownload.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>216.127.51.72</ip>
	<as>AS11608</as>
	<review>216.127.51.72</review>
	<domain>mtreexxx.net</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@accretive-networks.net</email>
	<inetnum>216.127.32.0 - 216.127.63.255</inetnum>
	<netname>ANI-002</netname>
	<descr><![CDATA[Accretive Technology Group, Inc. ACCR 2019 3rd Ave. Suite 200 Seattle WA 98121]]></descr>
	<ns1>ns2.flyingcroc.net</ns1>
	<ns2>ns1.flyingcroc.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>62</line>
	<id>11233635</id>
	<first>1369086047</first>
	<last>0</last>
	<md5>74552aa7084368c230516c656da8ac78</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=74552aa7084368c230516c656da8ac78</virustotal>
	<vt_score>38/46 (82.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[W32%2FRamnit.A]]></virusname>
	<url><![CDATA[http://www.lunaris-online.org/maj/client/miles/mss32.dll]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>185.8.198.103</ip>
	<as>AS39743</as>
	<review>185.8.198.103</review>
	<domain>lunaris-online.org</domain>
	<country>IT</country>
	<source>RIPE</source>
	<email></email>
	<inetnum>185.8.196.0 - 185.8.199.255</inetnum>
	<netname></netname>
	<descr><![CDATA[]]></descr>
	<ns1>dns100.ovh.net</ns1>
	<ns2>ns100.ovh.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>63</line>
	<id>11233634</id>
	<first>1369086047</first>
	<last>0</last>
	<md5>7a69aa144d2a370868246b18b6d98e22</md5>
	<virustotal></virustotal>
	<vt_score>14/47 (29.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Suspicious+file]]></virusname>
	<url><![CDATA[http://www.lezcam.net/cam4token.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.170.240.200</ip>
	<as>AS46562</as>
	<review>184.170.240.200</review>
	<domain>lezcam.net</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@coloat.com</email>
	<inetnum>184.170.240.0 - 184.170.255.255</inetnum>
	<netname>COLOAT</netname>
	<descr><![CDATA[Colo at 55, LLC COLOA 34 Peachtree ST Suite 400 Atlanta GA 30303]]></descr>
	<ns1>ns1.hostingww.com</ns1>
	<ns2>ns3.hostingww.com</ns2>
	<ns3>ns2.hostingww.com</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>64</line>
	<id>11233631</id>
	<first>1369086047</first>
	<last>0</last>
	<md5>8a9d8508d3e2ded808accd53111bbb18</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8a9d8508d3e2ded808accd53111bbb18</virustotal>
	<vt_score>4/31 (12.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.XPACK.Gen2]]></virusname>
	<url><![CDATA[http://www.labour-cn.com/ldjcdt/201303/P020130328535540182188.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.76.243.155</ip>
	<as>AS4134</as>
	<review>222.76.243.155</review>
	<domain>labour-cn.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.76.242.0 - 222.76.243.255</inetnum>
	<netname>XMIC-XIAMEN-FJ</netname>
	<descr><![CDATA[XiaMen Electron Governmetn affairXiaMen Fujian Province]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>65</line>
	<id>11233629</id>
	<first>1369086046</first>
	<last>0</last>
	<md5>0cdfc36bfb86d252a0746a303bd751b1</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0cdfc36bfb86d252a0746a303bd751b1</virustotal>
	<vt_score>5/34 (14.7%)</vt_score>
	<scanner>Comodo</scanner>
	<virusname><![CDATA[Heur.Packed.Unknown]]></virusname>
	<url><![CDATA[http://www.kinlong.cn/Tools/IESetting.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>116.6.209.60</ip>
	<as>AS4134</as>
	<review>116.6.209.60</review>
	<domain>kinlong.cn</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>116.4.0.0 - 116.7.255.255</inetnum>
	<netname>CHINANET-GD</netname>
	<descr><![CDATA[CHINANET Guangdong province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>ns16.xincache.com</ns1>
	<ns2>ns15.xincache.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>66</line>
	<id>11233628</id>
	<first>1369086046</first>
	<last>0</last>
	<md5>19c4b9a994daceef7804434447ed1719</md5>
	<virustotal></virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware.Win32.InstallMonetizer.AMN+%28A%29]]></virusname>
	<url><![CDATA[http://www.ketlabs.com/WordGuessGame_Setup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>91.196.125.183</ip>
	<as>AS8262</as>
	<review>91.196.125.183</review>
	<domain>ketlabs.com</domain>
	<country>BG</country>
	<source>RIPE</source>
	<email>abuse@superhosting.bg</email>
	<inetnum>91.196.124.0 - 91.196.127.255</inetnum>
	<netname>SUPERHOSTINGBG</netname>
	<descr><![CDATA[SuperHosting.BG LtdSUPERHOSTINGBG ROUTE OBJECT]]></descr>
	<ns1>ns75.superhosting.bg</ns1>
	<ns2>ns76.superhosting.bg</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>67</line>
	<id>11233625</id>
	<first>1369086046</first>
	<last>0</last>
	<md5>1552b2059cdb8f9245aae206c2bc9721</md5>
	<virustotal></virustotal>
	<vt_score>40/46 (87%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FAgent.278528.BF]]></virusname>
	<url><![CDATA[http://www.ip-index.de/files/SqlExec.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>217.13.199.30</ip>
	<as>AS15657</as>
	<review>217.13.199.30</review>
	<domain>ip-index.de</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>roquette@speedbone.de</email>
	<inetnum>217.13.199.0 - 217.13.199.63</inetnum>
	<netname>PROSITE-WEB-199</netname>
	<descr><![CDATA[Speedbone Internet & Connectivity GmbHSPEEDBONE GmbH]]></descr>
	<ns1>ns11.worldserver.net</ns1>
	<ns2>ns12.worldserver.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>68</line>
	<id>11233617</id>
	<first>1369086045</first>
	<last>0</last>
	<md5>653690191635f38f5d19fa9052b81cef</md5>
	<virustotal></virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[WS.Reputation.1]]></virusname>
	<url><![CDATA[http://www.hpdriversupdateutility.com/hp-laserjet-p2015-driver-utility.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>76.72.163.172</ip>
	<as>AS17090</as>
	<review>76.72.163.172</review>
	<domain>hpdriversupdateutility.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>support@databasebydesignllc.com</email>
	<inetnum>76.72.160.0 - 76.72.175.255</inetnum>
	<netname>DBDLLC-PHL-401</netname>
	<descr><![CDATA[Database by Design, LLC DBDL-2 401 N. Broad St Suite 450 Philadelphia PA 19108]]></descr>
	<ns1>ns4fmx.domain-resolution.net</ns1>
	<ns2>ns2fln.domain-resolution.net</ns2>
	<ns3>ns1.domain-resolution.net</ns3>
	<ns4>ns3cna.domain-resolution.net</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>69</line>
	<id>11233613</id>
	<first>1369086044</first>
	<last>0</last>
	<md5>b0ee4ecae449ce1c84a921a800837858</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b0ee4ecae449ce1c84a921a800837858</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware.Win32.InstallMonetizer.AMN+%28A%29]]></virusname>
	<url><![CDATA[http://www.hollydollyvideo.com/products/gamessudoku/setup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>92.240.253.107</ip>
	<as>AS42005</as>
	<review>92.240.253.107</review>
	<domain>hollydollyvideo.com</domain>
	<country>SK</country>
	<source>RIPE</source>
	<email>abuse@exohosting.sk</email>
	<inetnum>92.240.253.0 - 92.240.253.255</inetnum>
	<netname>SK-LSC-EXOTECHNOLOGIES</netname>
	<descr><![CDATA[SK-LSC-EXOTECHNOLOGIESGarbiarska 3064 01, Stara Lubovna, SlovakiaLightStorm Communications s.r.o.]]></descr>
	<ns1>ns50.domaincontrol.com</ns1>
	<ns2>ns49.domaincontrol.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>70</line>
	<id>11233610</id>
	<first>1369086043</first>
	<last>0</last>
	<md5>4c249fc5364577a8f98ac475c59c4ae2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4c249fc5364577a8f98ac475c59c4ae2</virustotal>
	<vt_score>6/36 (16.7%)</vt_score>
	<scanner>Comodo</scanner>
	<virusname><![CDATA[TrojWare.Win32.TrojanDownloader.CS.%7E0]]></virusname>
	<url><![CDATA[http://www.guishudi.net/yingxiongsha/yxs.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>198.13.115.143</ip>
	<as>AS40676</as>
	<review>198.13.115.143</review>
	<domain>guishudi.net</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@psychz.net</email>
	<inetnum>198.13.96.0 - 198.13.127.255</inetnum>
	<netname>PSYCHZ-NETWORKS</netname>
	<descr><![CDATA[Psychz Networks PSL-86 20687-2 Amar Rd. #312 Walnut CA 91789]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>71</line>
	<id>11233609</id>
	<first>1369080701</first>
	<last>0</last>
	<md5>e0b03e2e7a3fcfb71ab6e49e5f6d5028</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e0b03e2e7a3fcfb71ab6e49e5f6d5028</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Win.Adware.Agent-2573]]></virusname>
	<url><![CDATA[http://ncapponline.info/v724/?product_name=Fast and Furious 6 2013 CAMRip XviD-SUMMER]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>198.7.61.121</ip>
	<as>AS30633</as>
	<review>198.7.61.121</review>
	<domain>ncapponline.info</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@leaseweb.us</email>
	<inetnum>198.7.56.0 - 198.7.63.255</inetnum>
	<netname>LEASEWEB-US</netname>
	<descr><![CDATA[Leaseweb USA, Inc. LU 9480 Innovation Dr Manassas VA 20109]]></descr>
	<ns1>will.ns.cloudflare.com</ns1>
	<ns2>jill.ns.cloudflare.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>72</line>
	<id>11233607</id>
	<first>1369080687</first>
	<last>0</last>
	<md5>c060d9c33de3943b1172c8fc35dd1683</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c060d9c33de3943b1172c8fc35dd1683</virustotal>
	<vt_score>15/37 (40.5%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FAgent.AURW]]></virusname>
	<url><![CDATA[http://lbz.go-go-adult.com/movie/LoadMovie.php]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>100.42.225.51</ip>
	<as>AS54288</as>
	<review>100.42.225.51</review>
	<domain>go-go-adult.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>peter@solidtools.com</email>
	<inetnum>100.42.224.0 - 100.42.239.255</inetnum>
	<netname>SOLIDTOOLSTECH</netname>
	<descr><![CDATA[SolidTools Technology, Inc. ST-47 1600 Gomes Rd Fremont CA 94539]]></descr>
	<ns1>ns2.nishimurasan.com</ns1>
	<ns2>ns1.nishimurasan.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>73</line>
	<id>11233606</id>
	<first>1369086042</first>
	<last>0</last>
	<md5>3c74363d0229a4ed5cb79a59747526e8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3c74363d0229a4ed5cb79a59747526e8</virustotal>
	<vt_score>5/47 (10.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware.Win32.RelevantKnowledge.AO.AMN+%28A%29]]></virusname>
	<url><![CDATA[http://www.freeease.net/FreeEasyiPodiPadiPhonePSPConverter.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>174.123.129.100</ip>
	<as>AS36420, AS30315, AS13749, AS21844</as>
	<review>174.123.129.100</review>
	<domain>freeease.net</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@theplanet.com</email>
	<inetnum>174.120.0.0 - 174.123.255.255</inetnum>
	<netname>NETBLK-THEPLANET-BLK-16</netname>
	<descr><![CDATA[ThePlanet.com Internet Services, Inc. TPCM 315 Capitol Suite 205 Houston TX 77002]]></descr>
	<ns1>ns2.softlayer.com</ns1>
	<ns2>ns1.softlayer.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>74</line>
	<id>11233570</id>
	<first>1369086041</first>
	<last>0</last>
	<md5>70de0a786c6f1632ede27eb88f6e1e7c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=70de0a786c6f1632ede27eb88f6e1e7c</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[AdInstaller.E]]></virusname>
	<url><![CDATA[http://www.ezthemes.com/site_tempfiles/b1/10/theonering.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>65.61.101.143</ip>
	<as>AS30340</as>
	<review>65.61.101.143</review>
	<domain>ezthemes.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@tierpoint.com</email>
	<inetnum>65.61.96.0 - 65.61.127.255</inetnum>
	<netname>TIER-1</netname>
	<descr><![CDATA[Tierpoint, LLC TIERP 23403 E Mission Ave Liberty Lake WA 99019]]></descr>
	<ns1>ns001.webdevaz.com</ns1>
	<ns2>ns002.webdevaz.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>75</line>
	<id>11233569</id>
	<first>1369086041</first>
	<last>0</last>
	<md5>44030e847190625c5e4927d42dea8b89</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=44030e847190625c5e4927d42dea8b89</virustotal>
	<vt_score>5/46 (10.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[AdInstaller.E]]></virusname>
	<url><![CDATA[http://www.ezthemes.com/site_tempfiles/b1/06/wpooh02.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>65.61.101.143</ip>
	<as>AS30340</as>
	<review>65.61.101.143</review>
	<domain>ezthemes.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@tierpoint.com</email>
	<inetnum>65.61.96.0 - 65.61.127.255</inetnum>
	<netname>TIER-1</netname>
	<descr><![CDATA[Tierpoint, LLC TIERP 23403 E Mission Ave Liberty Lake WA 99019]]></descr>
	<ns1>ns001.webdevaz.com</ns1>
	<ns2>ns002.webdevaz.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>76</line>
	<id>11233568</id>
	<first>1369086041</first>
	<last>0</last>
	<md5>2d68c3fd9d64037bc3fbb1c11819b4d2</md5>
	<virustotal></virustotal>
	<vt_score>4/46 (8.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[AdInstaller.E]]></virusname>
	<url><![CDATA[http://www.ezthemes.com/site_tempfiles/b1/06/christmasmemoriesws.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>65.61.101.143</ip>
	<as>AS30340</as>
	<review>65.61.101.143</review>
	<domain>ezthemes.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@tierpoint.com</email>
	<inetnum>65.61.96.0 - 65.61.127.255</inetnum>
	<netname>TIER-1</netname>
	<descr><![CDATA[Tierpoint, LLC TIERP 23403 E Mission Ave Liberty Lake WA 99019]]></descr>
	<ns1>ns001.webdevaz.com</ns1>
	<ns2>ns002.webdevaz.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>77</line>
	<id>11233567</id>
	<first>1369080538</first>
	<last>0</last>
	<md5>091794ef2fbacb6598315e3b9f3f10d8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=091794ef2fbacb6598315e3b9f3f10d8</virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[JS%2FRedirector.BX.3]]></virusname>
	<url><![CDATA[http://vedak3.narod.ru/625.html]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>193.109.247.224</ip>
	<as>ASNA.193.109.246.0 - 193.109.247.255</as>
	<review>193.109.247.224</review>
	<domain>narod.ru</domain>
	<country>VG</country>
	<source>RIPE</source>
	<email>abuse@compubyte.vg</email>
	<inetnum>193.109.246.0 - 193.109.247.255</inetnum>
	<netname>UCOZ-NET</netname>
	<descr><![CDATA[Compubyte Limited]]></descr>
	<ns1>ns5.yandex.ru</ns1>
	<ns2>ns.narod.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>78</line>
	<id>11233566</id>
	<first>1369086041</first>
	<last>0</last>
	<md5>44030e847190625c5e4927d42dea8b89</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=44030e847190625c5e4927d42dea8b89</virustotal>
	<vt_score>5/46 (10.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[AdInstaller.E]]></virusname>
	<url><![CDATA[http://www.ezthemes.com/site_tempfiles/b1/02/phvdaywp.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>65.61.101.143</ip>
	<as>AS30340</as>
	<review>65.61.101.143</review>
	<domain>ezthemes.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@tierpoint.com</email>
	<inetnum>65.61.96.0 - 65.61.127.255</inetnum>
	<netname>TIER-1</netname>
	<descr><![CDATA[Tierpoint, LLC TIERP 23403 E Mission Ave Liberty Lake WA 99019]]></descr>
	<ns1>ns002.webdevaz.com</ns1>
	<ns2>ns001.webdevaz.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>79</line>
	<id>11233562</id>
	<first>1369080520</first>
	<last>0</last>
	<md5>683042bba7c9bc401efa41315a924203</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=683042bba7c9bc401efa41315a924203</virustotal>
	<vt_score>4/41 (9.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[winnow.compromised.ts.zeuscgi.1]]></virusname>
	<url><![CDATA[http://www.iamhickman.com/wp-content/themes/wasteland/tebol.html]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>208.113.161.234</ip>
	<as>AS26347</as>
	<review>208.113.161.234</review>
	<domain>iamhickman.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@dreamhost.com</email>
	<inetnum>208.113.128.0 - 208.113.223.255</inetnum>
	<netname>DREAMHOST-BLK6</netname>
	<descr><![CDATA[New Dream Network, LLC NDN 10 Pointe Drive Suite 235 Brea CA 92821]]></descr>
	<ns1>ns1.dreamhost.com</ns1>
	<ns2>ns2.dreamhost.com</ns2>
	<ns3>ns3.dreamhost.com</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>80</line>
	<id>11233560</id>
	<first>1369086040</first>
	<last>0</last>
	<md5>88bf4aa4bf27881307fd0b3dd2185953</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=88bf4aa4bf27881307fd0b3dd2185953</virustotal>
	<vt_score>39/45 (86.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[W32%2FInduc.A]]></virusname>
	<url><![CDATA[http://www.duliip.com/soft/gy-enyinghaotong%E8%80%81.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>118.126.11.3</ip>
	<as>ASNA.118.126.0.0 - 118.126.31.255</as>
	<review>118.126.11.3</review>
	<domain>duliip.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>yjjk@vip.qq.com</email>
	<inetnum>118.126.0.0 - 118.126.31.255</inetnum>
	<netname>ZSN</netname>
	<descr><![CDATA[Shanghai Chenyi Network Technology Co.,LtdFloor 16, Fudan Software Park, No. 15 Changyi Road, BaoshanShanghai,China]]></descr>
	<ns1>dns24.hichina.com</ns1>
	<ns2>dns23.hichina.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>81</line>
	<id>11233558</id>
	<first>1369086039</first>
	<last>0</last>
	<md5>84f2f539a86920ec2610c927e1fa6e4f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=84f2f539a86920ec2610c927e1fa6e4f</virustotal>
	<vt_score>4/35 (11.4%)</vt_score>
	<scanner>Antiy_AVL</scanner>
	<virusname><![CDATA[AdWare%2FWin32.Agent.gen]]></virusname>
	<url><![CDATA[http://www.downloadstock.biz/software/Stun-Guns-and-Tasers-Application_84819.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>5.9.41.118</ip>
	<as>AS24940</as>
	<review>5.9.41.118</review>
	<domain>downloadstock.biz</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>abuse@hetzner.de</email>
	<inetnum>5.9.0.0 - 5.9.255.255</inetnum>
	<netname>DE-HETZNER-20120425</netname>
	<descr><![CDATA[Hetzner Online AG]]></descr>
	<ns1>ns6.racom-net.com</ns1>
	<ns2>ns2.racom-net.com</ns2>
	<ns3>ns1.racom-net.com</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>82</line>
	<id>11233557</id>
	<first>1369080516</first>
	<last>0</last>
	<md5>3db5b337922d24f1901474408c1be043</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3db5b337922d24f1901474408c1be043</virustotal>
	<vt_score>32/44 (72.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FMeredrop.A.681]]></virusname>
	<url><![CDATA[http://patch2.800vod.com/newpatch24/nfsutrn2.rar]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.153.183.99</ip>
	<as>AS4134</as>
	<review>61.153.183.99</review>
	<domain>800vod.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti_spam@mail.huptt.zj.cn</email>
	<inetnum>61.153.183.96 - 61.153.183.111</inetnum>
	<netname>SHANGHAI-TIANYOU-LTD</netname>
	<descr><![CDATA[Shanghai Tianyou Software Corporatgion Ltd.]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>83</line>
	<id>11233556</id>
	<first>1369086039</first>
	<last>0</last>
	<md5>e5e9bc89658cb5460bbaae74cbb07996</md5>
	<virustotal></virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.KillProc.20538]]></virusname>
	<url><![CDATA[http://www.download-jigsaw-puzzles.com/downloads25/1387772E.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>66.117.4.63</ip>
	<as>AS17139</as>
	<review>66.117.4.63</review>
	<domain>download-jigsaw-puzzles.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@corporatecolo.com</email>
	<inetnum>66.117.0.0 - 66.117.15.255</inetnum>
	<netname>CORPCOLO-NET02</netname>
	<descr><![CDATA[Corporate Colocation Inc. CORPO-6 2109 MICHELTORENA STREET LOS ANGELES CA 90039]]></descr>
	<ns1>ns2.inmotionhosting.com</ns1>
	<ns2>ns.inmotionhosting.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>84</line>
	<id>11233539</id>
	<first>1369080493</first>
	<last>0</last>
	<md5>3db5b337922d24f1901474408c1be043</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3db5b337922d24f1901474408c1be043</virustotal>
	<vt_score>32/44 (72.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FMeredrop.A.681]]></virusname>
	<url><![CDATA[http://patch2.51mag.com/newpatch24/nfsutrn2.rar]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.153.183.99</ip>
	<as>AS4134</as>
	<review>61.153.183.99</review>
	<domain>51mag.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti_spam@mail.huptt.zj.cn</email>
	<inetnum>61.153.183.96 - 61.153.183.111</inetnum>
	<netname>SHANGHAI-TIANYOU-LTD</netname>
	<descr><![CDATA[Shanghai Tianyou Software Corporatgion Ltd.]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>85</line>
	<id>11233513</id>
	<first>1369086035</first>
	<last>0</last>
	<md5>72a2c5bfbf7a022e6ef5a12233ca1e5b</md5>
	<virustotal></virustotal>
	<vt_score>25/44 (56.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FStartPage.BJ]]></virusname>
	<url><![CDATA[http://www.cswh.net/soft/flashplayer104.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.132.118.172</ip>
	<as>AS23650</as>
	<review>61.132.118.172</review>
	<domain>cswh.net</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.132.0.0 - 61.132.127.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>ns1.cnolnic.net</ns1>
	<ns2>ns2.cnolnic.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>86</line>
	<id>11233512</id>
	<first>1369086035</first>
	<last>0</last>
	<md5>addd5a92490cae1123cd0324d130f36e</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.RCBH1EK]]></virusname>
	<url><![CDATA[http://www.cprya.com/CPRYA.com/CPRYAPAD/CPRYA-Old-1912-Car.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>174.138.160.171</ip>
	<as>AS27699</as>
	<review>174.138.160.171</review>
	<domain>cprya.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@securedservers.com</email>
	<inetnum>174.138.160.0 - 174.138.175.255</inetnum>
	<netname>SECUREDSERVERS</netname>
	<descr><![CDATA[SECURED SERVERS LLC SSL-65 2353 W University Bldg A Tempe AZ 85281 AS32164]]></descr>
	<ns1>ns3.gigilist.com</ns1>
	<ns2>ns4.gigilist.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>87</line>
	<id>11233508</id>
	<first>1369086034</first>
	<last>0</last>
	<md5>c9d07bc655e40cb0d8bf64f259f4e075</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c9d07bc655e40cb0d8bf64f259f4e075</virustotal>
	<vt_score>4/46 (8.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware.Win32.RelevantKnowledge.AMN+%28A%29]]></virusname>
	<url><![CDATA[http://www.chris-pc.com/files03/setup_chrispc_free_youtube_downloader_converter_4_00.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>174.121.249.143</ip>
	<as>AS36420, AS30315, AS13749, AS21844</as>
	<review>174.121.249.143</review>
	<domain>chris-pc.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@theplanet.com</email>
	<inetnum>174.120.0.0 - 174.123.255.255</inetnum>
	<netname>NETBLK-THEPLANET-BLK-16</netname>
	<descr><![CDATA[ThePlanet.com Internet Services, Inc. TPCM 315 Capitol Suite 205 Houston TX 77002]]></descr>
	<ns1>ns1.softlayer.com</ns1>
	<ns2>ns2.softlayer.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>88</line>
	<id>11233507</id>
	<first>1369086034</first>
	<last>0</last>
	<md5>5960efb1c88fd16acb0c56e4a0f14c1a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5960efb1c88fd16acb0c56e4a0f14c1a</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.StartPage.33111]]></virusname>
	<url><![CDATA[http://www.cd-mp3.org/MP32CD.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>50.87.20.214</ip>
	<as>AS11798</as>
	<review>50.87.20.214</review>
	<domain>cd-mp3.org</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>netops@bluehost.com</email>
	<inetnum>50.87.0.0 - 50.87.255.255</inetnum>
	<netname>BLUEHOST-NETWORK-9</netname>
	<descr><![CDATA[Bluehost Inc. BLUEH-2 1958 South 950 East Provo UT 84606]]></descr>
	<ns1>ns36.domaincontrol.com</ns1>
	<ns2>ns35.domaincontrol.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>89</line>
	<id>11233506</id>
	<first>1369086033</first>
	<last>0</last>
	<md5>c14e3b8ccfbcbcefcb34d315ab1bdd4d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c14e3b8ccfbcbcefcb34d315ab1bdd4d</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>Jiangmin</scanner>
	<virusname><![CDATA[Backdoor%2FIRCBot.khl]]></virusname>
	<url><![CDATA[http://www.calamityjaneexpress.net/calamityjaneexpress%28r%29.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>194.109.6.98</ip>
	<as>AS3265</as>
	<review>194.109.6.98</review>
	<domain>calamityjaneexpress.net</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>abuse@xs4all.nl</email>
	<inetnum>194.109.6.0 - 194.109.6.255</inetnum>
	<netname>XS4ALL</netname>
	<descr><![CDATA[XS4ALL Internet BVBackbone networkXS4ALL Networking]]></descr>
	<ns1>ns.xs4all.nl</ns1>
	<ns2>ns2.xs4all.nl</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>90</line>
	<id>11233505</id>
	<first>1369086033</first>
	<last>0</last>
	<md5>303f371a07bdb057f20eee01310c2f8f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=303f371a07bdb057f20eee01310c2f8f</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Obfuscated_FA]]></virusname>
	<url><![CDATA[http://www.caigoumi.com/extension/caigoumi.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.29.67.46</ip>
	<as>AS53850</as>
	<review>23.29.67.46</review>
	<domain>caigoumi.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@GorillaServers.com</email>
	<inetnum>23.29.64.0 - 23.29.79.255</inetnum>
	<netname>GSI</netname>
	<descr><![CDATA[GorillaServers, Inc. GORIL-3 800 S Hope St Suite B100 Los Angeles CA 90017]]></descr>
	<ns1>ns4.name.com</ns1>
	<ns2>ns2fhn.domain-resolution.net</ns2>
	<ns3>ns1.domain-resolution.net</ns3>
	<ns4>ns2.name.com</ns4>
	<ns5>ns3cna.domain-resolution.net</ns5>
</entry>
<entry>
	<line>91</line>
	<id>11233500</id>
	<first>1369086030</first>
	<last>0</last>
	<md5>cfdfb46bf35a9ef309f7ca6b26bfd565</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=cfdfb46bf35a9ef309f7ca6b26bfd565</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://www.atsz.net/sessmgr.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>101.226.4.137</ip>
	<as>AS4812</as>
	<review>101.226.4.137</review>
	<domain>atsz.net</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>wengwq@online.sh.cn</email>
	<inetnum>101.224.0.0 - 101.231.255.255</inetnum>
	<netname>CHINANET-SH</netname>
	<descr><![CDATA[CHINANET SHANGHAI PROVINCE NETWORKChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>ns.cdnhost.cn</ns1>
	<ns2>ns.dnsfamily.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>92</line>
	<id>11233498</id>
	<first>1369086030</first>
	<last>0</last>
	<md5>2d1a1f9e5ba3755f9392223ddd0a944e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=2d1a1f9e5ba3755f9392223ddd0a944e</virustotal>
	<vt_score>15/36 (41.7%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8793991]]></virusname>
	<url><![CDATA[http://www.asd-ms.com/ss75/SniperSpyInstallerSetup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>173.201.18.163</ip>
	<as>AS26496</as>
	<review>173.201.18.163</review>
	<domain>asd-ms.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@godaddy.com</email>
	<inetnum>173.201.0.0 - 173.201.255.255</inetnum>
	<netname>GO-DADDY-SOFTWARE-INC</netname>
	<descr><![CDATA[GoDaddy.com, Inc. GODAD 14455 N Hayden Road Suite 226 Scottsdale AZ 85260]]></descr>
	<ns1>ns2.asd-ms.com</ns1>
	<ns2>ns1.asd-ms.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>93</line>
	<id>11233494</id>
	<first>1369080446</first>
	<last>0</last>
	<md5>8ef5ec30032db4402d0145fa0d94aaed</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8ef5ec30032db4402d0145fa0d94aaed</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[HTML%2FFramer.DO.229]]></virusname>
	<url><![CDATA[http://gpssies.com/]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>69.170.135.92</ip>
	<as>AS16805, AS22576</as>
	<review>69.170.135.92</review>
	<domain>gpssies.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@layeredtech.com</email>
	<inetnum>69.170.128.0 - 69.170.143.255</inetnum>
	<netname>LAYERED-TECH-NET3</netname>
	<descr><![CDATA[Layered Technologies, Inc. LAYER-3 5085 W Park Blvd Suite 700 Plano TX 75093]]></descr>
	<ns1>ns1.parklogic.com</ns1>
	<ns2>ns3.parklogic.com</ns2>
	<ns3>ns2.parklogic.com</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>94</line>
	<id>11233490</id>
	<first>1369086028</first>
	<last>0</last>
	<md5>22219b6c96921656b4da63d6ff94e9d4</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=22219b6c96921656b4da63d6ff94e9d4</virustotal>
	<vt_score>23/47 (48.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[WORM%2FRbot.Gen]]></virusname>
	<url><![CDATA[http://www.9aq.com/ktz.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>122.224.19.168</ip>
	<as>AS4809</as>
	<review>122.224.19.168</review>
	<domain>9aq.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>122.224.0.0 - 122.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032China Telecom Zhejiang Province]]></descr>
	<ns1>pdns03.domaincontrol.com</ns1>
	<ns2>pdns04.domaincontrol.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>95</line>
	<id>11233488</id>
	<first>1369086027</first>
	<last>0</last>
	<md5>aacb0064be386383df2cef36bd5dec30</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=aacb0064be386383df2cef36bd5dec30</virustotal>
	<vt_score>34/47 (72.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.Gen8]]></virusname>
	<url><![CDATA[http://www7.0zz0.com/2013/05/19/04/986609106.jpg?.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>72.55.184.24</ip>
	<as>AS32613</as>
	<review>72.55.184.24</review>
	<domain>0zz0.com</domain>
	<country>CA</country>
	<source>ARIN</source>
	<email>abuse@noc.privatedns.com</email>
	<inetnum>72.55.128.0 - 72.55.191.255</inetnum>
	<netname>IWEB-BLK-03</netname>
	<descr><![CDATA[iWeb Technologies Inc. GIT-20 20, place du Commerce Montreal QC H3E-1Z6]]></descr>
	<ns1>ns2.0zz0.com</ns1>
	<ns2>ns1.0zz0.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>96</line>
	<id>11233485</id>
	<first>1369080406</first>
	<last>0</last>
	<md5>e0f77f62d4db984b36b23e064ce4752c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e0f77f62d4db984b36b23e064ce4752c</virustotal>
	<vt_score>34/46 (73.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen2]]></virusname>
	<url><![CDATA[http://a.coughstuffs.com/IC/GPLHBLite63/45645/0/3a2c84f1-2965-4765-add5-f2a09929ea40/XvidSetup.exe?rnd=80645]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>66.150.14.114</ip>
	<as>AS10912</as>
	<review>66.150.14.114</review>
	<domain>coughstuffs.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@internap.com</email>
	<inetnum>66.150.0.0 - 66.151.255.255</inetnum>
	<netname>PNAP-06-2001</netname>
	<descr><![CDATA[Internap Network Services Corporation PNAP 250 Williams Street Suite E100 Atlanta GA 30303]]></descr>
	<ns1>ns1.pinballcorp.com</ns1>
	<ns2>ns2.pinballcorp.com</ns2>
	<ns3>ns3.pinballcorp.com</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>97</line>
	<id>11233484</id>
	<first>1369086027</first>
	<last>0</last>
	<md5>e1527406ed3c521261c97b2a61ce3729</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e1527406ed3c521261c97b2a61ce3729</virustotal>
	<vt_score>5/36 (13.9%)</vt_score>
	<scanner>McAfee</scanner>
	<virusname><![CDATA[Proxy-Thrap]]></virusname>
	<url><![CDATA[http://www.3proxy.ru/0.6.1/tcppm.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>81.177.159.117</ip>
	<as>AS8342</as>
	<review>81.177.159.117</review>
	<domain>3proxy.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@rtcomm.ru</email>
	<inetnum>81.176.0.0 - 81.177.255.255</inetnum>
	<netname>RU-RTCOMM-20030115</netname>
	<descr><![CDATA[OJSC RTComm.RU]]></descr>
	<ns1>ns1.1gb.ru</ns1>
	<ns2>ns2.1gb.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>98</line>
	<id>11233480</id>
	<first>1369086026</first>
	<last>0</last>
	<md5>dd266d17609aa4b83b984ce55dbd1872</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=dd266d17609aa4b83b984ce55dbd1872</virustotal>
	<vt_score>24/45 (53.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.NSPM.Gen]]></virusname>
	<url><![CDATA[http://www1.nyy88.com/jxdlq.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>125.90.64.12</ip>
	<as>AS4134</as>
	<review>125.90.64.12</review>
	<domain>nyy88.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@gddc.com.cn</email>
	<inetnum>125.88.0.0 - 125.95.255.255</inetnum>
	<netname>CHINANET-GD</netname>
	<descr><![CDATA[CHINANET Guangdong province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>99</line>
	<id>11233479</id>
	<first>1369086026</first>
	<last>0</last>
	<md5>7b8b57b2014300a44957558053e0951c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7b8b57b2014300a44957558053e0951c</virustotal>
	<vt_score>16/45 (35.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://www.199you.com/yl.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>50.115.128.56</ip>
	<as>AS20248</as>
	<review>50.115.128.56</review>
	<domain>199you.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ops@take2hosting.com</email>
	<inetnum>50.115.128.0 - 50.115.143.255</inetnum>
	<netname>T2H-NET4-5</netname>
	<descr><![CDATA[Take 2 Hosting, Inc. T2H 5255 Stevens Creek Blvd. #217 Santa Clara CA 95051]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>100</line>
	<id>11233478</id>
	<first>1369086026</first>
	<last>0</last>
	<md5>b4baaa2be3fd964e83b506ead78b7583</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b4baaa2be3fd964e83b506ead78b7583</virustotal>
	<vt_score>25/38 (65.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FGendal.A.4362]]></virusname>
	<url><![CDATA[http://www.13668.com.cn/soft/arp_check.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>220.162.237.134</ip>
	<as>AS4134</as>
	<review>220.162.237.134</review>
	<domain>13668.com.cn</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>fjnic@fjdcb.fz.fj.cn</email>
	<inetnum>220.160.0.0 - 220.162.255.255</inetnum>
	<netname>CHINANET-FJ</netname>
	<descr><![CDATA[CHINANET Fujian province networkData Communication DivisionChina Telecom]]></descr>
	<ns1>dns24.hichina.com</ns1>
	<ns2>dns23.hichina.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>101</line>
	<id>11233471</id>
	<first>1369086026</first>
	<last>0</last>
	<md5>a6895306746f820480d0058eb9488ee9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a6895306746f820480d0058eb9488ee9</virustotal>
	<vt_score>5/36 (13.9%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Trojan.Server]]></virusname>
	<url><![CDATA[http://www.029saas.com:502/ebclient.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>117.34.88.121</ip>
	<as>AS4134</as>
	<review>117.34.88.121</review>
	<domain>029saas.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>117.32.0.0 - 117.39.255.255</inetnum>
	<netname>CHINANET-SN</netname>
	<descr><![CDATA[CHINANET Shanxi(SN) province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns14.dns.com.cn</ns1>
	<ns2>ns13.dns.com.cn</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>102</line>
	<id>11233449</id>
	<first>1369080378</first>
	<last>0</last>
	<md5>6c433f7e8e9ea8aa7ecd20b31d7010b9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6c433f7e8e9ea8aa7ecd20b31d7010b9</virustotal>
	<vt_score>36/47 (76.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FGraftor.Elzob.15338.1]]></virusname>
	<url><![CDATA[http://a.kwik-search.com/IC/GPLAppBundler95/45918/4/0312fe77-3065-4e7f-99dd-1f372edf2618/7zipSetup.exe?rnd=81877]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>66.150.14.116</ip>
	<as>AS10912</as>
	<review>66.150.14.116</review>
	<domain>kwik-search.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@internap.com</email>
	<inetnum>66.150.0.0 - 66.151.255.255</inetnum>
	<netname>PNAP-06-2001</netname>
	<descr><![CDATA[Internap Network Services Corporation PNAP 250 Williams Street Suite E100 Atlanta GA 30303]]></descr>
	<ns1>ns3.pinballcorp.com</ns1>
	<ns2>ns2.pinballcorp.com</ns2>
	<ns3>ns1.pinballcorp.com</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>103</line>
	<id>11233443</id>
	<first>1369080376</first>
	<last>0</last>
	<md5>1a5406679cccf714e658b618e6a7b555</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1a5406679cccf714e658b618e6a7b555</virustotal>
	<vt_score>22/36 (61.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[HTML%2FIFrame.akv]]></virusname>
	<url><![CDATA[http://www.sivilahotel.com/]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>92.48.68.146</ip>
	<as>AS29550</as>
	<review>92.48.68.146</review>
	<domain>sivilahotel.com</domain>
	<country>GB</country>
	<source>RIPE</source>
	<email>abuse@as29550.net</email>
	<inetnum>92.48.64.0 - 92.48.127.255</inetnum>
	<netname>UK-POUNDHOST-20071113</netname>
	<descr><![CDATA[Simply Transit Ltd]]></descr>
	<ns1>ns2012.ukvpshosting.com</ns1>
	<ns2>ns2013.ukvpshosting.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>104</line>
	<id>11233434</id>
	<first>1369086022</first>
	<last>0</last>
	<md5>c093d75b91366dd0633c2aa2b837fc5f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c093d75b91366dd0633c2aa2b837fc5f</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://wumingui8.3322.org:89/DvrOcx.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.76.85.39</ip>
	<as>AS4134</as>
	<review>218.76.85.39</review>
	<domain>3322.org</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>218.76.64.0 - 218.76.95.255</inetnum>
	<netname>CHINANET-HN-XX</netname>
	<descr><![CDATA[CHINANET-HN Jishou node networkhunan Telecom]]></descr>
	<ns1>ns2.3322.net</ns1>
	<ns2>ns1.3322.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>105</line>
	<id>11233433</id>
	<first>1369080346</first>
	<last>0</last>
	<md5>c6e43e71d1511a4e8784b83771d22c12</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c6e43e71d1511a4e8784b83771d22c12</virustotal>
	<vt_score>36/47 (76.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen2]]></virusname>
	<url><![CDATA[http://a.coughstuffs.com/ic/gplcplite70/45701/0/7db90275-ea3d-43b6-b2ed-4edb14d7c1ac/vlcsetup.exe?rnd=78973]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>66.150.14.116</ip>
	<as>AS10912</as>
	<review>66.150.14.115</review>
	<domain>coughstuffs.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@internap.com</email>
	<inetnum>66.150.0.0 - 66.151.255.255</inetnum>
	<netname>PNAP-06-2001</netname>
	<descr><![CDATA[Internap Network Services Corporation PNAP 250 Williams Street Suite E100 Atlanta GA 30303]]></descr>
	<ns1>ns1.pinballcorp.com</ns1>
	<ns2>ns3.pinballcorp.com</ns2>
	<ns3>ns2.pinballcorp.com</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>106</line>
	<id>11233432</id>
	<first>1369086022</first>
	<last>0</last>
	<md5>ca6e4f7a0379c6e08b7d13925894f48a</md5>
	<virustotal></virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_file_%24INSTDIR%2FMultiGo.exe]]></virusname>
	<url><![CDATA[http://wt9.52z.com/MultiGoaz.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.214</ip>
	<as>AS4837</as>
	<review>221.203.3.214</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>107</line>
	<id>11233431</id>
	<first>1369086022</first>
	<last>0</last>
	<md5>0d7c73444c8d7bfc8664fb94fd061bb1</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0d7c73444c8d7bfc8664fb94fd061bb1</virustotal>
	<vt_score>21/45 (46.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDldr.Murlo.hjx]]></virusname>
	<url><![CDATA[http://wt9.52z.com/KDVoice.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.214</ip>
	<as>AS4837</as>
	<review>221.203.3.214</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>108</line>
	<id>11233430</id>
	<first>1369086022</first>
	<last>0</last>
	<md5>4055f6f7800d2fbc2f32c2e7d685352b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4055f6f7800d2fbc2f32c2e7d685352b</virustotal>
	<vt_score>26/36 (72.2%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.XPACK.Gen3]]></virusname>
	<url><![CDATA[http://wt9.52z.com/jwdzh.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.214</ip>
	<as>AS4837</as>
	<review>221.203.3.214</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>109</line>
	<id>11233429</id>
	<first>1369086022</first>
	<last>0</last>
	<md5>a57a1378598e3e0cdd139a98c2236d1a</md5>
	<virustotal></virustotal>
	<vt_score>32/45 (71.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.XPACK.Gen3]]></virusname>
	<url><![CDATA[http://wt9.52z.com/apXingHao.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.214</ip>
	<as>AS4837</as>
	<review>221.203.3.214</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>110</line>
	<id>11233428</id>
	<first>1369086021</first>
	<last>0</last>
	<md5>4c71a7c3fc4f81d486e223e428f3b23f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4c71a7c3fc4f81d486e223e428f3b23f</virustotal>
	<vt_score>31/46 (67.4%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Win.Trojan.Agent-204211]]></virusname>
	<url><![CDATA[http://wt9.52z.com/aolaxin.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.214</ip>
	<as>AS4837</as>
	<review>221.203.3.214</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>111</line>
	<id>11233427</id>
	<first>1369086021</first>
	<last>0</last>
	<md5>ff96aff43d7a8e6471f2ad031ccf10d3</md5>
	<virustotal></virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.RC9H1B4]]></virusname>
	<url><![CDATA[http://wt9.52z.com/addqb_setup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.214</ip>
	<as>AS4837</as>
	<review>221.203.3.214</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>112</line>
	<id>11233426</id>
	<first>1369080289</first>
	<last>0</last>
	<md5>0d1d14c3b1e0cf49f64fa450054a0d5c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0d1d14c3b1e0cf49f64fa450054a0d5c</virustotal>
	<vt_score>27/36 (75%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FGraftor.Elzob.15338.1]]></virusname>
	<url><![CDATA[http://a.abundance27.com/IC/GPLAppBundler95/45918/4/b553d7f8-b09b-4cd2-b89a-a9dd009f5eeb/eMuleSetup.exe?rnd=78833]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>66.150.14.116</ip>
	<as>AS10912</as>
	<review>66.150.14.114</review>
	<domain>abundance27.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@internap.com</email>
	<inetnum>66.150.0.0 - 66.151.255.255</inetnum>
	<netname>PNAP-06-2001</netname>
	<descr><![CDATA[Internap Network Services Corporation PNAP 250 Williams Street Suite E100 Atlanta GA 30303]]></descr>
	<ns1>ns2.pinballcorp.com</ns1>
	<ns2>ns3.pinballcorp.com</ns2>
	<ns3>ns1.pinballcorp.com</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>113</line>
	<id>11233425</id>
	<first>1369086021</first>
	<last>0</last>
	<md5>73591910817697dbb2c8dc8776938ab5</md5>
	<virustotal></virustotal>
	<vt_score>25/45 (55.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Generic+Trojan]]></virusname>
	<url><![CDATA[http://wt8.52z.com/zhiwujiangshi.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.212</ip>
	<as>AS4837</as>
	<review>221.203.3.212</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>114</line>
	<id>11233424</id>
	<first>1369086021</first>
	<last>0</last>
	<md5>cf8249abb2e8d70d451c95461dd15d13</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=cf8249abb2e8d70d451c95461dd15d13</virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://wt8.52z.com/xtss.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.212</ip>
	<as>AS4837</as>
	<review>221.203.3.212</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>115</line>
	<id>11233423</id>
	<first>1369086021</first>
	<last>0</last>
	<md5>37d9306e8702be0a2810fde0e0e764df</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=37d9306e8702be0a2810fde0e0e764df</virustotal>
	<vt_score>8/47 (17%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://wt8.52z.com/Rxhzwfz.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.212</ip>
	<as>AS4837</as>
	<review>221.203.3.212</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>116</line>
	<id>11233422</id>
	<first>1369086021</first>
	<last>0</last>
	<md5>5fa421d201f24316856677e1a3f1040b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5fa421d201f24316856677e1a3f1040b</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>CAT_QuickHeal</scanner>
	<virusname><![CDATA[%28Suspicious%29+-+DNAScan]]></virusname>
	<url><![CDATA[http://wt8.52z.com/qqman.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.212</ip>
	<as>AS4837</as>
	<review>221.203.3.212</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>117</line>
	<id>11233421</id>
	<first>1369086021</first>
	<last>0</last>
	<md5>f85f6ba9df44768dfb054b6460c9c4d8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f85f6ba9df44768dfb054b6460c9c4d8</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.RC1H1EF]]></virusname>
	<url><![CDATA[http://wt8.52z.com/MacroCTray.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.212</ip>
	<as>AS4837</as>
	<review>221.203.3.212</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>118</line>
	<id>11233419</id>
	<first>1369086021</first>
	<last>0</last>
	<md5>cf4af5af5929e52ed087c23ea80ba32d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=cf4af5af5929e52ed087c23ea80ba32d</virustotal>
	<vt_score>26/47 (55.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://wt8.52z.com/lhzsfz.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.212</ip>
	<as>AS4837</as>
	<review>221.203.3.212</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>119</line>
	<id>11233418</id>
	<first>1369086021</first>
	<last>0</last>
	<md5>4055f6f7800d2fbc2f32c2e7d685352b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4055f6f7800d2fbc2f32c2e7d685352b</virustotal>
	<vt_score>26/36 (72.2%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.XPACK.Gen3]]></virusname>
	<url><![CDATA[http://wt8.52z.com/jwdzh.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.212</ip>
	<as>AS4837</as>
	<review>221.203.3.212</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>120</line>
	<id>11233417</id>
	<first>1369086020</first>
	<last>0</last>
	<md5>460742e90fe8a31104332c73b0925f5f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=460742e90fe8a31104332c73b0925f5f</virustotal>
	<vt_score>23/42 (54.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.XPACK.Gen3]]></virusname>
	<url><![CDATA[http://wt8.52z.com/guiformat.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.212</ip>
	<as>AS4837</as>
	<review>221.203.3.212</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>121</line>
	<id>11233416</id>
	<first>1369086020</first>
	<last>0</last>
	<md5>40431698a46134970fa0d58b25d4bf4d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=40431698a46134970fa0d58b25d4bf4d</virustotal>
	<vt_score>25/45 (55.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Generic+Trojan]]></virusname>
	<url><![CDATA[http://wt7.52z.com/utoii.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.214</ip>
	<as>AS4837</as>
	<review>221.203.3.214</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>122</line>
	<id>11233415</id>
	<first>1369086020</first>
	<last>0</last>
	<md5>e635e31229629a8ef8e5e85b32f24ac8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e635e31229629a8ef8e5e85b32f24ac8</virustotal>
	<vt_score>41/45 (91.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[W32%2FAlmanahe.B]]></virusname>
	<url><![CDATA[http://wt7.52z.com/SpeedGame.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.214</ip>
	<as>AS4837</as>
	<review>221.203.3.214</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>123</line>
	<id>11233413</id>
	<first>1369086020</first>
	<last>0</last>
	<md5>cd7572615234bd6e847ba4478f238b5b</md5>
	<virustotal></virustotal>
	<vt_score>34/46 (73.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.XPACK.Gen3]]></virusname>
	<url><![CDATA[http://wt7.52z.com/QQSend_M.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.214</ip>
	<as>AS4837</as>
	<review>221.203.3.214</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>124</line>
	<id>11233411</id>
	<first>1369086020</first>
	<last>0</last>
	<md5>bc6f0003f38025bb0481735a427e9bcd</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=bc6f0003f38025bb0481735a427e9bcd</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://wt7.52z.com/GorgeousDeskset.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.214</ip>
	<as>AS4837</as>
	<review>221.203.3.214</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>125</line>
	<id>11233410</id>
	<first>1369086020</first>
	<last>0</last>
	<md5>200ae6688fd8125a9b09046265d8ade0</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=200ae6688fd8125a9b09046265d8ade0</virustotal>
	<vt_score>23/46 (50%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[SPR%2FAutoIt.Gen]]></virusname>
	<url><![CDATA[http://wt7.52z.com/bbaidpf.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.214</ip>
	<as>AS4837</as>
	<review>221.203.3.214</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>126</line>
	<id>11233409</id>
	<first>1369086019</first>
	<last>0</last>
	<md5>07ec235177896e7fb505b4b2c1f96cb9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=07ec235177896e7fb505b4b2c1f96cb9</virustotal>
	<vt_score>34/46 (73.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FBlack.Gen2]]></virusname>
	<url><![CDATA[http://wt7.52z.com/ACTrLNG.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.214</ip>
	<as>AS4837</as>
	<review>221.203.3.214</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>127</line>
	<id>11233408</id>
	<first>1369080182</first>
	<last>0</last>
	<md5>4a4d609de59ad7a7f140f44d7134599e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4a4d609de59ad7a7f140f44d7134599e</virustotal>
	<vt_score>11/36 (30.6%)</vt_score>
	<scanner>Avast</scanner>
	<virusname><![CDATA[HTML%3AScript-inf]]></virusname>
	<url><![CDATA[http://mitglied.multimania.de/dismelayl/nxkqxucxh.html]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>213.131.252.251</ip>
	<as>AS25074</as>
	<review>213.131.252.251</review>
	<domain>multimania.de</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>abuse@conversis.de</email>
	<inetnum>213.131.252.0 - 213.131.252.255</inetnum>
	<netname>DE-TRIPOD</netname>
	<descr><![CDATA[conversis GmbHCustomer PA Space]]></descr>
	<ns1>ns1.conversis.de</ns1>
	<ns2>ns2.conversis.de</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>128</line>
	<id>11233406</id>
	<first>1369086018</first>
	<last>0</last>
	<md5>c1541671af221160eeac685ece206c8c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c1541671af221160eeac685ece206c8c</virustotal>
	<vt_score>26/36 (72.2%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Win.Trojan.Agent-204211]]></virusname>
	<url><![CDATA[http://wt10.52z.com/lkwgssfz.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.212</ip>
	<as>AS4837</as>
	<review>221.203.3.212</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>129</line>
	<id>11233403</id>
	<first>1369086018</first>
	<last>0</last>
	<md5>66cdc664dbbe45ce53452ec892264f11</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=66cdc664dbbe45ce53452ec892264f11</virustotal>
	<vt_score>29/36 (80.6%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Dropper%2FWin32.Injector]]></virusname>
	<url><![CDATA[http://wt10.52z.com/dingshiqlb.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.203.3.212</ip>
	<as>AS4837</as>
	<review>221.203.3.212</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>221.200.0.0 - 221.203.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning Province NetworkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>130</line>
	<id>11233399</id>
	<first>1369080163</first>
	<last>0</last>
	<md5>45179c74c2f7d4a98680c44d7ff84caf</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=45179c74c2f7d4a98680c44d7ff84caf</virustotal>
	<vt_score>7/47 (14.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Redirector.JS.AU]]></virusname>
	<url><![CDATA[http://www.paris-hilton-sidekick.net/maya_shoes/1.html]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>64.6.107.4</ip>
	<as>AS30266</as>
	<review>64.6.107.4</review>
	<domain>paris-hilton-sidekick.net</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>poc@a1colo.com</email>
	<inetnum>64.6.96.0 - 64.6.111.255</inetnum>
	<netname>A1COLO</netname>
	<descr><![CDATA[A1COLO.COM A1COL PMB #241 3089 - C CLAIREMONT DR. San Diego CA 92117]]></descr>
	<ns1>ns2.phatservers.com</ns1>
	<ns2>ns1.phatservers.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>131</line>
	<id>11233395</id>
	<first>1369086017</first>
	<last>0</last>
	<md5>e03b509d08134e9599df5a0cc5833455</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e03b509d08134e9599df5a0cc5833455</virustotal>
	<vt_score>16/36 (44.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FNaviPromo.J]]></virusname>
	<url><![CDATA[http://wrapapp.net/Temp/FacebookEmoticonsSetup_985996618_400612_3035.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>207.182.140.50</ip>
	<as>AS10297</as>
	<review>209.135.141.122</review>
	<domain>wrapapp.net</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ipadmin@primary.net</email>
	<inetnum>207.182.128.0 - 207.182.143.255</inetnum>
	<netname>INLINK97</netname>
	<descr><![CDATA[InLink Communications Company INLK P.O. Box 410890 St. Louis MO 63141]]></descr>
	<ns1>ns73.domaincontrol.com</ns1>
	<ns2>ns74.domaincontrol.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>132</line>
	<id>11233394</id>
	<first>1369086017</first>
	<last>0</last>
	<md5>71c1ff727b3f9d3a12eae77fc8a7c38f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=71c1ff727b3f9d3a12eae77fc8a7c38f</virustotal>
	<vt_score>6/36 (16.7%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Win.Trojan.Mepaow-273]]></virusname>
	<url><![CDATA[http://woyaofa.org/ddz/fengkuang/shengji.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.47.10.141</ip>
	<as>AS17964</as>
	<review>115.47.10.141</review>
	<domain>woyaofa.org</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>donglin@xrnet.cn</email>
	<inetnum>115.47.0.0 - 115.47.255.255</inetnum>
	<netname>XRNET</netname>
	<descr><![CDATA[Beijing XiRang Media Cultural Co., Ltd.Build A6-1702,Fenghuahaojing,No.6 Guanganmennei RoadXuanwu, Beijing, China, 100053]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>133</line>
	<id>11233393</id>
	<first>1369080158</first>
	<last>0</last>
	<md5>5142f526cb88b9ed56b702f90c30e6c5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5142f526cb88b9ed56b702f90c30e6c5</virustotal>
	<vt_score>21/36 (58.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[JS%2FBlacole.HY]]></virusname>
	<url><![CDATA[http://paimia.com/life/200912-paimia-&amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp/;amp/;amp/;atilde/;&amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp/;amp/;amp/;brvbar/;&amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp/;amp/;amp/;acirc/;&amp;amp;amp;amp;amp;amp;amp;amp;am]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>141.101.117.157</ip>
	<as>AS13335</as>
	<review>141.101.117.157</review>
	<domain>paimia.com</domain>
	<country>EU</country>
	<source>RIPE</source>
	<email></email>
	<inetnum>141.101.64.0 - 141.101.127.255</inetnum>
	<netname></netname>
	<descr><![CDATA[]]></descr>
	<ns1>edna.ns.cloudflare.com</ns1>
	<ns2>dave.ns.cloudflare.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>134</line>
	<id>11233392</id>
	<first>1369080078</first>
	<last>0</last>
	<md5>58f3084e453debda662d935edb9f2182</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=58f3084e453debda662d935edb9f2182</virustotal>
	<vt_score>21/35 (60%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[JS%2FBlacole.IT.1]]></virusname>
	<url><![CDATA[http://www.teenbloggerkid.com/blogger-vs-wordpress-who&amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;atilde;&amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;cent;&amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp;amp%3]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>174.120.119.93</ip>
	<as>AS36420, AS30315, AS13749, AS21844</as>
	<review>174.120.119.93</review>
	<domain>teenbloggerkid.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@theplanet.com</email>
	<inetnum>174.120.0.0 - 174.123.255.255</inetnum>
	<netname>NETBLK-THEPLANET-BLK-16</netname>
	<descr><![CDATA[ThePlanet.com Internet Services, Inc. TPCM 315 Capitol Suite 205 Houston TX 77002]]></descr>
	<ns1>ns1973.hostgator.com</ns1>
	<ns2>ns1974.hostgator.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>135</line>
	<id>11233391</id>
	<first>1369086016</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://wm.58.filmwit.com/down/ys5/70244.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>136</line>
	<id>11233390</id>
	<first>1369086016</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://wj.3o.filmwit.com/down/ar3/49093.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>137</line>
	<id>11233389</id>
	<first>1369086016</first>
	<last>0</last>
	<md5>8463ebc45db3045f835a78d18e22c021</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8463ebc45db3045f835a78d18e22c021</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://winzip.todownload.com/get/file/id/846984/?lp=adwords&amp;/;gcl&lt;/;br/&gt;/;id=cl-jiiduobucffbdmgodxqqaba&amp;/;s=dncg6j-h1olxtcjnooxjpa&a;&lt;/;br/&gt;/;mp/;t=1377439771&amp;/;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1526.awsdns-62.org</ns1>
	<ns2>ns-1654.awsdns-14.co.uk</ns2>
	<ns3>ns-163.awsdns-20.com</ns3>
	<ns4>ns-830.awsdns-39.net</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>138</line>
	<id>11233388</id>
	<first>1369080029</first>
	<last>0</last>
	<md5>7b4f67666801f4be2a776fa1a0492d9c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7b4f67666801f4be2a776fa1a0492d9c</virustotal>
	<vt_score>6/36 (16.7%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[WIN.Adware.Solimba-3]]></virusname>
	<url><![CDATA[http://cdn.msdwnld.com//cache/r9.off.dwnldit.com/it/install_Apache_OpenOffice_incubating_3.4.0_Win_x86_install_es.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>198.199.125.173</ip>
	<as>AS14061</as>
	<review>91.121.203.233</review>
	<domain>msdwnld.com</domain>
	<country>FR</country>
	<source>RIPE</source>
	<email>abuse@ovh.net</email>
	<inetnum>198.199.64.0 - 198.199.127.255</inetnum>
	<netname>OVH</netname>
	<descr><![CDATA[OVH SASDedicated Servershttp]]></descr>
	<ns1>pdns02.domaincontrol.com</ns1>
	<ns2>pdns01.domaincontrol.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>139</line>
	<id>11233387</id>
	<first>1369086016</first>
	<last>0</last>
	<md5>70b39ab8b69aa1b3836de0e376441326</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=70b39ab8b69aa1b3836de0e376441326</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://winzip.todownload.com/get/file/id/846984/?lp=adwords&amp;/;gclid=c&lt;/;br/&gt;/;l-jiiduobucffbdmgodxqqaba&amp;/;s=dncg6j-h1olxtcjnooxjpa&amp;/;t=1377439&lt;/;br/&gt;/;771&amp;/;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1654.awsdns-14.co.uk</ns2>
	<ns3>ns-163.awsdns-20.com</ns3>
	<ns4>ns-1526.awsdns-62.org</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>140</line>
	<id>11233386</id>
	<first>1369086015</first>
	<last>0</last>
	<md5>0e268b84227612c97a333cbf510de139</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0e268b84227612c97a333cbf510de139</virustotal>
	<vt_score>20/47 (42.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://winzip.todownload.com/get/file/id/846984/index.html?lp=adwords&&&&gclid;=cl-jiiduobucffbdmgodxqqaba&&&&s;=dncg6j-h1olxtcjnooxjpa&&a;%2F;mp%2F;t=1377439771&&&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1654.awsdns-14.co.uk</ns2>
	<ns3>ns-163.awsdns-20.com</ns3>
	<ns4>ns-1526.awsdns-62.org</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>141</line>
	<id>11233385</id>
	<first>1369086015</first>
	<last>0</last>
	<md5>c37998f9b3cddb629ddbf5a1636ad498</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c37998f9b3cddb629ddbf5a1636ad498</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://winzip.todownload.com/get/file/id/846984/index.html?lp=adwords&gclid;%2F;&lt;br%2F&gt;=ckqiw-unolucfuqf4aodr3qacq&s;%2F;=zpr8u5ghvjnqozfcqg3pzq&t;%2F;=1&lt;br%2F&gt;377386578&ext;%2F;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1654.awsdns-14.co.uk</ns2>
	<ns3>ns-163.awsdns-20.com</ns3>
	<ns4>ns-1526.awsdns-62.org</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>142</line>
	<id>11233384</id>
	<first>1369086015</first>
	<last>0</last>
	<md5>7207bbc5382fcd543cfde8bf9c176273</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7207bbc5382fcd543cfde8bf9c176273</virustotal>
	<vt_score>20/47 (42.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://winzip.todownload.com/get/file/id/846984/index.html?lp=adwords&amp;/;gc&amp;lt;br/&amp;gt;lid=cl-jiiduobucffbdmgodxqqaba&amp;/;s=dncg6j-h1olxtcjnooxjpa&amp;lt;br/&amp;gt;&amp;/;t=1377439771&amp;/;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1654.awsdns-14.co.uk</ns2>
	<ns3>ns-163.awsdns-20.com</ns3>
	<ns4>ns-1526.awsdns-62.org</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>143</line>
	<id>11233382</id>
	<first>1369086015</first>
	<last>0</last>
	<md5>b4827e3dea475b271e0aaed3c030dc71</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b4827e3dea475b271e0aaed3c030dc71</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://winzip.todownload.com/get/file/id/846984/index.html?lp=adwords&&amp;%2F;gclid=cl-jiiduobucffbdmgodxqqaba&&amp;%2F;s=dncg6j-h1olxtcjnooxjpa&amp;%2F&%2F;t=1377439771&&amp;%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1526.awsdns-62.org</ns1>
	<ns2>ns-830.awsdns-39.net</ns2>
	<ns3>ns-163.awsdns-20.com</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>144</line>
	<id>11233381</id>
	<first>1369086015</first>
	<last>0</last>
	<md5>5c251ebc71c9591c6e893a9326aeba64</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5c251ebc71c9591c6e893a9326aeba64</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://winzip.todownload.com/get/file/id/846984/index.html?lp=adwords&amp;%2F;gclid=cl-jiiduobucffbdmgodxqqaba&amp;%2F;s=dncg6j-h1olxtcjnooxjpa&amp;%2F&%2F;t=1377439771&amp;%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1526.awsdns-62.org</ns1>
	<ns2>ns-830.awsdns-39.net</ns2>
	<ns3>ns-163.awsdns-20.com</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>145</line>
	<id>11233380</id>
	<first>1369086015</first>
	<last>0</last>
	<md5>8f22cd4fdddb379ca3969c8e10ba3250</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8f22cd4fdddb379ca3969c8e10ba3250</virustotal>
	<vt_score>20/47 (42.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://winzip.todownload.com/get/file/id/846984/index.html?lp=adwor%20ds&%2F;gclid=cl-jiiduobucffbdmgodxqqaba&%2F;s=dncg6j-h%201olxtcjnooxjpa&%2F&%2F;t=1377439771&%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1526.awsdns-62.org</ns1>
	<ns2>ns-830.awsdns-39.net</ns2>
	<ns3>ns-163.awsdns-20.com</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>146</line>
	<id>11233379</id>
	<first>1369086014</first>
	<last>0</last>
	<md5>cee7844182d667646f2f4ae6da490f6b</md5>
	<virustotal></virustotal>
	<vt_score>3/46 (6.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Adware.Downware.1125]]></virusname>
	<url><![CDATA[http://winportal.nl/quake-live/downloaden/quake-live.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.243.28.226</ip>
	<as>AS16509</as>
	<review>54.243.28.226</review>
	<domain>winportal.nl</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.242.0.0 - 54.243.255.255</inetnum>
	<netname>AMAZO-ZIAD1</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1146.awsdns-15.org</ns1>
	<ns2>ns-868.awsdns-44.net</ns2>
	<ns3>ns-509.awsdns-63.com</ns3>
	<ns4>ns-1699.awsdns-20.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>147</line>
	<id>11233378</id>
	<first>1369086014</first>
	<last>0</last>
	<md5>a9f5c4b1a83be4f1b3081d8d1f610cd5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a9f5c4b1a83be4f1b3081d8d1f610cd5</virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Adware.Downware.1125]]></virusname>
	<url><![CDATA[http://winportal.nl/fifa-12/downloaden/fifa-12.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.243.28.226</ip>
	<as>AS16509</as>
	<review>54.243.28.226</review>
	<domain>winportal.nl</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.242.0.0 - 54.243.255.255</inetnum>
	<netname>AMAZO-ZIAD1</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1146.awsdns-15.org</ns1>
	<ns2>ns-868.awsdns-44.net</ns2>
	<ns3>ns-509.awsdns-63.com</ns3>
	<ns4>ns-1699.awsdns-20.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>148</line>
	<id>11233377</id>
	<first>1369086014</first>
	<last>0</last>
	<md5>75c67b03ee7480b473cc264fe14c8d0f</md5>
	<virustotal></virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Adware.Downware.1125]]></virusname>
	<url><![CDATA[http://winportal.nl/dungeon-defenders/downloaden/dungeon-defenders.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.243.28.226</ip>
	<as>AS16509</as>
	<review>54.243.28.226</review>
	<domain>winportal.nl</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.242.0.0 - 54.243.255.255</inetnum>
	<netname>AMAZO-ZIAD1</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1146.awsdns-15.org</ns1>
	<ns2>ns-868.awsdns-44.net</ns2>
	<ns3>ns-509.awsdns-63.com</ns3>
	<ns4>ns-1699.awsdns-20.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>149</line>
	<id>11233375</id>
	<first>1369080008</first>
	<last>0</last>
	<md5>663f3f6855a469162bba36cfb8b24be5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=663f3f6855a469162bba36cfb8b24be5</virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[JS%2FiFrame.axm]]></virusname>
	<url><![CDATA[http://ruecottenchy.free.fr/]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>212.27.63.114</ip>
	<as>AS12322</as>
	<review>212.27.63.114</review>
	<domain>free.fr</domain>
	<country>FR</country>
	<source>RIPE</source>
	<email>abuse@proxad.net</email>
	<inetnum>212.27.60.0 - 212.27.63.255</inetnum>
	<netname>FR-PROXAD</netname>
	<descr><![CDATA[Free SAS (ProXad)internal infrastructure (servers)Paris, FranceProXad network / Free SAParis, France]]></descr>
	<ns1>freens1-g20.free.fr</ns1>
	<ns2>freens2-g20.free.fr</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>150</line>
	<id>11233373</id>
	<first>1369086014</first>
	<last>0</last>
	<md5>0ef5a42ae02e60cd62fdc8e6d3d0ca1e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0ef5a42ae02e60cd62fdc8e6d3d0ca1e</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://windows-live-movie-maker.todownload.com/get/file/id/743910/index.html?lp=adwordsgclid/;=cpy357r9vbucfexktaodvgiava&s/;=juio-iasvwxqdsu3vs1augt/;=1378405994ext/;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>151</line>
	<id>11233372</id>
	<first>1369086014</first>
	<last>0</last>
	<md5>580a1f5d86fa5b6b63dc452b9a070b3e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=580a1f5d86fa5b6b63dc452b9a070b3e</virustotal>
	<vt_score>13/25 (52%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://windows-live-movie-maker.todownload.com/get/file/id/743910/i%26lt%3Bbr/%26gt%3Bndex.html?&lt;br%2F&gt;lp=adwords&gclid;=cpy357r9vbucfexktaodvgiava&s;=juio-iasvwxqds&lt;br%2F&gt;u3vs1aug&t;=1378405994&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>152</line>
	<id>11233371</id>
	<first>1369086013</first>
	<last>0</last>
	<md5>d5a04eeab8abd0fde2330262662829ee</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d5a04eeab8abd0fde2330262662829ee</virustotal>
	<vt_score>20/47 (42.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://windows-live-movie-maker.todownload.com/get/file/id/743910/i%26lt%3Bbr/%26gt%3Bndex.html?lp=adwords&gclid;/;=cpy357r9vbucfexktaodvgiava&s;%&lt;br/&gt;2f;=juio-iasvwxqdsu3vs1aug&t;/;=1378405994&ext;/;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>153</line>
	<id>11233370</id>
	<first>1369086013</first>
	<last>0</last>
	<md5>0a986f6358b70bf1d111b96dae2866c2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0a986f6358b70bf1d111b96dae2866c2</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://windows-live-movie-maker.todownload.com/get/file/id/743910/i%26lt%3Bbr/%26gt%3Bndex.html?lp=adwords&gclid;%2F;=cpy357r9vbucfexktaodvgiava&s;%2F;=&lt;br%2F&gt;juio-iasvwxqdsu3vs1aug&t;%2F;=1378405994&ext;%2F;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>154</line>
	<id>11233369</id>
	<first>1369080008</first>
	<last>0</last>
	<md5>7abd7f50645fa399d82a5c4a6ea9ad2b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7abd7f50645fa399d82a5c4a6ea9ad2b</virustotal>
	<vt_score>33/46 (71.7%)</vt_score>
	<scanner>trendmicro</scanner>
	<virusname><![CDATA[TROJ_SPAMTA.BZ]]></virusname>
	<url><![CDATA[http://www.gameburnworld.com/Trainers/StrongholdLegendsv1.2PLUS8Trainer.rar]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>209.188.15.55</ip>
	<as>AS19181</as>
	<review>209.188.15.55</review>
	<domain>gameburnworld.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@securedservers.com</email>
	<inetnum>209.188.0.0 - 209.188.31.255</inetnum>
	<netname>SECUREDSERVERS</netname>
	<descr><![CDATA[SECURED SERVERS LLC SSL-65 2353 W University Bldg A Tempe AZ 85281]]></descr>
	<ns1>ns24.hosted-servers.net</ns1>
	<ns2>ns23.hosted-servers.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>155</line>
	<id>11233368</id>
	<first>1369086013</first>
	<last>0</last>
	<md5>5ce0f313009b6cee75b2f47181dfae31</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5ce0f313009b6cee75b2f47181dfae31</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://windows-live-movie-maker.todownload.com/get/file/id/743910/i%20ndex.html?lp=adwords&gclid/;=cpy357r9vbucfexktaodvgiava&%20amp;s/;=juio-iasvwxqdsu3vs1aug&t/;=1378405994&ext/;=%20.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1526.awsdns-62.org</ns1>
	<ns2>ns-830.awsdns-39.net</ns2>
	<ns3>ns-163.awsdns-20.com</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>156</line>
	<id>11233367</id>
	<first>1369086013</first>
	<last>0</last>
	<md5>a8df25d8dfc36a874122cd091b822f54</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a8df25d8dfc36a874122cd091b822f54</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://windows-live-movie-maker.todownload.com/get/file/id/743910/?ext/;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1526.awsdns-62.org</ns1>
	<ns2>ns-830.awsdns-39.net</ns2>
	<ns3>ns-163.awsdns-20.com</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>157</line>
	<id>11233366</id>
	<first>1369086013</first>
	<last>0</last>
	<md5>0a061085491157dc00ba56abe84cd9cd</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0a061085491157dc00ba56abe84cd9cd</virustotal>
	<vt_score>8/47 (17%)</vt_score>
	<scanner>BitDefender</scanner>
	<virusname><![CDATA[Adware.Generic.469837]]></virusname>
	<url><![CDATA[http://windows-7-themes.com/site_advertisers/setup__1834.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>65.61.101.141</ip>
	<as>AS30340</as>
	<review>65.61.101.141</review>
	<domain>windows-7-themes.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@tierpoint.com</email>
	<inetnum>65.61.96.0 - 65.61.127.255</inetnum>
	<netname>TIER-1</netname>
	<descr><![CDATA[Tierpoint, LLC TIERP 23403 E Mission Ave Liberty Lake WA 99019]]></descr>
	<ns1>ns001.webdevaz.com</ns1>
	<ns2>ns002.webdevaz.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>158</line>
	<id>11233363</id>
	<first>1369086012</first>
	<last>0</last>
	<md5>30f3597de3dbea58d6f8757d973277e3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=30f3597de3dbea58d6f8757d973277e3</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>Norman</scanner>
	<virusname><![CDATA[Obfuscated.S%21genr]]></virusname>
	<url><![CDATA[http://web1.emax.net.tw/pank/puremsn14.0.8117cht2013.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>203.217.97.25</ip>
	<as>AS17809</as>
	<review>203.217.97.25</review>
	<domain>emax.net.tw</domain>
	<country>TW</country>
	<source>APNIC</source>
	<email>frank@emax.net.tw</email>
	<inetnum>203.217.96.0 - 203.217.111.255</inetnum>
	<netname>MONAD-TW</netname>
	<descr><![CDATA[Monad Digitnamic CorpMAN providerTaichung Taiwan R.O.C]]></descr>
	<ns1>ns1.emax.net.tw</ns1>
	<ns2>ns3.emax.net.tw</ns2>
	<ns3>ns2.emax.net.tw</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>159</line>
	<id>11233361</id>
	<first>1369086010</first>
	<last>0</last>
	<md5>9cdc2c9c6174277f6dab448d905cab9d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9cdc2c9c6174277f6dab448d905cab9d</virustotal>
	<vt_score>11/36 (30.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[DR%2FDelphi.Gen2]]></virusname>
	<url><![CDATA[http://vzlloading1.com/15200513/ButilochkaCheat.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>88.198.20.189</ip>
	<as>AS24940</as>
	<review>88.198.20.189</review>
	<domain>vzlloading1.com</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>abuse@hetzner.de</email>
	<inetnum>88.198.16.0 - 88.198.31.255</inetnum>
	<netname>HETZNER-RZ-NBG-NET</netname>
	<descr><![CDATA[Hetzner Online AGDatacenter NuernbergHETZNER-RZ-NBG-BLK4]]></descr>
	<ns1>ns1.r01.ru</ns1>
	<ns2>ns2.r01.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>160</line>
	<id>11233360</id>
	<first>1369086010</first>
	<last>0</last>
	<md5>39df7e8052886f31d81f0040e76ca5e2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=39df7e8052886f31d81f0040e76ca5e2</virustotal>
	<vt_score>9/36 (25%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[DR%2FDelphi.Gen2]]></virusname>
	<url><![CDATA[http://vzlloading1.com/04170513/RybnoeBot.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>88.198.20.189</ip>
	<as>AS24940</as>
	<review>88.198.20.189</review>
	<domain>vzlloading1.com</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>abuse@hetzner.de</email>
	<inetnum>88.198.16.0 - 88.198.31.255</inetnum>
	<netname>HETZNER-RZ-NBG-NET</netname>
	<descr><![CDATA[Hetzner Online AGDatacenter NuernbergHETZNER-RZ-NBG-BLK4]]></descr>
	<ns1>ns1.r01.ru</ns1>
	<ns2>ns2.r01.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>161</line>
	<id>11233359</id>
	<first>1369086010</first>
	<last>0</last>
	<md5>f513a7c54bbc10c55b1c80f025df58ea</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f513a7c54bbc10c55b1c80f025df58ea</virustotal>
	<vt_score>2/36 (5.6%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://vx.n3.filmwit.com/down/en/26034.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>162</line>
	<id>11233355</id>
	<first>1369086008</first>
	<last>0</last>
	<md5>88d9b8955ba36ca0162cee9575c8a601</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=88d9b8955ba36ca0162cee9575c8a601</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://virtual-dj.todownload.com/get/file/id/845163/index.html?gcli&&lt;br%2F&&gt;d=cndxisfcobucfy7ktaod81aaza&&s;=qg9wokdulqnoas9njdnytg&&t;=&&lt;br%2F&&gt;1377435089&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1654.awsdns-14.co.uk</ns1>
	<ns2>ns-163.awsdns-20.com</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1526.awsdns-62.org</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>163</line>
	<id>11233354</id>
	<first>1369086008</first>
	<last>0</last>
	<md5>aee3ff2b837582baa1939231da065645</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=aee3ff2b837582baa1939231da065645</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://virtual-dj.todownload.com/get/file/id/845163/index.html?gcli&&lt;br%2F&&gt;d=cndxisfcobucfy7ktaod81aaza&&s=qg9wokdulqnoas9njdnytg&&t=13&&lt;br%2F&&gt;77435089&&ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1654.awsdns-14.co.uk</ns1>
	<ns2>ns-163.awsdns-20.com</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1526.awsdns-62.org</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>164</line>
	<id>11233353</id>
	<first>1369086008</first>
	<last>0</last>
	<md5>0ced508a9a5e7e72a379022a5607b957</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0ced508a9a5e7e72a379022a5607b957</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://virtual-dj.todownload.com/get/file/id/845163/index.html?gclid=cndxisfcobucfy7ktaod81aaza&&amp%2F&%2F;s=qg9wokdulqnoas9njdnytg&&amp%2F&%2F;t=1377435089&&amp%2F&%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1654.awsdns-14.co.uk</ns1>
	<ns2>ns-163.awsdns-20.com</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1526.awsdns-62.org</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>165</line>
	<id>11233352</id>
	<first>1369086008</first>
	<last>0</last>
	<md5>fe93bb4108a5c09a6d4b5b00b1858920</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=fe93bb4108a5c09a6d4b5b00b1858920</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://virtual-dj.todownload.com/get/file/id/845163/index.html?gclid=cndxisfc&lt;br%2F&gt;obucfy7ktaod81aaza&amp;%2F;s=qg9wokdulqnoas9njdnytg&amp;%2F;t=1377&lt;br%2F&gt;435089&amp;%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1654.awsdns-14.co.uk</ns1>
	<ns2>ns-163.awsdns-20.com</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1526.awsdns-62.org</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>166</line>
	<id>11233351</id>
	<first>1369086007</first>
	<last>0</last>
	<md5>f5e07c0927f8ca5975bf9c55ec218cdb</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f5e07c0927f8ca5975bf9c55ec218cdb</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://virtual-dj.todownload.com/get/file/id/845163/index.html?&&&&&&&&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1654.awsdns-14.co.uk</ns1>
	<ns2>ns-163.awsdns-20.com</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1526.awsdns-62.org</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>167</line>
	<id>11233350</id>
	<first>1369086007</first>
	<last>0</last>
	<md5>b0830b0c40ba60dc43c2af13017c1069</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b0830b0c40ba60dc43c2af13017c1069</virustotal>
	<vt_score>17/39 (43.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://virtual-dj.todownload.com/get/file/id/845163/index.html?&&&&&&e&&lt;br%2F&&gt;xt;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1654.awsdns-14.co.uk</ns1>
	<ns2>ns-163.awsdns-20.com</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1526.awsdns-62.org</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>168</line>
	<id>11233349</id>
	<first>1369086007</first>
	<last>0</last>
	<md5>b79641dee39b9dad8d2c98175b679ab7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b79641dee39b9dad8d2c98175b679ab7</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://virtual-dj.todownload.com/get/file/id/845163/index.html?&&&e;&lt;br%2F&gt;xt;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1654.awsdns-14.co.uk</ns1>
	<ns2>ns-163.awsdns-20.com</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1526.awsdns-62.org</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>169</line>
	<id>11233348</id>
	<first>1369086007</first>
	<last>0</last>
	<md5>d241910b93901924cf5ca7a29c79b57e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d241910b93901924cf5ca7a29c79b57e</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://virtual-dj.todownload.com/get/file/id/845163/index.html?&amp;;&amp;&amp;ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1654.awsdns-14.co.uk</ns1>
	<ns2>ns-163.awsdns-20.com</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1526.awsdns-62.org</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>170</line>
	<id>11233347</id>
	<first>1369086006</first>
	<last>0</last>
	<md5>f7e7420ccbe6354ef94017b8301b15f9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f7e7420ccbe6354ef94017b8301b15f9</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://virtual-dj.todownload.com/get/file/id/845163/index.html?&%20;&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1654.awsdns-14.co.uk</ns1>
	<ns2>ns-163.awsdns-20.com</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1526.awsdns-62.org</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>171</line>
	<id>11233346</id>
	<first>1369086006</first>
	<last>0</last>
	<md5>26d1d23b001761c191b2de963d3e4f13</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7828e09f8e39870e36712b0c3073b029</virustotal>
	<vt_score>14/46 (30.4%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Trojan.Agent-300527]]></virusname>
	<url><![CDATA[http://vip.dns-vip.net/0517/setup_361.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>122.225.106.104</ip>
	<as>AS4134</as>
	<review>61.191.190.209</review>
	<domain>dns-vip.net</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>122.225.96.0 - 122.225.127.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv5.com</ns1>
	<ns2>ns1.dnsv5.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>172</line>
	<id>11233345</id>
	<first>1369086006</first>
	<last>0</last>
	<md5>26d1d23b001761c191b2de963d3e4f13</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7828e09f8e39870e36712b0c3073b029</virustotal>
	<vt_score>14/46 (30.4%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Trojan.Agent-300527]]></virusname>
	<url><![CDATA[http://vip.dns-vip.net/0517/setup_246.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>122.226.161.179</ip>
	<as>AS4809</as>
	<review>61.183.41.251</review>
	<domain>dns-vip.net</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>122.224.0.0 - 122.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032China Telecom Zhejiang Province]]></descr>
	<ns1>ns2.dnsv5.com</ns1>
	<ns2>ns1.dnsv5.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>173</line>
	<id>11233344</id>
	<first>1369086006</first>
	<last>0</last>
	<md5>26d1d23b001761c191b2de963d3e4f13</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7828e09f8e39870e36712b0c3073b029</virustotal>
	<vt_score>14/46 (30.4%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Trojan.Agent-300527]]></virusname>
	<url><![CDATA[http://vip.dns-vip.net/0517/setup_023.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>122.226.161.180</ip>
	<as>AS4809</as>
	<review>122.226.161.183</review>
	<domain>dns-vip.net</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>122.224.0.0 - 122.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032China Telecom Zhejiang Province]]></descr>
	<ns1>ns2.dnsv5.com</ns1>
	<ns2>ns1.dnsv5.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>174</line>
	<id>11233343</id>
	<first>1369086006</first>
	<last>0</last>
	<md5>9f95182234ba71038edc8b243309754c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9f95182234ba71038edc8b243309754c</virustotal>
	<vt_score>20/47 (42.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[SPR%2FKiser.ajp.1]]></virusname>
	<url><![CDATA[http://vip.3km2.com:8081/6F6F3A38393B393C3A38393B383D39313A38383A3A3D574F697C6D.Exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>174.139.231.219</ip>
	<as>AS35908</as>
	<review>174.139.231.219</review>
	<domain>3km2.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>admin-arin@vpls.net</email>
	<inetnum>174.139.0.0 - 174.139.255.255</inetnum>
	<netname>VPLSNET</netname>
	<descr><![CDATA[VPLS Inc. d/b/a Krypt Technologies VPLSI 1744 W. Katella Avenue. Suite 200 Orange CA 92867]]></descr>
	<ns1>ns3144.dns.dyn.com</ns1>
	<ns2>ns1149.dns.dyn.com</ns2>
	<ns3>ns2172.dns.dyn.com</ns3>
	<ns4>ns4142.dns.dyn.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>175</line>
	<id>11233342</id>
	<first>1369086006</first>
	<last>0</last>
	<md5>d8665bbc1572881c8a94455141e87f00</md5>
	<virustotal></virustotal>
	<vt_score>18/44 (40.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[SPR%2FKiser.ajp.1]]></virusname>
	<url><![CDATA[http://vip.3km2.com:8081/6E703A383A38393B383D393D393939313C31574F697C6D.Exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>174.139.231.219</ip>
	<as>AS35908</as>
	<review>174.139.231.219</review>
	<domain>3km2.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>admin-arin@vpls.net</email>
	<inetnum>174.139.0.0 - 174.139.255.255</inetnum>
	<netname>VPLSNET</netname>
	<descr><![CDATA[VPLS Inc. d/b/a Krypt Technologies VPLSI 1744 W. Katella Avenue. Suite 200 Orange CA 92867]]></descr>
	<ns1>ns3144.dns.dyn.com</ns1>
	<ns2>ns1149.dns.dyn.com</ns2>
	<ns3>ns2172.dns.dyn.com</ns3>
	<ns4>ns4142.dns.dyn.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>176</line>
	<id>11233340</id>
	<first>1369083203</first>
	<last>0</last>
	<md5>8bb3d4596acac4d85709b1e266993187</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8bb3d4596acac4d85709b1e266993187</virustotal>
	<vt_score>9/47 (19.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[PHP%2FSpy.Ettu.D]]></virusname>
	<url><![CDATA[http://wordpress.com.incatch.com/jos.php]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>208.116.36.159</ip>
	<as>AS25653</as>
	<review>208.116.36.159</review>
	<domain>incatch.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@fortressitx.com</email>
	<inetnum>208.116.0.0 - 208.116.63.255</inetnum>
	<netname>FORTRESSITX</netname>
	<descr><![CDATA[FortressITX FORTR-5 100 Delawanna Ave Clifton NJ 07014]]></descr>
	<ns1>ns1.backofficeincatch.com</ns1>
	<ns2>ns2.backofficeincatch.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>177</line>
	<id>11233339</id>
	<first>1369086000</first>
	<last>0</last>
	<md5>0120531a777b66fb8c73d477c43db6f4</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0120531a777b66fb8c73d477c43db6f4</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://vg.1.filmwit.com/down/yc1/66241.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>178</line>
	<id>11233338</id>
	<first>1369085999</first>
	<last>0</last>
	<md5>02b8c48c50287131121ea4fae31eae57</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=02b8c48c50287131121ea4fae31eae57</virustotal>
	<vt_score>5/34 (14.7%)</vt_score>
	<scanner>BitDefender</scanner>
	<virusname><![CDATA[Gen%3ATrojan.Heur.ZGY.1]]></virusname>
	<url><![CDATA[http://v.dt.filmwit.com/down/2hd/40830.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>179</line>
	<id>11233337</id>
	<first>1369085999</first>
	<last>0</last>
	<md5>5b7d119a9cd5b5820e3a9b626f5d970a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5b7d119a9cd5b5820e3a9b626f5d970a</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://v8.5g.filmwit.com/down/mi5/30475.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>180</line>
	<id>11233336</id>
	<first>1369085999</first>
	<last>0</last>
	<md5>d46ccf4fc17dd8b4e0dec13e3e0eead2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d46ccf4fc17dd8b4e0dec13e3e0eead2</virustotal>
	<vt_score>6/35 (17.1%)</vt_score>
	<scanner>BitDefender</scanner>
	<virusname><![CDATA[Gen%3ATrojan.Heur.ZGY.1]]></virusname>
	<url><![CDATA[http://v6.7x.filmwit.com/down/al7/26865.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>181</line>
	<id>11233335</id>
	<first>1369085999</first>
	<last>0</last>
	<md5>a500dd33ccbb640994aa164fbcf91784</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a500dd33ccbb640994aa164fbcf91784</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://v1.ud.filmwit.com/down/t0u/84858.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>182</line>
	<id>11233333</id>
	<first>1369085999</first>
	<last>0</last>
	<md5>ec3b699121b8acb757bb193d7545f337</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ec3b699121b8acb757bb193d7545f337</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FHijacker.Gen2]]></virusname>
	<url><![CDATA[http://uup.chaoqingxi.com:7126/schost.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>124.129.3.154</ip>
	<as>AS4837</as>
	<review>124.129.3.154</review>
	<domain>chaoqingxi.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@chinaunicom.cn</email>
	<inetnum>124.128.0.0 - 124.135.255.255</inetnum>
	<netname>UNICOM-SD</netname>
	<descr><![CDATA[China Unicom Shandong province networkChina UnicomCNC Group CHINA169 Shandong Province Network]]></descr>
	<ns1>ns11.xincache.com</ns1>
	<ns2>ns12.xincache.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>183</line>
	<id>11233325</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>25/47 (53.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://upload.zkjmzs.ru/download/939751289a47e9b8b/2522624/thrustma%26amp%3Blt%3Bbr/%26amp%3Bgt%3B%26amp%3Bamp/%3B/%3Blt/%3Bbr/%26amp%3Bamp/%3B/%3Bgt/%3Bster_universal_challenge_drayver.%26amp%3Blt%3Bbr/%26amp%3Bgt%3Bzip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>zkjmzs.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>184</line>
	<id>11233324</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>582e168a65428a55f1a602b1d86d28de</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=582e168a65428a55f1a602b1d86d28de</virustotal>
	<vt_score>25/47 (53.2%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FFraud.Gen2]]></virusname>
	<url><![CDATA[http://upload.vnfsas.ru/download/8883511fdbd2b6d6c/3000000/Age_of_E%26amp%3Blt%3Bbr/%26amp%3Bgt%3Bmpires_3_Complete_Collection__Repack_RU_EN_.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>vnfsas.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns2.qcash.ws</ns1>
	<ns2>ns1.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>185</line>
	<id>11233323</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>25/47 (53.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://upload.vmkbr.ru/download/1122351381e32f3f3a/2654208/ya_ne_mo%26lt%3Bbr/%26gt%3B%26lt%3Bbr/%26gt%3B%26amp/%3Blt/%3Bbr/%26amp/%3Bgt/%3Bgu_bolshe_%26lt%3Bbr/%26gt%3Bgit__leonid_filatov.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>vmkbr.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns2.qcash.ws</ns1>
	<ns2>ns1.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>186</line>
	<id>11233322</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>25/47 (53.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://upload.vmkbr.ru/download/1122351381e32f3f3a/2654208/ya_ne_mo%26amp%3Blt%3Bbr/%26amp%3Bgt%3B%26amp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bgt%3B%26amp%3Bamp%3Bamp/%3Blt/%3Bbr/%26amp%3Bamp%3Bamp/%3Bgt/%3Bgu_bolshe_%26amp%3Blt%3Bbr/%26amp%3Bgt%3Bgit__leonid_filatov.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>vmkbr.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns2.qcash.ws</ns1>
	<ns2>ns1.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>187</line>
	<id>11233321</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>24/47 (51.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://upload.veqwk.ru/download/10621517e7f04b8cf4/2874880/torrent_%26lt%3Bbr/%26gt%3B%26lt%3Bbr/%26gt%3Bklient_dlya_windows_8.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>veqwk.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>188</line>
	<id>11233320</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>21/36 (58.3%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Trojan%2FWin32.ArchSMS]]></virusname>
	<url><![CDATA[http://upload.veqwk.ru/download/10621517e7f04b8cf4/2874880/torrent_%26amp%3Blt%3Bbr/%26amp%3Bgt%3B%26amp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bgt%3Bklient_dlya_windows_8.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>veqwk.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>189</line>
	<id>11233319</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>21/36 (58.3%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Trojan%2FWin32.ArchSMS]]></virusname>
	<url><![CDATA[http://upload.veqwk.ru/download/10621517e7f04b8cf4/2874880/torrent_%20%26lt%3Bbr/%26gt%3Bklient_dlya_windows_8.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>veqwk.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>190</line>
	<id>11233318</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>582e168a65428a55f1a602b1d86d28de</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=582e168a65428a55f1a602b1d86d28de</virustotal>
	<vt_score>19/35 (54.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FFraud.Gen2]]></virusname>
	<url><![CDATA[http://upload.sjnsdf.ru/download/10757510a3d3d071e4/3000000/warface%26amp%3Blt%3Bbr/%26amp%3Bgt%3B%26amp%3Bamp/%3Bamp/%3Blt/%3Bbr/%26amp%3Bamp/%3Bamp/%3Bgt/%3B%26amp%3Bamp/%3Bamp/%3Blt/%3Bbr/%26amp%3Bamp/%3Bamp%26amp%3Blt%3Bbr/%26amp%3Bgt%3B/%3Bgt/%3B_chiti_na_koroni.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>sjnsdf.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>191</line>
	<id>11233317</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>e693b3e2b6cde0b44eac6dcc80f99ddf</md5>
	<virustotal></virustotal>
	<vt_score>22/47 (46.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FFraud.Gen2]]></virusname>
	<url><![CDATA[http://upload.sdnfd.ru/download/1968517013496702f/2963456/Kabrioletlt%3Bbr/gt%3B_Rozi.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>sdnfd.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>192</line>
	<id>11233316</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>e693b3e2b6cde0b44eac6dcc80f99ddf</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e693b3e2b6cde0b44eac6dcc80f99ddf</virustotal>
	<vt_score>22/47 (46.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FFraud.Gen2]]></virusname>
	<url><![CDATA[http://upload.sdnfd.ru/download/1968517013496702f/2963456/Kabriolet%26lt%3Bbr/%26gt%3B%26lt%3Bbr/%26gt%3B_Rozi.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>sdnfd.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>193</line>
	<id>11233315</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>e693b3e2b6cde0b44eac6dcc80f99ddf</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e693b3e2b6cde0b44eac6dcc80f99ddf</virustotal>
	<vt_score>22/47 (46.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FFraud.Gen2]]></virusname>
	<url><![CDATA[http://upload.sdnfd.ru/download/1968517013496702f/2963456/Kabriolet%26amp%3Blt%3Bbr/%26amp%3Bgt%3B%26amp%3Bamp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bamp%3Bgt%3B_Rozi.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>sdnfd.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>194</line>
	<id>11233314</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>f18ebadf4d10c328e21dd7aaf286b61a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f18ebadf4d10c328e21dd7aaf286b61a</virustotal>
	<vt_score>19/36 (52.8%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Trojan%2FWin32.ArchSMS]]></virusname>
	<url><![CDATA[http://upload.pgpoh.ru/download/1066451693ddc55404/2911744/muzika_i%26lt%3Bbr/%26gt%3Blt%3Bbr/gt/%3Blt/%3Bbr/%26amp%26lt%3Bbr/%26gt%3B/%3Bgt/%3Bz_seriala_kuhnya_ost__2012.rar.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>pgpoh.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>195</line>
	<id>11233313</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>f18ebadf4d10c328e21dd7aaf286b61a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f18ebadf4d10c328e21dd7aaf286b61a</virustotal>
	<vt_score>19/36 (52.8%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Trojan%2FWin32.ArchSMS]]></virusname>
	<url><![CDATA[http://upload.pgpoh.ru/download/1066451693ddc55404/2911744/muzika_i%26lt%3Bbr/%26gt%3B%26lt%3Bbr/%26gt%3B%26amp/%3Blt/%3Bbr/%26amp%26lt%3Bbr/%26gt%3B/%3Bgt/%3Bz_seriala_kuhnya_ost__2012.rar.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>pgpoh.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>196</line>
	<id>11233312</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>f18ebadf4d10c328e21dd7aaf286b61a</md5>
	<virustotal></virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[FakeAV.AMTL]]></virusname>
	<url><![CDATA[http://upload.pgpoh.ru/download/1066451693ddc55404/2911744/muzika_i%26amp%3Blt%3Bbr/%26amp%3Bgt%3B%26amp%3Bamp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bamp%3Bgt%3B%26amp%3Bamp%3Bamp%3Bamp/%3Blt/%3Bbr/%26amp%3Bamp%3Bamp%3Bamp%26amp%3Blt%3Bbr/%26amp%3Bgt%3B/%3Bgt/%3Bz_seriala_kuhnya_ost__2012.rar.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>pgpoh.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>197</line>
	<id>11233311</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>582e168a65428a55f1a602b1d86d28de</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=582e168a65428a55f1a602b1d86d28de</virustotal>
	<vt_score>23/47 (48.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FFraud.Gen2]]></virusname>
	<url><![CDATA[http://upload.nsdesd.ru/download/107575114e6d78765c/3000000/CHit_dl%26lt%3Bbr/%26gt%3B%26lt%3Bbr/%26gt%3Bya_warface_na_dengi.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>nsdesd.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>198</line>
	<id>11233310</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>582e168a65428a55f1a602b1d86d28de</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=582e168a65428a55f1a602b1d86d28de</virustotal>
	<vt_score>23/47 (48.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FFraud.Gen2]]></virusname>
	<url><![CDATA[http://upload.nsdesd.ru/download/107575114e6d78765c/3000000/CHit_dl%26amp%3Blt%3Bbr/%26amp%3Bgt%3B%26amp%3Bamp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bamp%3Bgt%3Bya_warface_na_dengi.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>nsdesd.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>199</line>
	<id>11233309</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>25/47 (53.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://upload.mblkn.ru/download/10621516d45f1eb4d9/2692096/CorelDRA%26lt%3Bbr/%26gt%3B%26lt%3Bbr/%26gt%3BW_Graphics_Suite_X6_Rus.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>mblkn.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>200</line>
	<id>11233308</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>25/47 (53.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://upload.mblkn.ru/download/10621516d45f1eb4d9/2692096/CorelDRA%26amp%3Blt%3Bbr/%26amp%3Bgt%3B%26amp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bgt%3BW_Graphics_Suite_X6_Rus.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>mblkn.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>201</line>
	<id>11233307</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>25/47 (53.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://upload.lmafj.ru/download/10985515edda9a9efa/2821632/mentovsk%26lt%3Bbr/%26gt%3B%26lt%3Bbr/%26gt%3B%26amp/%3Blt/%3Bbr/%26amp/%3Bgt/%3Bie_voyni_5%26lt%3Bbr/%26gt%3B.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>lmafj.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns2.qcash.ws</ns1>
	<ns2>ns1.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>202</line>
	<id>11233306</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>25/47 (53.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://upload.lmafj.ru/download/10985515edda9a9efa/2821632/mentovsk%26amp%3Blt%3Bbr/%26amp%3Bgt%3B%26amp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bgt%3B%26amp%3Bamp%3Bamp/%3Blt/%3Bbr/%26amp%3Bamp%3Bamp/%3Bgt/%3Bie_voyni_5%26amp%3Blt%3Bbr/%26amp%3Bgt%3B.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>lmafj.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns2.qcash.ws</ns1>
	<ns2>ns1.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>203</line>
	<id>11233305</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>20/35 (57.1%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Trojan%2FWin32.ArchSMS]]></virusname>
	<url><![CDATA[http://upload.kjldfj.ru/download/9917515e1b31b699d/2821632/pohudet_%26lt%3Bbr/%26gt%3B%26lt%3Bbr/%26gt%3B%26lt/%3Bbr/%26gt/%3Bnavsegda___audioknig%26lt%3Bbr/%26gt%3Ba.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>kjldfj.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>204</line>
	<id>11233304</id>
	<first>1369085998</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>22/34 (64.7%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Trojan%2FWin32.ArchSMS]]></virusname>
	<url><![CDATA[http://upload.kjldfj.ru/download/9917515e1b31b699d/2821632/pohudet_%26amp%3Blt%3Bbr/%26amp%3Bgt%3B%26amp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bgt%3B%26amp%3Bamp%3Blt/%3Bbr/%26amp%3Bamp%3Bgt/%3Bnavsegda___audioknig%26amp%3Blt%3Bbr/%26amp%3Bgt%3Ba.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>kjldfj.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>205</line>
	<id>11233303</id>
	<first>1369085997</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>21/36 (58.3%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Trojan%2FWin32.ArchSMS]]></virusname>
	<url><![CDATA[http://upload.hiojh.ru/download/10621517520783ed31/2874880/Gubka_Bo%26lt%3Bbr/%26gt%3B%26lt%3Bbr/%26gt%3Bb_Kvadratnie_SHtani___7_sezon__Vse_50_ser%26lt%3Bbr/%26gt%3Biy___2009_2011_SATR%26lt%3Bbr/%26gt%3Bip.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>hiojh.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>206</line>
	<id>11233302</id>
	<first>1369085997</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>21/35 (60%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Trojan%2FWin32.ArchSMS]]></virusname>
	<url><![CDATA[http://upload.hiojh.ru/download/10621517520783ed31/2874880/Gubka_Bo%26amp%3Blt%3Bbr/%26amp%3Bgt%3B%26amp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bgt%3Bb_Kvadratnie_SHtani___7_sezon__Vse_50_ser%26amp%3Blt%3Bbr/%26amp%3Bgt%3Biy___2009_2011_SATR%26amp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bgt%3Bip.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>hiojh.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>207</line>
	<id>11233301</id>
	<first>1369085997</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>25/47 (53.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://upload.dpwja.ru/download/9608517c94838ebe7/2874880/aleksandr/%3Blt/%3Bbr/%3Bgt/%3B_dyumin___diskografiya__1998_2010.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>dpwja.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns2.qcash.ws</ns1>
	<ns2>ns1.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>208</line>
	<id>11233300</id>
	<first>1369085997</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>25/47 (53.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://upload.dpwja.ru/download/9608517c94838ebe7/2874880/aleksandr%26amp%3Bamp%3Bamp/%3Blt/%3Bbr/%26amp%3Bamp%3Bamp/%3Bgt/%3B_dyumin___diskografiya__1998_2010.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>dpwja.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns2.qcash.ws</ns1>
	<ns2>ns1.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>209</line>
	<id>11233299</id>
	<first>1369085997</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>25/47 (53.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://upload.bknmu.ru/download/99175129f6ed6edd7/2522624/spravochnlt%3Bbr/gt%3Blt/%3Bbr/gt/%3Bik_meditsinskoy_sestri_pediatricheskogo_uchastka.zilt%3Bbr/gt%3Bp.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>bknmu.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>210</line>
	<id>11233298</id>
	<first>1369085997</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>21/36 (58.3%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Trojan%2FWin32.ArchSMS]]></virusname>
	<url><![CDATA[http://upload.aslkj.ru/download/106215156da10adad0/2341376/igra_dal%26amp%3Blt%3Bbr/%26amp%3Bgt%3B%26amp%3Blt%3Bbr/%26amp%3Bgt%3B%26amp%3Bamp/%3Blt/%3Bbr/%26amp%3Bamp/%3Bgt/%3B%26amp%3Bamp/%3Blt/%3Bbr/%26amp%3Bamp%26amp%3Blt%3Bbr/%26amp%3Bg%26amp%3Blt%3Bbr/%26amp%3Bgt%3Bt%3B/%3Bgt/%3Bnoboyshchiki_3.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>aslkj.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns2.qcash.ws</ns1>
	<ns2>ns1.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>211</line>
	<id>11233297</id>
	<first>1369085997</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>22/36 (61.1%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Trojan%2FWin32.ArchSMS]]></virusname>
	<url><![CDATA[http://upload.aksmn.ru/download/106805131ad75bb9ff/2654208/programm%26lt%3Bbr/%26gt%3B%26lt%3Bbr/%26gt%3Ba_kassy_dlya_windows_7.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>aksmn.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>212</line>
	<id>11233296</id>
	<first>1369085997</first>
	<last>0</last>
	<md5>ff31bc56f2aa6b4cc086198631689e80</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff31bc56f2aa6b4cc086198631689e80</virustotal>
	<vt_score>21/36 (58.3%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Trojan%2FWin32.ArchSMS]]></virusname>
	<url><![CDATA[http://upload.aksmn.ru/download/106805131ad75bb9ff/2654208/programm%26amp%3Blt%3Bbr/%26amp%3Bgt%3B%26amp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bgt%3Ba_kassy_dlya_windows_7.zip.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>94.102.52.128</ip>
	<as>AS29073</as>
	<review>94.102.52.128</review>
	<domain>aksmn.ru</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>r.eeden@ecatel.net</email>
	<inetnum>94.102.48.0 - 94.102.63.255</inetnum>
	<netname>NL-ECATEL-20080829</netname>
	<descr><![CDATA[Ecatel LTDAS29073 Route object]]></descr>
	<ns1>ns1.qcash.ws</ns1>
	<ns2>ns2.qcash.ws</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>213</line>
	<id>11233295</id>
	<first>1369085997</first>
	<last>0</last>
	<md5>24a219d5cb659e7ea11d78d1a6b7f2a5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=24a219d5cb659e7ea11d78d1a6b7f2a5</virustotal>
	<vt_score>8/47 (17%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Suspicious+file]]></virusname>
	<url><![CDATA[http://update.windowfaster.co.kr/unset/uninst_windowfaster.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.68.58.7</ip>
	<as>AS38700</as>
	<review>115.68.58.7</review>
	<domain>windowfaster.co.kr</domain>
	<country>KR</country>
	<source>APNIC</source>
	<email>network@smileserv.com</email>
	<inetnum>115.68.0.0 - 115.68.255.255</inetnum>
	<netname>SMILESERV-KR</netname>
	<descr><![CDATA[SMILESERV]]></descr>
	<ns1>ns.windowfaster.co.kr</ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>214</line>
	<id>11233294</id>
	<first>1369085997</first>
	<last>0</last>
	<md5>9a74774fcd762ca6413abcd089128df2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9a74774fcd762ca6413abcd089128df2</virustotal>
	<vt_score>22/35 (62.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FFraud.Gen4]]></virusname>
	<url><![CDATA[http://update.vaccineweb.co.kr/setupa/vaccinewebsetup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.68.58.7</ip>
	<as>AS38700</as>
	<review>115.68.58.8</review>
	<domain>vaccineweb.co.kr</domain>
	<country>KR</country>
	<source>APNIC</source>
	<email>network@smileserv.com</email>
	<inetnum>115.68.0.0 - 115.68.255.255</inetnum>
	<netname>SMILESERV-KR</netname>
	<descr><![CDATA[SMILESERV]]></descr>
	<ns1>ns.vaccineweb.co.kr</ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>215</line>
	<id>11233293</id>
	<first>1369085997</first>
	<last>0</last>
	<md5>14756a303a392179a50ef30cca5dd772</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=14756a303a392179a50ef30cca5dd772</virustotal>
	<vt_score>26/35 (74.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FFraud.Gen4]]></virusname>
	<url><![CDATA[http://update.systemvaccine.co.kr/setupa/systemvaccinesetup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.68.58.8</ip>
	<as>AS38700</as>
	<review>115.68.58.8</review>
	<domain>systemvaccine.co.kr</domain>
	<country>KR</country>
	<source>APNIC</source>
	<email>network@smileserv.com</email>
	<inetnum>115.68.0.0 - 115.68.255.255</inetnum>
	<netname>SMILESERV-KR</netname>
	<descr><![CDATA[SMILESERV]]></descr>
	<ns1>ns.systemvaccine.co.kr</ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>216</line>
	<id>11233292</id>
	<first>1369085997</first>
	<last>0</last>
	<md5>1b2ab76909d2a048e055293354159e83</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1b2ab76909d2a048e055293354159e83</virustotal>
	<vt_score>23/36 (63.9%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[PUP%2FWin32.PowerBoan]]></virusname>
	<url><![CDATA[http://update.pcsystem.co.kr/set/pcsystemsetup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.68.58.6</ip>
	<as>AS38700</as>
	<review>115.68.58.6</review>
	<domain>pcsystem.co.kr</domain>
	<country>KR</country>
	<source>APNIC</source>
	<email>network@smileserv.com</email>
	<inetnum>115.68.0.0 - 115.68.255.255</inetnum>
	<netname>SMILESERV-KR</netname>
	<descr><![CDATA[SMILESERV]]></descr>
	<ns1>ns.pcsystem.co.kr</ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>217</line>
	<id>11233284</id>
	<first>1369085996</first>
	<last>0</last>
	<md5>7186773060b2259406d97cfd08e83c0c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7186773060b2259406d97cfd08e83c0c</virustotal>
	<vt_score>12/47 (25.5%)</vt_score>
	<scanner>trendmicro</scanner>
	<virusname><![CDATA[TROJ_FRAUDL.SMMI]]></virusname>
	<url><![CDATA[http://update.checkscan.co.kr/unset/uninst_checkscan.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.68.58.7</ip>
	<as>AS38700</as>
	<review>115.68.58.7</review>
	<domain>checkscan.co.kr</domain>
	<country>KR</country>
	<source>APNIC</source>
	<email>network@smileserv.com</email>
	<inetnum>115.68.0.0 - 115.68.255.255</inetnum>
	<netname>SMILESERV-KR</netname>
	<descr><![CDATA[SMILESERV]]></descr>
	<ns1>ns.checkscan.co.kr</ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>218</line>
	<id>11233281</id>
	<first>1369085996</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://uj.pe.filmwit.com/down/gp/68910.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>219</line>
	<id>11233279</id>
	<first>1369085995</first>
	<last>0</last>
	<md5>feb5c3924591936ca9cc53c7d3cfdc0a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=feb5c3924591936ca9cc53c7d3cfdc0a</virustotal>
	<vt_score>25/36 (69.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FClick.Agent.AZ]]></virusname>
	<url><![CDATA[http://ty.05sun.com/crack/csdndownload.rar?vspublic=0f62836e028268dffb6b6363dd73f461.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.29</ip>
	<as>AS4134</as>
	<review>115.238.252.29</review>
	<domain>05sun.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>220</line>
	<id>11233278</id>
	<first>1369085995</first>
	<last>0</last>
	<md5>799caf91e984915d254036c3ce1d8897</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=799caf91e984915d254036c3ce1d8897</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://tv.h3.filmwit.com/down/2bh/18652.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>221</line>
	<id>11233277</id>
	<first>1369085995</first>
	<last>0</last>
	<md5>f5fe852c73dfa5bc351db428b83afa6a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f5fe852c73dfa5bc351db428b83afa6a</virustotal>
	<vt_score>2/36 (5.6%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://tu.w4.filmwit.com/down/avw/13598.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>222</line>
	<id>11233275</id>
	<first>1369085995</first>
	<last>0</last>
	<md5>6a0fd3bd4011d9a7579480e48a2408ca</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6a0fd3bd4011d9a7579480e48a2408ca</virustotal>
	<vt_score>6/36 (16.7%)</vt_score>
	<scanner>BitDefender</scanner>
	<virusname><![CDATA[Gen%3AWin32.Backdoor.KGW%40aCpld2dc]]></virusname>
	<url><![CDATA[http://troloload.ru/f/5758_project1.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>88.151.116.43</ip>
	<as>AS39596</as>
	<review>88.151.116.43</review>
	<domain>troloload.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse-general@goldeninternet.ru</email>
	<inetnum>88.151.116.0 - 88.151.116.255</inetnum>
	<netname>GOLDENNET</netname>
	<descr><![CDATA[LLC "Golden Internet"]]></descr>
	<ns1>ns3.ovrnet.ru</ns1>
	<ns2>ns0.ovrnet.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>223</line>
	<id>11233272</id>
	<first>1369085995</first>
	<last>0</last>
	<md5>e865a02a289ce01b4eb56a6d7e3d4825</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e865a02a289ce01b4eb56a6d7e3d4825</virustotal>
	<vt_score>2/36 (5.6%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://t.po.filmwit.com/down/nbp/44268.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>224</line>
	<id>11233270</id>
	<first>1369085995</first>
	<last>0</last>
	<md5>adbd3ea0e7c33b516bc3d6d4ba2a7dc3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=adbd3ea0e7c33b516bc3d6d4ba2a7dc3</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://tn.hx.filmwit.com/down/pyh/66618.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>225</line>
	<id>11233269</id>
	<first>1369085995</first>
	<last>0</last>
	<md5>4cff94be452edd9429fba87bae164749</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b9683e2cf6f37b0965d17f37973c24d0</virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>VBA32</scanner>
	<virusname><![CDATA[Trojan.Genome.airxm]]></virusname>
	<url><![CDATA[http://tk.wangyuehd.com/soft/skycn/dtl_setup.zip_2.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.115.210</ip>
	<as>AS23650</as>
	<review>61.147.115.210</review>
	<domain>wangyuehd.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>226</line>
	<id>11233268</id>
	<first>1369085995</first>
	<last>0</last>
	<md5>4cff94be452edd9429fba87bae164749</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b9683e2cf6f37b0965d17f37973c24d0</virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>VBA32</scanner>
	<virusname><![CDATA[Trojan.Genome.airxm]]></virusname>
	<url><![CDATA[http://tk.wangyuehd.com/soft/skycn/ar18.zip_1.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.115.210</ip>
	<as>AS23650</as>
	<review>61.147.115.210</review>
	<domain>wangyuehd.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>227</line>
	<id>11233264</id>
	<first>1369085993</first>
	<last>0</last>
	<md5>4840477b4dac3c731693fa6f5c05ecbc</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4840477b4dac3c731693fa6f5c05ecbc</virustotal>
	<vt_score>7/47 (14.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://t8.d0.filmwit.com/down/5wd/32669.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>228</line>
	<id>11233258</id>
	<first>1369085993</first>
	<last>0</last>
	<md5>fa6e7e2e5fac87803f7bd0d48a5cf3db</md5>
	<virustotal></virustotal>
	<vt_score>0/43 (0.0%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://storage3.dobreprogramy.pl/multimedia/install_virtualdj_home_v7.4%28dobreprogramy.pl%29.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>212.91.8.86</ip>
	<as>AS15694</as>
	<review>212.91.8.86</review>
	<domain>dobreprogramy.pl</domain>
	<country>PL</country>
	<source>RIPE</source>
	<email>abuse@atman.pl</email>
	<inetnum>212.91.0.0 - 212.91.31.255</inetnum>
	<netname>PL-ATMAN-20080520</netname>
	<descr><![CDATA[ATM S.A.ATMANATMAN (PL)]]></descr>
	<ns1>dc02.xenium.pl</ns1>
	<ns2>ns2.xenium.pl</ns2>
	<ns3>ns1.xenium.pl</ns3>
	<ns4>dc03.xenium.pl</ns4>
	<ns5>dc01.xenium.pl</ns5>
</entry>
<entry>
	<line>229</line>
	<id>11233217</id>
	<first>1369085990</first>
	<last>0</last>
	<md5>d45e965548f5d272d1a626b6cc589680</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d45e965548f5d272d1a626b6cc589680</virustotal>
	<vt_score>2/36 (5.6%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://sp.fl.filmwit.com/down/ndf/24496.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>230</line>
	<id>11233214</id>
	<first>1369085990</first>
	<last>0</last>
	<md5>138ced7890dbd7f233062d1d3dfa5d9e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=138ced7890dbd7f233062d1d3dfa5d9e</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://sogoubai9834uowpmsvs.3a1xssawezmiyxzddbmasd3srf3q.rtykouzw.5e6bltotdkd6e5t63r3-hyt.2014.4001676667.com:8765/down/game456.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.230.127.72</ip>
	<as>AS4134</as>
	<review>115.230.127.72</review>
	<domain>4001676667.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.224.0.0 - 115.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>v1s1.xundns.com</ns1>
	<ns2>v1s2.xundns.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>231</line>
	<id>11233213</id>
	<first>1369085990</first>
	<last>0</last>
	<md5>269bb61b316286e2170b5fc42a2ef51f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=269bb61b316286e2170b5fc42a2ef51f</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Trojan.Hupigon-22756]]></virusname>
	<url><![CDATA[http://software.lingxiu98.com.cn/partner_new/lingxiu_9_13698_pure.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.113.232</ip>
	<as>AS23650</as>
	<review>61.147.121.104</review>
	<domain>lingxiu98.com.cn</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>232</line>
	<id>11233211</id>
	<first>1369085989</first>
	<last>0</last>
	<md5>cd6143fa3f9b0accca27c0a95578a65a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=cd6143fa3f9b0accca27c0a95578a65a</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Trojan.Hupigon-22756]]></virusname>
	<url><![CDATA[http://software.lingxiu98.com.cn/partner_new/lingxiu_9_11582_pure.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.113.232</ip>
	<as>AS23650</as>
	<review>61.147.121.104</review>
	<domain>lingxiu98.com.cn</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>233</line>
	<id>11233206</id>
	<first>1369085989</first>
	<last>0</last>
	<md5>d590b6ceab85482a5b8e2d12435ee55b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d590b6ceab85482a5b8e2d12435ee55b</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Trojan.Hupigon-22756]]></virusname>
	<url><![CDATA[http://software.lingxiu98.com.cn/partner_new/lingxiu_4_13975_pure.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.121.104</ip>
	<as>AS23650</as>
	<review>61.147.113.232</review>
	<domain>lingxiu98.com.cn</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>234</line>
	<id>11233205</id>
	<first>1369085989</first>
	<last>0</last>
	<md5>fd06cc5cac509743f0b6d8e1deed0295</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=fd06cc5cac509743f0b6d8e1deed0295</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Trojan.Hupigon-22756]]></virusname>
	<url><![CDATA[http://software.lingxiu98.com.cn/partner_new/lingxiu_4_11632_pure.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.113.232</ip>
	<as>AS23650</as>
	<review>61.147.121.104</review>
	<domain>lingxiu98.com.cn</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>235</line>
	<id>11233203</id>
	<first>1369085989</first>
	<last>0</last>
	<md5>09770b96399f826e3bb334797444c06c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=09770b96399f826e3bb334797444c06c</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Trojan.Hupigon-22756]]></virusname>
	<url><![CDATA[http://software.lingxiu98.com.cn/partner_new/lingxiu_25_80091_pure.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.113.232</ip>
	<as>AS23650</as>
	<review>61.147.121.104</review>
	<domain>lingxiu98.com.cn</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>236</line>
	<id>11233202</id>
	<first>1369085989</first>
	<last>0</last>
	<md5>df98c031868fcc3df5dd9ad7ef8be657</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=df98c031868fcc3df5dd9ad7ef8be657</virustotal>
	<vt_score>1/45 (2.2%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Trojan.Hupigon-22756]]></virusname>
	<url><![CDATA[http://software.lingxiu98.com.cn/partner_new/lingxiu_25_30771_pure.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.121.104</ip>
	<as>AS23650</as>
	<review>61.147.113.232</review>
	<domain>lingxiu98.com.cn</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>237</line>
	<id>11233201</id>
	<first>1369085989</first>
	<last>0</last>
	<md5>48df358b034e1fbcdd04380c6d816518</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=48df358b034e1fbcdd04380c6d816518</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Trojan.Hupigon-22756]]></virusname>
	<url><![CDATA[http://software.lingxiu98.com.cn/partner_new/lingxiu_25_23095_pure.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.113.232</ip>
	<as>AS23650</as>
	<review>61.147.113.232</review>
	<domain>lingxiu98.com.cn</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>238</line>
	<id>11233194</id>
	<first>1369085988</first>
	<last>0</last>
	<md5>9995b352e977ebbcbc09dcb2f93dd4e5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9995b352e977ebbcbc09dcb2f93dd4e5</virustotal>
	<vt_score>22/47 (46.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FCI.A]]></virusname>
	<url><![CDATA[http://soft.ddooo.com/uuauth/wndlq_13434.exe?84e63c1058d48bd8c95292c87b280231.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.75.159.183</ip>
	<as>AS4134</as>
	<review>218.75.159.183</review>
	<domain>ddooo.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>218.75.128.0 - 218.75.159.255</inetnum>
	<netname>CHINANET-HN-CD</netname>
	<descr><![CDATA[CHINANET-HN changde node networkhunan Telecom]]></descr>
	<ns1>ns1.dnsv2.com</ns1>
	<ns2>ns2.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>239</line>
	<id>11233193</id>
	<first>1369085988</first>
	<last>0</last>
	<md5>e1785f0b908e503000455edfa523c3b3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e1785f0b908e503000455edfa523c3b3</virustotal>
	<vt_score>33/46 (71.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[BDS%2FGendal.2277376.A]]></virusname>
	<url><![CDATA[http://soft.ddooo.com/uuauth/wndlq_13434.exe?6d65bad9742d449e87af523f3fd32093.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.75.159.183</ip>
	<as>AS4134</as>
	<review>218.75.159.183</review>
	<domain>ddooo.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>218.75.128.0 - 218.75.159.255</inetnum>
	<netname>CHINANET-HN-CD</netname>
	<descr><![CDATA[CHINANET-HN changde node networkhunan Telecom]]></descr>
	<ns1>ns1.dnsv2.com</ns1>
	<ns2>ns2.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>240</line>
	<id>11233192</id>
	<first>1369085988</first>
	<last>0</last>
	<md5>e1785f0b908e503000455edfa523c3b3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e1785f0b908e503000455edfa523c3b3</virustotal>
	<vt_score>33/46 (71.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[BDS%2FGendal.2277376.A]]></virusname>
	<url><![CDATA[http://soft.ddooo.com/uuauth/wndlq_13434.exe?4465708835ade6fda8fdf6e360ba0076.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.75.159.183</ip>
	<as>AS4134</as>
	<review>218.75.159.183</review>
	<domain>ddooo.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>218.75.128.0 - 218.75.159.255</inetnum>
	<netname>CHINANET-HN-CD</netname>
	<descr><![CDATA[CHINANET-HN changde node networkhunan Telecom]]></descr>
	<ns1>ns1.dnsv2.com</ns1>
	<ns2>ns2.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>241</line>
	<id>11233191</id>
	<first>1369085988</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://sj.63.filmwit.com/down/nq6/53444.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>242</line>
	<id>11233190</id>
	<first>1369085988</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://sj.4p.filmwit.com/down/74/76477.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>243</line>
	<id>11233097</id>
	<first>1369085984</first>
	<last>0</last>
	<md5>00c0fef111fc0fc704374bb003de8b75</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=00c0fef111fc0fc704374bb003de8b75</virustotal>
	<vt_score>2/46 (4.3%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Win.Trojan.Clicker-62]]></virusname>
	<url><![CDATA[http://sd.inmis.com/soft/Cp4Sms.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>219.146.220.101</ip>
	<as>AS17633</as>
	<review>219.146.220.101</review>
	<domain>inmis.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ipreport@sdtele.com</email>
	<inetnum>219.146.0.0 - 219.147.31.255</inetnum>
	<netname>CHINANET-SD</netname>
	<descr><![CDATA[CHINANET shandong province networkShandong Telecom CorporationNo.999,Shunhua road,Jinan,Shandong]]></descr>
	<ns1>ns1.dns.com.cn</ns1>
	<ns2>ns2.dns.com.cn</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>244</line>
	<id>11233095</id>
	<first>1369085984</first>
	<last>0</last>
	<md5>db286906dae31bd10511f9ecc53a0c78</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=db286906dae31bd10511f9ecc53a0c78</virustotal>
	<vt_score>10/47 (21.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Generic8_c.QLN]]></virusname>
	<url><![CDATA[http://sd-g1.archive-host.com/membres/up/8199ffb9ff99e42d014686e16fb552ef217b3a68/ExtraBot.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>91.121.50.65</ip>
	<as>AS16276</as>
	<review>91.121.50.65</review>
	<domain>archive-host.com</domain>
	<country>FR</country>
	<source>RIPE</source>
	<email>abuse@ovh.net</email>
	<inetnum>91.121.32.0 - 91.121.63.255</inetnum>
	<netname>OVH</netname>
	<descr><![CDATA[OVH SASDedicated Servershttp]]></descr>
	<ns1>nsp.hebergement-sql.net</ns1>
	<ns2>dsa3.hebergement-sql.net</ns2>
	<ns3>dsa3-b.hebergement-sql.net</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>245</line>
	<id>11233094</id>
	<first>1369085984</first>
	<last>0</last>
	<md5>4c49dea947fb8cd895777d581cc7287c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4c49dea947fb8cd895777d581cc7287c</virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Gen.Variant.Buzy]]></virusname>
	<url><![CDATA[http://sabxs.gopdeungi.co.kr/data/game_download.php?file_path=/data/down/3/&file_name=%C3%D6%C0%FA%C0%D3%B1%DD%B0%E8%BB%EA%B9%FD.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>175.111.30.40</ip>
	<as>AS38676</as>
	<review>175.111.30.40</review>
	<domain>gopdeungi.co.kr</domain>
	<country>KR</country>
	<source>APNIC</source>
	<email>hostmaster@nic.or.kr</email>
	<inetnum>175.111.16.0 - 175.111.31.255</inetnum>
	<netname>WIZCDN-KR</netname>
	<descr><![CDATA[wizsolution co.,Ltd]]></descr>
	<ns1>ns49.dnsever.com</ns1>
	<ns2>ns34.dnsever.com</ns2>
	<ns3>ns259.dnsever.com</ns3>
	<ns4>ns231.dnsever.com</ns4>
	<ns5>ns33.dnsever.com</ns5>
</entry>
<entry>
	<line>246</line>
	<id>11233093</id>
	<first>1369085984</first>
	<last>0</last>
	<md5>7d98eb63bed7c8b6c2ebd5aecc606640</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7d98eb63bed7c8b6c2ebd5aecc606640</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://s9.zv.filmwit.com/down/g5z/29730.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>247</line>
	<id>11233092</id>
	<first>1369085984</first>
	<last>0</last>
	<md5>4b3cfa79f7414cf7eeed1280e421630e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4b3cfa79f7414cf7eeed1280e421630e</virustotal>
	<vt_score>30/47 (63.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://s9.down.gd/201211/tcyyj.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>112.84.185.57</ip>
	<as>AS4837</as>
	<review>112.84.185.57</review>
	<domain>down.gd</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@chinaunicom.cn</email>
	<inetnum>112.80.0.0 - 112.87.255.255</inetnum>
	<netname>UNICOM-JS</netname>
	<descr><![CDATA[China Unicom Jiangsu province networkChina UnicomChina Unicom CHINA169 Jiangsu Province Network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>248</line>
	<id>11233084</id>
	<first>1369085983</first>
	<last>0</last>
	<md5>10ba6b1da6831c27060777b7b980d33d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=10ba6b1da6831c27060777b7b980d33d</virustotal>
	<vt_score>6/44 (13.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://s3.rl.filmwit.com/down/yxr/10014.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>249</line>
	<id>11233072</id>
	<first>1369085983</first>
	<last>0</last>
	<md5>92833123c7aa69f8b856cd1b0e9e3b7a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=92833123c7aa69f8b856cd1b0e9e3b7a</virustotal>
	<vt_score>5/47 (10.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://s2.fr.filmwit.com/down/l1f/35516.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>250</line>
	<id>11233071</id>
	<first>1369085983</first>
	<last>0</last>
	<md5>91abb83643743a2ccad7149b143c10f9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=91abb83643743a2ccad7149b143c10f9</virustotal>
	<vt_score>27/45 (60%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://s2.down.gd/201211/DICOM.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.116.83</ip>
	<as>AS23650</as>
	<review>61.147.116.83</review>
	<domain>down.gd</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>251</line>
	<id>11233069</id>
	<first>1369085982</first>
	<last>0</last>
	<md5>91abb83643743a2ccad7149b143c10f9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=91abb83643743a2ccad7149b143c10f9</virustotal>
	<vt_score>27/45 (60%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://s1.down.gd/201211/DICOM.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.116.83</ip>
	<as>AS23650</as>
	<review>61.147.116.83</review>
	<domain>down.gd</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>252</line>
	<id>11233068</id>
	<first>1369085982</first>
	<last>0</last>
	<md5>99c45f7c0fbe2690e88591177940aefa</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=99c45f7c0fbe2690e88591177940aefa</virustotal>
	<vt_score>12/47 (25.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://s10.down.gd/201211/MixMeisterBPMAnalyzer.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>112.84.185.57</ip>
	<as>AS4837</as>
	<review>61.147.116.83</review>
	<domain>down.gd</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>112.80.0.0 - 112.87.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>253</line>
	<id>11233067</id>
	<first>1369085982</first>
	<last>0</last>
	<md5>e8978fa78fb7984de3c7644cb58a64ce</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e8978fa78fb7984de3c7644cb58a64ce</virustotal>
	<vt_score>6/36 (16.7%)</vt_score>
	<scanner>BitDefender</scanner>
	<virusname><![CDATA[Gen%3AVariant.Kazy.176232]]></virusname>
	<url><![CDATA[http://ryhxibac.us/userid1.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>50.72.216.211</ip>
	<as>AS6327</as>
	<review>95.69.132.124</review>
	<domain>ryhxibac.us</domain>
	<country>UA</country>
	<source>RIPE</source>
	<email>sirmax@noname.com.ua</email>
	<inetnum>50.64.0.0 - 50.72.255.255</inetnum>
	<netname>AB-KHARKOV-NET</netname>
	<descr><![CDATA[LLC AB Ukraine]]></descr>
	<ns1>ns4.ryhxibac.us</ns1>
	<ns2>ns5.ryhxibac.us</ns2>
	<ns3>ns3.ryhxibac.us</ns3>
	<ns4>ns2.ryhxibac.us</ns4>
	<ns5>ns1.ryhxibac.us</ns5>
</entry>
<entry>
	<line>254</line>
	<id>11233061</id>
	<first>1369085982</first>
	<last>0</last>
	<md5>35cb12fa299b59eb11a55bf665399f75</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=35cb12fa299b59eb11a55bf665399f75</virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[PUP.Casino]]></virusname>
	<url><![CDATA[http://royalvegas.eu/download.casino?file_name=royalvegas.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>193.169.206.146</ip>
	<as>AS36983</as>
	<review>193.169.206.146</review>
	<domain>royalvegas.eu</domain>
	<country>GB</country>
	<source>RIPE</source>
	<email>abuse@c4l.co.uk</email>
	<inetnum>193.169.206.0 - 193.169.207.255</inetnum>
	<netname>DIGIMEDIA-NET</netname>
	<descr><![CDATA[DigiMedia LtdDigimedia Ltd.]]></descr>
	<ns1>ns1.olgdns.eu</ns1>
	<ns2>ns3.olgdns.net</ns2>
	<ns3>ns2.olgdns.eu</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>255</line>
	<id>11232936</id>
	<first>1369085973</first>
	<last>0</last>
	<md5>116ec94b4da43e87956a1120cb0cd6ce</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=116ec94b4da43e87956a1120cb0cd6ce</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Heur.Packed.Unknown]]></virusname>
	<url><![CDATA[http://remoporntube.de/30/movie1080p.mkv.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>93.115.95.6</ip>
	<as>AS39756</as>
	<review>93.115.95.6</review>
	<domain>remoporntube.de</domain>
	<country>RO</country>
	<source>RIPE</source>
	<email></email>
	<inetnum>93.112.0.0 - 93.119.255.255</inetnum>
	<netname></netname>
	<descr><![CDATA[]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>256</line>
	<id>11232935</id>
	<first>1369085973</first>
	<last>0</last>
	<md5>8201c2163267c645babe79e69319d195</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8201c2163267c645babe79e69319d195</virustotal>
	<vt_score>2/36 (5.6%)</vt_score>
	<scanner>Comodo</scanner>
	<virusname><![CDATA[Heur.Packed.Unknown]]></virusname>
	<url><![CDATA[http://remoporntube.de/20/movie1080p.mkv.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>93.115.95.6</ip>
	<as>AS39756</as>
	<review>93.115.95.6</review>
	<domain>remoporntube.de</domain>
	<country>RO</country>
	<source>RIPE</source>
	<email></email>
	<inetnum>93.112.0.0 - 93.119.255.255</inetnum>
	<netname></netname>
	<descr><![CDATA[]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>257</line>
	<id>11232934</id>
	<first>1369085972</first>
	<last>0</last>
	<md5>18efe5fef7e3d566fe8313408b1b2dea</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=18efe5fef7e3d566fe8313408b1b2dea</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://r8.yz.filmwit.com/down/1uy/83522.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>258</line>
	<id>11232932</id>
	<first>1369085972</first>
	<last>0</last>
	<md5>70efd8d2c13be870b28b8c8d6e58af38</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=70efd8d2c13be870b28b8c8d6e58af38</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://r3.qm.filmwit.com/down/5bq/51116.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>259</line>
	<id>11232931</id>
	<first>1369085972</first>
	<last>0</last>
	<md5>a050fe175c4fac6d1901866f42e43e2d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a050fe175c4fac6d1901866f42e43e2d</virustotal>
	<vt_score>5/47 (10.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://r2.6s.filmwit.com/down/j46/85241.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>260</line>
	<id>11232929</id>
	<first>1369085972</first>
	<last>0</last>
	<md5>7e2ecb68e8e898773834307abab1ca5b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7e2ecb68e8e898773834307abab1ca5b</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://q.oz.filmwit.com/down/e0o/47416.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>261</line>
	<id>11232928</id>
	<first>1369085972</first>
	<last>0</last>
	<md5>9bd0c2894d2b1054c37ffe29d0a5fde6</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9bd0c2894d2b1054c37ffe29d0a5fde6</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://qk.w4.filmwit.com/down/xnw/94472.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>262</line>
	<id>11232923</id>
	<first>1369085971</first>
	<last>0</last>
	<md5>b8554485b1ef1bdd92a7a46a2c44c2b2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b8554485b1ef1bdd92a7a46a2c44c2b2</virustotal>
	<vt_score>18/46 (39.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FFraud.Gen8]]></virusname>
	<url><![CDATA[http://qils.ru/x8/NiceCalls.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>91.219.195.35</ip>
	<as>AS49505</as>
	<review>91.219.195.35</review>
	<domain>qils.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>michelin@best-hoster.ru</email>
	<inetnum>91.219.192.0 - 91.219.195.255</inetnum>
	<netname>BEST-HOSTER-NET</netname>
	<descr><![CDATA[Best-Hoster Group Co. Ltd.Best-Hoster Group Co. Ltd.]]></descr>
	<ns1>ns129.dns-rus.net</ns1>
	<ns2>ns130.dns-rus.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>263</line>
	<id>11232922</id>
	<first>1369085971</first>
	<last>0</last>
	<md5>9dfce346b1428aad62ff179bba7f2610</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9dfce346b1428aad62ff179bba7f2610</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://qf.41.filmwit.com/down/o24/72771.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>264</line>
	<id>11232918</id>
	<first>1369085971</first>
	<last>0</last>
	<md5>c64753bd221ddb81705d6721bf8b46d7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c64753bd221ddb81705d6721bf8b46d7</virustotal>
	<vt_score>8/45 (17.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Win32.HLLW.Shepher.2]]></virusname>
	<url><![CDATA[http://ptyes.no-ip.org/ptreg/zyk104/1875_fix_014.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>64.56.65.210</ip>
	<as>AS22439</as>
	<review>64.56.65.210</review>
	<domain>no-ip.org</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@perfectip.net</email>
	<inetnum>64.56.64.0 - 64.56.79.255</inetnum>
	<netname>PERFECT-INTERNATIONAL</netname>
	<descr><![CDATA[Perfect International, Inc PI 801 S. Grand Ave #1204 Los Angeles CA 90017]]></descr>
	<ns1>nf2.no-ip.com</ns1>
	<ns2>nf4.no-ip.com</ns2>
	<ns3>nf5.no-ip.com</ns3>
	<ns4>nf1.no-ip.com</ns4>
	<ns5>nf3.no-ip.com</ns5>
</entry>
<entry>
	<line>265</line>
	<id>11232917</id>
	<first>1369085971</first>
	<last>0</last>
	<md5>779c38aa0c9ff5bd9fbf932dc244c889</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=779c38aa0c9ff5bd9fbf932dc244c889</virustotal>
	<vt_score>5/47 (10.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://pt.fe.filmwit.com/down/3wf/93860.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>266</line>
	<id>11232916</id>
	<first>1369085971</first>
	<last>0</last>
	<md5>da9ea0584a0a8135256ab34cba057c30</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=da9ea0584a0a8135256ab34cba057c30</virustotal>
	<vt_score>5/47 (10.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://pt.dg.filmwit.com/down/04d/13760.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>267</line>
	<id>11232915</id>
	<first>1369085971</first>
	<last>0</last>
	<md5>d2571ec5901a696274a37788d79c93b6</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d2571ec5901a696274a37788d79c93b6</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[UDS%3ADangerousObject.Multi.Generic]]></virusname>
	<url><![CDATA[http://proloader.net/get/us/PROloader_Setup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>195.208.184.55</ip>
	<as>AS51764</as>
	<review>195.208.184.55</review>
	<domain>proloader.net</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email></email>
	<inetnum>195.208.0.0 - 195.208.255.255</inetnum>
	<netname></netname>
	<descr><![CDATA[]]></descr>
	<ns1>ns1.regway.com</ns1>
	<ns2>ns2.regway.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>268</line>
	<id>11232913</id>
	<first>1369085970</first>
	<last>0</last>
	<md5>b961c85ba63de3d5cc56b68f28f89a29</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b961c85ba63de3d5cc56b68f28f89a29</virustotal>
	<vt_score>15/46 (32.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Suspicious+file]]></virusname>
	<url><![CDATA[http://pr0mocione.com/botup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>216.240.138.66</ip>
	<as>AS7796</as>
	<review>216.240.138.66</review>
	<domain>pr0mocione.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@atmlinkinc.com</email>
	<inetnum>216.240.128.0 - 216.240.159.255</inetnum>
	<netname>C-COMMUNICATIONS</netname>
	<descr><![CDATA[ATMLINK, INC. ATMLIN 600 W. 7th Street Suite 360 Los Angeles CA 90017]]></descr>
	<ns1>ns3.freedns.ws</ns1>
	<ns2>ns4.freedns.ws</ns2>
	<ns3>ns2.freedns.ws</ns3>
	<ns4>ns1.freedns.ws</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>269</line>
	<id>11232906</id>
	<first>1369085969</first>
	<last>0</last>
	<md5>e304b69e1c7dd25f2235cc27c21c7c84</md5>
	<virustotal></virustotal>
	<vt_score>9/46 (19.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADWARE%2FAdware.Gen]]></virusname>
	<url><![CDATA[http://pic.rmzt.com/2013/04/18-xp/cqndfgn.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.166</ip>
	<as>AS4134</as>
	<review>222.187.220.166</review>
	<domain>rmzt.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>270</line>
	<id>11232905</id>
	<first>1369085969</first>
	<last>0</last>
	<md5>6a0a21aaac02c71ec90011070c2e810f</md5>
	<virustotal></virustotal>
	<vt_score>9/44 (20.5%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADWARE%2FAdware.Gen]]></virusname>
	<url><![CDATA[http://pic.rmzt.com/2013/04/17-xp/nhbjht.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.166</ip>
	<as>AS4134</as>
	<review>222.187.220.166</review>
	<domain>rmzt.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>271</line>
	<id>11232904</id>
	<first>1369085968</first>
	<last>0</last>
	<md5>569059a31f23b9b81b975a51d377c126</md5>
	<virustotal></virustotal>
	<vt_score>9/47 (19.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADWARE%2FAdware.Gen]]></virusname>
	<url><![CDATA[http://pic.rmzt.com/2013/02/21/lpsjl.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.166</ip>
	<as>AS4134</as>
	<review>222.187.220.166</review>
	<domain>rmzt.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>272</line>
	<id>11232903</id>
	<first>1369085967</first>
	<last>0</last>
	<md5>71cbccfc4025554a058097ddfafd6f54</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=71cbccfc4025554a058097ddfafd6f54</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADWARE%2FAdware.Gen]]></virusname>
	<url><![CDATA[http://pic.rmzt.com/2013/01/19-1/ssllw.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.166</ip>
	<as>AS4134</as>
	<review>222.187.220.166</review>
	<domain>rmzt.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>273</line>
	<id>11232902</id>
	<first>1369085967</first>
	<last>0</last>
	<md5>00f3825405946894c41014b398cb8a2b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=00f3825405946894c41014b398cb8a2b</virustotal>
	<vt_score>9/44 (20.5%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADWARE%2FAdware.Gen]]></virusname>
	<url><![CDATA[http://pic.rmzt.com/2012/12/14/jyzdw.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.166</ip>
	<as>AS4134</as>
	<review>222.187.220.166</review>
	<domain>rmzt.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>274</line>
	<id>11232901</id>
	<first>1369085967</first>
	<last>0</last>
	<md5>872136da46144e4e079dc120f60e7c27</md5>
	<virustotal></virustotal>
	<vt_score>8/47 (17%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADWARE%2FAdware.Gen]]></virusname>
	<url><![CDATA[http://pic.rmzt.com/2012/05/16/lb.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.166</ip>
	<as>AS4134</as>
	<review>222.187.220.166</review>
	<domain>rmzt.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>275</line>
	<id>11232896</id>
	<first>1369085966</first>
	<last>0</last>
	<md5>55b1637d267e80a0ffe5754fd5454b44</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=55b1637d267e80a0ffe5754fd5454b44</virustotal>
	<vt_score>10/35 (28.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.Ming.47]]></virusname>
	<url><![CDATA[http://password.mingsoft.com/program/MPSetup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>173.193.0.244</ip>
	<as>AS36351</as>
	<review>173.193.0.244</review>
	<domain>mingsoft.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@softlayer.com</email>
	<inetnum>173.192.0.0 - 173.193.255.255</inetnum>
	<netname>SOFTLAYER-4-8</netname>
	<descr><![CDATA[SoftLayer Technologies Inc. SOFTL 1950 N Stemmons Freeway Dallas TX 75207]]></descr>
	<ns1>ns2.hostinginsiders.com</ns1>
	<ns2>ns1.hostinginsiders.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>276</line>
	<id>11232892</id>
	<first>1369085966</first>
	<last>0</last>
	<md5>cce0b7ac5a7552b12166db8fd1113bd2</md5>
	<virustotal></virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.RCBH1EK]]></virusname>
	<url><![CDATA[http://padfilesubmission.info/puzz/FHA_House_img_Puzzle.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>216.172.167.18</ip>
	<as>AS36351</as>
	<review>216.172.167.18</review>
	<domain>padfilesubmission.info</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ipadmin@websitewelcome.com</email>
	<inetnum>216.172.160.0 - 216.172.191.255</inetnum>
	<netname>HGBLOCK-2</netname>
	<descr><![CDATA[WEBSITEWELCOME.COM BO 11251 Northwest Freeway Houston TX 77092]]></descr>
	<ns1>ns3112.hostgator.com</ns1>
	<ns2>ns3111.hostgator.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>277</line>
	<id>11232890</id>
	<first>1369085966</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://p3.y6.filmwit.com/down/kvy/63446.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>278</line>
	<id>11232889</id>
	<first>1369085966</first>
	<last>0</last>
	<md5>92cac6419d41f5d68ca10ced55bbe11d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=92cac6419d41f5d68ca10ced55bbe11d</virustotal>
	<vt_score>22/36 (61.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FStartPage.nan.10]]></virusname>
	<url><![CDATA[http://o.uzzf.com/wangzhong-uzf.com.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.251.230</ip>
	<as>AS4134</as>
	<review>61.187.251.230</review>
	<domain>uzzf.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.187.240.0 - 61.187.254.255</inetnum>
	<netname>CHINANET-HN-CZ</netname>
	<descr><![CDATA[CHINANET-HN Chenzhou node networkhunan Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>279</line>
	<id>11232888</id>
	<first>1369085966</first>
	<last>0</last>
	<md5>673b6c5813e755d5befb15cb4f6faf14</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=673b6c5813e755d5befb15cb4f6faf14</virustotal>
	<vt_score>19/47 (40.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FAgent.vvi.2]]></virusname>
	<url><![CDATA[http://o.uzzf.com/Radmin_V3.4.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.251.230</ip>
	<as>AS4134</as>
	<review>61.187.251.230</review>
	<domain>uzzf.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.187.240.0 - 61.187.254.255</inetnum>
	<netname>CHINANET-HN-CZ</netname>
	<descr><![CDATA[CHINANET-HN Chenzhou node networkhunan Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>280</line>
	<id>11232887</id>
	<first>1369085966</first>
	<last>0</last>
	<md5>dfd89f73add6890e08c045d83a05a559</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=dfd89f73add6890e08c045d83a05a559</virustotal>
	<vt_score>34/46 (73.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FStartPage.nan.10]]></virusname>
	<url><![CDATA[http://o.uzzf.com/mydisktest.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.251.230</ip>
	<as>AS4134</as>
	<review>61.187.251.230</review>
	<domain>uzzf.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.187.240.0 - 61.187.254.255</inetnum>
	<netname>CHINANET-HN-CZ</netname>
	<descr><![CDATA[CHINANET-HN Chenzhou node networkhunan Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>281</line>
	<id>11232886</id>
	<first>1369085966</first>
	<last>0</last>
	<md5>1730b0e693913f01f618d6aa6b61916b</md5>
	<virustotal></virustotal>
	<vt_score>37/46 (80.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FStartPage.nan.10]]></virusname>
	<url><![CDATA[http://o.uzzf.com/%5Bwww.uzzf.com%5Dwbkd3.0.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.251.230</ip>
	<as>AS4134</as>
	<review>61.187.251.230</review>
	<domain>uzzf.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.187.240.0 - 61.187.254.255</inetnum>
	<netname>CHINANET-HN-CZ</netname>
	<descr><![CDATA[CHINANET-HN Chenzhou node networkhunan Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>282</line>
	<id>11232885</id>
	<first>1369085966</first>
	<last>0</last>
	<md5>c9f142ee20160fceb046e316df9e3b6b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c9f142ee20160fceb046e316df9e3b6b</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://outlook-express.todownload.com/get/file/id/313064/index.html?lp=adwords&gclid;/;=ck3_6a6f0rucfqthqgodb1ca6a&s;/;=jwtruispb91e2x0o3dzhmw&t;/;=1379102290&ext;/;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-163.awsdns-20.com</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>283</line>
	<id>11232884</id>
	<first>1369085965</first>
	<last>0</last>
	<md5>5bb0dabed4fd86722cd79bbbb5fa0dd7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5bb0dabed4fd86722cd79bbbb5fa0dd7</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://outlook-express.todownload.com/get/file/id/313064/index.html%20?lp=adwords&gclid/;=ck3_6a6f0rucfqthqgodb1ca6a&s/;=jwtruispb%2091e2x0o3dzhmw&t/;=1379102290&ext/;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-163.awsdns-20.com</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>284</line>
	<id>11232882</id>
	<first>1369085965</first>
	<last>0</last>
	<md5>e6f4d3ad651e2693e7b7bcf633b49942</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e6f4d3ad651e2693e7b7bcf633b49942</virustotal>
	<vt_score>25/47 (53.2%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FRogue.8477409.1]]></virusname>
	<url><![CDATA[http://osha.gov/SLTC/ergonomics/lift_91.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>152.180.134.78</ip>
	<as>AS701</as>
	<review>152.180.134.78</review>
	<domain>osha.gov</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse-mail@verizonbusiness.com</email>
	<inetnum>152.176.0.0 - 152.199.255.255</inetnum>
	<netname>UU-152-176</netname>
	<descr><![CDATA[ANS Communications, Inc ANS 22001 Loudoun County Parkway Ashburn VA 20147]]></descr>
	<ns1>dns02.osha.gov</ns1>
	<ns2>dns01.osha.gov</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>285</line>
	<id>11232881</id>
	<first>1369085965</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://op.ad.filmwit.com/down/95a/84325.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>286</line>
	<id>11232880</id>
	<first>1369085965</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://op.ad.filmwit.com/down/95a/84325.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>287</line>
	<id>11232879</id>
	<first>1369085965</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://on.ix.filmwit.com/down/kai/45952.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>288</line>
	<id>11232872</id>
	<first>1369085965</first>
	<last>0</last>
	<md5>d54f4c4634ba6e84a6b56dc7ee7d7341</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d54f4c4634ba6e84a6b56dc7ee7d7341</virustotal>
	<vt_score>14/36 (38.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FFraud.Gen8]]></virusname>
	<url><![CDATA[http://onefilegetthere.ru/files/UltraISO9.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>37.1.217.161</ip>
	<as>AS28753</as>
	<review>37.1.217.161</review>
	<domain>onefilegetthere.ru</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>abuse@3nt.com</email>
	<inetnum>37.1.216.0 - 37.1.223.255</inetnum>
	<netname>INFERNO-NL-DE</netname>
	<descr><![CDATA[********************************************************* We provide virtual and dedicated servers on this Subnet.** Those services are self managed by our customers* therefore, we are not using this IP space ourselves* and it could be assigned to variou]]></descr>
	<ns1>ns2.onefilegetthere.ru</ns1>
	<ns2>ns1.onefilegetthere.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>289</line>
	<id>11232870</id>
	<first>1369085965</first>
	<last>0</last>
	<md5>5806ebae410f256f34505fb3289e7ea5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5806ebae410f256f34505fb3289e7ea5</virustotal>
	<vt_score>8/45 (17.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FKryptik.AGAJ%21tr]]></virusname>
	<url><![CDATA[http://ojmeqkuq.ru/ballsof.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>97.96.158.113</ip>
	<as>AS10994</as>
	<review>62.84.62.9</review>
	<domain>ojmeqkuq.ru</domain>
	<country>KZ</country>
	<source>RIPE</source>
	<email>abuse@almanet.kz</email>
	<inetnum>97.96.0.0 - 97.101.111.255</inetnum>
	<netname>ALMANET-ALA-BROADBAND2</netname>
	<descr><![CDATA[ALMANET broadband clients in Almaty, scope 2JSC AlmaTV]]></descr>
	<ns1>ns5.ojmeqkuq.ru</ns1>
	<ns2>ns6.ojmeqkuq.ru</ns2>
	<ns3>ns1.ojmeqkuq.ru</ns3>
	<ns4>ns2.ojmeqkuq.ru</ns4>
	<ns5>ns4.ojmeqkuq.ru</ns5>
</entry>
<entry>
	<line>290</line>
	<id>11232868</id>
	<first>1369085965</first>
	<last>0</last>
	<md5>1abacb405aa75c845a01a5abfb7a96f1</md5>
	<virustotal></virustotal>
	<vt_score>9/47 (19.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FKryptik.AGAJ%21tr]]></virusname>
	<url><![CDATA[http://ohziqtow.us/goodtr1.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>176.110.22.152</ip>
	<as>AS41911</as>
	<review>114.166.64.49</review>
	<domain>ohziqtow.us</domain>
	<country>JP</country>
	<source>APNIC</source>
	<email>hostmaster@lanet.kiev.ua</email>
	<inetnum>176.110.0.0 - 176.110.31.255</inetnum>
	<netname>EFIR-NETWORK</netname>
	<descr><![CDATA[Trk Efir Ltd.Lanet Network Customers More Specific Route]]></descr>
	<ns1>ns3.ohziqtow.us</ns1>
	<ns2>ns5.ohziqtow.us</ns2>
	<ns3>ns6.ohziqtow.us</ns3>
	<ns4>ns1.ohziqtow.us</ns4>
	<ns5>ns4.ohziqtow.us</ns5>
</entry>
<entry>
	<line>291</line>
	<id>11232867</id>
	<first>1369085964</first>
	<last>0</last>
	<md5>90dfe943e05a6686a38bf23d5c1d7135</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=90dfe943e05a6686a38bf23d5c1d7135</virustotal>
	<vt_score>2/36 (5.6%)</vt_score>
	<scanner>Avast</scanner>
	<virusname><![CDATA[Win32%3ARegrun-GR+Trj]]></virusname>
	<url><![CDATA[http://oficomputer.com/programas/Supremo.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>62.149.128.151</ip>
	<as>AS31034</as>
	<review>62.149.128.74</review>
	<domain>oficomputer.com</domain>
	<country>IT</country>
	<source>RIPE</source>
	<email>hostmaster@technorail.com</email>
	<inetnum>62.149.128.0 - 62.149.137.255</inetnum>
	<netname>TECHNORAIL-NET</netname>
	<descr><![CDATA[Technorail srlInternet Service and Access ProviderTechnorail S.r.l. - Aruba.it]]></descr>
	<ns1>dns4.arubadns.cz</ns1>
	<ns2>dns3.arubadns.net</ns2>
	<ns3>dns2.technorail.com</ns3>
	<ns4>dns.technorail.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>292</line>
	<id>11232866</id>
	<first>1369085964</first>
	<last>0</last>
	<md5>5e0063f7cb32f44688dcc4536df895ea</md5>
	<virustotal></virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FKryptik.AGAJ%21tr]]></virusname>
	<url><![CDATA[http://offpornonline.de/30/movie1080p.mkv.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>93.115.95.6</ip>
	<as>AS39756</as>
	<review>93.115.95.6</review>
	<domain>offpornonline.de</domain>
	<country>RO</country>
	<source>RIPE</source>
	<email></email>
	<inetnum>93.112.0.0 - 93.119.255.255</inetnum>
	<netname></netname>
	<descr><![CDATA[]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>293</line>
	<id>11232865</id>
	<first>1369085964</first>
	<last>0</last>
	<md5>ea157e4dc55184ced00e1185d3765f99</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ea157e4dc55184ced00e1185d3765f99</virustotal>
	<vt_score>3/35 (8.6%)</vt_score>
	<scanner>Comodo</scanner>
	<virusname><![CDATA[Heur.Packed.Unknown]]></virusname>
	<url><![CDATA[http://offpornonline.de/20/movie1080p.mkv.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>93.115.95.6</ip>
	<as>AS39756</as>
	<review>93.115.95.6</review>
	<domain>offpornonline.de</domain>
	<country>RO</country>
	<source>RIPE</source>
	<email></email>
	<inetnum>93.112.0.0 - 93.119.255.255</inetnum>
	<netname></netname>
	<descr><![CDATA[]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>294</line>
	<id>11232864</id>
	<first>1369085964</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://nx.7d.filmwit.com/down/ab7/35623.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>295</line>
	<id>11232863</id>
	<first>1369085964</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://nx.01.filmwit.com/down/9s0/67597.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>296</line>
	<id>11232862</id>
	<first>1369085964</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://nv.hj.filmwit.com/down/ush/93644.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>297</line>
	<id>11232859</id>
	<first>1369085964</first>
	<last>0</last>
	<md5>7a7990bae9d38cad0ab4cc7d0eb87fbc</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7a7990bae9d38cad0ab4cc7d0eb87fbc</virustotal>
	<vt_score>25/35 (71.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.Banker.fgw.107]]></virusname>
	<url><![CDATA[http://novonovinho.rbcmail.ru/novinho.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>62.141.94.82</ip>
	<as>AS8350</as>
	<review>62.141.94.82</review>
	<domain>rbcmail.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@relax.ru</email>
	<inetnum>62.141.94.0 - 62.141.94.255</inetnum>
	<netname>RU-SOVINTEL-MSK-MediaMir-NET</netname>
	<descr><![CDATA[101005 Russia Moscow, ZC-4325987Majorov per-k, 14, KL-1899980Media World Ltd, http]]></descr>
	<ns1>ns2.pochta.ru</ns1>
	<ns2>ns3.pochta.ru</ns2>
	<ns3>ns1.pochta.ru</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>298</line>
	<id>11232858</id>
	<first>1369085963</first>
	<last>0</last>
	<md5>966c3410a1a1552304a241a36b5b53b0</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=966c3410a1a1552304a241a36b5b53b0</virustotal>
	<vt_score>42/46 (91.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.Gen]]></virusname>
	<url><![CDATA[http://nmb.lydfjxc.com/hezi/soft/dnfbox.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>121.12.116.11</ip>
	<as>AS4134</as>
	<review>121.12.116.11</review>
	<domain>lydfjxc.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@gddc.com.cn</email>
	<inetnum>121.8.0.0 - 121.15.255.255</inetnum>
	<netname>CHINANET-GD</netname>
	<descr><![CDATA[CHINANET Guangdong province networkChina TelecomNo.31,jingrong streetBeijing 100032From Guangdong Network of ChinaTelecom]]></descr>
	<ns1>dns6.iidns.com</ns1>
	<ns2>dns1.iidns.com</ns2>
	<ns3>dns5.iidns.com</ns3>
	<ns4>dns2.iidns.com</ns4>
	<ns5>dns4.iidns.com</ns5>
</entry>
<entry>
	<line>299</line>
	<id>11232857</id>
	<first>1369085963</first>
	<last>0</last>
	<md5>2fc230aff13e902261bf7cec77dc761c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=2fc230aff13e902261bf7cec77dc761c</virustotal>
	<vt_score>11/46 (23.9%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FSpy.199072.1]]></virusname>
	<url><![CDATA[http://neirong.fuzhicheng.com/e6/xiazai/setup_3624.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.93.202.115</ip>
	<as>AS23650</as>
	<review>218.93.202.115</review>
	<domain>fuzhicheng.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>218.90.0.0 - 218.94.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>300</line>
	<id>11232852</id>
	<first>1369085962</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://n9.u.filmwit.com/down/vo/99585.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>301</line>
	<id>11232851</id>
	<first>1369085962</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://n9.mx.filmwit.com/down/dzm/73366.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>302</line>
	<id>11232850</id>
	<first>1369085962</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://n5.70.filmwit.com/down/cq7/85942.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>303</line>
	<id>11232849</id>
	<first>1369085962</first>
	<last>0</last>
	<md5>a59e8849f2ec5225b9356d0d71a83083</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a59e8849f2ec5225b9356d0d71a83083</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.3371008.4]]></virusname>
	<url><![CDATA[http://my.hufufs.com/6/sky-21/139my-6.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.230.124.147</ip>
	<as>AS4134</as>
	<review>115.230.124.147</review>
	<domain>hufufs.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.224.0.0 - 115.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>304</line>
	<id>11232848</id>
	<first>1369085961</first>
	<last>0</last>
	<md5>a59e8849f2ec5225b9356d0d71a83083</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a59e8849f2ec5225b9356d0d71a83083</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.3371008.4]]></virusname>
	<url><![CDATA[http://my.hufufs.com/6/sky-12/139my-6.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.230.124.137</ip>
	<as>AS4134</as>
	<review>115.230.124.147</review>
	<domain>hufufs.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.224.0.0 - 115.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>305</line>
	<id>11232847</id>
	<first>1369085961</first>
	<last>0</last>
	<md5>a59e8849f2ec5225b9356d0d71a83083</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a59e8849f2ec5225b9356d0d71a83083</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.3371008.4]]></virusname>
	<url><![CDATA[http://my.hufufs.com/6/kk-31/139my-6.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.230.124.145</ip>
	<as>AS4134</as>
	<review>115.230.124.147</review>
	<domain>hufufs.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.224.0.0 - 115.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>306</line>
	<id>11232846</id>
	<first>1369085961</first>
	<last>0</last>
	<md5>a59e8849f2ec5225b9356d0d71a83083</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a59e8849f2ec5225b9356d0d71a83083</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.3371008.4]]></virusname>
	<url><![CDATA[http://my.hufufs.com/6/kk-24/139my-6.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.230.124.147</ip>
	<as>AS4134</as>
	<review>115.230.124.145</review>
	<domain>hufufs.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.224.0.0 - 115.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>307</line>
	<id>11232845</id>
	<first>1369085961</first>
	<last>0</last>
	<md5>a59e8849f2ec5225b9356d0d71a83083</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a59e8849f2ec5225b9356d0d71a83083</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.3371008.4]]></virusname>
	<url><![CDATA[http://my.hufufs.com/6/kk-22/139my-6.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.230.124.137</ip>
	<as>AS4134</as>
	<review>115.230.124.145</review>
	<domain>hufufs.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.224.0.0 - 115.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>308</line>
	<id>11232843</id>
	<first>1369085961</first>
	<last>0</last>
	<md5>a59e8849f2ec5225b9356d0d71a83083</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a59e8849f2ec5225b9356d0d71a83083</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.3371008.4]]></virusname>
	<url><![CDATA[http://my.hufufs.com/6/KK-19/139my-6.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.230.124.147</ip>
	<as>AS4134</as>
	<review>115.230.124.145</review>
	<domain>hufufs.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.224.0.0 - 115.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>309</line>
	<id>11232842</id>
	<first>1369085961</first>
	<last>0</last>
	<md5>a59e8849f2ec5225b9356d0d71a83083</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a59e8849f2ec5225b9356d0d71a83083</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.3371008.4]]></virusname>
	<url><![CDATA[http://my.hufufs.com/6/kk-18/139my-6.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.230.124.137</ip>
	<as>AS4134</as>
	<review>115.230.124.147</review>
	<domain>hufufs.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.224.0.0 - 115.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>310</line>
	<id>11232841</id>
	<first>1369085961</first>
	<last>0</last>
	<md5>a59e8849f2ec5225b9356d0d71a83083</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a59e8849f2ec5225b9356d0d71a83083</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.3371008.4]]></virusname>
	<url><![CDATA[http://my.hufufs.com/6/KK-17/139my-6.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.230.124.145</ip>
	<as>AS4134</as>
	<review>115.230.124.147</review>
	<domain>hufufs.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.224.0.0 - 115.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>311</line>
	<id>11232840</id>
	<first>1369085961</first>
	<last>0</last>
	<md5>a59e8849f2ec5225b9356d0d71a83083</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a59e8849f2ec5225b9356d0d71a83083</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.3371008.4]]></virusname>
	<url><![CDATA[http://my.hufufs.com/6/kk-16/139my-6.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.230.124.147</ip>
	<as>AS4134</as>
	<review>115.230.124.147</review>
	<domain>hufufs.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.224.0.0 - 115.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>312</line>
	<id>11232839</id>
	<first>1369085961</first>
	<last>0</last>
	<md5>a59e8849f2ec5225b9356d0d71a83083</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a59e8849f2ec5225b9356d0d71a83083</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.3371008.4]]></virusname>
	<url><![CDATA[http://my.hufufs.com/6/kk-15/139my-6.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.230.124.137</ip>
	<as>AS4134</as>
	<review>115.230.124.145</review>
	<domain>hufufs.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.224.0.0 - 115.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>313</line>
	<id>11232838</id>
	<first>1369085961</first>
	<last>0</last>
	<md5>a59e8849f2ec5225b9356d0d71a83083</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a59e8849f2ec5225b9356d0d71a83083</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.3371008.4]]></virusname>
	<url><![CDATA[http://my.hufufs.com/4/SKY-34/139my-6.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.230.124.145</ip>
	<as>AS4134</as>
	<review>115.230.124.145</review>
	<domain>hufufs.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.224.0.0 - 115.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>314</line>
	<id>11232837</id>
	<first>1369085961</first>
	<last>0</last>
	<md5>a59e8849f2ec5225b9356d0d71a83083</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a59e8849f2ec5225b9356d0d71a83083</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.3371008.4]]></virusname>
	<url><![CDATA[http://my.hufufs.com/4/sky-24/139my-6.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.230.124.147</ip>
	<as>AS4134</as>
	<review>115.230.124.145</review>
	<domain>hufufs.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.224.0.0 - 115.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>315</line>
	<id>11232836</id>
	<first>1369085961</first>
	<last>0</last>
	<md5>a59e8849f2ec5225b9356d0d71a83083</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a59e8849f2ec5225b9356d0d71a83083</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.3371008.4]]></virusname>
	<url><![CDATA[http://my.hufufs.com/4/sky-23/139my-6.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.230.124.137</ip>
	<as>AS4134</as>
	<review>115.230.124.145</review>
	<domain>hufufs.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.224.0.0 - 115.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>316</line>
	<id>11232835</id>
	<first>1369085961</first>
	<last>0</last>
	<md5>a59e8849f2ec5225b9356d0d71a83083</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a59e8849f2ec5225b9356d0d71a83083</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.3371008.4]]></virusname>
	<url><![CDATA[http://my.hufufs.com/3/GM-12/139my-6.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.230.124.145</ip>
	<as>AS4134</as>
	<review>115.230.124.145</review>
	<domain>hufufs.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.224.0.0 - 115.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>317</line>
	<id>11232834</id>
	<first>1369085961</first>
	<last>0</last>
	<md5>a59e8849f2ec5225b9356d0d71a83083</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a59e8849f2ec5225b9356d0d71a83083</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.3371008.4]]></virusname>
	<url><![CDATA[http://my.hufufs.com/3/gm-11/139my-6.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.230.124.147</ip>
	<as>AS4134</as>
	<review>115.230.124.145</review>
	<domain>hufufs.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.224.0.0 - 115.239.255.255</inetnum>
	<netname>CHINANET-ZJ</netname>
	<descr><![CDATA[CHINANET Zhejiang province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>318</line>
	<id>11232820</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://mr.xh.filmwit.com/down/q2x/76983.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>319</line>
	<id>11232819</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://mq.oy.filmwit.com/down/jso/7353.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>320</line>
	<id>11232818</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>5f5a6ebcd8e7774b63775bb824af7405</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5f5a6ebcd8e7774b63775bb824af7405</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/843152/index.html?gclid=cokywj3hxbmcfyd9ogodedaaiq&amp;%2F;s%2F;=tjtr8hmm-s8wheovhptc8w&amp;%2F;t%2F;=1369870234&amp;%2F;ext%2F;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>321</line>
	<id>11232817</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>8acc459b15ab1c3db9601323e41a7e43</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8acc459b15ab1c3db9601323e41a7e43</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/843152/index.html?gclid=cmg&&lt;%2F;br%2F&&gt;%2F;o1-dyv7mcfe57qgodykaadw&&s;=u7l5lj9xw-st2mbm1fwtpg&&t;=136967574&&lt;%2F;br%2F&&gt;%2F;7&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>322</line>
	<id>11232816</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>43a01c56e7c64516232c171538a3ec09</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=43a01c56e7c64516232c171538a3ec09</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/843152/index.html%26amp%3Blt%3Bbr/%26amp%3Bgt%3B?gclid=cokywj3hxbmcfyd9ogodedaaiq&&&s;%2F;=tjtr8hmm-s8wheovhptc&&lt;br%2F&&gt;8w&&&t;%2F;=1369870234&&&ext;%2F;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>323</line>
	<id>11232815</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>3e77414c2a749e45566b89d381d34eed</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3e77414c2a749e45566b89d381d34eed</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/843152/index.html%20?gclid=cokywj3hxbmcfyd9ogodedaaiq&%2F;s%2F;=tjtr8hmm-s8wh%20eovhptc8w&%2F;t%2F;=1369870234&%2F;ext%2F;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>324</line>
	<id>11232814</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>1f752501959b69cfb972f379b9e014cf</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1f752501959b69cfb972f379b9e014cf</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/843152/?gclid=cok&lt;/;br/&gt;/;ywj3hxbmcfyd9ogodedaaiq&amp;/;amp/;s=tjtr8hmm-s8wheovhptc8w&amp;/;amp/;t=1&lt;/;br/&gt;/;369870234&amp;/;amp/;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>325</line>
	<id>11232813</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>75b814bd6313d5057f4585442f78e5ea</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=75b814bd6313d5057f4585442f78e5ea</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/843152/?gclid=cmgbr/o1-dyv7mcfe57qgodykaadw&&s;=u7l5lj9xw-st2mbm1fwtpg&&t;=136967574br/7&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>326</line>
	<id>11232812</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>8056bae4d61627da8b7ad5e57208ad62</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8056bae4d61627da8b7ad5e57208ad62</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/841996/index.html?gclid=cpqi9nitm7mcfczb3godzrmayq&amp;%2F%2F;s=j2jfyas8ef_swctj10h6hw&amp;%2F%2F;t=1368420258&amp;%2F%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>327</line>
	<id>11232811</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>1d9d801c2ded93e17ba371bd8c86d19a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1d9d801c2ded93e17ba371bd8c86d19a</virustotal>
	<vt_score>20/46 (43.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283/index.html?s=rbjjigiwxcrbs4e1h6euhw&amp;%2F;&amp;%2F;&amp;%2F;t=1353682910&amp;%2F;&amp;%2F;&amp;%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>328</line>
	<id>11232810</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>e75ba054f3ced2216cdbf87fa66be371</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e75ba054f3ced2216cdbf87fa66be371</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283/index.html?s=rbjjigiwxcrbs4e1h6euhw&amp;%2F&%2F&%2F;t=1353682910&amp;%2F&%2F&%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>329</line>
	<id>11232809</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>c9ca7968a79ec625e7a2a1252525c654</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c9ca7968a79ec625e7a2a1252525c654</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283/index.htmllt%3Bbr/gt%3B?s=rbjjigiwxcrbs4e1h6euhw&amp;%2F&%2F;t=1353682910&a;mp%2F&%2F&lt;br%2F&gt;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>330</line>
	<id>11232808</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>f2b99e0df9d3cc13ff15541b2be9c5ac</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f2b99e0df9d3cc13ff15541b2be9c5ac</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283/index.htmllt%3Bbr/gt%3B?s=rbjjigiwxcrbs4e1h6euhw&%2F&%2F;t=1353682910&%2F&%2F&lt;br%2F&gt;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>331</line>
	<id>11232807</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>78e03a715145ae78ab37b1dbbf425d3d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=78e03a715145ae78ab37b1dbbf425d3d</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283/index.html?gclid=cmirtl7a8becfqed7qod5eoaug&amp;%2F;&amp;%2F;s=pdg0tnpikg7alx59jdujqg&amp;%2F;&amp;%2F;t=1353087126&amp;%2F;&amp;%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>332</line>
	<id>11232806</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>4c17f6feffe7d145b455c8797c2a5aee</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4c17f6feffe7d145b455c8797c2a5aee</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283/index.html?gclid=cmirtl7a8becfqed7qod5eoaug&&&%2F;s=pdg0tnpikg7alx59jdujqg&&&%2F;t=1353087126&&&%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>333</line>
	<id>11232805</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>7f062aafaa0239fdbb7bd8e8c97aaa6c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7f062aafaa0239fdbb7bd8e8c97aaa6c</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283/index.html?gclid=cjxyov7l87ecfqretaod8yua-w&amp;%2F;s=ihtqhg4lrbfkoc7ojrkhmw&amp;%2F;t=1353151953&amp;%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>334</line>
	<id>11232804</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>9e7add4bfd34bae6cd4ecea9547f290a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9e7add4bfd34bae6cd4ecea9547f290a</virustotal>
	<vt_score>20/47 (42.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283/index.html%26lt%3Bbr/%26gt%3B?s=rbjjigiwxcrbs4e1h6euhw&&&&amp/&&&&/;t=1353682910&&&&amp/&&&&/&&lt;br/&&gt;;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>335</line>
	<id>11232803</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>6397d401512b62064ce9d39a7aa7ef9c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6397d401512b62064ce9d39a7aa7ef9c</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283/index.html%26lt%3Bbr/%26gt%3B?s=rbjjigiwxcrbs4e1h6euhw&&amp/&&/;t=1353682910&&amp/&&/&&lt;br/&&gt;;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>336</line>
	<id>11232802</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>6625a40f6e9d7b42faed9c8e4a413da8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6625a40f6e9d7b42faed9c8e4a413da8</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283/index.html%26lt%3Bbr/%26gt%3B?s=rbjjigiwxcrbs4e1h6euhw&amp;/&/;t=1353682910&amp;/&/&lt;br/&gt;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>337</line>
	<id>11232801</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>a7ca27f809cf61214bae117e2866fe26</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a7ca27f809cf61214bae117e2866fe26</virustotal>
	<vt_score>20/47 (42.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283/index.html%26amp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bgt%3B?s=rbjjigiwxcrbs4e1h6euhw&&&amp;%2F&&&%2F;t=1353682910&&&amp;%2F&&&%2F&&lt;br%2F&&gt;;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>338</line>
	<id>11232800</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>001cd28373fe4d0d0a7b9e90b0be6b42</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=001cd28373fe4d0d0a7b9e90b0be6b42</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283/index.html%26amp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bgt%3B?s=rbjjigiwxcrbs4e1h6euhw&&&&&&am;p%2F&&&&&&%2F;t=1353682910&&&&&&amp;%2F&&&&&&%2F&&&&lt;br%2F&&&&gt;;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>339</line>
	<id>11232799</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>2b6eeb4e107d1cb89c802dba2037f0a3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=2b6eeb4e107d1cb89c802dba2037f0a3</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283/index.html%26amp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bgt%3B?s=rbjjigiwxcrbs4e1h6euhw&&&&&&&&%2F&&&&&&&&%2F;t=1353682910&&&&&&&&%2F&&&&&&&&%2F&&&&lt;br%2F&&&&gt;;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>340</line>
	<id>11232798</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>43ca6ee6ce793a2edac0e183942b2fa3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=43ca6ee6ce793a2edac0e183942b2fa3</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283/index.html%26amp%3Bamp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bamp%3Bgt%3B?s=rbjjigiwxcrbs4e1h6euhw&amp;&amp;&amp;amp/&amp;&amp;&amp;/;t=1353682910&amp;&amp;&amp;amp/&amp;&amp;&amp;/&amp;&amp;lt;br/&amp;&amp;gt;;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>341</line>
	<id>11232797</id>
	<first>1369085960</first>
	<last>0</last>
	<md5>188d55c33127cb0ac17d1417c6c5d8c6</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=188d55c33127cb0ac17d1417c6c5d8c6</virustotal>
	<vt_score>20/47 (42.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283/index.html%26amp%3Bamp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bamp%3Bgt%3B?s=rbjjigiwxcrbs4e1h6euhw&amp;&amp;&amp;&amp;/&amp;&amp;&amp;&amp;/;t=1353682910&amp;&amp;&amp;&amp;/&amp;&amp;&amp;&amp;/&amp;&amp;&amp;&amp;lt;br/&amp;&amp;&amp;&amp;gt;;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>342</line>
	<id>11232796</id>
	<first>1369085959</first>
	<last>0</last>
	<md5>61db8b25cc9b8e1802ef2355e3d31043</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=61db8b25cc9b8e1802ef2355e3d31043</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283/index.html%26amp%3Bamp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bamp%3Bgt%3B?s=rbjjigiwxcrbs4e1h6euhw&amp;&amp;&amp;&amp;&amp;&amp;&amp;&amp;%2F&amp;&amp;&amp;&amp;&amp;&amp;&amp;&amp;%2F;t=1353682910&amp;&amp;&amp;&amp;&amp;&amp;&amp;&amp;%2F&amp;&amp;&amp;&amp;&amp;&amp;&amp;&amp;%2F&amp;&amp;&amp;&amp;lt;br%2F&amp;&amp;&amp;&amp;gt;;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>343</line>
	<id>11232795</id>
	<first>1369085959</first>
	<last>0</last>
	<md5>16de669ad890945f07bdb7c7e8a173e8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=16de669ad890945f07bdb7c7e8a173e8</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283/index.html%26amp%3Bamp%3Bamp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bamp%3Bamp%3Bgt%3B?s=rbjjigiwxcrbs4e1h6euhw&amp;&amp;&amp;&amp;amp/&amp;&amp;&amp;&amp;/;t=1353682910&amp;&amp;&amp;&amp;amp/&amp;&amp;&amp;&amp;/&amp;&amp;&amp;&amp;lt;br/&amp;&amp;&amp;&amp;gt;;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>344</line>
	<id>11232794</id>
	<first>1369085959</first>
	<last>0</last>
	<md5>f902eee18d384f0a491d613866067bbc</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f902eee18d384f0a491d613866067bbc</virustotal>
	<vt_score>17/35 (48.6%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283/index.html%26amp%3Bamp%3Bamp%3Bamp%3Blt%3Bbr/%26amp%3Bamp%3Bamp%3Bamp%3Bgt%3B?s=rbjjigiwxcrbs4e1h6euhw&&&&amp%2F&&&&%2F;t=1353682910&&&&amp%2F&&&&%2F&&&&lt;br%2F&&&&gt;;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>345</line>
	<id>11232793</id>
	<first>1369085959</first>
	<last>0</last>
	<md5>4af3564338d9ba8ff28c293eb6ee22be</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4af3564338d9ba8ff28c293eb6ee22be</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283%3Fgclid%3Dcmirtl7a8becfqed7qod5eoaug%26%26s%3Dpdg0tnpikg7alx59jdujqg%26%26t%3D1353087126%26%26ext%3D.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>346</line>
	<id>11232792</id>
	<first>1369085959</first>
	<last>0</last>
	<md5>e86f18ba1cb826f507d4127d68e281c7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e86f18ba1cb826f507d4127d68e281c7</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://mozilla-firefox.todownload.com/get/file/id/820283%3Fgclid%3Dcjtgyqsr-7ecfce8kgodywsala%26%26%26s%3Ddbg5piqwqxeknwj-g3hj0q%26%26%26t%3D1353418053%26%26%26ext%3D.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-830.awsdns-39.net</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-1654.awsdns-14.co.uk</ns3>
	<ns4>ns-163.awsdns-20.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>347</line>
	<id>11232791</id>
	<first>1369085959</first>
	<last>0</last>
	<md5>2e823dfd93dab9e82744b24b29a022a3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=2e823dfd93dab9e82744b24b29a022a3</virustotal>
	<vt_score>22/47 (46.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://movies.byl.cz/2/Play_Movie_Click_Run.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>88.86.100.176</ip>
	<as>AS39392</as>
	<review>88.86.100.176</review>
	<domain>byl.cz</domain>
	<country>CZ</country>
	<source>RIPE</source>
	<email>zdenek@superhosting.cz</email>
	<inetnum>88.86.96.0 - 88.86.127.255</inetnum>
	<netname>CZ-SUPERNETWORK-20060214</netname>
	<descr><![CDATA[SuperNetwork s.r.o.SuperNetwork s.r.o.SuperNetwork s.r.o.]]></descr>
	<ns1>ns2.nodus.cz</ns1>
	<ns2>ns.nodus.cz</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>348</line>
	<id>11232790</id>
	<first>1369085959</first>
	<last>0</last>
	<md5>5ad63935b55e2f6e971ca414eadd9e5b</md5>
	<virustotal></virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Suspicious+file]]></virusname>
	<url><![CDATA[http://moreoverlisten.biz/003.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>78.24.223.158</ip>
	<as>AS29182</as>
	<review>78.24.223.158</review>
	<domain>moreoverlisten.biz</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@ispsystem.net</email>
	<inetnum>78.24.220.0 - 78.24.223.255</inetnum>
	<netname>ISPSYSTEM</netname>
	<descr><![CDATA[ISPsystem at MSM]]></descr>
	<ns1>primaryns.kiev.ua</ns1>
	<ns2>ns.secondary.net.ua</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>349</line>
	<id>11232787</id>
	<first>1369085959</first>
	<last>0</last>
	<md5>39769de986fd95efa3006955f1e36ca2</md5>
	<virustotal></virustotal>
	<vt_score>43/47 (91.5%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDrop.Delf.jz.A]]></virusname>
	<url><![CDATA[http://mna4.1045s287fsa.com:1288/8/qvodbob5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>183.60.232.248</ip>
	<as>AS4134</as>
	<review>183.60.232.248</review>
	<domain>1045s287fsa.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse_gdnoc@189.cn</email>
	<inetnum>183.0.0.0 - 183.63.255.255</inetnum>
	<netname>CHINANET-GD</netname>
	<descr><![CDATA[CHINANET Guangdong province networkData Communication DivisionChina Telecom]]></descr>
	<ns1>dns5.registrar-servers.com</ns1>
	<ns2>dns1.registrar-servers.com</ns2>
	<ns3>dns4.registrar-servers.com</ns3>
	<ns4>dns2.registrar-servers.com</ns4>
	<ns5>dns3.registrar-servers.com</ns5>
</entry>
<entry>
	<line>350</line>
	<id>11232786</id>
	<first>1369085959</first>
	<last>0</last>
	<md5>7fe50c447ac5d0aa52d8b650e573e29a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7fe50c447ac5d0aa52d8b650e573e29a</virustotal>
	<vt_score>4/31 (12.9%)</vt_score>
	<scanner>Comodo</scanner>
	<virusname><![CDATA[UnclassifiedMalware]]></virusname>
	<url><![CDATA[http://mirror.iringsoft.com/Files/Game/crossfire_downloader.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>87.98.185.158</ip>
	<as>AS16276</as>
	<review>87.98.185.158</review>
	<domain>iringsoft.com</domain>
	<country>FR</country>
	<source>RIPE</source>
	<email>abuse@ovh.net</email>
	<inetnum>87.98.128.0 - 87.98.191.255</inetnum>
	<netname>OVH</netname>
	<descr><![CDATA[OVH SASDedicated Servershttp]]></descr>
	<ns1>ns1.cloudns.net</ns1>
	<ns2>ns2.cloudns.net</ns2>
	<ns3>ns3.cloudns.net</ns3>
	<ns4>ns4.cloudns.net</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>351</line>
	<id>11232784</id>
	<first>1369085959</first>
	<last>0</last>
	<md5>68fe64cdc7a7f6bd4fe8802b0697d736</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=68fe64cdc7a7f6bd4fe8802b0697d736</virustotal>
	<vt_score>31/45 (68.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.XPACK.Gen]]></virusname>
	<url><![CDATA[http://mhdsetba.shua8989.asia/Install.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>199.36.78.126</ip>
	<as>AS53935, AS6939</as>
	<review>199.36.78.126</review>
	<domain>shua8989.asia</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>zoujinhe@ehostingusa.com</email>
	<inetnum>199.36.72.0 - 199.36.79.255</inetnum>
	<netname>VPS21002</netname>
	<descr><![CDATA[VPS21 LTD VL-11 38958 S FREMONT BLVD FREMONT CA 94536]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>352</line>
	<id>11232783</id>
	<first>1369085959</first>
	<last>0</last>
	<md5>b1252b7169f0a13208f02b5afdd0572b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b1252b7169f0a13208f02b5afdd0572b</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>BitDefender</scanner>
	<virusname><![CDATA[Gen%3AVariant.Kazy.176232]]></virusname>
	<url><![CDATA[http://meroizre.us/newmay3.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.90.244.39</ip>
	<as>AS4713</as>
	<review>176.121.224.156</review>
	<domain>meroizre.us</domain>
	<country>UA</country>
	<source>RIPE</source>
	<email>jpnictech@ocn.ad.jp</email>
	<inetnum>58.90.128.0 - 58.90.255.255</inetnum>
	<netname>ARTNET-NET</netname>
	<descr><![CDATA[ARTNET LTDARTNET LTD]]></descr>
	<ns1>ns1.meroizre.us</ns1>
	<ns2>ns5.meroizre.us</ns2>
	<ns3>ns6.meroizre.us</ns3>
	<ns4>ns4.meroizre.us</ns4>
	<ns5>ns3.meroizre.us</ns5>
</entry>
<entry>
	<line>353</line>
	<id>11232782</id>
	<first>1369085958</first>
	<last>0</last>
	<md5>d24dd424c7c94c5c1030a4829a14cfd3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d24dd424c7c94c5c1030a4829a14cfd3</virustotal>
	<vt_score>8/35 (22.9%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.950651]]></virusname>
	<url><![CDATA[http://media.vitdvitd.com/xmlstatic/installers/software/lollipop/LollipopInstaller_vittalia_14740_programasplus.com.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>109.70.128.132</ip>
	<as>AS45037</as>
	<review>87.98.228.156</review>
	<domain>vitdvitd.com</domain>
	<country>ES</country>
	<source>RIPE</source>
	<email>abuse@ovh.net</email>
	<inetnum>109.70.128.0 - 109.70.135.255</inetnum>
	<netname>ES-OVH</netname>
	<descr><![CDATA[OVH Hispano]]></descr>
	<ns1>ns2.dondominio.com</ns1>
	<ns2>ns7.dondominio.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>354</line>
	<id>11232781</id>
	<first>1369085958</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://mc.vg.filmwit.com/down/3kv/40257.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>355</line>
	<id>11232780</id>
	<first>1369085958</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://m8.hf.filmwit.com/down/dth/51633.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>356</line>
	<id>11232779</id>
	<first>1369085958</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://m4.jc.filmwit.com/down/q7j/81143.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>357</line>
	<id>11232778</id>
	<first>1369085958</first>
	<last>0</last>
	<md5>6a8a1a4418ee9fef0868b718f28e1b4a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6a8a1a4418ee9fef0868b718f28e1b4a</virustotal>
	<vt_score>8/36 (22.2%)</vt_score>
	<scanner>Avast</scanner>
	<virusname><![CDATA[JS%3ARedirector-AEP+Trj]]></virusname>
	<url><![CDATA[http://lysp88.gnway.net:8081/dl.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>116.225.73.91</ip>
	<as>AS4812</as>
	<review>116.225.73.91</review>
	<domain>gnway.net</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>wengwq@online.sh.cn</email>
	<inetnum>116.224.0.0 - 116.239.255.255</inetnum>
	<netname>CHINANET-SH</netname>
	<descr><![CDATA[CHINANET Shanghai province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>ns1.gnway.com</ns1>
	<ns2>ns1.gnway.cn</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>358</line>
	<id>11232777</id>
	<first>1369085958</first>
	<last>0</last>
	<md5>2affb15378f9a8181ece455f47f96c7d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=2affb15378f9a8181ece455f47f96c7d</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://lw.h9.filmwit.com/down/f2h/24799.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>359</line>
	<id>11232775</id>
	<first>1369085957</first>
	<last>0</last>
	<md5>feb5c3924591936ca9cc53c7d3cfdc0a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=feb5c3924591936ca9cc53c7d3cfdc0a</virustotal>
	<vt_score>25/36 (69.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FClick.Agent.AZ]]></virusname>
	<url><![CDATA[http://lw.05sun.com/crack/CSDNdownload.rar?vspublic=56edb273904f8981abae73e281444d87.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.160.200.160</ip>
	<as>AS23650</as>
	<review>61.160.200.160</review>
	<domain>05sun.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.160.0.0 - 61.160.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>360</line>
	<id>11232774</id>
	<first>1369085957</first>
	<last>0</last>
	<md5>264bb1aefa278aa2f70813a1904734ba</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=264bb1aefa278aa2f70813a1904734ba</virustotal>
	<vt_score>35/46 (76.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.Gen]]></virusname>
	<url><![CDATA[http://lw.05sun.com/crack/cfmogutiyanfu.rar?vspublic=bb5605dc1b9e29c65f6ad75cec94c517.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.160.200.160</ip>
	<as>AS23650</as>
	<review>61.160.200.160</review>
	<domain>05sun.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.160.0.0 - 61.160.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>361</line>
	<id>11232763</id>
	<first>1369085956</first>
	<last>0</last>
	<md5>f9399fa104b87b9ada9bc7f35f40807a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f9399fa104b87b9ada9bc7f35f40807a</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.ShipUp.beun]]></virusname>
	<url><![CDATA[http://load2.cklei.ru/loaddeil/index.php?file=prilojeniya_na_android_4.1_na_kartu_pamyati.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>91.207.60.154</ip>
	<as>AS48031</as>
	<review>91.207.60.154</review>
	<domain>cklei.ru</domain>
	<country>UA</country>
	<source>RIPE</source>
	<email>abuse@ofsc.ru</email>
	<inetnum>91.207.60.0 - 91.207.61.255</inetnum>
	<netname>NOVIKOV-NET</netname>
	<descr><![CDATA[ISP Nova-NETISP Nova-NetISP Nova-Net]]></descr>
	<ns1>ns2.frienddns.ru</ns1>
	<ns2>ns1.frienddns.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>362</line>
	<id>11232762</id>
	<first>1369085956</first>
	<last>0</last>
	<md5>e97c56890227082d055cc33abf702c11</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e97c56890227082d055cc33abf702c11</virustotal>
	<vt_score>10/47 (21.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDownloader.Gen]]></virusname>
	<url><![CDATA[http://lllllllllllllllllllllllllllll.lllllllllllllllllllllllllllllllllllllllllll.com/download/%EC%9A%B0%ED%9A%8C%EC%A0%91%EC%86%8D%EC%97%B0%EA%B2%B0.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>121.78.93.246</ip>
	<as>AS9286</as>
	<review>121.78.93.246</review>
	<domain>lllllllllllllllllllllllllllllllllllllllllll.com</domain>
	<country>KR</country>
	<source>APNIC</source>
	<email>kwlee@actela.com</email>
	<inetnum>121.78.0.0 - 121.78.255.255</inetnum>
	<netname>KINXINC-KR</netname>
	<descr><![CDATA[KINX]]></descr>
	<ns1>ns6.cnmsn.net</ns1>
	<ns2>ns7.cnmsn.net</ns2>
	<ns3>dns1.4cun.com</ns3>
	<ns4>ns5.cnmsn.net</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>363</line>
	<id>11232759</id>
	<first>1369085956</first>
	<last>0</last>
	<md5>856b1c9d132f7ee3b5de3d6ca3e0e3f0</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=856b1c9d132f7ee3b5de3d6ca3e0e3f0</virustotal>
	<vt_score>38/46 (82.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[BDS%2FZegost.birna]]></virusname>
	<url><![CDATA[http://lhy3944335.meibu.com:680/servies.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.211.59</ip>
	<as>AS4134</as>
	<review>58.218.211.59</review>
	<domain>meibu.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>asdf-de2fc56248</ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>364</line>
	<id>11232758</id>
	<first>1369085956</first>
	<last>0</last>
	<md5>043bdb5cf706f50172244b3a284e986a</md5>
	<virustotal></virustotal>
	<vt_score>2/46 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.R47H1D5]]></virusname>
	<url><![CDATA[http://leo-soft.com/email_extractor/EmailPredator_demo.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>174.120.151.62</ip>
	<as>AS36420, AS30315, AS13749, AS21844</as>
	<review>174.120.151.62</review>
	<domain>leo-soft.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@theplanet.com</email>
	<inetnum>174.120.0.0 - 174.123.255.255</inetnum>
	<netname>NETBLK-THEPLANET-BLK-16</netname>
	<descr><![CDATA[ThePlanet.com Internet Services, Inc. TPCM 315 Capitol Suite 205 Houston TX 77002]]></descr>
	<ns1>ns2076.hostgator.com</ns1>
	<ns2>ns2075.hostgator.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>365</line>
	<id>11232668</id>
	<first>1369085949</first>
	<last>0</last>
	<md5>3eb52ccc4b803a52108caf28119ba764</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3eb52ccc4b803a52108caf28119ba764</virustotal>
	<vt_score>7/47 (14.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://l7.p9.filmwit.com/down/ibp/95625.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>366</line>
	<id>11232667</id>
	<first>1369085949</first>
	<last>0</last>
	<md5>219a04bb65524f0d269abf62fd83c1be</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=219a04bb65524f0d269abf62fd83c1be</virustotal>
	<vt_score>7/47 (14.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://l6.3k.filmwit.com/down/0v3/97477.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>367</line>
	<id>11232666</id>
	<first>1369085949</first>
	<last>0</last>
	<md5>a1a166b835bb1f8e1f1daf798de77a1d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a1a166b835bb1f8e1f1daf798de77a1d</virustotal>
	<vt_score>7/47 (14.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://ky.al.filmwit.com/down/tra/47099.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>368</line>
	<id>11232662</id>
	<first>1369085949</first>
	<last>0</last>
	<md5>ca3115ab87b00b3f3ea3db7fe06e1350</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ca3115ab87b00b3f3ea3db7fe06e1350</virustotal>
	<vt_score>10/47 (21.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FKryptik.AGAJ%21tr]]></virusname>
	<url><![CDATA[http://kuqruciq.ru/userid1.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>130.204.72.197</ip>
	<as>AS13124</as>
	<review>188.0.148.69</review>
	<domain>kuqruciq.ru</domain>
	<country>UA</country>
	<source>RIPE</source>
	<email>wel@skm.net.ua</email>
	<inetnum>130.204.0.0 - 130.204.255.255</inetnum>
	<netname>SKM-NETWORK</netname>
	<descr><![CDATA[Namejko Natalya Volodymyrivna, PENamejko Natalya Volodymyrivna, PE]]></descr>
	<ns1>ns4.kuqruciq.ru</ns1>
	<ns2>ns3.kuqruciq.ru</ns2>
	<ns3>ns1.kuqruciq.ru</ns3>
	<ns4>ns5.kuqruciq.ru</ns4>
	<ns5>ns6.kuqruciq.ru</ns5>
</entry>
<entry>
	<line>369</line>
	<id>11232643</id>
	<first>1369085948</first>
	<last>0</last>
	<md5>3b6e25ab6534350d922067af3c3ef3b1</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3b6e25ab6534350d922067af3c3ef3b1</virustotal>
	<vt_score>13/47 (27.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FCI.A]]></virusname>
	<url><![CDATA[http://kingfb.com/flash/systembinx64.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>109.235.249.165</ip>
	<as>AS43260</as>
	<review>109.235.249.165</review>
	<domain>kingfb.com</domain>
	<country>TR</country>
	<source>RIPE</source>
	<email>bilgi@dgn.net.tr</email>
	<inetnum>109.235.248.0 - 109.235.255.255</inetnum>
	<netname>TR-DGN-20100201</netname>
	<descr><![CDATA[DGN TEKNOLOJI BILISIM YAYINCILIK SANAYI VE LIMITED SIRKETIDGN Route]]></descr>
	<ns1>ns1.kingfb.com</ns1>
	<ns2>ns2.kingfb.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>370</line>
	<id>11232642</id>
	<first>1369085948</first>
	<last>0</last>
	<md5>f7e5734d98ea0c08a83b323229ee212f</md5>
	<virustotal></virustotal>
	<vt_score>14/47 (29.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Suspicious+file]]></virusname>
	<url><![CDATA[http://kingfb.com/flash/ext.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>109.235.249.165</ip>
	<as>AS43260</as>
	<review>109.235.249.165</review>
	<domain>kingfb.com</domain>
	<country>TR</country>
	<source>RIPE</source>
	<email>bilgi@dgn.net.tr</email>
	<inetnum>109.235.248.0 - 109.235.255.255</inetnum>
	<netname>TR-DGN-20100201</netname>
	<descr><![CDATA[DGN TEKNOLOJI BILISIM YAYINCILIK SANAYI VE LIMITED SIRKETIDGN Route]]></descr>
	<ns1>ns1.kingfb.com</ns1>
	<ns2>ns2.kingfb.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>371</line>
	<id>11232625</id>
	<first>1369085945</first>
	<last>0</last>
	<md5>98d5b5ef63dfc6420d97d1561dad1cf3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=98d5b5ef63dfc6420d97d1561dad1cf3</virustotal>
	<vt_score>7/47 (14.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://k0.29.filmwit.com/down/6v2/3470.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>372</line>
	<id>11232618</id>
	<first>1369085945</first>
	<last>0</last>
	<md5>014fd8f9eb7ccc2388482cdc439d689b</md5>
	<virustotal></virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.F47V0515]]></virusname>
	<url><![CDATA[http://jh.01lm.com/game/DDZ_tg549_103023.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>70.39.191.86</ip>
	<as>AS29674</as>
	<review>70.39.191.86</review>
	<domain>01lm.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>danc@inmotionhosting.com</email>
	<inetnum>70.39.128.0 - 70.39.255.255</inetnum>
	<netname>NETBLK-MZIMA-11</netname>
	<descr><![CDATA[Mzima Networks, Inc. MZIMAN-1 707 Wilshire Blvd. Suite 4737 Los Angeles CA 90017 AS25973InMotion Hosting, Inc. INMOT-1 4553 Glencoe Ave Suite 325 Marina Del Rey CA 90292 AS25973]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>373</line>
	<id>11232617</id>
	<first>1369085945</first>
	<last>0</last>
	<md5>014fd8f9eb7ccc2388482cdc439d689b</md5>
	<virustotal></virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.F47V0515]]></virusname>
	<url><![CDATA[http://jh.01lm.com/game/DDZ_tg549_102526.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>70.39.191.86</ip>
	<as>AS29674</as>
	<review>70.39.191.86</review>
	<domain>01lm.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>danc@inmotionhosting.com</email>
	<inetnum>70.39.128.0 - 70.39.255.255</inetnum>
	<netname>NETBLK-MZIMA-11</netname>
	<descr><![CDATA[Mzima Networks, Inc. MZIMAN-1 707 Wilshire Blvd. Suite 4737 Los Angeles CA 90017 AS25973InMotion Hosting, Inc. INMOT-1 4553 Glencoe Ave Suite 325 Marina Del Rey CA 90292 AS25973]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>374</line>
	<id>11232616</id>
	<first>1369085945</first>
	<last>0</last>
	<md5>854363b8d8953827986353538cda5332</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=854363b8d8953827986353538cda5332</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FSelfStarterInternetTrojan%21Maximus]]></virusname>
	<url><![CDATA[http://jh.01lm.com/game/DDZ_tg549_102490.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>70.39.191.86</ip>
	<as>AS29674</as>
	<review>70.39.191.86</review>
	<domain>01lm.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>danc@inmotionhosting.com</email>
	<inetnum>70.39.128.0 - 70.39.255.255</inetnum>
	<netname>NETBLK-MZIMA-11</netname>
	<descr><![CDATA[Mzima Networks, Inc. MZIMAN-1 707 Wilshire Blvd. Suite 4737 Los Angeles CA 90017 AS25973InMotion Hosting, Inc. INMOT-1 4553 Glencoe Ave Suite 325 Marina Del Rey CA 90292 AS25973]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>375</line>
	<id>11232614</id>
	<first>1369085944</first>
	<last>0</last>
	<md5>68f86264d645e422c964411425593184</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=68f86264d645e422c964411425593184</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://j1.5a.filmwit.com/down/tr5/48394.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>376</line>
	<id>11232612</id>
	<first>1369085944</first>
	<last>0</last>
	<md5>f7dbb3a9474d89765463c1817f50d4e9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f7dbb3a9474d89765463c1817f50d4e9</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Worm.Win32.AutoRun.ffes.AMN+%28A%29]]></virusname>
	<url><![CDATA[http://iringsoft.com/Files/Multimedia/PhotoScape.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>87.98.185.158</ip>
	<as>AS16276</as>
	<review>87.98.185.158</review>
	<domain>iringsoft.com</domain>
	<country>FR</country>
	<source>RIPE</source>
	<email>abuse@ovh.net</email>
	<inetnum>87.98.128.0 - 87.98.191.255</inetnum>
	<netname>OVH</netname>
	<descr><![CDATA[OVH SASDedicated Servershttp]]></descr>
	<ns1>ns2.cloudns.net</ns1>
	<ns2>ns4.cloudns.net</ns2>
	<ns3>ns1.cloudns.net</ns3>
	<ns4>ns3.cloudns.net</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>377</line>
	<id>11232611</id>
	<first>1369085944</first>
	<last>0</last>
	<md5>83812aa3f9b9d6624ffc9ee51fecdacb</md5>
	<virustotal></virustotal>
	<vt_score>7/32 (21.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSymmi.4314.6]]></virusname>
	<url><![CDATA[http://inwauto.com/download/inwauto_setup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>27.254.46.130</ip>
	<as>AS9891</as>
	<review>27.254.46.130</review>
	<domain>inwauto.com</domain>
	<country>TH</country>
	<source>APNIC</source>
	<email>ip_admin@csloxinfo.net</email>
	<inetnum>27.254.0.0 - 27.254.255.255</inetnum>
	<netname>CSLOXINFO-AS-AP</netname>
	<descr><![CDATA[CS Loxinfo Public Company Limited90 Cyber World Tower A 17-20th floorRatchadapisek RdHuai Kwang]]></descr>
	<ns1>ns07.domaincontrol.com</ns1>
	<ns2>ns08.domaincontrol.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>378</line>
	<id>11232609</id>
	<first>1369085944</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://im.3d.filmwit.com/down/z73/60821.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>379</line>
	<id>11232608</id>
	<first>1369085944</first>
	<last>0</last>
	<md5>dd266d17609aa4b83b984ce55dbd1872</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=dd266d17609aa4b83b984ce55dbd1872</virustotal>
	<vt_score>24/45 (53.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.NSPM.Gen]]></virusname>
	<url><![CDATA[http://ii.nyy88.com/jxdlq.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>125.90.64.12</ip>
	<as>AS4134</as>
	<review>125.90.64.12</review>
	<domain>nyy88.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@gddc.com.cn</email>
	<inetnum>125.88.0.0 - 125.95.255.255</inetnum>
	<netname>CHINANET-GD</netname>
	<descr><![CDATA[CHINANET Guangdong province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>380</line>
	<id>11232607</id>
	<first>1369085943</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://ie.dm.filmwit.com/down/70d/88188.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>381</line>
	<id>11232606</id>
	<first>1369085943</first>
	<last>0</last>
	<md5>3012c041b0c1071e9a01203ffa5f8264</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3012c041b0c1071e9a01203ffa5f8264</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://ic.9d.filmwit.com/down/w19/72509.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>382</line>
	<id>11232605</id>
	<first>1369085943</first>
	<last>0</last>
	<md5>721d033b5a8c415fd6c93c6ede00222b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=721d033b5a8c415fd6c93c6ede00222b</virustotal>
	<vt_score>2/36 (5.6%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://i6.pn.filmwit.com/down/r7p/36864.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>383</line>
	<id>11232604</id>
	<first>1369085943</first>
	<last>0</last>
	<md5>c1f06cec1bd6f889d1625c26deb6c5d9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c1f06cec1bd6f889d1625c26deb6c5d9</virustotal>
	<vt_score>6/36 (16.7%)</vt_score>
	<scanner>BitDefender</scanner>
	<virusname><![CDATA[Gen%3ATrojan.Heur.ZGY.1]]></virusname>
	<url><![CDATA[http://hy.6k.filmwit.com/down/5g6/70320.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>384</line>
	<id>11232601</id>
	<first>1369085943</first>
	<last>0</last>
	<md5>221bb92992e9fd85f233768b6f58bc83</md5>
	<virustotal></virustotal>
	<vt_score>3/45 (6.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[PSW.Agent.AUIW]]></virusname>
	<url><![CDATA[http://howtobuildahouseblog.com/pads/monthlyhousepaymentcalculator_v1.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>50.87.0.63</ip>
	<as>AS11798</as>
	<review>50.87.0.63</review>
	<domain>howtobuildahouseblog.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>netops@bluehost.com</email>
	<inetnum>50.87.0.0 - 50.87.255.255</inetnum>
	<netname>BLUEHOST-NETWORK-9</netname>
	<descr><![CDATA[Bluehost Inc. BLUEH-2 1958 South 950 East Provo UT 84606]]></descr>
	<ns1>ns2.rhostbh.com</ns1>
	<ns2>ns1.rhostbh.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>385</line>
	<id>11232600</id>
	<first>1369085943</first>
	<last>0</last>
	<md5>c3698b1dc9f8ccaa1f8077f2288a787a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c3698b1dc9f8ccaa1f8077f2288a787a</virustotal>
	<vt_score>6/46 (13%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Suspicious+file]]></virusname>
	<url><![CDATA[http://holzbau-glas.de/lbm5tvp.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>82.165.89.70</ip>
	<as>AS8560</as>
	<review>82.165.89.70</review>
	<domain>holzbau-glas.de</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>abuse@1and1.com</email>
	<inetnum>82.165.64.0 - 82.165.127.255</inetnum>
	<netname>SCHLUND-SHARED</netname>
	<descr><![CDATA[1&1 Internet AGNCC#2004115007SCHLUND-PA-4]]></descr>
	<ns1>ns16.schlund.de</ns1>
	<ns2>ns15.schlund.de</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>386</line>
	<id>11232599</id>
	<first>1369085943</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://hm.st.filmwit.com/down/ojs/88841.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>387</line>
	<id>11232595</id>
	<first>1369085942</first>
	<last>0</last>
	<md5>c5f0a9b526d1cdeff1cb93b930b38d48</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c5f0a9b526d1cdeff1cb93b930b38d48</virustotal>
	<vt_score>24/29 (82.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.NSPM.Gen]]></virusname>
	<url><![CDATA[http://heitong.gnway.net:2222/mxxzzz.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>119.10.115.74</ip>
	<as>AS4847</as>
	<review>119.10.115.74</review>
	<domain>gnway.net</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>hanwenshan@xinnet.com</email>
	<inetnum>119.10.0.0 - 119.10.127.255</inetnum>
	<netname>XinnetIDC</netname>
	<descr><![CDATA[XinNet Technology Corp.1st Floor, 2nd Building Section A,BDA BeiGongDa Soft-ware Area, Beijing China.]]></descr>
	<ns1>ns1.gnway.com</ns1>
	<ns2>ns1.gnway.cn</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>388</line>
	<id>11232593</id>
	<first>1369085942</first>
	<last>0</last>
	<md5>471c1d567082aca8123313c83dab85d7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=471c1d567082aca8123313c83dab85d7</virustotal>
	<vt_score>4/36 (11.1%)</vt_score>
	<scanner>Comodo</scanner>
	<virusname><![CDATA[Heur.Corrupt.PE]]></virusname>
	<url><![CDATA[http://hbdx.newdou.com/soft/19/txy.exe?0000000623117455000tflag=1368764952&opin=8a5081cd667f20e66435a07a50479fba.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>117.21.178.50</ip>
	<as>AS4134</as>
	<review>117.21.178.50</review>
	<domain>newdou.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>117.21.0.0 - 117.21.255.255</inetnum>
	<netname>CHINANET-JX</netname>
	<descr><![CDATA[CHINANET Jiangxi province networkChina TelecomNo.31,jingrong streetBeijing 100032]]></descr>
	<ns1>ns17.xincache.com</ns1>
	<ns2>ns18.xincache.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>389</line>
	<id>11232591</id>
	<first>1369085942</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://h7.oa.filmwit.com/down/05o/2867.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>390</line>
	<id>11232590</id>
	<first>1369085941</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://h0.3e.filmwit.com/down/uv3/50437.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>391</line>
	<id>11232589</id>
	<first>1369085941</first>
	<last>0</last>
	<md5>afb4b82fa9d0156a73bd02dc887ab1c5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=afb4b82fa9d0156a73bd02dc887ab1c5</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://gv.po.filmwit.com/down/b3p/61171.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>392</line>
	<id>11232581</id>
	<first>1369085941</first>
	<last>0</last>
	<md5>53d835dc2510fc095565c2ab4842dee2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=53d835dc2510fc095565c2ab4842dee2</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?gcl&lt;br/&gt;&lt;br/&gt;id=clxjsk_xplucfq-f4aodjcia3a&s;=y9raxlka6bk-efnln&lt;br/&gt;pjhma&a;&lt;br/&gt;mp;t=1377543757&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>393</line>
	<id>11232580</id>
	<first>1369085941</first>
	<last>0</last>
	<md5>53e1b266671f06527d8a6c830ae75dbd</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=53e1b266671f06527d8a6c830ae75dbd</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?gcl&lt;br/&gt;&lt;br/&gt;id=clxjsk_xplucfq-f4aodjcia3a&s;=y9raxlka6bk-efnln&lt;br/&gt;pjhma&a;&lt;br/&gt;mp;t=1377543757&ex;t;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>394</line>
	<id>11232579</id>
	<first>1369085941</first>
	<last>0</last>
	<md5>24c604616b2805d58037b504fae6e2e3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=24c604616b2805d58037b504fae6e2e3</virustotal>
	<vt_score>20/47 (42.6%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?gcl&lt;br%2F&gt;&lt;br%2F&gt;id=ckyxrp7rplucfa3ktaodbdmamq&s;=drphnklcsrleex1-r8lcmq&lt;br%2F&gt;&lt;br%2F&gt;&t;=1377542109&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>395</line>
	<id>11232578</id>
	<first>1369085941</first>
	<last>0</last>
	<md5>4367664c595e0d72f9401c79fe3bc4e7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4367664c595e0d72f9401c79fe3bc4e7</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?gcl&&lt;br%2F&&gt;id=clxjsk_xplucfq-f4aodjcia3a&&&&s;=y9raxlka6bk-efnlnpjhma&&&&a;;&&lt;br%2F&&gt;mp;t=1377543757&&&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>396</line>
	<id>11232577</id>
	<first>1369085941</first>
	<last>0</last>
	<md5>c158c21419d7cd0fceb56224cc5bca22</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c158c21419d7cd0fceb56224cc5bca22</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?gcl&&lt;br%2F&&gt;id=clxjsk_xplucfq-f4aodjcia3a&&&&%2F;s=y9raxlka6bk-efnlnpjhma&&lt;br%2F&&gt;&&%2F;t=1377543757&&&&%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>397</line>
	<id>11232576</id>
	<first>1369085941</first>
	<last>0</last>
	<md5>762911e74218ba965603da92f2a5111b</md5>
	<virustotal></virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?gcl&lt;%2F;br%2F&gt;%2F;id=cob1wdfiorucfwbktaodc14aog&%2F;s=egzqofesfb_lrbk4bxajlg&%2F;t=137&lt;%2F;br%2F&gt;%2F;7464114&am;p%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>398</line>
	<id>11232575</id>
	<first>1369085941</first>
	<last>0</last>
	<md5>8d0308c0ca7b641e2eb605e8b75e2460</md5>
	<virustotal></virustotal>
	<vt_score>20/47 (42.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?gcl&&lt;%2F;br%2F&&gt;%2F;id=ckyxrp7rplucfa3ktaodbdmamq&&&&&&&&s;=drphnklcsrleex1-r8lcmq&&&&&&&&lt;%2F;br%2F&&gt;%2F;&&t;=1377542109&&&&&&&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>399</line>
	<id>11232574</id>
	<first>1369085941</first>
	<last>0</last>
	<md5>7e69238e6033fd55d02a80deb122dca7</md5>
	<virustotal></virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?gcl&lt;%2F;br%2F&gt;%2F;id=ckyxrp7rplucfa3ktaodbdmamq&amp;%2F;s=drphnklcsrleex1-r8lcmq&lt;%2F;br%2F&gt;%2F;t%2F;=1377542109&amp;%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>400</line>
	<id>11232573</id>
	<first>1369085941</first>
	<last>0</last>
	<md5>29664d640d0a04944a483f660acce74e</md5>
	<virustotal></virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?gcl&lt%2F;br%2F&gt%2F;id=ckyxrp7rplucfa3ktaodbdmamq&amp%2F;s=drphnklcsrleex1-r8lcmq&amp%2F;t&lt%2F;br%2F&gt%2F;=1377542109&amp%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>401</line>
	<id>11232572</id>
	<first>1369085941</first>
	<last>0</last>
	<md5>4cf518f1bdaeb7fd5f34dfc254da3939</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4cf518f1bdaeb7fd5f34dfc254da3939</virustotal>
	<vt_score>17/35 (48.6%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?gclid=cob1wdfiorucfwbktaodc14aog&s;%2F;=egzqofesfb_lrbk4bxajlg&t;%2F;=1377464114&ext;%2F;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>402</line>
	<id>11232571</id>
	<first>1369085941</first>
	<last>0</last>
	<md5>62fb790f4fbd35d95c859fa0609164d8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=62fb790f4fbd35d95c859fa0609164d8</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?&gclid=clxjsk_xplucfq-f4aodjcia3as=y9raxlka6bk-efnlnpjhma&t%2F;=1377543757ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>403</line>
	<id>11232570</id>
	<first>1369085941</first>
	<last>0</last>
	<md5>7be13b75fb57526e07b571d851cfe52b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7be13b75fb57526e07b571d851cfe52b</virustotal>
	<vt_score>17/35 (48.6%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?gclid=clxjsk_xplucfq-f4aodjcia3a&s=y9raxlka6bk-efnlnpjhma&a;mp;a%2F;mp%2F;t=1377543757&ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>404</line>
	<id>11232569</id>
	<first>1369085941</first>
	<last>0</last>
	<md5>aa528905fd630051e47e143aa1918828</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=aa528905fd630051e47e143aa1918828</virustotal>
	<vt_score>17/35 (48.6%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?gclid=clxjsk_xplucfq-f4aodjcia3as=y9raxlka6bk-efnlnpjhma&amp;%2F;&amp;%2F;t=1377543757ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>405</line>
	<id>11232568</id>
	<first>1369085941</first>
	<last>0</last>
	<md5>0c090b9807d97c13c255102641f3fea9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0c090b9807d97c13c255102641f3fea9</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Riskware%2FSoft32Downloader]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?gclid=clxjsk_xplucfq-f4aodjcia3a&&amp%2F;s=y9raxlka6bk-efnlnpjhma&&a%2F;mp%2F;t=1377543757&&amp%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>406</line>
	<id>11232567</id>
	<first>1369085941</first>
	<last>0</last>
	<md5>70178c791f2dfceac34bb20cb0e94d4d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=70178c791f2dfceac34bb20cb0e94d4d</virustotal>
	<vt_score>17/34 (50%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?gclid=clxjsk_xplucfq-f4aodjcia3a&amp%2F;&amp%2F;s=y9raxlka6bk-efnlnpjhma&amp%2F;a%2F;mp%2F;t=1377543757&amp%2F;&amp%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>407</line>
	<id>11232566</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>9256c44ef626153fb8c105680b78082c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9256c44ef626153fb8c105680b78082c</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?gclid=clxjsk_&lt;br%2F&gt;xplucfq-f4aodjcia3a&s;=y9raxlka6bk-efnlnpjhma&t;=13775&lt;br%2F&gt;43757&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>408</line>
	<id>11232565</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>f6a7a9b8fdf5abfef4834eec31ea2638</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f6a7a9b8fdf5abfef4834eec31ea2638</virustotal>
	<vt_score>17/35 (48.6%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?&gclid=ckyxrp7rplucfa3ktaodbdmamqs;=drphnklcsrleex1-r8lcmq&t=1377542109ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>409</line>
	<id>11232564</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>ce33cbfa5074cfab82b9201b337b9c5c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ce33cbfa5074cfab82b9201b337b9c5c</virustotal>
	<vt_score>17/35 (48.6%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?gclid=ckyxrp7rplucfa3ktaodbdmamq&&s;%2F;=drphnklcsrleex1-r8lcmqt%2F;=1377542109&&ext;%2F;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>410</line>
	<id>11232563</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>af51447f7728c68a901cb9f858a47852</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=af51447f7728c68a901cb9f858a47852</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?gclid=ckyxrp7rplucfa3ktaodbdmamq&&&&&&&&&&&&&&&&s;%2F;=drphnklcsrleex1-r8lcmq&&&&&&&&&&&&&&&&t;%2F;=1377542109&&&&&&&&&&&&&&&&ext;%2F;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>411</line>
	<id>11232562</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>5a16f3d6f306739e3b3bdd2d6a40ecc4</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5a16f3d6f306739e3b3bdd2d6a40ecc4</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?gclid=ckyxrp7&lt;br%2F&gt;rplucfa3ktaodbdmamqs;=drphnklcsrleex1-r8lcmq&t;=1377542109ext&lt;br%2F&gt;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>412</line>
	<id>11232561</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>6fbada4bec284b4b7c6ee1f27a47af7f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6fbada4bec284b4b7c6ee1f27a47af7f</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?&&&&&&&&&&&&&&&&&&&&&ext/;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>413</line>
	<id>11232560</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>4aa082e1bd401c46a96443598c735d81</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4aa082e1bd401c46a96443598c735d81</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?&&&&&&&&&&&&&&&&&&&&ext;/;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>414</line>
	<id>11232559</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>b1a734bdc4430c01f5620bbc2f103226</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b1a734bdc4430c01f5620bbc2f103226</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FRogue.8995937]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?&&&&&&&&&ext;/;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>415</line>
	<id>11232558</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>f5e60c63482072c5209ad410af88f535</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f5e60c63482072c5209ad410af88f535</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?&&&&&&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>416</line>
	<id>11232557</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>1129cb24c912244788b77956aa8f6835</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1129cb24c912244788b77956aa8f6835</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?&&&/;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>417</line>
	<id>11232556</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>9d614e43d7f20049bfb57352fa2f6362</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9d614e43d7f20049bfb57352fa2f6362</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?&&&ext;/;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>418</line>
	<id>11232555</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>c853465449322934b98459b7fac7ef94</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c853465449322934b98459b7fac7ef94</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?&&&&&&&e;xt;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>419</line>
	<id>11232554</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>4c51e65fafe79fbafd435023c82ad4b5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4c51e65fafe79fbafd435023c82ad4b5</virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Downloader-FMA%214C51E65FAFE7]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&ext;%2F;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>420</line>
	<id>11232553</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>65896eac8e89e12f11c913d6c1960fd3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=65896eac8e89e12f11c913d6c1960fd3</virustotal>
	<vt_score>4/46 (8.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Downloader-FMA%2165896EAC8E89]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?&&&&&&&&&&&&&&&&&&&&&&&&&&&&ext;%2F;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>421</line>
	<id>11232552</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>73274aa85bf2c0f7c2924fead1449ceb</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=73274aa85bf2c0f7c2924fead1449ceb</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?&&&&&&&&&&&&&&&&&a;/;mp/;t=1377543757&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>422</line>
	<id>11232551</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>95b490807d57c4018119e5df940b226c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=95b490807d57c4018119e5df940b226c</virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Downloader-FMA%2195B490807D57]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?&&&&a/;mp/;t=1377543757&&ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>423</line>
	<id>11232550</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>05e0a83caf7c1ad61c337e980ca900fc</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=05e0a83caf7c1ad61c337e980ca900fc</virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Downloader-FMA%2105E0A83CAF7C]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?&&&&&&&&&amp/;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>424</line>
	<id>11232549</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>d6ded37d66067cad6f60fc74a975ef5e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d6ded37d66067cad6f60fc74a975ef5e</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html?a&a;mp;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>425</line>
	<id>11232548</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>0dfa4191fadbdffab5cae872162968ce</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0dfa4191fadbdffab5cae872162968ce</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html%3Fgcl%26lt%3Bbr/%26gt%3Bid%3Dclxjsk_xplucfq-f4aodjcia3a%26s%3B%3Dy9raxlka6bk-efnlnpjhma%26a%3B/%26lt%3Bbr/%26gt%3Bmp/%3Bt%3D1377543757%26ext%3B%3D.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>426</line>
	<id>11232547</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>a84d2b61c45d3020e4dbc4eef15953bb</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a84d2b61c45d3020e4dbc4eef15953bb</virustotal>
	<vt_score>3/35 (8.6%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html%3Fgcl%26lt%3Bbr/%26gt%3Bid%3Dckyxrp7rplucfa3ktaodbdmamq%26/%3Bs%3Ddrphnklcsrleex1-r8lcmq%26lt%3Bbr/%26gt%3B%26/%3Bt%3D1377542109%26/%3Bext%3D.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>427</line>
	<id>11232546</id>
	<first>1369085940</first>
	<last>0</last>
	<md5>b928401c4eda11d85037ffb39d910d14</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b928401c4eda11d85037ffb39d910d14</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/index.html%3Fgcl%26lt%3Bbr/%26gt%3B%26lt%3Bbr/%26gt%3Bid%3Dckyxrp7rplucfa3ktaodbdmamq%26s%3B%3Ddrphnklcsrleex1-r8lcmq%26lt%3Bb%26lt%3Bbr/%26gt%3Br/%26gt%3Bt%3B%3D1377542109%26ext%3D.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>428</line>
	<id>11232545</id>
	<first>1369085939</first>
	<last>0</last>
	<md5>f6d77a9ce3743431033cb0fc96db2a11</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f6d77a9ce3743431033cb0fc96db2a11</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/?gclid=clxjsk_xplucfq-f4aodjcia3as=y9raxlka6bk-efnlnpjhma&&t;=1377543757ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>429</line>
	<id>11232544</id>
	<first>1369085939</first>
	<last>0</last>
	<md5>6320e30bda7964f6be9fecd374c841ce</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6320e30bda7964f6be9fecd374c841ce</virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/?gclid=clxjsk_xplucfq-f4aodjcia3a&&s;=y9raxlka6bk-efnlnpjhma&a;/;mp/;t=1377543757&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>430</line>
	<id>11232543</id>
	<first>1369085939</first>
	<last>0</last>
	<md5>e957904f79fc4c2fa27ccff0b3d6d9ef</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e957904f79fc4c2fa27ccff0b3d6d9ef</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-talk.todownload.com/get/file/id/710928/?gclid=clxjsk_xplucfq-f4aodjcia3a&s=y9raxlka6bk-efnlnpjhma&a/;mp/;t=1377543757&ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>todownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-163.awsdns-20.com</ns1>
	<ns2>ns-1526.awsdns-62.org</ns2>
	<ns3>ns-830.awsdns-39.net</ns3>
	<ns4>ns-1654.awsdns-14.co.uk</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>431</line>
	<id>11232542</id>
	<first>1369085939</first>
	<last>0</last>
	<md5>e89760921887652d09c28cba0e6d3343</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e89760921887652d09c28cba0e6d3343</virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960?lp=adwords&&&&tg/;=ca&&&&s/;=k-pwqe26uwoyn86cqkbhqg&&&&&lt/;br/>t=1378602114&&&&ext/;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>432</line>
	<id>11232541</id>
	<first>1369085939</first>
	<last>0</last>
	<md5>737adee5acbac1336ef4b266a1fda198</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=737adee5acbac1336ef4b266a1fda198</virustotal>
	<vt_score>4/46 (8.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Downloader-FMA%21737ADEE5ACBA]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960?lp=adword&lt/;br/&gt/;s&&&&tg/;=ca&&&&s/;=k-pwqe26uwoyn86cqkbhqg&&&&&lt/;br/&gt/;t=1378602114&&&&ext/;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>433</line>
	<id>11232540</id>
	<first>1369085939</first>
	<last>0</last>
	<md5>c82584e1baa5077bc7dde00595d9ef42</md5>
	<virustotal></virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Downloader-FMA%21C82584E1BAA5]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htmlt%3Bbr/gt%3Blt%3Bbr/gt%3Bl?lp=adwords&tg=ca&s=k-pwqe26uwoyn8&lt;br/&gt;6cqkbhqg&t=1378602114&lt;br/&gt;&ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>434</line>
	<id>11232539</id>
	<first>1369085938</first>
	<last>0</last>
	<md5>f2a67173b6c27187120476041dde3bea</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f2a67173b6c27187120476041dde3bea</virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Downloader-FMA%21F2A67173B6C2]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htmlt%3Bbr/gt%3Blt%3Bbr/gt%3Bl?lp=adwords&tg;=ca&s;=k-pwqe26uwoyn86cqkbhqg&t;&lt;br/&gt;=1378602114&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>435</line>
	<id>11232538</id>
	<first>1369085938</first>
	<last>0</last>
	<md5>d8ed629b169ddc2c788131a23163b81a</md5>
	<virustotal></virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Downloader-FMA%21D8ED629B169D]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htmlt%3Bbr/gt%3Blt%3Bbr/gt%3Bl?lp=adwords&tg;=ca&s;=k-pwqe26uwoyn86c&lt;br/&gt;qkbhqg&t;=1378602114&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>436</line>
	<id>11232537</id>
	<first>1369085938</first>
	<last>0</last>
	<md5>9d1690f1e61ec6162ffa3746d09c1dc1</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9d1690f1e61ec6162ffa3746d09c1dc1</virustotal>
	<vt_score>4/46 (8.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Downloader-FMA%219D1690F1E61E]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htmlt%3Bbr/gt%3Bl?lp=adwords&tg=ca&s=k-pwqe26uwoyn86cqkbhqg&t=13786&lt/;br/&gt/;02114&ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>437</line>
	<id>11232536</id>
	<first>1369085938</first>
	<last>0</last>
	<md5>269be75b9b8f78eb3af6d8bd6325a394</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=269be75b9b8f78eb3af6d8bd6325a394</virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Downloader-FMA%21269BE75B9B8F]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htmlt%3Bbr/gt%3Bl?lp=adwords&&tg;=ca&&s;=k-pwqe26uwoyn86cqkbhqg&&t;=1378602114&&lt;br/&&gt;&&am;p;ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>438</line>
	<id>11232535</id>
	<first>1369085938</first>
	<last>0</last>
	<md5>eeca7ce6f44968d96ae207804b05e339</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=eeca7ce6f44968d96ae207804b05e339</virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Downloader-FMA%21EECA7CE6F449]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htmlt%3Bbr/gt%3Bl?lp=adwords&tg=ca&s=k-pwqe26uwoyn86cqkbhqg&t=1378602114&lt;br/&gt;&am/;p/;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>439</line>
	<id>11232534</id>
	<first>1369085938</first>
	<last>0</last>
	<md5>a3f17a63aedacc53b579634b32c649d2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a3f17a63aedacc53b579634b32c649d2</virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Downloader-FMA%21A3F17A63AEDA]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htmlt%3Bbr/gt%3Bl?lp=adwords&tg;=ca&s;=k-pwqe26uwoyn86cqkbhqg&t;=1378602114&gt;&ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>440</line>
	<id>11232533</id>
	<first>1369085938</first>
	<last>0</last>
	<md5>4f78b14f17ef725519c45fcf30a4801c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4f78b14f17ef725519c45fcf30a4801c</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.html?&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&lt;br/&&&&gt;t=1378602114&&&&&&&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>441</line>
	<id>11232532</id>
	<first>1369085937</first>
	<last>0</last>
	<md5>5ed5029c4d6b7777fdb29c8af503601c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5ed5029c4d6b7777fdb29c8af503601c</virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Downloader-FMA%215ED5029C4D6B]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.html?lp=adwor&lt/;br/&gt/;dstg=cas=k-pwqe26uwoyn86cqkbhqgt=1378602114&ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>442</line>
	<id>11232531</id>
	<first>1369085937</first>
	<last>0</last>
	<md5>a37520a9c9b823096fbcf46d83cc9daa</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a37520a9c9b823096fbcf46d83cc9daa</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.html%3Flp%3Dadwords%26tg%3B%3Dca%26s%3B%3Dk-pwqe26uwoyn86cqkbhqg%26t%3D1378602114%26ext%3B%3D.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>443</line>
	<id>11232530</id>
	<first>1369085937</first>
	<last>0</last>
	<md5>68c045e5c1cb892695dc16852330e2df</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=68c045e5c1cb892695dc16852330e2df</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htmamp/%3Blt/%3Bbr/amp/%3Bgt/%3Bl?lp=adwords&tg/;=ca&s/;=k-pwqe26uwoyn86cqkbhqg&t/;=13786&lt/;br/&gt/;02114&ext/;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>444</line>
	<id>11232529</id>
	<first>1369085937</first>
	<last>0</last>
	<md5>c09173d205829c4913d8da8421071d53</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c09173d205829c4913d8da8421071d53</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26lt%3Bbr/%26gt%3Bl?lp=adwords&tg;/;=ca&s;/;=k-pwqe26uwoyn86cqkbhqg&t;/;&lt;br/&gt;=1378602114&a;/;m/;p/;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>445</line>
	<id>11232528</id>
	<first>1369085936</first>
	<last>0</last>
	<md5>61871d54f03fa17e03f4df08e7dbf516</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=61871d54f03fa17e03f4df08e7dbf516</virustotal>
	<vt_score>3/35 (8.6%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26lt%3Bbr/%26gt%3Bl?lp=adwords&tg;=ca&s;=k-pwqe26uwoyn86cqkbhqg&t;=1378602114&am;%2F&lt;br%2F&gt;p%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>446</line>
	<id>11232527</id>
	<first>1369085936</first>
	<last>0</last>
	<md5>4151f4ae5e509ab60d3367cd3f37243f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4151f4ae5e509ab60d3367cd3f37243f</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26lt%3Bbr/%26gt%3Bl%3Flp%3Dadwords%26tg%3B%3Dca%26s%3B%3Dk-pwqe26uwoyn86cqkbhqg%26t%3B%3D13786%26%3Cbr/%26%3E02114%26ext%3B%3D.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>447</line>
	<id>11232526</id>
	<first>1369085936</first>
	<last>0</last>
	<md5>b1dfe41292b74653fd25a869a6441c26</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b1dfe41292b74653fd25a869a6441c26</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Blt%3Bbr/%26amp%3Bgt%3Blt%3Bbr/gt%3Bl?lp=adwords&&tg;=ca&&s;=k-pwqe26uwoyn86cqk&&lt;br%2F&&gt;bhqg&&t;=1378602114&&lt;br%2F&&gt;&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>448</line>
	<id>11232525</id>
	<first>1369085936</first>
	<last>0</last>
	<md5>503796e4b196d3b77171991878dc757f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=503796e4b196d3b77171991878dc757f</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Blt%3Bbr/%26amp%3Bgt%3Blt%3Bbr/gt%3Bl?lp=adwords&&tg;=ca&&s;=k-pwqe26uwoyn86cqkbhqg&&t;&&lt;br%2F&&gt;=1378602114&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>449</line>
	<id>11232524</id>
	<first>1369085936</first>
	<last>0</last>
	<md5>a18336c888bc8748e9f63d2f978078e7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a18336c888bc8748e9f63d2f978078e7</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Blt%3Bbr/%26amp%3Bgt%3Blt%3Bbr/gt%3Bl?lp=adwords&&tg=ca&&s=k-pwqe26uwoyn86cqkbhqg&&t=137&&lt;br%2F&&gt;8602114&&lt;br%2F&&gt;&&ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>450</line>
	<id>11232523</id>
	<first>1369085936</first>
	<last>0</last>
	<md5>34a9c14aed5f2cc59cd790e324a90042</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=34a9c14aed5f2cc59cd790e324a90042</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Blt%3Bbr/%26amp%3Bgt%3Blt%3Bbr/gt%3Bl?lp=adwords&&tg;=ca&&s;=k-pwqe26uwoyn86cqkbhqg&&lt;br%2F&&gt;&&t;=13786&&lt;br%2F&&gt;02114&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>451</line>
	<id>11232522</id>
	<first>1369085936</first>
	<last>0</last>
	<md5>896cd57e68a1e044283f572e450a2e45</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=896cd57e68a1e044283f572e450a2e45</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Blt%3Bbr/%26amp%3Bgt%3Bl?lp=adwords&&tg;=ca&&s;=k-pwqe26uwoyn86cqkbhqg&&t;=13786&&lt;%2F;br%2F&&gt;%2F;02114&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>452</line>
	<id>11232521</id>
	<first>1369085936</first>
	<last>0</last>
	<md5>ae493c38bacdc1d4284035a128f2158a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ae493c38bacdc1d4284035a128f2158a</virustotal>
	<vt_score>3/35 (8.6%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Blt%3Bbr/%26amp%3Bgt%3Bl?lp=adwords&&tg=ca&&s=k-pwqe26uwoyn86cqkbhqg&&t=13786&&lt%2F;br%2F&&gt%2F;02114&&ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>453</line>
	<id>11232520</id>
	<first>1369085936</first>
	<last>0</last>
	<md5>8badfdedee092c45e69874b62ef61d3f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8badfdedee092c45e69874b62ef61d3f</virustotal>
	<vt_score>3/35 (8.6%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp/%3Blt/%3Bbr/%26amp/%3Bgt/%3Bl?lp=adwords&&tg/;=ca&&s/;=k-pwqe26uwoyn86cqkbhqg&&t/;=1378602114&&lt/;br/&gt/;&ext/;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>454</line>
	<id>11232519</id>
	<first>1369085936</first>
	<last>0</last>
	<md5>c4102ee9e2f5d081dbe54d906744c879</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c4102ee9e2f5d081dbe54d906744c879</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Blt%3Bbr/%26amp%3Bgt%3Bl?lp=adwords&&tg;=ca&&s=k-pwqe26uwoyn86cqkbhqg&&t;=1378602114&&lt;br%2F&&gt;&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>455</line>
	<id>11232518</id>
	<first>1369085936</first>
	<last>0</last>
	<md5>0e7b79fc41fe2340505c9c8842ecbd99</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0e7b79fc41fe2340505c9c8842ecbd99</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Blt%3Bbr/%26amp%3Bgt%3Bl?lp=adwords&&tg;=ca&&s;=k-pwqe26uwoyn86cqkbhqg&&t;=1378602114&&lt;br%2F&&gt;&&am;%2F;p%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>456</line>
	<id>11232517</id>
	<first>1369085936</first>
	<last>0</last>
	<md5>acb90d6c60570f8b3087896c91994a4f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=acb90d6c60570f8b3087896c91994a4f</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Blt%3Bbr/%26amp%3Bgt%3Bl?lp=adwords&&tg=ca&&s=k-pwqe26uwoyn86cqkbhqg&&t=1378602114&&lt;br%2F&&gt;&&am%2F;p%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>457</line>
	<id>11232516</id>
	<first>1369085936</first>
	<last>0</last>
	<md5>05f374af7e3952b26d9ba274b17ad589</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=05f374af7e3952b26d9ba274b17ad589</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Blt%3Bbr/%26amp%3Bgt%3Bl?lp=adwords&&&&tg;=ca&&&&s;=k-pwqe26uwoyn86cqkbhqg&&&&t;=1378602114&&&&&gt;&&ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>458</line>
	<id>11232515</id>
	<first>1369085936</first>
	<last>0</last>
	<md5>000a17f9a0745d3f9448c9abb96d78cb</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=000a17f9a0745d3f9448c9abb96d78cb</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Blt%3Bbr/%26amp%3Bgt%3Bl?lp=adwords&&tg=ca&&s=k-pwqe26uwoyn86cqkbhqg&&t=1378602114&&am%&&lt;br%2F&&gt;2f;p%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>459</line>
	<id>11232514</id>
	<first>1369085936</first>
	<last>0</last>
	<md5>de0584cf8ecab41a20976e41b5246d0b</md5>
	<virustotal></virustotal>
	<vt_score></vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Blt%3Bbr/%26amp%3Bgt%3Bl?lp=adwords&&tg;=ca&&s;=k-pwqe26uwoyn86cqkbhqg&&t;=1378602114&&am;%2F&&lt;br%2F&&gt;;p%2F;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>460</line>
	<id>11232512</id>
	<first>1369085935</first>
	<last>0</last>
	<md5>0c55e61d853eeee87435fd7771e10b5f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0c55e61d853eeee87435fd7771e10b5f</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Blt%3Bbr/%26amp%3Bgt%3Bl?lp=adwords&&tg;%2F;=ca&&s;%2F;=k-pwqe26uwoyn86cqkbhqg&&t;%2F;&&lt;br%2F&&gt;=1378602114&&ex;%2F;t=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>461</line>
	<id>11232511</id>
	<first>1369085935</first>
	<last>0</last>
	<md5>230b86cbe4743a60c844e25fbe8f1840</md5>
	<virustotal></virustotal>
	<vt_score></vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Blt%3Bbr/%26amp%3Bgt%3Bl?lp=adword&&lt;br%2F&&gt;s&&tg;=ca&&s;=k-pwqe26uwoyn86cqkbh&&lt;br%2F&&gt;qg&&lt;br%2F&&gt;t=1378602114&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>462</line>
	<id>11232510</id>
	<first>1369085935</first>
	<last>0</last>
	<md5>e9d496a0c8d2f2bd53bfd260a9eed4a1</md5>
	<virustotal></virustotal>
	<vt_score></vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Blt%3Bbr/%26amp%3Bgt%3B%26amp%3Blt%3Bbr/%26amp%3Bgt%3Bl?lp=adwords&&tg=ca&&s=k-pwqe26uwoyn8&&lt;br/&&gt;6cqkbhqg&&t=1378602114&&lt;br/&&gt;&&ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>463</line>
	<id>11232509</id>
	<first>1369085935</first>
	<last>0</last>
	<md5>40d77ede65fc05a3fff22c2e9bdc7938</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=40d77ede65fc05a3fff22c2e9bdc7938</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Blt%3Bbr/%26amp%3Bgt%3B%26amp%3Blt%3Bbr/%26amp%3Bgt%3Bl?lp=adwords&&tg;=ca&&s;=k-pwqe26uwoyn8&&lt;br%2F&&gt;6cqkbhqg&&t;=1378602114&&lt;br%2F&&gt;&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>464</line>
	<id>11232507</id>
	<first>1369085935</first>
	<last>0</last>
	<md5>06b3311a68cee2cd6e11c188706f060c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=06b3311a68cee2cd6e11c188706f060c</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Blt%3Bbr/%26amp%3Bgt%3B%26amp%3Blt%3Bbr/%26amp%3Bgt%3Bl?lp=adwords&&tg;=ca&&s;=k-pwqe26uwoyn86c&&lt;br%2F&&gt;qkbhqg&&t;=1378602114&&ext;;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>465</line>
	<id>11232506</id>
	<first>1369085935</first>
	<last>0</last>
	<md5>200c45a3ad6652a1717c26a89b72cd64</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=200c45a3ad6652a1717c26a89b72cd64</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Blt%3Bbr/%26amp%3Bgt%3B%26amp%3Blt%3Bbr/%26amp%3Bgt%3Bl?lp=adwords&&tg;=ca&&s;=k-pwqe26uwoyn86c&&lt;br%2F&&gt;qkbhqg&&t;=1378602114&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>466</line>
	<id>11232505</id>
	<first>1369085935</first>
	<last>0</last>
	<md5>ce96fc8d05b4fea5183dd1eab7579caf</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ce96fc8d05b4fea5183dd1eab7579caf</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Bamp/%3Blt/%3Bbr/%26amp%3Bamp/%3Bgt/%3Bl?lp=adwords&&tg%2F;=ca&&s%2F;=k-pwqe26uwoyn86cqkbhqg&&t%2F;=13786&&lt%2F;br%2F&&gt%2F;02114&&ext%2F;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>467</line>
	<id>11232504</id>
	<first>1369085935</first>
	<last>0</last>
	<md5>31ca9a0a2ccee4657364852c3cd842b2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=31ca9a0a2ccee4657364852c3cd842b2</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%26amp%3Bamp/%3Blt/%3Bbr/%26amp%3Bamp/%3Bgt/%3Bl?lp=adwords&&tg;%2F;=ca&&s;%2F;=k-pwqe26uwoyn86cqkbhqg&&t;%2F;=13786&&lt;%2F;br%2F&&gt;%2F;02114&&ext;%2F;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.245.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>468</line>
	<id>11232502</id>
	<first>1369085935</first>
	<last>0</last>
	<md5>622c775060026b57a4c1145ea4fcb147</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=622c775060026b57a4c1145ea4fcb147</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.971]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/index.htm%20%26amp/%3Blt/%3Bbr/%26amp/%3Bgt/%3Bl?lp=adwords&&tg%2F;=ca&&s%2F;=k-pwqe26uwoyn86cqkbhqg&&t%2F;=13786&]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>469</line>
	<id>11232501</id>
	<first>1369085935</first>
	<last>0</last>
	<md5>94579259a80e8281b2743134b03b7e91</md5>
	<virustotal></virustotal>
	<vt_score></vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960?&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.245.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>470</line>
	<id>11232500</id>
	<first>1369085935</first>
	<last>0</last>
	<md5>874c312aa303a1ff72e28741ec949a2c</md5>
	<virustotal></virustotal>
	<vt_score></vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960?&&&&&&&ext;=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>23.21.242.54</ip>
	<as>AS16509</as>
	<review>23.21.242.54</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>23.20.0.0 - 23.23.255.255</inetnum>
	<netname>AMAZON-EC2-USEAST-10</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>471</line>
	<id>11232499</id>
	<first>1369085935</first>
	<last>0</last>
	<md5>eb661d772f8dddc7b237aab9750f8ba3</md5>
	<virustotal></virustotal>
	<vt_score></vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://google-earth.xtremedownload.com/get/file/id/802960/?amp;amp/;&amp/;&amp/;&amp/;&amp/;ext=.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>54.225.232.227</ip>
	<as>AS16509</as>
	<review>54.225.232.227</review>
	<domain>xtremedownload.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>ec2-abuse@amazon.com</email>
	<inetnum>54.224.0.0 - 54.225.255.255</inetnum>
	<netname>AMAZO-IAD3</netname>
	<descr><![CDATA[Amazon.com, Inc. AMAZO-4 Amazon Web Services, Elastic Compute Cloud, EC2 1200 12th Avenue South Seattle WA 98144]]></descr>
	<ns1>ns-1717.awsdns-22.co.uk</ns1>
	<ns2>ns-970.awsdns-57.net</ns2>
	<ns3>ns-1115.awsdns-11.org</ns3>
	<ns4>ns-276.awsdns-34.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>472</line>
	<id>11232407</id>
	<first>1369085931</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://gk.1i.filmwit.com/down/vs1/77667.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>473</line>
	<id>11232403</id>
	<first>1369085931</first>
	<last>0</last>
	<md5>bd87d5bd885b4a1f8e92c36a33767ab7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=bd87d5bd885b4a1f8e92c36a33767ab7</virustotal>
	<vt_score>2/46 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.F47V0518]]></virusname>
	<url><![CDATA[http://game45.wanyx.com/mofashuidi.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.20</ip>
	<as>AS4134</as>
	<review>61.187.182.20</review>
	<domain>wanyx.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>474</line>
	<id>11232402</id>
	<first>1369085931</first>
	<last>0</last>
	<md5>48daea9271c8b797b41cd97ef27bb46e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=48daea9271c8b797b41cd97ef27bb46e</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.F47V0518]]></virusname>
	<url><![CDATA[http://game45.wanyx.com/fafangshengdanliwu.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.20</ip>
	<as>AS4134</as>
	<review>61.187.182.20</review>
	<domain>wanyx.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>475</line>
	<id>11232401</id>
	<first>1369085931</first>
	<last>0</last>
	<md5>1ccb970326a5dbf0bb1940a1ab4df538</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1ccb970326a5dbf0bb1940a1ab4df538</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.F47V1217]]></virusname>
	<url><![CDATA[http://game42.wanyx.com/qqxianglong.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.20</ip>
	<as>AS4134</as>
	<review>61.187.182.20</review>
	<domain>wanyx.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>476</line>
	<id>11232400</id>
	<first>1369085931</first>
	<last>0</last>
	<md5>64d705c9489204565a23e2af60833cc3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=64d705c9489204565a23e2af60833cc3</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.F47V0518]]></virusname>
	<url><![CDATA[http://game42.wanyx.com/jinyongqunxiachuanzzzjh.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.20</ip>
	<as>AS4134</as>
	<review>61.187.182.20</review>
	<domain>wanyx.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>477</line>
	<id>11232399</id>
	<first>1369085931</first>
	<last>0</last>
	<md5>cbebb8da353b3a16d3217d7c62bee35e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=cbebb8da353b3a16d3217d7c62bee35e</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.F47V0518]]></virusname>
	<url><![CDATA[http://game42.wanyx.com/cangshuqiu2010.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.20</ip>
	<as>AS4134</as>
	<review>61.187.182.20</review>
	<domain>wanyx.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>478</line>
	<id>11232398</id>
	<first>1369085931</first>
	<last>0</last>
	<md5>1047dcc4b53dc41f93c1c007eb7b0c5b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1047dcc4b53dc41f93c1c007eb7b0c5b</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://fw.rx.filmwit.com/down/jcr/37225.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>479</line>
	<id>11232397</id>
	<first>1369085931</first>
	<last>0</last>
	<md5>181914d668423f011a020c747ebd0bf8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=181914d668423f011a020c747ebd0bf8</virustotal>
	<vt_score>6/46 (13%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://fw.6i.filmwit.com/down/2c6/1702.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>480</line>
	<id>11232394</id>
	<first>1369085930</first>
	<last>0</last>
	<md5>1a828d8cb7b735ba0d32d94835526ccf</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1a828d8cb7b735ba0d32d94835526ccf</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://fu.2t.filmwit.com/down/g82/78934.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>481</line>
	<id>11232393</id>
	<first>1369085930</first>
	<last>0</last>
	<md5>9a5a86d84df949a4d037b3ae8e6dbd19</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9a5a86d84df949a4d037b3ae8e6dbd19</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Win.Trojan.Zegost-128]]></virusname>
	<url><![CDATA[http://flmy.cn-soft.com:8888/client/clientsetup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.46.9.176</ip>
	<as>AS9394</as>
	<review>222.46.9.176</review>
	<domain>cn-soft.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>crnet_mgr@chinatietong.com</email>
	<inetnum>222.32.0.0 - 222.63.255.255</inetnum>
	<netname>CTTNET</netname>
	<descr><![CDATA[China TieTong Telecommunications CorporationJinze Mansion, 2 Guangningbo Street,Xicheng District, Beijing, China, 100032]]></descr>
	<ns1>win2003-4c84022</ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>482</line>
	<id>11232392</id>
	<first>1369085930</first>
	<last>0</last>
	<md5>504a8778caab291028fc27e9eff80247</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=504a8778caab291028fc27e9eff80247</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Heuristic.LooksLike.Win32.Suspicious.N]]></virusname>
	<url><![CDATA[http://flight1.100megabyte.com/stb31f1.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>64.34.190.39</ip>
	<as>AS30099</as>
	<review>64.34.190.39</review>
	<domain>100megabyte.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@serverbeach.com</email>
	<inetnum>64.34.176.0 - 64.34.191.255</inetnum>
	<netname>PEER1-SERVERBEACH-02A</netname>
	<descr><![CDATA[ServerBeach SERVE-33 Suite 225-2350 Corporate Park Drive Herndon VA 20171]]></descr>
	<ns1>ns62.worldnic.com</ns1>
	<ns2>ns61.worldnic.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>483</line>
	<id>11232391</id>
	<first>1369085930</first>
	<last>0</last>
	<md5>802cfd534679e9f0ff2782a57cc19bad</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=802cfd534679e9f0ff2782a57cc19bad</virustotal>
	<vt_score>41/45 (91.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[WORM%2FOtwycal.g]]></virusname>
	<url><![CDATA[http://flash.360edu.com/chuzhong/5/courseware/first/0204.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>221.2.194.229</ip>
	<as>AS132524</as>
	<review>221.2.194.229</review>
	<domain>360edu.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email></email>
	<inetnum>221.2.0.0 - 221.2.255.255</inetnum>
	<netname></netname>
	<descr><![CDATA[]]></descr>
	<ns1>ns1.cnolnic.net</ns1>
	<ns2>ns2.cnolnic.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>484</line>
	<id>11232386</id>
	<first>1369085930</first>
	<last>0</last>
	<md5>b65bc6029de3617c4d6e8e4f23a6e1ca</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b65bc6029de3617c4d6e8e4f23a6e1ca</virustotal>
	<vt_score>10/47 (21.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FZusy.1104858]]></virusname>
	<url><![CDATA[http://file.ancamera.co.kr/app/AnCamera_Setup_4.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>114.108.160.162</ip>
	<as>AS3786</as>
	<review>114.108.160.162</review>
	<domain>ancamera.co.kr</domain>
	<country>KR</country>
	<source>APNIC</source>
	<email>ip@kidc.net</email>
	<inetnum>114.108.128.0 - 114.108.191.255</inetnum>
	<netname>KIDC-KR</netname>
	<descr><![CDATA[LG DACOM KIDC]]></descr>
	<ns1>ns3.rcdns.com</ns1>
	<ns2>ns2.rcdns.com</ns2>
	<ns3>ns1.rcdns.com</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>485</line>
	<id>11232385</id>
	<first>1369085930</first>
	<last>0</last>
	<md5>1fb2aa31c45b3760e982958ae81be3e1</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1fb2aa31c45b3760e982958ae81be3e1</virustotal>
	<vt_score>26/47 (55.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FRogue.7406649]]></virusname>
	<url><![CDATA[http://file.ancamera.co.kr/app/AnCamCorder_v2.0.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>114.108.160.162</ip>
	<as>AS3786</as>
	<review>114.108.160.162</review>
	<domain>ancamera.co.kr</domain>
	<country>KR</country>
	<source>APNIC</source>
	<email>ip@kidc.net</email>
	<inetnum>114.108.128.0 - 114.108.191.255</inetnum>
	<netname>KIDC-KR</netname>
	<descr><![CDATA[LG DACOM KIDC]]></descr>
	<ns1>ns3.rcdns.com</ns1>
	<ns2>ns2.rcdns.com</ns2>
	<ns3>ns1.rcdns.com</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>486</line>
	<id>11232382</id>
	<first>1369085929</first>
	<last>0</last>
	<md5>7fc446943c4245e9105e3b76b7beeaa2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7fc446943c4245e9105e3b76b7beeaa2</virustotal>
	<vt_score>1/35 (2.9%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.1125]]></virusname>
	<url><![CDATA[http://fcdn.softwaretop.net/store/3D03CA671F96510A/t-0/chrome-27-beta-.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>210.245.91.131</ip>
	<as>AS18403</as>
	<review>210.245.91.131</review>
	<domain>softwaretop.net</domain>
	<country>vn</country>
	<source>APNIC</source>
	<email>haitt@fpt.net</email>
	<inetnum>210.245.80.0 - 210.245.95.255</inetnum>
	<netname>FPT-STATICIP-NET</netname>
	<descr><![CDATA[FPT Telecom Company2nd floor FPT Building, Pham Hung Road, Cau Giay District, Hanoi]]></descr>
	<ns1>ns47.domaincontrol.com</ns1>
	<ns2>ns48.domaincontrol.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>487</line>
	<id>11232375</id>
	<first>1369085929</first>
	<last>0</last>
	<md5>2d68c3fd9d64037bc3fbb1c11819b4d2</md5>
	<virustotal></virustotal>
	<vt_score>4/46 (8.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[AdInstaller.E]]></virusname>
	<url><![CDATA[http://ezthemes.com/site_tempfiles/b1/06/christmasmemoriesws.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>65.61.101.143</ip>
	<as>AS30340</as>
	<review>65.61.101.143</review>
	<domain>ezthemes.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>noc@tierpoint.com</email>
	<inetnum>65.61.96.0 - 65.61.127.255</inetnum>
	<netname>TIER-1</netname>
	<descr><![CDATA[Tierpoint, LLC TIERP 23403 E Mission Ave Liberty Lake WA 99019]]></descr>
	<ns1>ns001.webdevaz.com</ns1>
	<ns2>ns002.webdevaz.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>488</line>
	<id>11232371</id>
	<first>1369085929</first>
	<last>0</last>
	<md5>4999d2f90756f567002dddf2907ed379</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4999d2f90756f567002dddf2907ed379</virustotal>
	<vt_score>5/47 (10.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://eo.i6.filmwit.com/down/cni/5709.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>489</line>
	<id>11232370</id>
	<first>1369085929</first>
	<last>0</last>
	<md5>7791408079494487f3e6e90340c7eb0a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7791408079494487f3e6e90340c7eb0a</virustotal>
	<vt_score>12/44 (27.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FVB.BL]]></virusname>
	<url><![CDATA[http://eliteip.co.kr/EUIMSetup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>121.131.131.242</ip>
	<as>AS4766</as>
	<review>121.131.131.242</review>
	<domain>eliteip.co.kr</domain>
	<country>KR</country>
	<source>APNIC</source>
	<email>abuse@kornet.net</email>
	<inetnum>121.128.0.0 - 121.159.255.255</inetnum>
	<netname>KORNET-KR</netname>
	<descr><![CDATA[Korea Telecom]]></descr>
	<ns1>ns259.dnsever.com</ns1>
	<ns2>ns94.dnsever.com</ns2>
	<ns3>ns231.dnsever.com</ns3>
	<ns4>ns68.dnsever.com</ns4>
	<ns5>ns69.dnsever.com</ns5>
</entry>
<entry>
	<line>490</line>
	<id>11232359</id>
	<first>1369085928</first>
	<last>0</last>
	<md5>e729ef2a96081d097abc60a79f844f47</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e729ef2a96081d097abc60a79f844f47</virustotal>
	<vt_score>9/47 (19.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Agent]]></virusname>
	<url><![CDATA[http://ebmspro.com/9y3.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>77.235.59.1</ip>
	<as>AS16265</as>
	<review>77.235.59.1</review>
	<domain>ebmspro.com</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>security@eurovps.com</email>
	<inetnum>77.235.32.0 - 77.235.63.255</inetnum>
	<netname>GR-EUROVPS-20070116</netname>
	<descr><![CDATA[EuroVPSEuroVPS]]></descr>
	<ns1>ns17.eurovps.com</ns1>
	<ns2>ns43.eurovps.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>491</line>
	<id>11232358</id>
	<first>1369085928</first>
	<last>0</last>
	<md5>6cafad087126bd046697d276b06f4b41</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6cafad087126bd046697d276b06f4b41</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://e7.x9.filmwit.com/down/orx/73183.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>492</line>
	<id>11232357</id>
	<first>1369085928</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://dz.0n.filmwit.com/down/mu0/80836.exe?IFoxInstall-y-c203117343-nsi-s-run-x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>493</line>
	<id>11232355</id>
	<first>1369085928</first>
	<last>0</last>
	<md5>e3aaf04767c222e9998d7f49b445dd43</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e3aaf04767c222e9998d7f49b445dd43</virustotal>
	<vt_score>4/36 (11.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDownloader.Gen]]></virusname>
	<url><![CDATA[http://dx.youxk8.com/loginbymac.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>202.75.218.86</ip>
	<as>AS4134</as>
	<review>202.75.218.86</review>
	<domain>youxk8.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>lhm@srt.com.cn</email>
	<inetnum>202.75.208.0 - 202.75.223.255</inetnum>
	<netname>SRT</netname>
	<descr><![CDATA[Hangzhou Silk Road Information Technologies Co.,Ltd.Hangzhou, Jiangsu, P.R.China]]></descr>
	<ns1>ns2.dns.com.cn</ns1>
	<ns2>ns1.dns.com.cn</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>494</line>
	<id>11232353</id>
	<first>1369085927</first>
	<last>0</last>
	<md5>25960e741ef97c2c2b532e081dc132fa</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=25960e741ef97c2c2b532e081dc132fa</virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[PAK_Generic.001]]></virusname>
	<url><![CDATA[http://dxx1.newyx.net/streethoop.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.189.238.254</ip>
	<as>AS4134</as>
	<review>222.189.238.254</review>
	<domain>newyx.net</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns1.dnsv2.com</ns1>
	<ns2>ns2.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>495</line>
	<id>11232351</id>
	<first>1369085927</first>
	<last>0</last>
	<md5>74f9e0a7a6ead7ef7f324db9e32eadb8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=74f9e0a7a6ead7ef7f324db9e32eadb8</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Downloader.NSIS]]></virusname>
	<url><![CDATA[http://dxx1.newyx.net/bounty_alien.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.189.238.254</ip>
	<as>AS4134</as>
	<review>222.189.238.254</review>
	<domain>newyx.net</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns1.dnsv2.com</ns1>
	<ns2>ns2.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>496</line>
	<id>11232349</id>
	<first>1369085927</first>
	<last>0</last>
	<md5>1e6294979c9179925d23972c7fac66be</md5>
	<virustotal></virustotal>
	<vt_score>38/46 (82.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FStartPage.nan.10]]></virusname>
	<url><![CDATA[http://dx.uzzf.com/QQSHW.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.251.230</ip>
	<as>AS4134</as>
	<review>61.187.251.230</review>
	<domain>uzzf.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.187.240.0 - 61.187.254.255</inetnum>
	<netname>CHINANET-HN-CZ</netname>
	<descr><![CDATA[CHINANET-HN Chenzhou node networkhunan Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>497</line>
	<id>11232348</id>
	<first>1369085927</first>
	<last>0</last>
	<md5>fe4753ac25686b9d666dbe68e1a8692e</md5>
	<virustotal></virustotal>
	<vt_score>12/46 (26.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Suspicious+file]]></virusname>
	<url><![CDATA[http://dx.uzzf.com/PowerDataRecovery.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.251.230</ip>
	<as>AS4134</as>
	<review>61.187.251.230</review>
	<domain>uzzf.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.187.240.0 - 61.187.254.255</inetnum>
	<netname>CHINANET-HN-CZ</netname>
	<descr><![CDATA[CHINANET-HN Chenzhou node networkhunan Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>498</line>
	<id>11232347</id>
	<first>1369085927</first>
	<last>0</last>
	<md5>048056c36dbe8b56eca9ff19b7add787</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=048056c36dbe8b56eca9ff19b7add787</virustotal>
	<vt_score>33/43 (76.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FStartPage.nan.10]]></virusname>
	<url><![CDATA[http://dx.uzzf.com/JDeleter.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.251.230</ip>
	<as>AS4134</as>
	<review>61.187.251.230</review>
	<domain>uzzf.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.187.240.0 - 61.187.254.255</inetnum>
	<netname>CHINANET-HN-CZ</netname>
	<descr><![CDATA[CHINANET-HN Chenzhou node networkhunan Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>499</line>
	<id>11232346</id>
	<first>1369085927</first>
	<last>0</last>
	<md5>1b049f09ee99bd1f11f64f8dcf3adf7a</md5>
	<virustotal></virustotal>
	<vt_score>7/47 (14.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Suspicious+file]]></virusname>
	<url><![CDATA[http://dx.uzzf.com/HDTunePro.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.251.230</ip>
	<as>AS4134</as>
	<review>61.187.251.230</review>
	<domain>uzzf.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.187.240.0 - 61.187.254.255</inetnum>
	<netname>CHINANET-HN-CZ</netname>
	<descr><![CDATA[CHINANET-HN Chenzhou node networkhunan Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>500</line>
	<id>11232345</id>
	<first>1369085927</first>
	<last>0</last>
	<md5>92daf2d71cca9297ed68cb1ecbf4d0e2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=92daf2d71cca9297ed68cb1ecbf4d0e2</virustotal>
	<vt_score>8/47 (17%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FMulti.MULTIPACKED%21tr.bdr]]></virusname>
	<url><![CDATA[http://dx.uzzf.com/chaoyipjbd.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.251.230</ip>
	<as>AS4134</as>
	<review>61.187.251.230</review>
	<domain>uzzf.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.187.240.0 - 61.187.254.255</inetnum>
	<netname>CHINANET-HN-CZ</netname>
	<descr><![CDATA[CHINANET-HN Chenzhou node networkhunan Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>501</line>
	<id>11232344</id>
	<first>1369085927</first>
	<last>0</last>
	<md5>af9115ba44af3cc4cd1be596c405da2f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=af9115ba44af3cc4cd1be596c405da2f</virustotal>
	<vt_score>25/47 (53.2%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.XPACK.Gen3]]></virusname>
	<url><![CDATA[http://dx9.haote.com/BaiduKeywords.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>haote.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>502</line>
	<id>11232343</id>
	<first>1369085927</first>
	<last>0</last>
	<md5>af440f98f6e8f2f5e07515b67f81d90b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=af440f98f6e8f2f5e07515b67f81d90b</virustotal>
	<vt_score>33/35 (94.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[W32%2FAlmanahe.B]]></virusname>
	<url><![CDATA[http://dx9.52z.com/ylztyxzs.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>503</line>
	<id>11232342</id>
	<first>1369085927</first>
	<last>0</last>
	<md5>e110b5f506cf14c81717d3765ffe8dfe</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e110b5f506cf14c81717d3765ffe8dfe</virustotal>
	<vt_score>26/36 (72.2%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[BDS%2FBackdoor.Gen5]]></virusname>
	<url><![CDATA[http://dx9.52z.com/xjQQshuazan.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>504</line>
	<id>11232341</id>
	<first>1369085927</first>
	<last>0</last>
	<md5>e96a2f3fb70f8bb8c0fbacac13d1d55a</md5>
	<virustotal></virustotal>
	<vt_score>11/47 (23.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Genome.km]]></virusname>
	<url><![CDATA[http://dx9.52z.com/WinAVI_DVD.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>505</line>
	<id>11232340</id>
	<first>1369085927</first>
	<last>0</last>
	<md5>acef213b2451a2f2f72c9544d4647c26</md5>
	<virustotal></virustotal>
	<vt_score>19/46 (41.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Yakes]]></virusname>
	<url><![CDATA[http://dx9.52z.com/videofixer.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>506</line>
	<id>11232339</id>
	<first>1369085927</first>
	<last>0</last>
	<md5>f1dc9ce3694c0efb7df6f8a44bb5c035</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f1dc9ce3694c0efb7df6f8a44bb5c035</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.F47V0409]]></virusname>
	<url><![CDATA[http://dx9.52z.com/VCamSetup_MSN.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>507</line>
	<id>11232338</id>
	<first>1369085927</first>
	<last>0</last>
	<md5>058ce788b7223ea378622088e60019c9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=058ce788b7223ea378622088e60019c9</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Worm.Qvod]]></virusname>
	<url><![CDATA[http://dx9.52z.com/TTPlayersetup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>508</line>
	<id>11232337</id>
	<first>1369085927</first>
	<last>0</last>
	<md5>4e24508640305531288c3a059f35ef6e</md5>
	<virustotal></virustotal>
	<vt_score>4/46 (8.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.F47V0205]]></virusname>
	<url><![CDATA[http://dx9.52z.com/Thunderwu.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>509</line>
	<id>11232336</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>19e7b336c041e2d2c51e87fb4e0753b7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=19e7b336c041e2d2c51e87fb4e0753b7</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://dx9.52z.com/TdxWRemot.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>510</line>
	<id>11232335</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>fa6bf183abfe87b624658851219d059c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=fa6bf183abfe87b624658851219d059c</virustotal>
	<vt_score>19/45 (42.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FCI.A]]></virusname>
	<url><![CDATA[http://dx9.52z.com/tbgjcplsc.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>511</line>
	<id>11232334</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>92425feb4c6dcc37f5f330caf39a7af5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=92425feb4c6dcc37f5f330caf39a7af5</virustotal>
	<vt_score>2/46 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.F4AHZH3]]></virusname>
	<url><![CDATA[http://dx9.52z.com/sougousx.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>512</line>
	<id>11232333</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>d717e6497032e82802d03be0f051e618</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d717e6497032e82802d03be0f051e618</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://dx9.52z.com/RAZERlyksqd.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>513</line>
	<id>11232332</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>f8bc00710c32b63c43d2b868456f6323</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f8bc00710c32b63c43d2b868456f6323</virustotal>
	<vt_score>16/46 (34.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADWARE%2FKoutodoor.A.2554]]></virusname>
	<url><![CDATA[http://dx9.52z.com/QQPetBonne.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>514</line>
	<id>11232331</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>0ed156c865b52d30eb55bf5166071f24</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0ed156c865b52d30eb55bf5166071f24</virustotal>
	<vt_score>20/36 (55.6%)</vt_score>
	<scanner>Avast</scanner>
	<virusname><![CDATA[Win32%3ARootkit-gen+Rtk]]></virusname>
	<url><![CDATA[http://dx9.52z.com/feichekuake.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>515</line>
	<id>11232330</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>55cf7ea8cdbbb5af3876e6c19770cad5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=55cf7ea8cdbbb5af3876e6c19770cad5</virustotal>
	<vt_score>30/46 (65.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://dx9.52z.com/dzuobiqi.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>516</line>
	<id>11232329</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>3b22b6d1bcedda4b305b73543adfcf1e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3b22b6d1bcedda4b305b73543adfcf1e</virustotal>
	<vt_score>1/45 (2.2%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Bat.Delfiles-6]]></virusname>
	<url><![CDATA[http://dx9.52z.com/cpqlzc.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>517</line>
	<id>11232328</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>000e9578273603201e242530da29558c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=000e9578273603201e242530da29558c</virustotal>
	<vt_score>8/47 (17%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://dx9.52z.com/CheatE.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>518</line>
	<id>11232327</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>c4b0efc52ccdd2ed55f13779ced6e2db</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c4b0efc52ccdd2ed55f13779ced6e2db</virustotal>
	<vt_score>29/46 (63%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FAgent.311808]]></virusname>
	<url><![CDATA[http://dx8.52z.com/zy_l.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>519</line>
	<id>11232325</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>e41c32b2ab868462e8a184b737cb0d1d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e41c32b2ab868462e8a184b737cb0d1d</virustotal>
	<vt_score>9/47 (19.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Backdoor.Win32.Hupigon]]></virusname>
	<url><![CDATA[http://dx8.52z.com/xcyygjpjb.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>520</line>
	<id>11232324</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>3ef15fc91bc4ffa9ce4d700835666256</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3ef15fc91bc4ffa9ce4d700835666256</virustotal>
	<vt_score>7/17 (41.2%)</vt_score>
	<scanner>AVG</scanner>
	<virusname><![CDATA[Dropper.Generic7.BLRB]]></virusname>
	<url><![CDATA[http://dx8.52z.com/wbzyympt%20.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>521</line>
	<id>11232323</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>058ce788b7223ea378622088e60019c9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=058ce788b7223ea378622088e60019c9</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>VBA32</scanner>
	<virusname><![CDATA[Worm.Qvod]]></virusname>
	<url><![CDATA[http://dx8.52z.com/TTPlayersetup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>522</line>
	<id>11232322</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>494207ca642d364eda7c653f1f471e86</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=494207ca642d364eda7c653f1f471e86</virustotal>
	<vt_score>30/45 (66.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://dx8.52z.com/tluzs.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>523</line>
	<id>11232321</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>c8a3efc65e279ff24e973778d8501603</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c8a3efc65e279ff24e973778d8501603</virustotal>
	<vt_score>35/45 (77.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[SPR%2FPSW.Dialupass.J]]></virusname>
	<url><![CDATA[http://dx8.52z.com/SystemFolderSetting.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>524</line>
	<id>11232320</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>8d9c9b2a14c4e53b0380cc8e4a3c2eb9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8d9c9b2a14c4e53b0380cc8e4a3c2eb9</virustotal>
	<vt_score>23/47 (48.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.XPACK.Gen3]]></virusname>
	<url><![CDATA[http://dx8.52z.com/SWFSNDs.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>525</line>
	<id>11232319</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>2883918cd2c3346e57f820337f934615</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=2883918cd2c3346e57f820337f934615</virustotal>
	<vt_score>2/36 (5.6%)</vt_score>
	<scanner>CAT_QuickHeal</scanner>
	<virusname><![CDATA[%28Suspicious%29+-+DNAScan]]></virusname>
	<url><![CDATA[http://dx8.52z.com/spylite.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>526</line>
	<id>11232317</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>aab7e4981be9c926246b1f6a3807bf6c</md5>
	<virustotal></virustotal>
	<vt_score>9/46 (19.6%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Worm.Mytob.IS]]></virusname>
	<url><![CDATA[http://dx8.52z.com/SmartDr.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>527</line>
	<id>11232316</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>bd8edad73cecd75841d36ffde8a7731b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=bd8edad73cecd75841d36ffde8a7731b</virustotal>
	<vt_score>28/47 (59.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FBlack.Gen2]]></virusname>
	<url><![CDATA[http://dx8.52z.com/SleepDTr.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>528</line>
	<id>11232314</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>4b50e48531fe7d9f731fa4ff9e2770cb</md5>
	<virustotal></virustotal>
	<vt_score>23/46 (50%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FCI.A]]></virusname>
	<url><![CDATA[http://dx8.52z.com/QQshipinzid.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>529</line>
	<id>11232313</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>ab206be4f2be51e0bac4b090e1b80bb8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ab206be4f2be51e0bac4b090e1b80bb8</virustotal>
	<vt_score>12/45 (26.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FJorik.Shakblades.efz]]></virusname>
	<url><![CDATA[http://dx8.52z.com/qqrzc.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>530</line>
	<id>11232311</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>1e086fd4dfe03f232f058b7ee2285a11</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1e086fd4dfe03f232f058b7ee2285a11</virustotal>
	<vt_score>11/46 (23.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FBlack.Gen2]]></virusname>
	<url><![CDATA[http://dx8.52z.com/miehunfz.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>531</line>
	<id>11232310</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>e6eddd0013daa7d54eea177c3891ce1b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e6eddd0013daa7d54eea177c3891ce1b</virustotal>
	<vt_score>26/47 (55.3%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Dropper%2FWin32.Injector]]></virusname>
	<url><![CDATA[http://dx8.52z.com/lbbbscq.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>532</line>
	<id>11232309</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>209785212c418db96d1fbe028ac8ee9f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=209785212c418db96d1fbe028ac8ee9f</virustotal>
	<vt_score>3/45 (6.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIJ]]></virusname>
	<url><![CDATA[http://dx8.52z.com/ksafedock.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>533</line>
	<id>11232308</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>d820668f730453db00f2e95690a46277</md5>
	<virustotal></virustotal>
	<vt_score>33/46 (71.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.TPM.Gen]]></virusname>
	<url><![CDATA[http://dx8.52z.com/jjsanguofz.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>534</line>
	<id>11232307</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>394be902bad6377dd534b67d129ca69a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=394be902bad6377dd534b67d129ca69a</virustotal>
	<vt_score>3/35 (8.6%)</vt_score>
	<scanner>TrendMicro</scanner>
	<virusname><![CDATA[PAK_Generic.001]]></virusname>
	<url><![CDATA[http://dx8.52z.com/i_Ku.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>535</line>
	<id>11232305</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>d808b0106d9573b91fb96e9e0116466b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d808b0106d9573b91fb96e9e0116466b</virustotal>
	<vt_score>25/35 (71.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.CFI.Gen]]></virusname>
	<url><![CDATA[http://dx8.52z.com/duoshi_x.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>536</line>
	<id>11232303</id>
	<first>1369085926</first>
	<last>0</last>
	<md5>61485770a75c252a1031cb2c72bedc6e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=61485770a75c252a1031cb2c72bedc6e</virustotal>
	<vt_score>18/46 (39.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FNSIS.10568]]></virusname>
	<url><![CDATA[http://dx8.52z.com/Bluesoleil_V.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>537</line>
	<id>11232302</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>8036365241d0111e82f69724858de477</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8036365241d0111e82f69724858de477</virustotal>
	<vt_score>3/35 (8.6%)</vt_score>
	<scanner>F_Prot</scanner>
	<virusname><![CDATA[W32%2FWorm.BGST]]></virusname>
	<url><![CDATA[http://dx8.52z.com/bianjia.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>538</line>
	<id>11232301</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>927a8478cb0b236033be317507abd188</md5>
	<virustotal></virustotal>
	<vt_score>32/46 (69.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://dx8.52z.com/BFWeapons.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>539</line>
	<id>11232300</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>98ebc4bb857debfa112f629403f8930f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=98ebc4bb857debfa112f629403f8930f</virustotal>
	<vt_score>27/36 (75%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Dropper%2FWin32.Injector]]></virusname>
	<url><![CDATA[http://dx8.52z.com/bench.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.18</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>540</line>
	<id>11232299</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>4660d25ac1d63b9eb5046f7b261d4b4a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4660d25ac1d63b9eb5046f7b261d4b4a</virustotal>
	<vt_score>22/46 (47.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDldr.Agent.efac]]></virusname>
	<url><![CDATA[http://dx7.fxxz.com:81/leidian2zcb.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>219.138.139.115</ip>
	<as>AS4134</as>
	<review>219.138.139.115</review>
	<domain>fxxz.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>219.138.0.0 - 219.140.255.255</inetnum>
	<netname>CHINANET-HB</netname>
	<descr><![CDATA[CHINANET hubei province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>541</line>
	<id>11232298</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>6b17f9e13fe311eed54a0cc77a025325</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6b17f9e13fe311eed54a0cc77a025325</virustotal>
	<vt_score>13/46 (28.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://dx7.52z.com/xms.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>542</line>
	<id>11232296</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>d650a8b48915a725e9e3f3ae67b04046</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d650a8b48915a725e9e3f3ae67b04046</virustotal>
	<vt_score>2/36 (5.6%)</vt_score>
	<scanner>TrendMicro</scanner>
	<virusname><![CDATA[ADW_KRADARE]]></virusname>
	<url><![CDATA[http://dx7.52z.com/USB_Killer.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>543</line>
	<id>11232295</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>d3c508cb167c2b30e2637bdf66afa19f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d3c508cb167c2b30e2637bdf66afa19f</virustotal>
	<vt_score>10/35 (28.6%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FGraftor.77167.200]]></virusname>
	<url><![CDATA[http://dx7.52z.com/Softheap.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>544</line>
	<id>11232294</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>b3f5fe03b16bef83ec0be176f1b537e9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b3f5fe03b16bef83ec0be176f1b537e9</virustotal>
	<vt_score>39/46 (84.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[BDS%2FBlackhole.anwk.2]]></virusname>
	<url><![CDATA[http://dx7.52z.com/qqzrx.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>545</line>
	<id>11232293</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>4055f6f7800d2fbc2f32c2e7d685352b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4055f6f7800d2fbc2f32c2e7d685352b</virustotal>
	<vt_score>26/36 (72.2%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.XPACK.Gen3]]></virusname>
	<url><![CDATA[http://dx7.52z.com/jwdzh.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>546</line>
	<id>11232292</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>c596fc2fbb4b19a0804c1e048e9eb9e9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c596fc2fbb4b19a0804c1e048e9eb9e9</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://dx7.52z.com/heiyun.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>547</line>
	<id>11232291</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>0fa32e2886dfb28f3ae3d02228a8d0c6</md5>
	<virustotal></virustotal>
	<vt_score>31/45 (68.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[HEUR%2FMalware]]></virusname>
	<url><![CDATA[http://dx7.52z.com/FoxMailPWD.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>548</line>
	<id>11232290</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>5dd91fec46a1d9d19a8adc40f37313c8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5dd91fec46a1d9d19a8adc40f37313c8</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://dx7.52z.com/flax.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>549</line>
	<id>11232289</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>6b25dd0d721d141f73f2e1ff5e80cab3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6b25dd0d721d141f73f2e1ff5e80cab3</virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://dx7.52z.com/FlashSlidesho.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>550</line>
	<id>11232288</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>f260723b99e1952a597db0a1245af36e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f260723b99e1952a597db0a1245af36e</virustotal>
	<vt_score>2/36 (5.6%)</vt_score>
	<scanner>Antiy_AVL</scanner>
	<virusname><![CDATA[Worm%2FWin32.WhiteIce.gen]]></virusname>
	<url><![CDATA[http://dx7.52z.com/eosmsg.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>551</line>
	<id>11232287</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>c1c9fb6ec438f83ae35814e7a281c9be</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c1c9fb6ec438f83ae35814e7a281c9be</virustotal>
	<vt_score>7/47 (14.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Win32%3AMalware-gen]]></virusname>
	<url><![CDATA[http://dx6.fxxz.com/renzhsg5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.177.180.197</ip>
	<as>AS23650</as>
	<review>61.177.180.197</review>
	<domain>fxxz.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.177.0.0 - 61.177.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>552</line>
	<id>11232286</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>301bd02c86fa51250343798f6c7f97e1</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=301bd02c86fa51250343798f6c7f97e1</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[WS.Reputation.1]]></virusname>
	<url><![CDATA[http://dx6.ddooo.com/dune.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.172.38.139</ip>
	<as>AS132524</as>
	<review>60.172.38.139</review>
	<domain>ddooo.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email></email>
	<inetnum>60.168.0.0 - 60.175.255.255</inetnum>
	<netname></netname>
	<descr><![CDATA[]]></descr>
	<ns1>ns1.dnsv2.com</ns1>
	<ns2>ns2.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>553</line>
	<id>11232285</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>883a867155c6620400c895114ff577e8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=883a867155c6620400c895114ff577e8</virustotal>
	<vt_score>35/47 (74.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://dx6.52z.com/zhuomianbaidu.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>554</line>
	<id>11232284</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>36f89c3e5e5cc7ddba8fc821eda7f1f8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=36f89c3e5e5cc7ddba8fc821eda7f1f8</virustotal>
	<vt_score>38/47 (80.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Generic+Trojan]]></virusname>
	<url><![CDATA[http://dx6.52z.com/yzmrxgj.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>555</line>
	<id>11232283</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>c8c22e3ca01ec9db53220110efba6200</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c8c22e3ca01ec9db53220110efba6200</virustotal>
	<vt_score>19/46 (41.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://dx6.52z.com/winqijianban.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>556</line>
	<id>11232282</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>912637cfa20acc6e499e5d5b08de0e45</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=912637cfa20acc6e499e5d5b08de0e45</virustotal>
	<vt_score>1/35 (2.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://dx6.52z.com/wendownsoft.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>557</line>
	<id>11232281</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>fffa95ac65435a91c87f02aee1ad2db9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=fffa95ac65435a91c87f02aee1ad2db9</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Searcher.1222]]></virusname>
	<url><![CDATA[http://dx6.52z.com/SpeechKing.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>558</line>
	<id>11232280</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>92425feb4c6dcc37f5f330caf39a7af5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=92425feb4c6dcc37f5f330caf39a7af5</virustotal>
	<vt_score>2/46 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.F4AHZH3]]></virusname>
	<url><![CDATA[http://dx6.52z.com/sougousx.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>559</line>
	<id>11232279</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>f1b8c62eac002200396add1adc3e4aca</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f1b8c62eac002200396add1adc3e4aca</virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>Avast</scanner>
	<virusname><![CDATA[Win32%3AMalware-gen]]></virusname>
	<url><![CDATA[http://dx6.52z.com/qqfcsc.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>560</line>
	<id>11232278</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>f88847714df036d05e73e5996d12672e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f88847714df036d05e73e5996d12672e</virustotal>
	<vt_score>29/46 (63%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.XPACK.Gen3]]></virusname>
	<url><![CDATA[http://dx6.52z.com/pivot.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>561</line>
	<id>11232277</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>49a54d98f9e6e053821415d7ca9a9495</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=49a54d98f9e6e053821415d7ca9a9495</virustotal>
	<vt_score>26/36 (72.2%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.XPACK.Gen3]]></virusname>
	<url><![CDATA[http://dx6.52z.com/NILicense.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>562</line>
	<id>11232275</id>
	<first>1369085925</first>
	<last>0</last>
	<md5>2036c23c3d3b2024edacdd130384904f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=2036c23c3d3b2024edacdd130384904f</virustotal>
	<vt_score>35/47 (74.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Generic+Trojan]]></virusname>
	<url><![CDATA[http://dx6.52z.com/jytphcgj.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>563</line>
	<id>11232274</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>885e0de0fcc08b1d9acb6006a6bc5d47</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=885e0de0fcc08b1d9acb6006a6bc5d47</virustotal>
	<vt_score>34/46 (73.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Generic+Trojan]]></virusname>
	<url><![CDATA[http://dx6.52z.com/huarongyyh.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>564</line>
	<id>11232273</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>d5cae9cb49bde1de453f7ae890f9749e</md5>
	<virustotal></virustotal>
	<vt_score>12/46 (26.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.ZBot.axnk]]></virusname>
	<url><![CDATA[http://dx6.52z.com/heikediguo.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>565</line>
	<id>11232272</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>f3aea2bb9c5bb19f3b72ff9ab2bbea82</md5>
	<virustotal></virustotal>
	<vt_score>32/46 (69.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Generic+Trojan]]></virusname>
	<url><![CDATA[http://dx6.52z.com/fushu.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>566</line>
	<id>11232271</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>9f61669ee1cf32cae8ea664c366f5c55</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9f61669ee1cf32cae8ea664c366f5c55</virustotal>
	<vt_score>28/47 (59.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.XPACK.Gen3]]></virusname>
	<url><![CDATA[http://dx6.52z.com/exlexiufu.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>567</line>
	<id>11232270</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>123481f6317c65d04041d2ec23ce7c4c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=123481f6317c65d04041d2ec23ce7c4c</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Worm%2FWin32.WhiteIce.gen]]></virusname>
	<url><![CDATA[http://dx6.52z.com/eosmsg.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>568</line>
	<id>11232269</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>66cdc664dbbe45ce53452ec892264f11</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=66cdc664dbbe45ce53452ec892264f11</virustotal>
	<vt_score>29/36 (80.6%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Dropper%2FWin32.Injector]]></virusname>
	<url><![CDATA[http://dx6.52z.com/dingshiqlb.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>569</line>
	<id>11232268</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>53ac4ae0c8acd4fa3d0ec026496e18eb</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=53ac4ae0c8acd4fa3d0ec026496e18eb</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://dx5.haote.com/qqxfe.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>haote.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>570</line>
	<id>11232267</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>16859204c363473e2189ec571424f008</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=16859204c363473e2189ec571424f008</virustotal>
	<vt_score>18/35 (51.4%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Dropper%2FWin32.Injector]]></virusname>
	<url><![CDATA[http://dx5.haote.com/HashKracker.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>haote.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>571</line>
	<id>11232265</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>15a0c78419d132b6659cc646d2f66d10</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=15a0c78419d132b6659cc646d2f66d10</virustotal>
	<vt_score>20/40 (50%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Generic+Trojan]]></virusname>
	<url><![CDATA[http://dx5.52z.com/xllxxzmfsysq.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>572</line>
	<id>11232264</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>31de5d98c432c798a60cf0039ffce57f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=31de5d98c432c798a60cf0039ffce57f</virustotal>
	<vt_score>16/45 (35.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FAgent.922458]]></virusname>
	<url><![CDATA[http://dx5.52z.com/VBSharsfhg.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>573</line>
	<id>11232263</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>8a24443c6c3e34664e3b7a46e305436c</md5>
	<virustotal></virustotal>
	<vt_score>9/45 (20%)</vt_score>
	<scanner>trendmicro</scanner>
	<virusname><![CDATA[Mal_Opet-3]]></virusname>
	<url><![CDATA[http://dx5.52z.com/jmgjc.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>574</line>
	<id>11232262</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>69099a0139ebe0a23f245aa19f49759e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=69099a0139ebe0a23f245aa19f49759e</virustotal>
	<vt_score>19/36 (52.8%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Dropper%2FWin32.Injector]]></virusname>
	<url><![CDATA[http://dx5.52z.com/DIY-xuancai.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>575</line>
	<id>11232261</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>22ab3cf81bbd6439e97ec22eddd9094e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=22ab3cf81bbd6439e97ec22eddd9094e</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FAgent.774144]]></virusname>
	<url><![CDATA[http://dx5.52z.com/CxQqTuBiao.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>576</line>
	<id>11232260</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>af9115ba44af3cc4cd1be596c405da2f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=af9115ba44af3cc4cd1be596c405da2f</virustotal>
	<vt_score>21/36 (58.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.XPACK.Gen3]]></virusname>
	<url><![CDATA[http://dx4.haote.com/BaiduKeywords.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>haote.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>577</line>
	<id>11232259</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>9ca29f04832111cf1cddffc114c907d0</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9ca29f04832111cf1cddffc114c907d0</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://dx4.52z.com/zgyhzjhai.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>578</line>
	<id>11232258</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>ecb2116c3020c4129f5d0e28b777973e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ecb2116c3020c4129f5d0e28b777973e</virustotal>
	<vt_score>23/47 (48.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Generic+Trojan]]></virusname>
	<url><![CDATA[http://dx4.52z.com/tszmxy_xgq.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>579</line>
	<id>11232257</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>5fa421d201f24316856677e1a3f1040b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5fa421d201f24316856677e1a3f1040b</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>CAT_QuickHeal</scanner>
	<virusname><![CDATA[%28Suspicious%29+-+DNAScan]]></virusname>
	<url><![CDATA[http://dx4.52z.com/qqman.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>580</line>
	<id>11232256</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>e7371e08c92942d918fe7ca97e65c05c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e7371e08c92942d918fe7ca97e65c05c</virustotal>
	<vt_score>30/43 (69.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FCI.A]]></virusname>
	<url><![CDATA[http://dx4.52z.com/jjsg.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>581</line>
	<id>11232255</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>57aa99ebd9d600a316b9f80e3d11b762</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=57aa99ebd9d600a316b9f80e3d11b762</virustotal>
	<vt_score>25/36 (69.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.XPACK.Gen3]]></virusname>
	<url><![CDATA[http://dx4.52z.com/jijiaxuanfengfeife.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>582</line>
	<id>11232254</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>81e2740c3df124d119ae26a10df49c6d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=81e2740c3df124d119ae26a10df49c6d</virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.VB]]></virusname>
	<url><![CDATA[http://dx4.52z.com/HtmlEdit.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>583</line>
	<id>11232248</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>fa1ed704896809803ad15cd3c82ee85b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=fa1ed704896809803ad15cd3c82ee85b</virustotal>
	<vt_score>25/47 (53.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://dx3.52z.com/jjsg.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>584</line>
	<id>11232247</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>267f92788558c71ddb19c5781aaa47cc</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=267f92788558c71ddb19c5781aaa47cc</virustotal>
	<vt_score>2/46 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Virus.Win32.Pakes.DK]]></virusname>
	<url><![CDATA[http://dx3.52z.com/cjSEOgj.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>585</line>
	<id>11232245</id>
	<first>1369085924</first>
	<last>0</last>
	<md5>345f793c94442be5b3231e0c1490488b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=345f793c94442be5b3231e0c1490488b</virustotal>
	<vt_score>23/47 (48.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Dropper.Generic7.BLRB]]></virusname>
	<url><![CDATA[http://dx3.52z.com/Castlevc.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>586</line>
	<id>11232242</id>
	<first>1369085923</first>
	<last>0</last>
	<md5>be5f5cfd60a777640eb7422e6864f678</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=be5f5cfd60a777640eb7422e6864f678</virustotal>
	<vt_score>34/46 (73.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.XPACK.Gen3]]></virusname>
	<url><![CDATA[http://dx2.52z.com/Windowupdo.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>587</line>
	<id>11232238</id>
	<first>1369085923</first>
	<last>0</last>
	<md5>3d76f536c44e0f334b69c062d30579d0</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3d76f536c44e0f334b69c062d30579d0</virustotal>
	<vt_score>31/46 (67.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.NSPM.Gen]]></virusname>
	<url><![CDATA[http://dx2.52z.com/mados.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.21</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>588</line>
	<id>11232234</id>
	<first>1369085923</first>
	<last>0</last>
	<md5>c5d909dcac68286b72653a36f4dd444a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c5d909dcac68286b72653a36f4dd444a</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://dx1.ouyaoxiazai.com/xiazaidian/wangbajiayouzhanxunipan2010banxiazai.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.93.127.100</ip>
	<as>AS23650</as>
	<review>218.93.127.100</review>
	<domain>ouyaoxiazai.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>218.90.0.0 - 218.94.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>589</line>
	<id>11232233</id>
	<first>1369085923</first>
	<last>0</last>
	<md5>47f09b37a80aee6ef7764d201dcd368d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=47f09b37a80aee6ef7764d201dcd368d</virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.F47V0116]]></virusname>
	<url><![CDATA[http://dx1.ouyaoxiazai.com/xiazaidian/speedout.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.93.127.100</ip>
	<as>AS23650</as>
	<review>218.93.127.100</review>
	<domain>ouyaoxiazai.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>218.90.0.0 - 218.94.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>590</line>
	<id>11232232</id>
	<first>1369085923</first>
	<last>0</last>
	<md5>d1e024376f179c05ccef19f953384bb4</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d1e024376f179c05ccef19f953384bb4</virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FQQPass.ELG%21tr.pws]]></virusname>
	<url><![CDATA[http://dx1.ouyaoxiazai.com/xiazaidian/QQnongchangqingdaofu.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.93.127.100</ip>
	<as>AS23650</as>
	<review>218.93.127.100</review>
	<domain>ouyaoxiazai.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>218.90.0.0 - 218.94.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>591</line>
	<id>11232231</id>
	<first>1369085923</first>
	<last>0</last>
	<md5>e0ffa8007a499baf5fede4632bc524e2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e0ffa8007a499baf5fede4632bc524e2</virustotal>
	<vt_score>7/47 (14.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Agent%2FGen-TrojanDropper]]></virusname>
	<url><![CDATA[http://dx1.ouyaoxiazai.com/xiazaidian/guangpanhuaiguizhuanjia.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.93.127.100</ip>
	<as>AS23650</as>
	<review>218.93.127.100</review>
	<domain>ouyaoxiazai.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>218.90.0.0 - 218.94.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>592</line>
	<id>11232230</id>
	<first>1369085922</first>
	<last>0</last>
	<md5>a552ee6042417e4efe8c1ffcaffc9c23</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a552ee6042417e4efe8c1ffcaffc9c23</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://dx100.newyx.net/pcgames0512tdwy11.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.118.89</ip>
	<as>AS23650</as>
	<review>61.147.118.89</review>
	<domain>newyx.net</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>ns1.dnsv2.com</ns1>
	<ns2>ns2.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>593</line>
	<id>11232227</id>
	<first>1369085922</first>
	<last>0</last>
	<md5>fd0f4251f0dd66929b3170db2167f6e6</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=fd0f4251f0dd66929b3170db2167f6e6</virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Suspicious+file]]></virusname>
	<url><![CDATA[http://dx100.newyx.net/201305081042.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.118.89</ip>
	<as>AS23650</as>
	<review>61.147.118.89</review>
	<domain>newyx.net</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>ns1.dnsv2.com</ns1>
	<ns2>ns2.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>594</line>
	<id>11232226</id>
	<first>1369085922</first>
	<last>0</last>
	<md5>56cbd22271e3118d2f968be1c6ea39d5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=56cbd22271e3118d2f968be1c6ea39d5</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://dx100.newyx.net/201305031701.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.118.89</ip>
	<as>AS23650</as>
	<review>61.147.118.89</review>
	<domain>newyx.net</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>ns1.dnsv2.com</ns1>
	<ns2>ns2.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>595</line>
	<id>11232225</id>
	<first>1369085922</first>
	<last>0</last>
	<md5>897d71a6d819e9d61f0c5639cd5e78cd</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=897d71a6d819e9d61f0c5639cd5e78cd</virustotal>
	<vt_score>2/45 (4.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Suspicious+file]]></virusname>
	<url><![CDATA[http://dx100.newyx.net/201304181200.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.118.89</ip>
	<as>AS23650</as>
	<review>61.147.118.89</review>
	<domain>newyx.net</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>ns1.dnsv2.com</ns1>
	<ns2>ns2.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>596</line>
	<id>11232224</id>
	<first>1369085922</first>
	<last>0</last>
	<md5>3751e001e976699f5c019111dad357ca</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3751e001e976699f5c019111dad357ca</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://dx100.newyx.net/201304151042.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.118.89</ip>
	<as>AS23650</as>
	<review>61.147.118.89</review>
	<domain>newyx.net</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>ns1.dnsv2.com</ns1>
	<ns2>ns2.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>597</line>
	<id>11232223</id>
	<first>1369085922</first>
	<last>0</last>
	<md5>810ab4578e77fed777092b23f3fd25c4</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=810ab4578e77fed777092b23f3fd25c4</virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://dx100.newyx.net/201304141504.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.118.89</ip>
	<as>AS23650</as>
	<review>61.147.118.89</review>
	<domain>newyx.net</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>ns1.dnsv2.com</ns1>
	<ns2>ns2.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>598</line>
	<id>11232222</id>
	<first>1369085922</first>
	<last>0</last>
	<md5>e5f2e5ad4a6b9893c8d26e880d6c0451</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e5f2e5ad4a6b9893c8d26e880d6c0451</virustotal>
	<vt_score>15/36 (41.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSymmi.1890.11]]></virusname>
	<url><![CDATA[http://duckdig.com/download/duckdig_setup_.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>210.1.61.238</ip>
	<as>AS9891</as>
	<review>210.1.61.238</review>
	<domain>duckdig.com</domain>
	<country>TH</country>
	<source>APNIC</source>
	<email>ip_admin@csloxinfo.net</email>
	<inetnum>210.1.61.0 -  210.1.61.255</inetnum>
	<netname>idc-csloxinfo</netname>
	<descr><![CDATA[reassign to "IDC-CBW- IDC customer"contact "dc@csloxinfo.net"]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>599</line>
	<id>11232221</id>
	<first>1369085922</first>
	<last>0</last>
	<md5>6a3cfe156088f39ad099eab960bc2320</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6a3cfe156088f39ad099eab960bc2320</virustotal>
	<vt_score>43/46 (93.5%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[W32%2FParite]]></virusname>
	<url><![CDATA[http://dtv.7drt.com/down/vj3.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>116.255.156.118</ip>
	<as>AS4837</as>
	<review>116.255.156.118</review>
	<domain>7drt.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@cnc-noc.net</email>
	<inetnum>116.255.128.0 - 116.255.255.255</inetnum>
	<netname>GIANT</netname>
	<descr><![CDATA[ZhengZhou GIANT Computer Network Technology Co., LtdRoom 701 Information Building NO.144 Garden Road, ZhenzhouHenan, P.R.ChinaCNC Group CHINA169 Henan Province NetworkAddresses from CNNIC(GIANT)]]></descr>
	<ns1>ns13.bigwww.com</ns1>
	<ns2>ns15.bigwww.com</ns2>
	<ns3>ns14.bigwww.com</ns3>
	<ns4>ns16.bigwww.com</ns4>
	<ns5>ns12.bigwww.com</ns5>
</entry>
<entry>
	<line>600</line>
	<id>11232220</id>
	<first>1369085922</first>
	<last>0</last>
	<md5>7f5f18d2a059735fe6cee62d5b778cfa</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7f5f18d2a059735fe6cee62d5b778cfa</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://dt.ir.filmwit.com/down/epi/12888.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>601</line>
	<id>11232219</id>
	<first>1369085922</first>
	<last>0</last>
	<md5>10ecb4ccbfc7475a3fecc7d074a96f9a</md5>
	<virustotal></virustotal>
	<vt_score>6/45 (13.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://dspas.de/dsn/ndi31.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>5.199.166.226</ip>
	<as>AS16125</as>
	<review>5.199.166.226</review>
	<domain>dspas.de</domain>
	<country>LT</country>
	<source>RIPE</source>
	<email>abuse@balticservers.com</email>
	<inetnum>5.199.166.0 - 5.199.167.255</inetnum>
	<netname>BALTICSERVERS-LT-CLUSTER</netname>
	<descr><![CDATA[Cluster network]]></descr>
	<ns1>ns-canada.topdns.com</ns1>
	<ns2>ns-usa.topdns.com</ns2>
	<ns3>ns-uk.topdns.com</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>602</line>
	<id>11232218</id>
	<first>1369085922</first>
	<last>0</last>
	<md5>cf6fb48090b0e8eb1f752d7b91e288bf</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=cf6fb48090b0e8eb1f752d7b91e288bf</virustotal>
	<vt_score>7/47 (14.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Win32%2FHeur]]></virusname>
	<url><![CDATA[http://drunkpornparty.de/30/movie1080p.mkv.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>93.115.95.6</ip>
	<as>AS39756</as>
	<review>93.115.95.6</review>
	<domain>drunkpornparty.de</domain>
	<country>RO</country>
	<source>RIPE</source>
	<email></email>
	<inetnum>93.112.0.0 - 93.119.255.255</inetnum>
	<netname></netname>
	<descr><![CDATA[]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>603</line>
	<id>11232217</id>
	<first>1369085922</first>
	<last>0</last>
	<md5>307de32eecc2b38b3d8fa34ca0bb90a6</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=307de32eecc2b38b3d8fa34ca0bb90a6</virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FKryptik.AGAJ%21tr]]></virusname>
	<url><![CDATA[http://drunkpornparty.de/20/movie1080p.mkv.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>93.115.95.6</ip>
	<as>AS39756</as>
	<review>93.115.95.6</review>
	<domain>drunkpornparty.de</domain>
	<country>RO</country>
	<source>RIPE</source>
	<email></email>
	<inetnum>93.112.0.0 - 93.119.255.255</inetnum>
	<netname></netname>
	<descr><![CDATA[]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>604</line>
	<id>11232216</id>
	<first>1369085922</first>
	<last>0</last>
	<md5>e9a9e6603eb11ac2d4f0fc9b344b237b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e9a9e6603eb11ac2d4f0fc9b344b237b</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://dp.m1.filmwit.com/down/hxm/14445.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>605</line>
	<id>11232211</id>
	<first>1369085919</first>
	<last>0</last>
	<md5>b8805f15b53025127ae074f48baeea03</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b8805f15b53025127ae074f48baeea03</virustotal>
	<vt_score>9/47 (19.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down.upantool.com:88/file/software/repair/2013/USB_Removal_Disk_Format_Tool.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.69</ip>
	<as>AS4134</as>
	<review>222.186.43.69</review>
	<domain>upantool.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>606</line>
	<id>11232210</id>
	<first>1369085919</first>
	<last>0</last>
	<md5>2a68301088cbe28e01899074ee195742</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=2a68301088cbe28e01899074ee195742</virustotal>
	<vt_score>10/36 (27.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down.upanfile.com:88/file/software/repair/2013/Restore_v3.7.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.221.21</ip>
	<as>AS4134</as>
	<review>222.187.221.21</review>
	<domain>upanfile.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>607</line>
	<id>11232209</id>
	<first>1369085919</first>
	<last>0</last>
	<md5>32c60c651fbc43e063b2ecb485672ca9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=32c60c651fbc43e063b2ecb485672ca9</virustotal>
	<vt_score>5/47 (10.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down.upanfile.com:88/file/software/mass/SSS/2011/MP_Ver2178.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.221.21</ip>
	<as>AS4134</as>
	<review>222.187.221.21</review>
	<domain>upanfile.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>608</line>
	<id>11232208</id>
	<first>1369085919</first>
	<last>0</last>
	<md5>3e8497f05d0ca6fb97f0d0c7293f8215</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3e8497f05d0ca6fb97f0d0c7293f8215</virustotal>
	<vt_score>7/46 (15.2%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down.upanfile.com:88/file/software/mass/Micov/2011/Ameco_MXT8208_UdTools1.0.3.8_20080611.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.221.21</ip>
	<as>AS4134</as>
	<review>222.187.221.21</review>
	<domain>upanfile.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>609</line>
	<id>11232207</id>
	<first>1369085918</first>
	<last>0</last>
	<md5>92d2f1fc4c392dc8131016ea1b877c03</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=92d2f1fc4c392dc8131016ea1b877c03</virustotal>
	<vt_score>11/46 (23.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down.upanfile.com:88/file/software/mass/AlcorMP/2010/QCTool_for_AU6983.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.221.21</ip>
	<as>AS4134</as>
	<review>222.187.221.21</review>
	<domain>upanfile.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>610</line>
	<id>11232206</id>
	<first>1369085918</first>
	<last>0</last>
	<md5>f60b42b495578e10d7561be245daa639</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f60b42b495578e10d7561be245daa639</virustotal>
	<vt_score>6/36 (16.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down.upanfile.com:88/file/software/mass/2009/AX211_SD_V1.2.2.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.221.21</ip>
	<as>AS4134</as>
	<review>222.187.221.21</review>
	<domain>upanfile.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>611</line>
	<id>11232205</id>
	<first>1369085918</first>
	<last>0</last>
	<md5>90e896ceb9f97516518aeacf57bd5afa</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=90e896ceb9f97516518aeacf57bd5afa</virustotal>
	<vt_score>4/35 (11.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down.upanfile.com:88/file/software/boot/2012/GHOST_Explorer_V11.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.221.21</ip>
	<as>AS4134</as>
	<review>222.187.221.21</review>
	<domain>upanfile.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>612</line>
	<id>11232204</id>
	<first>1369085918</first>
	<last>0</last>
	<md5>0afa4f2d9ac803753cebb975bb96cbc2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0afa4f2d9ac803753cebb975bb96cbc2</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://downsoft.52z.com/aznap.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.21</ip>
	<as>AS4134</as>
	<review>61.187.182.18</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>613</line>
	<id>11232203</id>
	<first>1369085918</first>
	<last>0</last>
	<md5>611eb5047c96783266bf5af555629d78</md5>
	<virustotal></virustotal>
	<vt_score>8/47 (17%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://downloads.adfclick.com/packages/doshow/download_default/doshow_61_132677.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.97.228</ip>
	<as>AS23650</as>
	<review>61.147.97.228</review>
	<domain>adfclick.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>614</line>
	<id>11232202</id>
	<first>1369085918</first>
	<last>0</last>
	<md5>611eb5047c96783266bf5af555629d78</md5>
	<virustotal></virustotal>
	<vt_score>8/47 (17%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://downloads.adfclick.com/packages/doshow/download_default/doshow_61_131921.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.97.229</ip>
	<as>AS23650</as>
	<review>61.147.97.229</review>
	<domain>adfclick.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>615</line>
	<id>11232201</id>
	<first>1369085918</first>
	<last>0</last>
	<md5>611eb5047c96783266bf5af555629d78</md5>
	<virustotal></virustotal>
	<vt_score>8/47 (17%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://downloads.adfclick.com/packages/doshow/download_default/doshow_61_131195.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.97.228</ip>
	<as>AS23650</as>
	<review>61.147.97.228</review>
	<domain>adfclick.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>616</line>
	<id>11232200</id>
	<first>1369085918</first>
	<last>0</last>
	<md5>611eb5047c96783266bf5af555629d78</md5>
	<virustotal></virustotal>
	<vt_score>8/47 (17%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://downloads.adfclick.com/packages/doshow/download_default/doshow_61_130850.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.97.229</ip>
	<as>AS23650</as>
	<review>61.147.97.229</review>
	<domain>adfclick.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>617</line>
	<id>11232199</id>
	<first>1369085918</first>
	<last>0</last>
	<md5>611eb5047c96783266bf5af555629d78</md5>
	<virustotal></virustotal>
	<vt_score>8/47 (17%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://downloads.adfclick.com/packages/doshow/download_default/doshow_61_130623.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.97.228</ip>
	<as>AS23650</as>
	<review>61.147.97.228</review>
	<domain>adfclick.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>618</line>
	<id>11232197</id>
	<first>1369085918</first>
	<last>0</last>
	<md5>f7fb865a12957f71913b2fb0eabffafd</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f7fb865a12957f71913b2fb0eabffafd</virustotal>
	<vt_score>10/47 (21.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FZapchast.4]]></virusname>
	<url><![CDATA[http://download.oneinstaller.com/installer/Files/197/f0d/48e1ede30f28d8330028006aa3443/Disney-Print-Mickey-Mouse-Font_1.0.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>93.189.35.51</ip>
	<as>AS45037</as>
	<review>93.189.35.51</review>
	<domain>oneinstaller.com</domain>
	<country>es</country>
	<source>RIPE</source>
	<email>soporte@hispaweb.net</email>
	<inetnum>93.189.32.0 - 93.189.35.255</inetnum>
	<netname>HISPAWEB_NETWORK_MADRID</netname>
	<descr><![CDATA[Hispaweb Network Madridhispaweb_route]]></descr>
	<ns1>ns2.dondominio.com</ns1>
	<ns2>ns6.dondominio.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>619</line>
	<id>11232193</id>
	<first>1369085918</first>
	<last>0</last>
	<md5>983c6f799dcee85f22bab14e19a419b1</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=983c6f799dcee85f22bab14e19a419b1</virustotal>
	<vt_score>8/36 (22.2%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FZapchast.4]]></virusname>
	<url><![CDATA[http://download.oneinstaller.com/installer/Files/197/46c/24e2d06e1a6c1e2828a2805addf56/Animal-Kesha-Font_1.0.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>93.189.35.51</ip>
	<as>AS45037</as>
	<review>93.189.35.51</review>
	<domain>oneinstaller.com</domain>
	<country>es</country>
	<source>RIPE</source>
	<email>soporte@hispaweb.net</email>
	<inetnum>93.189.32.0 - 93.189.35.255</inetnum>
	<netname>HISPAWEB_NETWORK_MADRID</netname>
	<descr><![CDATA[Hispaweb Network Madridhispaweb_route]]></descr>
	<ns1>ns2.dondominio.com</ns1>
	<ns2>ns6.dondominio.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>620</line>
	<id>11232190</id>
	<first>1369085917</first>
	<last>0</last>
	<md5>bb5522f82aff2aeb98b842f09bc49c17</md5>
	<virustotal></virustotal>
	<vt_score>2/46 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.F47V1002]]></virusname>
	<url><![CDATA[http://download.dogsoft.ru/VKMusic_4.43.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>80.93.62.32</ip>
	<as>AS35569</as>
	<review>80.93.62.32</review>
	<domain>dogsoft.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@peterhost.ru</email>
	<inetnum>80.93.62.0 - 80.93.62.255</inetnum>
	<netname>PETERHOST-MOSCOW</netname>
	<descr><![CDATA[PeterHost.Ru Virtual HostingRoute for AS35569]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>621</line>
	<id>11232189</id>
	<first>1369085917</first>
	<last>0</last>
	<md5>0b6f66c6468eccc63431f49daa82387d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0b6f66c6468eccc63431f49daa82387d</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>DrWeb</scanner>
	<virusname><![CDATA[Adware.Downware.1139]]></virusname>
	<url><![CDATA[http://download.descargaresdwn.com/installers/out/393556418/139/ax/descargares/deutsch/no/firefox/minecraft/installer_minecraft_Deutsch.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>109.70.128.131</ip>
	<as>AS45037</as>
	<review>109.70.128.131</review>
	<domain>descargaresdwn.com</domain>
	<country>ES</country>
	<source>RIPE</source>
	<email></email>
	<inetnum>109.70.128.0 - 109.70.135.255</inetnum>
	<netname></netname>
	<descr><![CDATA[]]></descr>
	<ns1>ns2.dondominio.com</ns1>
	<ns2>ns7.dondominio.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>622</line>
	<id>11232141</id>
	<first>1369085914</first>
	<last>0</last>
	<md5>dc27bfcd91d44c3860791ea33c1eea28</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=dc27bfcd91d44c3860791ea33c1eea28</virustotal>
	<vt_score>2/36 (5.6%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://download.97taozhe.com/aiviplayer_ga_2000.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.57.96</ip>
	<as>AS4134</as>
	<review>222.186.57.96</review>
	<domain>97taozhe.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>623</line>
	<id>11232140</id>
	<first>1369085914</first>
	<last>0</last>
	<md5>22e89a6c7d236b4eb1fbe0134208fc31</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=22e89a6c7d236b4eb1fbe0134208fc31</virustotal>
	<vt_score>3/37 (8.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://download2.systemspeedbooster.com/SystemSpeedBooster/SystemSpeedBooster-3.0.1.2.Setup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>69.164.219.112</ip>
	<as>AS8001</as>
	<review>69.164.219.112</review>
	<domain>systemspeedbooster.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>support@linode.com</email>
	<inetnum>69.164.192.0 - 69.164.223.255</inetnum>
	<netname>LINODE-US</netname>
	<descr><![CDATA[Linode LINOD 329 E. Jimmie Leeds Road Suite A Galloway NJ 08205]]></descr>
	<ns1>ns32.domaincontrol.com</ns1>
	<ns2>ns31.domaincontrol.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>624</line>
	<id>11232139</id>
	<first>1369085914</first>
	<last>0</last>
	<md5>281b44b663403a21e28175502acd2838</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=281b44b663403a21e28175502acd2838</virustotal>
	<vt_score>3/35 (8.6%)</vt_score>
	<scanner>Comodo</scanner>
	<virusname><![CDATA[ApplicUnwnt]]></virusname>
	<url><![CDATA[http://download2.systemoptimizeexpert.com/SystemOptimizeExpert/SystemOptimizeExpert-3.3.2.8.Setup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>69.164.219.112</ip>
	<as>AS8001</as>
	<review>69.164.219.112</review>
	<domain>systemoptimizeexpert.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>support@linode.com</email>
	<inetnum>69.164.192.0 - 69.164.223.255</inetnum>
	<netname>LINODE-US</netname>
	<descr><![CDATA[Linode LINOD 329 E. Jimmie Leeds Road Suite A Galloway NJ 08205]]></descr>
	<ns1>ns31.domaincontrol.com</ns1>
	<ns2>ns32.domaincontrol.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>625</line>
	<id>11232138</id>
	<first>1369085914</first>
	<last>0</last>
	<md5>2d744cb36d90a5fb17858e1382c2b3e8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=2d744cb36d90a5fb17858e1382c2b3e8</virustotal>
	<vt_score>3/35 (8.6%)</vt_score>
	<scanner>Comodo</scanner>
	<virusname><![CDATA[ApplicUnwnt]]></virusname>
	<url><![CDATA[http://download2.registrycleaner-free.com/RegistryCleanerFree/RegistryCleanerFree-2.4.3.6.Setup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>69.164.219.112</ip>
	<as>AS8001</as>
	<review>69.164.219.112</review>
	<domain>registrycleaner-free.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>support@linode.com</email>
	<inetnum>69.164.192.0 - 69.164.223.255</inetnum>
	<netname>LINODE-US</netname>
	<descr><![CDATA[Linode LINOD 329 E. Jimmie Leeds Road Suite A Galloway NJ 08205]]></descr>
	<ns1>ns35.domaincontrol.com</ns1>
	<ns2>ns36.domaincontrol.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>626</line>
	<id>11232137</id>
	<first>1369085914</first>
	<last>0</last>
	<md5>c2cffa87ff5f821ac216f5b2cf71fe8b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c2cffa87ff5f821ac216f5b2cf71fe8b</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Adware.Win32.RealRegistryCleaner.AMN+%28A%29]]></virusname>
	<url><![CDATA[http://download2.registrycleaneasy.com/RegistryCleanEasy/RegistryCleanEasy-2.4.2.2.Setup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>69.164.219.112</ip>
	<as>AS8001</as>
	<review>69.164.219.112</review>
	<domain>registrycleaneasy.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>support@linode.com</email>
	<inetnum>69.164.192.0 - 69.164.223.255</inetnum>
	<netname>LINODE-US</netname>
	<descr><![CDATA[Linode LINOD 329 E. Jimmie Leeds Road Suite A Galloway NJ 08205]]></descr>
	<ns1>ns32.domaincontrol.com</ns1>
	<ns2>ns31.domaincontrol.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>627</line>
	<id>11232136</id>
	<first>1369085914</first>
	<last>0</last>
	<md5>1d6a014e9a9257f5d6cfedd6af9e4198</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1d6a014e9a9257f5d6cfedd6af9e4198</virustotal>
	<vt_score>5/47 (10.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Genome.ag]]></virusname>
	<url><![CDATA[http://downgame4.52z.com/zhizhupai.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.20</ip>
	<as>AS4134</as>
	<review>61.187.182.20</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>628</line>
	<id>11232135</id>
	<first>1369085914</first>
	<last>0</last>
	<md5>84e960122a58ecd8254d04529c5090b5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=84e960122a58ecd8254d04529c5090b5</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.F47V0518]]></virusname>
	<url><![CDATA[http://downgame4.52z.com/mofashuidi.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.20</ip>
	<as>AS4134</as>
	<review>61.187.182.20</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>629</line>
	<id>11232134</id>
	<first>1369085914</first>
	<last>0</last>
	<md5>a87efe52a4a033ee0d4a8890f3a279a0</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a87efe52a4a033ee0d4a8890f3a279a0</virustotal>
	<vt_score>2/36 (5.6%)</vt_score>
	<scanner>ViRobot</scanner>
	<virusname><![CDATA[JS.A.Iframe.2970992]]></virusname>
	<url><![CDATA[http://downgame3.52z.com/rexuezuqiu3.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.187.182.19</ip>
	<as>AS4134</as>
	<review>61.187.182.19</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse.szx@2118.com.cn</email>
	<inetnum>61.187.0.0 - 61.187.255.255</inetnum>
	<netname>CHINANET-HN</netname>
	<descr><![CDATA[CHINANET Hunan province networkChina Telecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>630</line>
	<id>11232133</id>
	<first>1369085914</first>
	<last>0</last>
	<md5>0f148099bb8e457a74ce18b27e750f58</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0f148099bb8e457a74ce18b27e750f58</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://downgame3.52z.com/qiangtandengluzhan2002.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.39.214</ip>
	<as>AS4134</as>
	<review>58.218.39.214</review>
	<domain>52z.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>631</line>
	<id>11232132</id>
	<first>1369085914</first>
	<last>0</last>
	<md5>08110591412ef3fa995763daa1ba2a94</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=08110591412ef3fa995763daa1ba2a94</virustotal>
	<vt_score>13/36 (36.1%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[PCK%2FEnigma]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/software/wnspxsglxt.rar?vspublic=51e55ead339747b636b84f9cc62cc6b5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>632</line>
	<id>11232131</id>
	<first>1369085914</first>
	<last>0</last>
	<md5>7e066b1b144b4c2fd0758ad2ee747984</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f1199c7910988500f7781fbe83a0f9ff</virustotal>
	<vt_score>3/38 (7.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FTrojan2.NDPY+%28exact]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/software/QQlogger.rar?vspublic=9b4fd88e403f61b47266c04dbb38c71d.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>633</line>
	<id>11232130</id>
	<first>1369085914</first>
	<last>0</last>
	<md5>7e066b1b144b4c2fd0758ad2ee747984</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f1199c7910988500f7781fbe83a0f9ff</virustotal>
	<vt_score>3/38 (7.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FTrojan2.NDPY+%28exact]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/software/qqlogger.rar?vspublic=8a3e735d60dae32f2752f9bf94280502.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>634</line>
	<id>11232129</id>
	<first>1369085913</first>
	<last>0</last>
	<md5>7e066b1b144b4c2fd0758ad2ee747984</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f1199c7910988500f7781fbe83a0f9ff</virustotal>
	<vt_score>3/38 (7.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FTrojan2.NDPY+%28exact]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/software/QQlogger.rar?vspublic=876afe75e6596e084dfff536d5eb589d.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>635</line>
	<id>11232128</id>
	<first>1369085913</first>
	<last>0</last>
	<md5>7e066b1b144b4c2fd0758ad2ee747984</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f1199c7910988500f7781fbe83a0f9ff</virustotal>
	<vt_score>3/38 (7.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FTrojan2.NDPY+%28exact]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/software/QQlogger.rar?vspublic=7c09eef5c52c74e4e5595bab13d1a74e.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>636</line>
	<id>11232127</id>
	<first>1369085913</first>
	<last>0</last>
	<md5>7e066b1b144b4c2fd0758ad2ee747984</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f1199c7910988500f7781fbe83a0f9ff</virustotal>
	<vt_score>3/38 (7.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FTrojan2.NDPY+%28exact]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/software/QQlogger.rar?vspublic=48276feb98b1bc0481d763c16d205a90.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>637</line>
	<id>11232126</id>
	<first>1369085913</first>
	<last>0</last>
	<md5>7e066b1b144b4c2fd0758ad2ee747984</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f1199c7910988500f7781fbe83a0f9ff</virustotal>
	<vt_score>3/38 (7.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FTrojan2.NDPY+%28exact]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/software/QQlogger.rar?vspublic=357b3e0615f7b285d48e9b8c8d65ec28.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>638</line>
	<id>11232125</id>
	<first>1369085913</first>
	<last>0</last>
	<md5>7e066b1b144b4c2fd0758ad2ee747984</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f1199c7910988500f7781fbe83a0f9ff</virustotal>
	<vt_score>3/38 (7.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FTrojan2.NDPY+%28exact]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/software/qqlogger.rar?vspublic=2dc5cdea6d895d277fe6514c8a19337f.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>639</line>
	<id>11232124</id>
	<first>1369085913</first>
	<last>0</last>
	<md5>7e066b1b144b4c2fd0758ad2ee747984</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f1199c7910988500f7781fbe83a0f9ff</virustotal>
	<vt_score>3/38 (7.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FTrojan2.NDPY+%28exact]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/software/QQlogger.rar?vspublic=081e21184b118c9e2e6af5e453302f2c.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>640</line>
	<id>11232123</id>
	<first>1369085913</first>
	<last>0</last>
	<md5>7e066b1b144b4c2fd0758ad2ee747984</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f1199c7910988500f7781fbe83a0f9ff</virustotal>
	<vt_score>3/38 (7.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FTrojan2.NDPY+%28exact]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/software/qqlogger.rar?vspublic=03c7bd1c41744bd6cb651094c56fde82.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>641</line>
	<id>11232122</id>
	<first>1369085913</first>
	<last>0</last>
	<md5>ce87c6bbe4a7d87374ec32b2ed637c51</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ce87c6bbe4a7d87374ec32b2ed637c51</virustotal>
	<vt_score>26/46 (56.5%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FTonmye.A.1382]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/znsxd.zip?vspublic=8323d003f87bc7490ab7f1f9eb6036b0.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>642</line>
	<id>11232121</id>
	<first>1369085913</first>
	<last>0</last>
	<md5>c8386f947f1a0d133a14788d72e739f4</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c8386f947f1a0d133a14788d72e739f4</virustotal>
	<vt_score>4/46 (8.7%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Win.Trojan.Agent-204211]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/zmxy3.zip?vspublic=2b478d5710962e08453d758d7da98e29.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>643</line>
	<id>11232120</id>
	<first>1369085913</first>
	<last>0</last>
	<md5>5d4ca77f7f71324d03bdc7741febf3d7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5d4ca77f7f71324d03bdc7741febf3d7</virustotal>
	<vt_score>5/46 (10.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FFlystudio]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/zmxy3xgds.zip?vspublic=f8913f8db521b7b5cb94e5cade6987bc.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>644</line>
	<id>11232119</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>ed139ea272529ef60408a2c73a3b8441</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ed139ea272529ef60408a2c73a3b8441</virustotal>
	<vt_score>5/47 (10.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FFlystudio]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/zmxy3xgds.zip?vspublic=af2de291e08fc518d3bb6199f313929b.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>645</line>
	<id>11232118</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>920b38afa762fda891fd1ed4f7346542</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=920b38afa762fda891fd1ed4f7346542</virustotal>
	<vt_score>5/47 (10.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FFlystudio]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/zmxy3xgds.zip?vspublic=678027449b33fde3bf3c61bbc6a4470e.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>646</line>
	<id>11232117</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>1d39e2309af9a139b0abcf58a0e0c502</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1d39e2309af9a139b0abcf58a0e0c502</virustotal>
	<vt_score>5/36 (13.9%)</vt_score>
	<scanner>Avast</scanner>
	<virusname><![CDATA[Win32%3ATrojan-gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/zmxy3xgds.zip?vspublic=126d3045d9517919bb33a8bba55148c0.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>647</line>
	<id>11232116</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>9b0ad76ad56a040f9d2eff21bf0e2a39</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9b0ad76ad56a040f9d2eff21bf0e2a39</virustotal>
	<vt_score>26/36 (72.2%)</vt_score>
	<scanner>trendmicro</scanner>
	<virusname><![CDATA[WORM_FLYSTUDI.B]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/youku_adBlock.zip?vspublic=3a02b2147e2396534be877fc33d1644c.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>648</line>
	<id>11232115</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>9b0ad76ad56a040f9d2eff21bf0e2a39</md5>
	<virustotal></virustotal>
	<vt_score>34/47 (72.3%)</vt_score>
	<scanner>trendmicro</scanner>
	<virusname><![CDATA[WORM_FLYSTUDI.B]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/youku_adBlock.zip?vspublic=2eb7bba34de6d8d77fa63e9991e4f348.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>649</line>
	<id>11232114</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>4747af151b9a3d4efeee067ae11a3fc8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4747af151b9a3d4efeee067ae11a3fc8</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FAgent.UEAX%21tr]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/YJPDFtoWord.zip?vspublic=25390e8a7fad090542067630e0d9311c.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>650</line>
	<id>11232111</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>f94b5b00acf844b4a6845ca38739bbb3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f94b5b00acf844b4a6845ca38739bbb3</virustotal>
	<vt_score>5/36 (13.9%)</vt_score>
	<scanner>Avast</scanner>
	<virusname><![CDATA[Win32%3AMalware-gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/xp4gbneic.zip?vspublic=37d8b3e9ee7df97829e931385bc86c0c.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>651</line>
	<id>11232110</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>6da948efbde4914ec12762ce0cf7ff2f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6da948efbde4914ec12762ce0cf7ff2f</virustotal>
	<vt_score>15/36 (41.7%)</vt_score>
	<scanner>BitDefender</scanner>
	<virusname><![CDATA[Gen%3AVariant.Graftor.2602]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/xmqg.zip?vspublic=48861bb3aef2ab406b37166d1b236ab6.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>652</line>
	<id>11232109</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>9132b6e75b2749f740ce6ba591a742ea</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9132b6e75b2749f740ce6ba591a742ea</virustotal>
	<vt_score>28/47 (59.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FCI.A]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/xlxfslxcqq.zip?vspublic=c819be36dfdedd73c127cb486e4aa69c.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>653</line>
	<id>11232107</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>d9aa2c50ee9d2e880f5e6bf64314520c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d9aa2c50ee9d2e880f5e6bf64314520c</virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Win32.SuspectCrc]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/xlgjlsb.zip?vspublic=b118e5ff4366122134658633d8150e64.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>654</line>
	<id>11232105</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>0df625cf03cfc1d65cb6c5d9d66f1579</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0df625cf03cfc1d65cb6c5d9d66f1579</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FJorik_Benban.PHK%21tr]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/xflkwgfz.zip?vspublic=d7a29a932f0c5cc728d8a6c8e63ff560.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>655</line>
	<id>11232104</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>0df625cf03cfc1d65cb6c5d9d66f1579</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0df625cf03cfc1d65cb6c5d9d66f1579</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FJorik_Benban.PHK%21tr]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/xflkwgfz.zip?vspublic=9ecf74479c869a16f0d2b7eb394ea78f.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>656</line>
	<id>11232102</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>0df625cf03cfc1d65cb6c5d9d66f1579</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0df625cf03cfc1d65cb6c5d9d66f1579</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FJorik_Benban.PHK%21tr]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/xflkwgfz.zip?vspublic=911eedea1b08dd5eea951d34134a5fd9.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>657</line>
	<id>11232101</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>0df625cf03cfc1d65cb6c5d9d66f1579</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0df625cf03cfc1d65cb6c5d9d66f1579</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FJorik_Benban.PHK%21tr]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/xflkwgfz.zip?vspublic=8aaf1bfd52532e0fde911ee0345f310e.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>658</line>
	<id>11232100</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>0df625cf03cfc1d65cb6c5d9d66f1579</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0df625cf03cfc1d65cb6c5d9d66f1579</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FJorik_Benban.PHK%21tr]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/xflkwgfz.zip?vspublic=53ffbaa6fd8515723add0da4dc63428b.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>659</line>
	<id>11232099</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>0df625cf03cfc1d65cb6c5d9d66f1579</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0df625cf03cfc1d65cb6c5d9d66f1579</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FJorik_Benban.PHK%21tr]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/xflkwgfz.zip?vspublic=34fee097d9589db18fd30a25531dd399.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>660</line>
	<id>11232098</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>0df625cf03cfc1d65cb6c5d9d66f1579</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0df625cf03cfc1d65cb6c5d9d66f1579</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FJorik_Benban.PHK%21tr]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/xflkwgfz.zip?vspublic=34fdb2fde617b60a5eda1102dcf82576.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>661</line>
	<id>11232097</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>0df625cf03cfc1d65cb6c5d9d66f1579</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0df625cf03cfc1d65cb6c5d9d66f1579</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FJorik_Benban.PHK%21tr]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/xflkwgfz.zip?vspublic=1fa6df2725c9b8985df98881aeef6fec.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>662</line>
	<id>11232096</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>cd4815c46308b386ed18a2c7352d56d3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=cd4815c46308b386ed18a2c7352d56d3</virustotal>
	<vt_score>24/47 (51.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/xdlqqzdsly.zip?vspublic=9c55af0c05e2b001688963c2e422bd11.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>663</line>
	<id>11232094</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>1cd9cd68a150b867313deb25eaac1dbb</md5>
	<virustotal></virustotal>
	<vt_score>17/47 (36.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FCI.A]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/wxxgszfz.zip?vspublic=c726142c664cc526d342a33172438017.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>664</line>
	<id>11232093</id>
	<first>1369085912</first>
	<last>0</last>
	<md5>a3f4a87314e5900a35223e66e45ec9bc</md5>
	<virustotal></virustotal>
	<vt_score>5/46 (10.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TextImage%2FViking]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/wxsbdm.zip?vspublic=75baac4dbc7cb0becc5cd4f24a0adf6a.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>665</line>
	<id>11232090</id>
	<first>1369085911</first>
	<last>0</last>
	<md5>727f2478d6f73726392630e3175ea873</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=727f2478d6f73726392630e3175ea873</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Win.Trojan.Agent-238661]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/Word%202003.rar?vspublic=3b79a52d4b8b2456620ea93454593a1d.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>666</line>
	<id>11232089</id>
	<first>1369085911</first>
	<last>0</last>
	<md5>a4b7a213a002ec07946bb2187b8939f1</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a4b7a213a002ec07946bb2187b8939f1</virustotal>
	<vt_score>19/36 (52.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[DR%2FDelf.BP]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/wnlyqmmpjgj.zip?vspublic=bf03befeb79ba58a15fb20b6bf101465.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>667</line>
	<id>11232088</id>
	<first>1369085911</first>
	<last>0</last>
	<md5>9c8c73a09e7d50824f3ff71b8930c121</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9c8c73a09e7d50824f3ff71b8930c121</virustotal>
	<vt_score>19/36 (52.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[DR%2FDelf.BP]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/wnlyqmmpjgj.zip?vspublic=bae7db602c117a305072a67b16dc168e.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>668</line>
	<id>11232087</id>
	<first>1369085911</first>
	<last>0</last>
	<md5>51c9f19b79bee765752bbb6c78236f03</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=51c9f19b79bee765752bbb6c78236f03</virustotal>
	<vt_score>23/47 (48.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[DR%2FDelf.BP]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/wnlyqmmpjgj.zip?vspublic=ab9e30fb725496c5af2bc8e122633e8c.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>669</line>
	<id>11232086</id>
	<first>1369085911</first>
	<last>0</last>
	<md5>d5c4a938140b389144906ee80c5c4121</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d5c4a938140b389144906ee80c5c4121</virustotal>
	<vt_score>20/36 (55.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[DR%2FDelf.BP]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/wnlyqmmpjgj.zip?vspublic=9c7591467430396d9708196fa49a4997.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>670</line>
	<id>11232085</id>
	<first>1369085911</first>
	<last>0</last>
	<md5>5b49ef0cf5ae6275b38bb2024c8808a1</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5b49ef0cf5ae6275b38bb2024c8808a1</virustotal>
	<vt_score>18/35 (51.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[DR%2FDelf.BP]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/wnlyqmmpjgj.zip?vspublic=91c9387aa2e2a0c16801d9bc8d426a9c.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>671</line>
	<id>11232084</id>
	<first>1369085911</first>
	<last>0</last>
	<md5>76dfac4be0560db47528aa36a64d2bea</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=76dfac4be0560db47528aa36a64d2bea</virustotal>
	<vt_score>10/36 (27.8%)</vt_score>
	<scanner>BitDefender</scanner>
	<virusname><![CDATA[Trojan.Hacktool.STR]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/wnlyqmmpjgj.zip?vspublic=5d98eba5400be898650c06a9669c752a.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>672</line>
	<id>11232083</id>
	<first>1369085911</first>
	<last>0</last>
	<md5>88049fe6e853e2afba88ddfdfca45016</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=88049fe6e853e2afba88ddfdfca45016</virustotal>
	<vt_score>23/47 (48.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[DR%2FDelf.BP]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/wnlyqmmpjgj.zip?vspublic=39b12236c882714dcfd81bc40a3f3a6b.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>673</line>
	<id>11232082</id>
	<first>1369085911</first>
	<last>0</last>
	<md5>e1785f0b908e503000455edfa523c3b3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e1785f0b908e503000455edfa523c3b3</virustotal>
	<vt_score>33/46 (71.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[BDS%2FGendal.2277376.A]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/wndlq.exe?vspublic=a2fffdfc8df9c74578b54d77cfbf7d3a.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>674</line>
	<id>11232081</id>
	<first>1369085911</first>
	<last>0</last>
	<md5>e1785f0b908e503000455edfa523c3b3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e1785f0b908e503000455edfa523c3b3</virustotal>
	<vt_score>33/46 (71.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[BDS%2FGendal.2277376.A]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/wndlq.exe?vspublic=75decb9111f8d762b6ba3e164c2bb24e.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>675</line>
	<id>11232080</id>
	<first>1369085911</first>
	<last>0</last>
	<md5>e1785f0b908e503000455edfa523c3b3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e1785f0b908e503000455edfa523c3b3</virustotal>
	<vt_score>33/46 (71.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[BDS%2FGendal.2277376.A]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/wndlq.exe?vspublic=3f967297dcc9cfa7b7cf4a82a326dcf1.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>676</line>
	<id>11232078</id>
	<first>1369085911</first>
	<last>0</last>
	<md5>ba3f3fc28033c01859227ef3dc6c3dcc</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ba3f3fc28033c01859227ef3dc6c3dcc</virustotal>
	<vt_score>1/34 (2.9%)</vt_score>
	<scanner>eSafe</scanner>
	<virusname><![CDATA[Win32.16msdsav%0Duta]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/winhex_GF.rar?vspublic=e93467bb710af4bf6ce3556aa13cd7d0.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>677</line>
	<id>11232075</id>
	<first>1369085911</first>
	<last>0</last>
	<md5>3cf537a854f0028a50b6f36b00a34646</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3cf537a854f0028a50b6f36b00a34646</virustotal>
	<vt_score>34/47 (72.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.XPACK.Gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/WarZxx187.rar?vspublic=89546d0fa2f859adba11ed634d8d0e85.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>678</line>
	<id>11232074</id>
	<first>1369085911</first>
	<last>0</last>
	<md5>b9955646deb981ab19766a4fd444d299</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b9955646deb981ab19766a4fd444d299</virustotal>
	<vt_score>6/36 (16.7%)</vt_score>
	<scanner>eSafe</scanner>
	<virusname><![CDATA[Suspicious+File]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/VideoEnhancer.zip?vspublic=c6e5f6a93dbad60dca5897648ca97b2d.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>679</line>
	<id>11232072</id>
	<first>1369085911</first>
	<last>0</last>
	<md5>919d053b08f07f745cf31a55d0cf4194</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=919d053b08f07f745cf31a55d0cf4194</virustotal>
	<vt_score>24/47 (51.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Generic+Malware]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/txyjpq.rar?vspublic=211bb3094ffe3f1ca10c2f4278bc2fb5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>680</line>
	<id>11232071</id>
	<first>1369085911</first>
	<last>0</last>
	<md5>1baa4e92b2d787e60d3fabd11d28031f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1baa4e92b2d787e60d3fabd11d28031f</virustotal>
	<vt_score>26/46 (56.5%)</vt_score>
	<scanner>trendmicro</scanner>
	<virusname><![CDATA[TROJ_SPNR.0BIJ12]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/TuneUpUtilities2013keygen.zip?vspublic=68f17b851ffde0787aaebef104924114.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>681</line>
	<id>11232069</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>d0ab48ab82740e1c58b8ae3ac1f91eeb</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d0ab48ab82740e1c58b8ae3ac1f91eeb</virustotal>
	<vt_score>2/36 (5.6%)</vt_score>
	<scanner>VBA32</scanner>
	<virusname><![CDATA[Trojan.Genome.al]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/tnt.rar?vspublic=388787a83bd6ab3905d8b598343a0de2.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>682</line>
	<id>11232068</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>d0ab48ab82740e1c58b8ae3ac1f91eeb</md5>
	<virustotal></virustotal>
	<vt_score>2/43 (4.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.Genome.al]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/TNT.rar?vspublic=0d8f204f2b177c363e194ea02b811388.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>683</line>
	<id>11232067</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>8b3dbbad047cc6de5f46c74a3ecdc61c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8b3dbbad047cc6de5f46c74a3ecdc61c</virustotal>
	<vt_score>5/31 (16.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADWARE%2FAgent.32768.96]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/tlcsxbfz.rar?vspublic=dfa9f5315a02f7d07828781da3900ef6.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>684</line>
	<id>11232066</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>8b3dbbad047cc6de5f46c74a3ecdc61c</md5>
	<virustotal></virustotal>
	<vt_score>7/47 (14.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADWARE%2FAgent.32768.96]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/tlcsxbfz.rar?vspublic=9416f8ff6311d4e3296aad4208c5e586.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>685</line>
	<id>11232065</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>8b3dbbad047cc6de5f46c74a3ecdc61c</md5>
	<virustotal></virustotal>
	<vt_score>7/47 (14.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADWARE%2FAgent.32768.96]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/tlcsxbfz.rar?vspublic=47e496d389406d082adcc0c14b15ba63.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>686</line>
	<id>11232064</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>488652f69601836b4cf6de4d7442faea</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=488652f69601836b4cf6de4d7442faea</virustotal>
	<vt_score>2/46 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/TitleOptimize_Build.rar?vspublic=755951c8a9952581ca8aa21fb6faced8.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>687</line>
	<id>11232063</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>a86f6c3047b84b4cb6db66b997a8bbe0</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a86f6c3047b84b4cb6db66b997a8bbe0</virustotal>
	<vt_score>29/44 (65.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[SPR%2FTool.QQPass]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/TenyQQ.rar?vspublic=ee84a0a7e097b670b28141bebfca7b44.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>688</line>
	<id>11232062</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>a86f6c3047b84b4cb6db66b997a8bbe0</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a86f6c3047b84b4cb6db66b997a8bbe0</virustotal>
	<vt_score>29/44 (65.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[SPR%2FTool.QQPass]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/TenyQQ.rar?vspublic=3fb44e1ecf7068e0262f907a972f7c0d.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>689</line>
	<id>11232061</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>93a4bc9a08e5e724848bba82eefebfce</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=93a4bc9a08e5e724848bba82eefebfce</virustotal>
	<vt_score>26/35 (74.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.TPM.Gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/Tencenttntmzq.rar?vspublic=7b63e490528d4a93ab7ab7fb8ab82f37.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>690</line>
	<id>11232060</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>05b4dd77d95b7d6489dca453077079ae</md5>
	<virustotal></virustotal>
	<vt_score>32/44 (72.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/tbxz.rar?vspublic=a1e79a5f875bdcd38e238d60fa865802.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>691</line>
	<id>11232059</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>a9ed0ede482595e3c34741f329d437c5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a9ed0ede482595e3c34741f329d437c5</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/taobaoagent.rar?vspublic=f2e18b35f4e439bdad09ab02d7e2b5f0.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>692</line>
	<id>11232058</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>4ef8cef2ff9b6f4d13ef089b5c575422</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4ef8cef2ff9b6f4d13ef089b5c575422</virustotal>
	<vt_score>39/46 (84.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FHijacker.Gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/swzjiasu.zip?vspublic=a3db52552549136bff2382feae177acf.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>693</line>
	<id>11232057</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>c900694ba38eff687cada6cbe7e083f8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c900694ba38eff687cada6cbe7e083f8</virustotal>
	<vt_score>1/45 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/stfpsbmp3.zip?vspublic=05af3a1cb49904ae3abfa22fcde538c8.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>694</line>
	<id>11232055</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>65a4584f9dbafd5221de1b6a331e07be</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=65a4584f9dbafd5221de1b6a331e07be</virustotal>
	<vt_score>37/46 (80.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDldr.Delf.OUA.3]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/spy4win.zip?vspublic=0e565b455c036675f1021a0d27ad9291.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>695</line>
	<id>11232054</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>fe836ec1825b57c287fe4698e0e583a7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=fe836ec1825b57c287fe4698e0e583a7</virustotal>
	<vt_score>1/35 (2.9%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Virus.Win32.Parite]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/sogou_pysrf.zip?vspublic=0c9c2187ed58a44daae4858a174f8eb4.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>696</line>
	<id>11232053</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>03ebafdf8ac3bd10ebfc39bf257ecb51</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=03ebafdf8ac3bd10ebfc39bf257ecb51</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/siliangqqhy.zip?vspublic=b10bd51d70cba8cb12c5fbef836da4df.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>697</line>
	<id>11232052</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>03ebafdf8ac3bd10ebfc39bf257ecb51</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=03ebafdf8ac3bd10ebfc39bf257ecb51</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/siliangqqhy.zip?vspublic=97b1a5ecc35457872a72a1b59c285fec.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>698</line>
	<id>11232051</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>03ebafdf8ac3bd10ebfc39bf257ecb51</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=03ebafdf8ac3bd10ebfc39bf257ecb51</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/siliangqqhy.zip?vspublic=0afa1faa65c7d75b1b64940cc849d6e7.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>699</line>
	<id>11232050</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>86a25d590b1210a7992cbe6f0717708f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=86a25d590b1210a7992cbe6f0717708f</virustotal>
	<vt_score>2/36 (5.6%)</vt_score>
	<scanner>Symantec</scanner>
	<virusname><![CDATA[WS.Reputation.1]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/shoujnckxf.zip?vspublic=9061773ab4d93e27d5d25d5f54659454.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>700</line>
	<id>11232049</id>
	<first>1369085910</first>
	<last>0</last>
	<md5>0f6dde7a375d18744e23d244c5f85049</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0f6dde7a375d18744e23d244c5f85049</virustotal>
	<vt_score>21/35 (60%)</vt_score>
	<scanner>Avast</scanner>
	<virusname><![CDATA[Win32%3AMalware-gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/shensoshulv.rar?vspublic=f36830eaeaefd25782b99aa8be949814.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>701</line>
	<id>11232048</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>5f8ccc7c9ddd0f45c87a586802ea0016</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5f8ccc7c9ddd0f45c87a586802ea0016</virustotal>
	<vt_score>8/36 (22.2%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Win.Trojan.Agent-204211]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/shenqufuzhuxz.zip?vspublic=a093c466f71ddcbdb3a574855b692bbc.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>702</line>
	<id>11232047</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>bd6ecf939488c36092294dc2519bca9c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=bd6ecf939488c36092294dc2519bca9c</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.F47V1105]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/shenqufuzhuxz.zip?vspublic=25e26c4817b99c2c82b711faef12d135.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>703</line>
	<id>11232046</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>e4448814f66eef0f2589dcbaf13f8803</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e4448814f66eef0f2589dcbaf13f8803</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/ServiceMP288_ha.zip?vspublic=bcc021198b61ee92ad51fe9d41d052e7.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>704</line>
	<id>11232045</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>e7b112a7b79150505a66203b9cba4c02</md5>
	<virustotal></virustotal>
	<vt_score>40/46 (87%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FHijacker.Gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/sadlsckh.zip?vspublic=2cb3430a349fa7f33f4a62007afef4bb.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>705</line>
	<id>11232044</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>07992785c925478ad773b2e39abe2c3f</md5>
	<virustotal></virustotal>
	<vt_score>28/45 (62.2%)</vt_score>
	<scanner>trendmicro</scanner>
	<virusname><![CDATA[WORM_MYTOB.SQ]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/robocop.zip?vspublic=e101956c183a304da197acbbb3f47e37.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>706</line>
	<id>11232043</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>dfcc7b23cf9973c427b3f4e4b870e6b2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=dfcc7b23cf9973c427b3f4e4b870e6b2</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Win.Trojan.4147606]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/red.giant.knoll.light.factory.zip?vspublic=e0b3d599b904b4945acdb7c0d3f4753c.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>707</line>
	<id>11232042</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>ccc606c7e2a35f0664d19382b6840727</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ccc606c7e2a35f0664d19382b6840727</virustotal>
	<vt_score>35/47 (74.5%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/rarrecoverytoolbox.rar?vspublic=ca0f3d1060246319b43644c0524a33ef.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>708</line>
	<id>11232041</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>672d2d9b0245bea0a4c454bc914306bc</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=672d2d9b0245bea0a4c454bc914306bc</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>VBA32</scanner>
	<virusname><![CDATA[Trojan.KillAV]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qvod5bsj.zip?vspublic=c79551f30fa64d39d919278e6e97ce49.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>709</line>
	<id>11232040</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>672d2d9b0245bea0a4c454bc914306bc</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=672d2d9b0245bea0a4c454bc914306bc</virustotal>
	<vt_score>3/35 (8.6%)</vt_score>
	<scanner>VBA32</scanner>
	<virusname><![CDATA[Trojan.KillAV]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qvod5bsj.zip?vspublic=895cd0f04c3c48f833a430cfb1a799e4.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>710</line>
	<id>11232039</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>672d2d9b0245bea0a4c454bc914306bc</md5>
	<virustotal></virustotal>
	<vt_score>3/46 (6.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.KillAV]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qvod5bsj.zip?vspublic=2ec046041220c17bcc6be6e60874c583.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>711</line>
	<id>11232038</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>672d2d9b0245bea0a4c454bc914306bc</md5>
	<virustotal></virustotal>
	<vt_score>3/46 (6.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trojan.KillAV]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qvod5bsj.zip?vspublic=29daa282af1020fd7bec4a1dcb24823b.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>712</line>
	<id>11232037</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>c4826445f75acc6a8f615d6ee0124392</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c4826445f75acc6a8f615d6ee0124392</virustotal>
	<vt_score>9/35 (25.7%)</vt_score>
	<scanner>Comodo</scanner>
	<virusname><![CDATA[Worm.Win32.Dropper.RA]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqzx.rar?vspublic=50165332821fded60aef4ad8f0a53c24.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>713</line>
	<id>11232036</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>92fadad636e14639bfcf8da3895b91a6</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=92fadad636e14639bfcf8da3895b91a6</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADWARE%2FAgent.32768.96]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/QQydzwfz.zip?vspublic=cab85b9848fb780a709b629a211c262b.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>714</line>
	<id>11232035</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=edd1dd2376d6538b67659bfa081810e5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>715</line>
	<id>11232034</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=ec682041e2d215eaf89cac230e78e84f.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>716</line>
	<id>11232033</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=e69d73da98ffa7bc5b69c677e56cbed4.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>717</line>
	<id>11232032</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=d914f0300cdb587ab4ed981195cb8b61.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>718</line>
	<id>11232031</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=cfbd76ca54c5e1ea35e57281f4ceeecc.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>719</line>
	<id>11232030</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=cb21630afb880562897d7f0863f6bf70.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>720</line>
	<id>11232029</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=c40439481554d2c94d3febc2413dc081.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>721</line>
	<id>11232028</id>
	<first>1369085909</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=c13191af5d02facfb093fbf5fa3f6135.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>722</line>
	<id>11232027</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=b0b248b8145c754407024b0c09e467e1.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>723</line>
	<id>11232026</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=abbf9a5e5564096fcec367c848dc1dd4.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>724</line>
	<id>11232025</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=a537a98004c492b9c08bb97f02698ad9.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>725</line>
	<id>11232024</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=a0f8698250f57719e74137a9984cc08c.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>726</line>
	<id>11232023</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=996f1467d1347e4866cf43133379f632.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>727</line>
	<id>11232022</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=96c3545584a767e2958a4a50a27106c4.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>728</line>
	<id>11232021</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=868f1caaaf945eb6aa2ccd3f3426dc3f.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>729</line>
	<id>11232020</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=82a34430cbfbdb8233d9b75c4c56fe4d.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>730</line>
	<id>11232019</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=7bd03454b19103952a57387c1305bdde.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>731</line>
	<id>11232018</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=78fb720aa6c1d48b7aa443cd74477e40.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>732</line>
	<id>11232017</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=6f5b0a84d1fb94168da604816bd95068.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>733</line>
	<id>11232016</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=6ee8d1d20083f48650bd675a8c3fd2eb.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>734</line>
	<id>11232015</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=5c99e9896adfe97561b12d2781411466.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>735</line>
	<id>11232014</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=59bbe8faa944fa77b0f54871493d18fd.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>736</line>
	<id>11232013</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=580d7ba1ada6ec01e5b162d53bd2806d.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>737</line>
	<id>11232012</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=56d0786b8a3b362b20142bc0ac98d13e.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>738</line>
	<id>11232011</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=3ee9df5ffff061a749b827eb8d678e51.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>739</line>
	<id>11232010</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=33eb2d6ba85badefb8a58047ed5555a5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>740</line>
	<id>11232009</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>aa543c10a56d75701f0d125a070f2ff2</md5>
	<virustotal></virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwxy.rar?vspublic=03b0c90924eb1a16c6bf2ce206ec3b8b.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>741</line>
	<id>11232008</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>42598ef632d5e60596baf06252fd5d82</md5>
	<virustotal></virustotal>
	<vt_score>27/45 (60%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwsffzgjxz.zip?vspublic=662069286f8ac3570a20512603ec6562.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>742</line>
	<id>11232007</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>ffd3b91f98970562645a50ee4f197afa</md5>
	<virustotal></virustotal>
	<vt_score>17/46 (37%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwkbyhmffz3.02.zip?vspublic=656564f62fdf9fcde2f6b2870b5b4d48.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>743</line>
	<id>11232006</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>6abf9a320d6317f53d86fa9f2865cae2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6abf9a320d6317f53d86fa9f2865cae2</virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwjyzs_gr.zip?vspublic=d11ccda972cb14ae334ea8a4472e8314.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>744</line>
	<id>11232005</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>6abf9a320d6317f53d86fa9f2865cae2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6abf9a320d6317f53d86fa9f2865cae2</virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwjyzs_gr.zip?vspublic=c777606bd6f1c48c8063fd170e08256b.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>745</line>
	<id>11232004</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>6abf9a320d6317f53d86fa9f2865cae2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6abf9a320d6317f53d86fa9f2865cae2</virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwjyzs_gr.zip?vspublic=796ad11252973637f7c9e9f1fce29051.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>746</line>
	<id>11232003</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>6abf9a320d6317f53d86fa9f2865cae2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6abf9a320d6317f53d86fa9f2865cae2</virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwjyzs_gr.zip?vspublic=459bb8985e4d1ab4780e0a73db272b0c.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>747</line>
	<id>11232002</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>6abf9a320d6317f53d86fa9f2865cae2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6abf9a320d6317f53d86fa9f2865cae2</virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwjyzs_gr.zip?vspublic=42f6bf32194977faefcc3b8233175bb9.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>748</line>
	<id>11232001</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>6abf9a320d6317f53d86fa9f2865cae2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6abf9a320d6317f53d86fa9f2865cae2</virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwjyzs_gr.zip?vspublic=36efba92d0cdc89ec5a225e0a6e63833.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>749</line>
	<id>11232000</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>6abf9a320d6317f53d86fa9f2865cae2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6abf9a320d6317f53d86fa9f2865cae2</virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxwjyzs_gr.zip?vspublic=108e9d2ea623bc20d61fd2ed78a2d000.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>750</line>
	<id>11231998</id>
	<first>1369085908</first>
	<last>0</last>
	<md5>9965dd0788574599c7ea9b261faa6534</md5>
	<virustotal></virustotal>
	<vt_score>32/46 (69.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FOffend.6859518]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqxcplxzq.rar?vspublic=8d6120cf9f7a7067e01b938581fde207.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>751</line>
	<id>11231997</id>
	<first>1369085907</first>
	<last>0</last>
	<md5>72a62a670013c2542735f46edca43b50</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=72a62a670013c2542735f46edca43b50</virustotal>
	<vt_score>10/36 (27.8%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Trojan%2FWin32.HDC]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqshuafen.rar?vspublic=a23002e4124fc464d5a72b157afadcca.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>752</line>
	<id>11231996</id>
	<first>1369085907</first>
	<last>0</last>
	<md5>64051dc1269a9d9261fd68d0fe62c2e5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=64051dc1269a9d9261fd68d0fe62c2e5</virustotal>
	<vt_score>28/47 (59.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Suspicious+file]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqqun_CR.rar?vspublic=e1341a84bb748570bd916c7495624e20.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>753</line>
	<id>11231995</id>
	<first>1369085907</first>
	<last>0</last>
	<md5>64051dc1269a9d9261fd68d0fe62c2e5</md5>
	<virustotal></virustotal>
	<vt_score>29/47 (61.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Suspicious+file]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqqun_CR.rar?vspublic=c02ecb03155e2d65f9b03be4b16dc987.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>754</line>
	<id>11231994</id>
	<first>1369085907</first>
	<last>0</last>
	<md5>ee6ffb0debc519733d9cee4288afd261</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ee6ffb0debc519733d9cee4288afd261</virustotal>
	<vt_score>16/36 (44.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDrop.Clons.quc]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqmzdmhfz.zip?vspublic=76d799cc15fe14727909eb8a8020e7b4.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>755</line>
	<id>11231993</id>
	<first>1369085907</first>
	<last>0</last>
	<md5>b5c45312d160b9ab20d09650a098b2b1</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b5c45312d160b9ab20d09650a098b2b1</virustotal>
	<vt_score>25/47 (53.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FCI.A]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqltjl.zip?vspublic=b8110078380dc178ec3ab4c67889051b.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>756</line>
	<id>11231991</id>
	<first>1369085907</first>
	<last>0</last>
	<md5>1dac53916fa586545b24b3cbff809687</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1dac53916fa586545b24b3cbff809687</virustotal>
	<vt_score>35/46 (76.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqdjcxgj.rar?vspublic=b6fa46be79309b5ba9828e041ec08f4f.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>757</line>
	<id>11231990</id>
	<first>1369085907</first>
	<last>0</last>
	<md5>a7eb635eaa3de6407bcb04e80f4923a4</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8ce5882aba804156ec45844a8f4ebc09</virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>AhnLab_V3</scanner>
	<virusname><![CDATA[Win-Trojan%2FMagania.53248.M]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qqctangyunxiangc.rar?vspublic=762ea1db7e93be3813a9be40809b450b.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>758</line>
	<id>11231989</id>
	<first>1369085907</first>
	<last>0</last>
	<md5>8b061302cdee5b5725db02b9e721eea2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8b061302cdee5b5725db02b9e721eea2</virustotal>
	<vt_score>24/34 (70.6%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[TR%2FAgent.1593344.29]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/qq9xfz_.zip?vspublic=767fb805e7e9ee55968a1b9f05162709.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>759</line>
	<id>11231986</id>
	<first>1369085907</first>
	<last>0</last>
	<md5>c17611b749a46c518a189eb24ca2da6d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c17611b749a46c518a189eb24ca2da6d</virustotal>
	<vt_score>12/36 (33.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FAgent.396800]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/pmly.rar?vspublic=6bf7df5f34c1696cbfae926f75b123ea.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>760</line>
	<id>11231985</id>
	<first>1369085907</first>
	<last>0</last>
	<md5>2b9f3a60f9639c0a51fdc42f64eeabf0</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=2b9f3a60f9639c0a51fdc42f64eeabf0</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/phoneclean.zip?vspublic=b1d59350f67d808280724e96de7337be.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>761</line>
	<id>11231984</id>
	<first>1369085907</first>
	<last>0</last>
	<md5>e3fe5004ab5755785871b6674c94c121</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e3fe5004ab5755785871b6674c94c121</virustotal>
	<vt_score>7/35 (20%)</vt_score>
	<scanner>AVG</scanner>
	<virusname><![CDATA[Generic28.HGZ]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/peid.rar?vspublic=a69fe2b8434c49f582a8ede764d92bb5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>762</line>
	<id>11231983</id>
	<first>1369085907</first>
	<last>0</last>
	<md5>e3fe5004ab5755785871b6674c94c121</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e3fe5004ab5755785871b6674c94c121</virustotal>
	<vt_score>7/35 (20%)</vt_score>
	<scanner>AVG</scanner>
	<virusname><![CDATA[Generic28.HGZ]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/peid.rar?vspublic=6e53aa5f2d21f05c5f4c588f8cc65ab5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>763</line>
	<id>11231981</id>
	<first>1369085907</first>
	<last>0</last>
	<md5>df12c69946c4c2a4a4f468889e703862</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=df12c69946c4c2a4a4f468889e703862</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/nt6_oem_loader.zip?vspublic=e49347378c7764788509e0b25519bc98.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>764</line>
	<id>11231979</id>
	<first>1369085907</first>
	<last>0</last>
	<md5>6c9906641a5a0fd2e67148dc8790e8fe</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6c9906641a5a0fd2e67148dc8790e8fe</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.3089920]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/mysfwg.rar?vspublic=dbbad4ceedbd78c82321b57b56fb2a22.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>765</line>
	<id>11231978</id>
	<first>1369085907</first>
	<last>0</last>
	<md5>6c9906641a5a0fd2e67148dc8790e8fe</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6c9906641a5a0fd2e67148dc8790e8fe</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.3089920]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/mysfwg.rar?vspublic=beaab83184abe309c72d20def7ede37b.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>766</line>
	<id>11231977</id>
	<first>1369085907</first>
	<last>0</last>
	<md5>f5a3005e58494e8f0d3bb94ac3fa9d65</md5>
	<virustotal></virustotal>
	<vt_score>27/45 (60%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FAgent.gktp.1]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/myhbbg.zip?vspublic=36898a905485caac024b01f481b027de.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>767</line>
	<id>11231975</id>
	<first>1369085907</first>
	<last>0</last>
	<md5>a109c81c39cb65e509d4874237610f83</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a109c81c39cb65e509d4874237610f83</virustotal>
	<vt_score>12/46 (26.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Suspicious+file]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/msgtaifuqtfzwg.rar?vspublic=424abeddcdf24433d0b41d9e2da9eb4e.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>768</line>
	<id>11231973</id>
	<first>1369085906</first>
	<last>0</last>
	<md5>81a7ee93d88fb02b961decb09aff7e34</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=81a7ee93d88fb02b961decb09aff7e34</virustotal>
	<vt_score>25/36 (69.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/menghuanqingtian2xgq.zip?vspublic=dae56d549a87fbd0acd05354566db5ab.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>769</line>
	<id>11231972</id>
	<first>1369085906</first>
	<last>0</last>
	<md5>4edf35ff040f8c062dc2d623373fb35e</md5>
	<virustotal></virustotal>
	<vt_score>14/47 (29.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Suspicious+file]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/memclr.zip?vspublic=23321e319e59060b798b3cf7842c2198.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>770</line>
	<id>11231971</id>
	<first>1369085906</first>
	<last>0</last>
	<md5>30f6c330cb38e6c163cf747dbd626a10</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=30f6c330cb38e6c163cf747dbd626a10</virustotal>
	<vt_score>9/35 (25.7%)</vt_score>
	<scanner>trendmicro</scanner>
	<virusname><![CDATA[TROJ_SPNR.08HI12]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/maya2013zcj.zip?vspublic=ef749ef92127a39540773d4691347429.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>771</line>
	<id>11231970</id>
	<first>1369085906</first>
	<last>0</last>
	<md5>40812fc544f16dfbce5a0dfcb85a47ee</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=40812fc544f16dfbce5a0dfcb85a47ee</virustotal>
	<vt_score>18/46 (39.1%)</vt_score>
	<scanner>trendmicro</scanner>
	<virusname><![CDATA[TROJ_SPNR.08HI12]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/maya2013zcj.zip?vspublic=550af76336d711a9117348a79e6072ff.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>772</line>
	<id>11231969</id>
	<first>1369085906</first>
	<last>0</last>
	<md5>6ab64df0441c502ea3e38b7bc9a00b37</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6ab64df0441c502ea3e38b7bc9a00b37</virustotal>
	<vt_score>2/36 (5.6%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Virus.Win32.Heur]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/lsluoke.zip?vspublic=5bfca1a1b9bdf6e0b4852b287f0b6a1b.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>773</line>
	<id>11231968</id>
	<first>1369085906</first>
	<last>0</last>
	<md5>8ca96f8d4dab9d95412a2e96de1c3e58</md5>
	<virustotal></virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/lkkffzxz.zip?vspublic=70d41147d98e6373ab9cbcb5dd8ece24.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>774</line>
	<id>11231967</id>
	<first>1369085906</first>
	<last>0</last>
	<md5>59efd4416c368bd787e7dcde1e6a09be</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=59efd4416c368bd787e7dcde1e6a09be</virustotal>
	<vt_score>8/47 (17%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FRogue.66598742]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/lkddfz.zip?vspublic=e58ae428af6ea2521532740c6ba4c394.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>775</line>
	<id>11231964</id>
	<first>1369085906</first>
	<last>0</last>
	<md5>8209a78c9a47f893f73c72b9014d925b</md5>
	<virustotal></virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FRogue.66598742]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/lkddfz.zip?vspublic=141f8ad9adb2a3ce105eab12b56c29c8.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>776</line>
	<id>11231961</id>
	<first>1369085905</first>
	<last>0</last>
	<md5>aaf60c9129e97262b00bba1d7a2e341f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=aaf60c9129e97262b00bba1d7a2e341f</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>Sophos</scanner>
	<virusname><![CDATA[Mal%2FBehav-363]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/kxppmfzxz.zip?vspublic=6773b813904921191bc21dcc1a21c1e8.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>777</line>
	<id>11231960</id>
	<first>1369085905</first>
	<last>0</last>
	<md5>aaf60c9129e97262b00bba1d7a2e341f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=aaf60c9129e97262b00bba1d7a2e341f</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>Sophos</scanner>
	<virusname><![CDATA[Mal%2FBehav-363]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/kxppmfzxz.zip?vspublic=2639d757ff8864c4137ad37ca9ce0524.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>778</line>
	<id>11231959</id>
	<first>1369085905</first>
	<last>0</last>
	<md5>11b47d60b15d86513ecb4bfd875e09bb</md5>
	<virustotal></virustotal>
	<vt_score>4/46 (8.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.FKM.Gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/kxppmfzmzqxqb.rar?vspublic=221301ab2820fe24438c0b69e5518bae.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>779</line>
	<id>11231958</id>
	<first>1369085905</first>
	<last>0</last>
	<md5>ca9dee37452fec6da4ad5082861c40e2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ca9dee37452fec6da4ad5082861c40e2</virustotal>
	<vt_score>3/46 (6.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[suspected+of+Trojan-Downloader.VB.16]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/kuys.rar?vspublic=ec52f54457d1069576ca8176d44d3de9.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>780</line>
	<id>11231957</id>
	<first>1369085905</first>
	<last>0</last>
	<md5>c4d2fc0c8920c7db114f05940584d96d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c4d2fc0c8920c7db114f05940584d96d</virustotal>
	<vt_score>1/44 (2.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/KEmulator.rar?vspublic=a7110e24fb533874b1439caffb175dfc.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>781</line>
	<id>11231956</id>
	<first>1369085905</first>
	<last>0</last>
	<md5>8587d5a19311fdfe2498d72e5f78d464</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8587d5a19311fdfe2498d72e5f78d464</virustotal>
	<vt_score>11/46 (23.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FThed.B]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/jzqqddzjpq.rar?vspublic=315f4b3156f37ffa45a1ba57bbc54f9e.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>782</line>
	<id>11231955</id>
	<first>1369085905</first>
	<last>0</last>
	<md5>07c3c410a0a1ab4cf37000a1743ecb72</md5>
	<virustotal></virustotal>
	<vt_score>3/47 (6.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Adware.Relevant.79]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/jft.zip?vspublic=1fe5885c17f9217630f5b2a7576e258c.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>783</line>
	<id>11231953</id>
	<first>1369085905</first>
	<last>0</last>
	<md5>5036e08778b30a17da2c7da2e1d66cc2</md5>
	<virustotal></virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/IsoBusterPortable.rar?vspublic=9ab9136ce4118a7df706aa9cc3106849.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>784</line>
	<id>11231952</id>
	<first>1369085905</first>
	<last>0</last>
	<md5>b5b5a0a56dea6771197764211b6b7770</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b5b5a0a56dea6771197764211b6b7770</virustotal>
	<vt_score>15/32 (46.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FBuzus.corp]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/IrfanView.rar?vspublic=267577ab2036ffb09836df5b1b2c5bd7.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>785</line>
	<id>11231946</id>
	<first>1369085905</first>
	<last>0</last>
	<md5>4585c278d79a8cacf7bd076919c5649b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4585c278d79a8cacf7bd076919c5649b</virustotal>
	<vt_score>1/35 (2.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/HP1010driver.rar?vspublic=46128e1eb308f4347545a2d68b0d5654.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>786</line>
	<id>11231945</id>
	<first>1369085905</first>
	<last>0</last>
	<md5>c98a4024f3084717e5c269fc8dca625d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c98a4024f3084717e5c269fc8dca625d</virustotal>
	<vt_score>37/44 (84.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FRogue.kdv.634420]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/hjdzymzs.zip?vspublic=cd715ebda84da43cf81e5f6a55885cd6.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>787</line>
	<id>11231944</id>
	<first>1369085905</first>
	<last>0</last>
	<md5>c98a4024f3084717e5c269fc8dca625d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c98a4024f3084717e5c269fc8dca625d</virustotal>
	<vt_score>39/46 (84.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FRogue.kdv.634420]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/hjdzymzs.zip?vspublic=9046392a28c9893cd6adde8aeb08029a.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>788</line>
	<id>11231943</id>
	<first>1369085905</first>
	<last>0</last>
	<md5>c98a4024f3084717e5c269fc8dca625d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c98a4024f3084717e5c269fc8dca625d</virustotal>
	<vt_score>37/44 (84.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FRogue.kdv.634420]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/hjdzymzs.zip?vspublic=6faf659c784f8b0bf4c85e283941e2cf.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>789</line>
	<id>11231942</id>
	<first>1369085905</first>
	<last>0</last>
	<md5>027bfbc92aea786c6fbda6808890eeff</md5>
	<virustotal></virustotal>
	<vt_score>19/41 (46.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/hj2wdxgq.zip?vspublic=07797821943abf186e6a3172aaf6b531.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>790</line>
	<id>11231941</id>
	<first>1369085905</first>
	<last>0</last>
	<md5>8c27b17b560ef4b1b27126bb4d73920f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8c27b17b560ef4b1b27126bb4d73920f</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/himalaya.zip?vspublic=fa4c8b3d269a1208b27935aff554a35c.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>791</line>
	<id>11231940</id>
	<first>1369085905</first>
	<last>0</last>
	<md5>147ba8f89082aba71dc92ef83034bee4</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=147ba8f89082aba71dc92ef83034bee4</virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/ha_BlueStacks_HD_AppPlayerPro_setup.zip?vspublic=d12ec96a6be899e1105521ab3d47217d.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>792</line>
	<id>11231939</id>
	<first>1369085905</first>
	<last>0</last>
	<md5>155aa983496f79732221544582a650b6</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=155aa983496f79732221544582a650b6</virustotal>
	<vt_score>1/35 (2.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/gpu-z_en.rar?vspublic=bfead8d19432e9b021699df024692eb2.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>793</line>
	<id>11231938</id>
	<first>1369085905</first>
	<last>0</last>
	<md5>76937f560aac5d7530dd6c92f1513bdb</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=76937f560aac5d7530dd6c92f1513bdb</virustotal>
	<vt_score>21/36 (58.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FRogue.6176570]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/gongfupfzxz.zip?vspublic=ec1fb36cb33b3e6d81f2cc83c64dfbd0.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>794</line>
	<id>11231935</id>
	<first>1369085904</first>
	<last>0</last>
	<md5>fd6e772b7864b17ea2b9c9cb608b0478</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=fd6e772b7864b17ea2b9c9cb608b0478</virustotal>
	<vt_score>36/45 (80%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/gcd.rar?vspublic=ff5c6b58fb1796fc954421c80c249424.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>795</line>
	<id>11231934</id>
	<first>1369085904</first>
	<last>0</last>
	<md5>fd6e772b7864b17ea2b9c9cb608b0478</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=fd6e772b7864b17ea2b9c9cb608b0478</virustotal>
	<vt_score>36/45 (80%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/gcd.rar?vspublic=638309586e8dc6e11cbcadb939048453.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>796</line>
	<id>11231933</id>
	<first>1369085904</first>
	<last>0</last>
	<md5>fd6e772b7864b17ea2b9c9cb608b0478</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=fd6e772b7864b17ea2b9c9cb608b0478</virustotal>
	<vt_score>36/45 (80%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/gcd.rar?vspublic=3c79889bd2ece8e7ac90a76464602397.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>797</line>
	<id>11231931</id>
	<first>1369085904</first>
	<last>0</last>
	<md5>ff76a93c92a3e4237cbdf90c386dd79a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff76a93c92a3e4237cbdf90c386dd79a</virustotal>
	<vt_score>31/36 (86.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/fxcalendar.rar?vspublic=a4f02d56630c25e0e0cafe9e3206c223.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>798</line>
	<id>11231930</id>
	<first>1369085904</first>
	<last>0</last>
	<md5>54043b12f87dee22194c23262d27e6e3</md5>
	<virustotal></virustotal>
	<vt_score>22/47 (46.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FBlack.Gen2]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/FreeDesktopTimer.zip?vspublic=af98fb4405f4236be13b5a6d60ca000a.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>799</line>
	<id>11231929</id>
	<first>1369085904</first>
	<last>0</last>
	<md5>969609ac3ab447ad2f1e40d3233c02ae</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=969609ac3ab447ad2f1e40d3233c02ae</virustotal>
	<vt_score>18/36 (50%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Win.Trojan.Agent-204211]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/flpipyjzxgq.zip?vspublic=7d98b7105ae2210936540e0c62d65621.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>800</line>
	<id>11231928</id>
	<first>1369085904</first>
	<last>0</last>
	<md5>aa74b10c17d65339532d47a7bc10bbc7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=aa74b10c17d65339532d47a7bc10bbc7</virustotal>
	<vt_score>30/47 (63.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FAgent.21504.6]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/find.exe.rar?vspublic=06d4e8876679bb12dd07bc5ca98923f5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>801</line>
	<id>11231927</id>
	<first>1369085904</first>
	<last>0</last>
	<md5>54b9f05ab61d98fe4bc30bcb62ecf73e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=54b9f05ab61d98fe4bc30bcb62ecf73e</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/FileKill%20By%20360.rar?vspublic=3cb33252a262fda3d05b3d547a6ed237.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>802</line>
	<id>11231926</id>
	<first>1369085904</first>
	<last>0</last>
	<md5>89d74d3abb2d9d350b007f728500c59e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=89d74d3abb2d9d350b007f728500c59e</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/fenxihuan.rar?vspublic=be1d75b5e60e47fddb45d5e07f58b2f6.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>803</line>
	<id>11231924</id>
	<first>1369085904</first>
	<last>0</last>
	<md5>c6dc3daa780cd6445d43278074185f91</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c6dc3daa780cd6445d43278074185f91</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/Docin.rar?vspublic=e5198dcf2fb57080f05adf7ac242ad2f.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>804</line>
	<id>11231923</id>
	<first>1369085904</first>
	<last>0</last>
	<md5>c6dc3daa780cd6445d43278074185f91</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c6dc3daa780cd6445d43278074185f91</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/docin.rar?vspublic=986afbf9ec5d3b2e5c37dc937ba6c8fa.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>805</line>
	<id>11231922</id>
	<first>1369085904</first>
	<last>0</last>
	<md5>c6dc3daa780cd6445d43278074185f91</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c6dc3daa780cd6445d43278074185f91</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/docin.rar?vspublic=614784d640d2889b11e3b5659e059d8a.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>806</line>
	<id>11231921</id>
	<first>1369085904</first>
	<last>0</last>
	<md5>c6dc3daa780cd6445d43278074185f91</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c6dc3daa780cd6445d43278074185f91</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/docin.rar?vspublic=4b0d4b762d7b3ec337096712844ea2ad.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>807</line>
	<id>11231920</id>
	<first>1369085904</first>
	<last>0</last>
	<md5>c6dc3daa780cd6445d43278074185f91</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c6dc3daa780cd6445d43278074185f91</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/docin.rar?vspublic=0fa0693bf297e5100a09a25a11575d73.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>808</line>
	<id>11231919</id>
	<first>1369085904</first>
	<last>0</last>
	<md5>26c0adb6e44b55d99e1efa2abdb31f55</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=26c0adb6e44b55d99e1efa2abdb31f55</virustotal>
	<vt_score>25/46 (54.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FCI.A]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/dnflianjinbibei.zip?vspublic=0f62d14b4a65d9c95ecc6b4f5cb84a26.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>809</line>
	<id>11231918</id>
	<first>1369085904</first>
	<last>0</last>
	<md5>f86a7c42b8a3bfac334e9d34eff8a316</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f86a7c42b8a3bfac334e9d34eff8a316</virustotal>
	<vt_score>1/31 (3.2%)</vt_score>
	<scanner>Symantec</scanner>
	<virusname><![CDATA[WS.Reputation.1]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/DGen_x86.rar?vspublic=c97b447512f36f712c82a87f75802298.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>810</line>
	<id>11231917</id>
	<first>1369085904</first>
	<last>0</last>
	<md5>62db012ee619a41d3a3dadbf6438572b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=62db012ee619a41d3a3dadbf6438572b</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>Symantec</scanner>
	<virusname><![CDATA[WS.Reputation.1]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/DGen_x86.rar?vspublic=a9c6d90e6b51a281362a139fa405e3e9.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>811</line>
	<id>11231910</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>74668a9dfcb3a30d457078251bb4e9a9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=74668a9dfcb3a30d457078251bb4e9a9</virustotal>
	<vt_score>14/36 (38.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[SPR%2FPassDic.ba.10]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/c-Setong.rar?vspublic=3554c0a9198fb9869f8213527622f89d.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>812</line>
	<id>11231909</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>35f05d294559958754fbb4b9104790ef</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=35f05d294559958754fbb4b9104790ef</virustotal>
	<vt_score>18/45 (40%)</vt_score>
	<scanner>trendmicro</scanner>
	<virusname><![CDATA[TROJ_SPNR.08IP11]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/cr-Adobe%20Acrobat%207.0%20Professional.rar?vspublic=561f15236e715b8c58d8e30501773707.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>813</line>
	<id>11231908</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>a5acf29e5a3bb0809354b417aeec3c3e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a5acf29e5a3bb0809354b417aeec3c3e</virustotal>
	<vt_score>11/33 (33.3%)</vt_score>
	<scanner>trendmicro</scanner>
	<virusname><![CDATA[TROJ_SPNR.29L111]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/cpucool.rar?vspublic=eb0d6ec09a3068166b2a2a73825f83f7.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>814</line>
	<id>11231907</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>f805e8c647daf8fadd76ffbca6587072</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f805e8c647daf8fadd76ffbca6587072</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/Connectify_pj.zip?vspublic=f0c8f3781a6f956095b24708048a11f9.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>815</line>
	<id>11231906</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>f805e8c647daf8fadd76ffbca6587072</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f805e8c647daf8fadd76ffbca6587072</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/Connectify_pj.zip?vspublic=d42060a571a33b981c97c96f01152c1d.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>816</line>
	<id>11231905</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>f805e8c647daf8fadd76ffbca6587072</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f805e8c647daf8fadd76ffbca6587072</virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIK]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/connectify_pj.zip?vspublic=cd995a652b40993c4f6ad2e863de69c6.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>817</line>
	<id>11231902</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>4761e0564d98fb3a13f874110265cafc</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4761e0564d98fb3a13f874110265cafc</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIJ]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/clfzmfb.zip?vspublic=78f0e48a777713d124bfd47cfc5104ed.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>818</line>
	<id>11231901</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>1464dbbd389e4c3e9ad34cf72309f927</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1464dbbd389e4c3e9ad34cf72309f927</virustotal>
	<vt_score>8/35 (22.9%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Trojan.Agent-300527]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/chinastock..zip?vspublic=6dc6aef2a4cb5c8f5ad02311e771c6d9.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>819</line>
	<id>11231897</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>f5bc3409919c152f4554b711858e02ac</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f5bc3409919c152f4554b711858e02ac</virustotal>
	<vt_score>1/34 (2.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_file_CheckFusDownloader%2FCheckFusDownloader%2FCheckFusDownloader_v2.1%B0%E6%B1%BE%CF%C2%D4%D8.exe]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/checkfusdownloader.zip?vspublic=9c331be1226cda11c1f7bc6d62eebafe.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>222.186.43.79</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>820</line>
	<id>11231896</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>0bc3313b16637800d683c55fd11c96d1</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0bc3313b16637800d683c55fd11c96d1</virustotal>
	<vt_score>22/46 (47.8%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Win.Trojan.Agent-204211]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/cfzidongzhunbei.zip?vspublic=f497f01e362db4605d3e55c146d785cf.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>821</line>
	<id>11231895</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>0bc3313b16637800d683c55fd11c96d1</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0bc3313b16637800d683c55fd11c96d1</virustotal>
	<vt_score>22/46 (47.8%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Win.Trojan.Agent-204211]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/cfzidongzhunbei.zip?vspublic=d0b9f98110d4cb0e3929bcf9460b210a.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>822</line>
	<id>11231894</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>0bc3313b16637800d683c55fd11c96d1</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0bc3313b16637800d683c55fd11c96d1</virustotal>
	<vt_score>22/46 (47.8%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Win.Trojan.Agent-204211]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/cfzidongzhunbei.zip?vspublic=08faca707074d3c2837cc0ef065b5998.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>58.218.204.138</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>ip@jsinfo.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>823</line>
	<id>11231893</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>7c969dc103b6079a6d5c48fdb5a6fd0a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7c969dc103b6079a6d5c48fdb5a6fd0a</virustotal>
	<vt_score>23/47 (48.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FGenetic.gen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/cfwdbdxfzsp5.zip?vspublic=048f74ac024bc5c99d4d13fbbf830613.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>58.218.204.138</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>58.208.0.0 - 58.223.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>824</line>
	<id>11231892</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>1eb886a3d4903fd41da8a9e2133abbc8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1eb886a3d4903fd41da8a9e2133abbc8</virustotal>
	<vt_score>29/44 (65.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FCI.A]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/cfppckh.zip?vspublic=776672a03c358e0c7d5546b015c62e52.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>825</line>
	<id>11231891</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>1eb886a3d4903fd41da8a9e2133abbc8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1eb886a3d4903fd41da8a9e2133abbc8</virustotal>
	<vt_score>29/44 (65.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FCI.A]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/cfppckh.zip?vspublic=04a8a7126cb08c577acbdfb34b24b7bc.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>826</line>
	<id>11231890</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>d6118e9b7b9b604146d5fe9e9f514ac9</md5>
	<virustotal></virustotal>
	<vt_score>25/46 (54.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FOffend.kdv.580469]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/cfmssl.zip?vspublic=ebea7d176ae452c016007f85831638cf.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>827</line>
	<id>11231889</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>0a185155801b4228cadb1736a210166f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0a185155801b4228cadb1736a210166f</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FAgent2.crpv]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/cflltyfyqfz.zip?vspublic=e28f9f2c5f7dc14e57a3d31c785498bc.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>828</line>
	<id>11231888</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>ef1eff2527a892ff7d0d73daee6736c7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ef1eff2527a892ff7d0d73daee6736c7</virustotal>
	<vt_score>22/47 (46.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Suspicious+file]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/cfdafei.zip?vspublic=dd6d864c0909fa28c362c38becfed826.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>829</line>
	<id>11231887</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>ef1eff2527a892ff7d0d73daee6736c7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ef1eff2527a892ff7d0d73daee6736c7</virustotal>
	<vt_score>22/47 (46.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Suspicious+file]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/cfdafei.zip?vspublic=6deb1d3e6985c4f427626618da6b41f3.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.79</ip>
	<as>AS4134</as>
	<review>115.238.252.234</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@mail.lsptt.zj.cn</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>LISHUIDIANXIN-COLTD</netname>
	<descr><![CDATA[Lishui Dianxin COLTD]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>830</line>
	<id>11231886</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>84e39ae8641f38f8bb7a2c6920ad3f49</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=84e39ae8641f38f8bb7a2c6920ad3f49</virustotal>
	<vt_score>22/47 (46.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FCI.A]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/cfbemzcxq.zip?vspublic=392c831ee69002bcfc1884c6a255b7eb.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>60.190.119.5</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>60.176.0.0 - 60.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>831</line>
	<id>11231885</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>98bc88aac5889bbb32f21f868dba267a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=98bc88aac5889bbb32f21f868dba267a</virustotal>
	<vt_score>31/45 (68.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FPSW.Bjlog.dqen]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/cddiskdowner.zip?vspublic=d87b99eb9be987483419ee3420a4fb7a.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.191.188.72</ip>
	<as>AS4134</as>
	<review>61.191.188.72</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.191.0.0 - 61.191.255.255</inetnum>
	<netname>CHINANET-AH</netname>
	<descr><![CDATA[CHINANET Anhui province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>832</line>
	<id>11231884</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>5affca16170861e84383e25a078c4aa5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5affca16170861e84383e25a078c4aa5</virustotal>
	<vt_score>1/34 (2.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[unknown_html]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/cboxzxb.zip?vspublic=21fe7018721c57f62d4a5546f9d9cb95.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>115.238.252.234</ip>
	<as>AS4134</as>
	<review>222.187.220.145</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>115.238.252.0 - 115.238.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>833</line>
	<id>11231882</id>
	<first>1369085903</first>
	<last>0</last>
	<md5>b13f58a392d5bf13e2a3eb4bac406b95</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b13f58a392d5bf13e2a3eb4bac406b95</virustotal>
	<vt_score>2/47 (4.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[TROJ_GEN.FCBHZIJ]]></virusname>
	<url><![CDATA[http://down.cncrk.com:8080/soft/keygen/Camfrog.zip?vspublic=d917537195ed36addb9397b666dddb4a.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.220.145</ip>
	<as>AS4134</as>
	<review>60.190.119.5</review>
	<domain>cncrk.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>antispam@dcb.hz.zj.cn</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-ZJ-HZ</netname>
	<descr><![CDATA[CHINANET-ZJ Hangzhou node networkZhejiang Telecom]]></descr>
	<ns1>ns2.dnsv2.com</ns1>
	<ns2>ns1.dnsv2.com</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>834</line>
	<id>11231857</id>
	<first>1369085902</first>
	<last>0</last>
	<md5>c0f294f4d54db642d2c8b967a2833fd8</md5>
	<virustotal></virustotal>
	<vt_score>22/46 (47.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[HEUR%2FMalware]]></virusname>
	<url><![CDATA[http://down.boansafe.com/Setup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.38.136.18</ip>
	<as>AS9318</as>
	<review>218.38.136.18</review>
	<domain>boansafe.com</domain>
	<country>kr</country>
	<source>APNIC</source>
	<email>abuse@skbroadband.com</email>
	<inetnum>218.38.0.0 - 218.39.255.255 ( - 218.39.255.255</inetnum>
	<netname>HANANET-INFRA</netname>
	<descr><![CDATA[]]></descr>
	<ns1>ns69.dnsever.com</ns1>
	<ns2>ns259.dnsever.com</ns2>
	<ns3>ns231.dnsever.com</ns3>
	<ns4>ns89.dnsever.com</ns4>
	<ns5>ns102.dnsever.com</ns5>
</entry>
<entry>
	<line>835</line>
	<id>11231856</id>
	<first>1369085902</first>
	<last>0</last>
	<md5>8b1e37783f6f7b925ac196ad8a9ce808</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8b1e37783f6f7b925ac196ad8a9ce808</virustotal>
	<vt_score>4/47 (8.5%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[W32%2FDownloader-Web-based%21Maximus]]></virusname>
	<url><![CDATA[http://down.aq8.cc/BaiduPlayerNetSetup_00038088.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>121.15.221.42</ip>
	<as>AS4134</as>
	<review>121.15.221.42</review>
	<domain>aq8.cc</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@gddc.com.cn</email>
	<inetnum>121.8.0.0 - 121.15.255.255</inetnum>
	<netname>CHINANET-GD</netname>
	<descr><![CDATA[CHINANET Guangdong province networkChina TelecomNo.31,jingrong streetBeijing 100032From Guangdong Network of ChinaTelecom]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>836</line>
	<id>11231855</id>
	<first>1369085902</first>
	<last>0</last>
	<md5>3a987ada63c13cb11135f348ff4f654d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3a987ada63c13cb11135f348ff4f654d</virustotal>
	<vt_score>26/35 (74.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.Gampass.A]]></virusname>
	<url><![CDATA[http://down5.cr173.com/soft2/appdfpasswordrecovery.zip]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.127.209</ip>
	<as>AS23650</as>
	<review>61.147.127.209</review>
	<domain>cr173.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>837</line>
	<id>11231853</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>0173a3be09d2f88aa36dd70c9b82635b</md5>
	<virustotal></virustotal>
	<vt_score>42/46 (91.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[W32%2FParite]]></virusname>
	<url><![CDATA[http://down4.cnzz.cc/soft/200812/exetubiaotiqi.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.59.56</ip>
	<as>AS4134</as>
	<review>222.186.59.56</review>
	<domain>cnzz.cc</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>838</line>
	<id>11231851</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>49c555ce8a19ac6a383d8a0f34a6c9e3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=49c555ce8a19ac6a383d8a0f34a6c9e3</virustotal>
	<vt_score>27/36 (75%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[DR%2FDelphi.Gen]]></virusname>
	<url><![CDATA[http://down4.3ddown.com/Crack/2009/06A/Farsight.Active.Desktop.Album.v3.1.Incl.Keygen-DJiNN.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>219.138.163.66</ip>
	<as>AS4134</as>
	<review>219.138.163.66</review>
	<domain>3ddown.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>219.138.0.0 - 219.140.255.255</inetnum>
	<netname>CHINANET-HB</netname>
	<descr><![CDATA[CHINANET hubei province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns67.domaincontrol.com</ns1>
	<ns2>ns55.domaincontrol.com</ns2>
	<ns3>ns63.domaincontrol.com</ns3>
	<ns4>ns47.domaincontrol.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>839</line>
	<id>11231850</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>da03dec7411350a427b71ef3c650bc4c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=da03dec7411350a427b71ef3c650bc4c</virustotal>
	<vt_score>32/46 (69.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[DR%2FDelphi.Gen]]></virusname>
	<url><![CDATA[http://down4.3ddown.com/Crack/2009/06A/EffectMatrix.Total.Video2DVD.v2.81-Lz0.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>219.138.163.66</ip>
	<as>AS4134</as>
	<review>219.138.163.66</review>
	<domain>3ddown.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>219.138.0.0 - 219.140.255.255</inetnum>
	<netname>CHINANET-HB</netname>
	<descr><![CDATA[CHINANET hubei province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns67.domaincontrol.com</ns1>
	<ns2>ns55.domaincontrol.com</ns2>
	<ns3>ns63.domaincontrol.com</ns3>
	<ns4>ns47.domaincontrol.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>840</line>
	<id>11231849</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>0911b4b27ae0fb7b48659a9628586544</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0911b4b27ae0fb7b48659a9628586544</virustotal>
	<vt_score>35/47 (74.5%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[DR%2FDelphi.Gen]]></virusname>
	<url><![CDATA[http://down4.3ddown.com/Crack/2009/06A/Award.Keylogger.v1.4-NoPE.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>219.138.163.66</ip>
	<as>AS4134</as>
	<review>219.138.163.66</review>
	<domain>3ddown.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>219.138.0.0 - 219.140.255.255</inetnum>
	<netname>CHINANET-HB</netname>
	<descr><![CDATA[CHINANET hubei province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns67.domaincontrol.com</ns1>
	<ns2>ns55.domaincontrol.com</ns2>
	<ns3>ns63.domaincontrol.com</ns3>
	<ns4>ns47.domaincontrol.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>841</line>
	<id>11231846</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>60419d80493aa7717c791d124adba6e5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=60419d80493aa7717c791d124adba6e5</virustotal>
	<vt_score>26/35 (74.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[DR%2FDelphi.Gen]]></virusname>
	<url><![CDATA[http://down3.3ddown.com/Down/2007/11A/Accent.OFFICE.Password.Recovery.v2.60.zip]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>219.138.163.66</ip>
	<as>AS4134</as>
	<review>219.138.163.66</review>
	<domain>3ddown.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>219.138.0.0 - 219.140.255.255</inetnum>
	<netname>CHINANET-HB</netname>
	<descr><![CDATA[CHINANET hubei province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns63.domaincontrol.com</ns1>
	<ns2>ns67.domaincontrol.com</ns2>
	<ns3>ns55.domaincontrol.com</ns3>
	<ns4>ns47.domaincontrol.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>842</line>
	<id>11231845</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>4836d0ec4b88197ed50018952d637d3f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4836d0ec4b88197ed50018952d637d3f</virustotal>
	<vt_score>24/35 (68.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[DR%2FDelphi.Gen]]></virusname>
	<url><![CDATA[http://down3.3ddown.com/Crack/2009/06A/RarmaRadio.v2.29.Multilingual.Incl.Keymaker.And.Patch-CORE.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>219.138.163.66</ip>
	<as>AS4134</as>
	<review>219.138.163.66</review>
	<domain>3ddown.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>219.138.0.0 - 219.140.255.255</inetnum>
	<netname>CHINANET-HB</netname>
	<descr><![CDATA[CHINANET hubei province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns63.domaincontrol.com</ns1>
	<ns2>ns67.domaincontrol.com</ns2>
	<ns3>ns55.domaincontrol.com</ns3>
	<ns4>ns47.domaincontrol.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>843</line>
	<id>11231843</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>d02856662c6976dcfbc4ba5ad989dc03</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d02856662c6976dcfbc4ba5ad989dc03</virustotal>
	<vt_score>19/35 (54.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FGendal.1736836]]></virusname>
	<url><![CDATA[http://down2.youxiaxiazai.com/ziyuan/youxiaXPkaijijiasubudingxiazai.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.160.200.226</ip>
	<as>AS23650</as>
	<review>61.160.200.226</review>
	<domain>youxiaxiazai.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.160.0.0 - 61.160.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>ns4.xgslb.net</ns1>
	<ns2>ns1.xgslb.net</ns2>
	<ns3>ns2.xgslb.net</ns3>
	<ns4>ns3.xgslb.net</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>844</line>
	<id>11231842</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>ae32c9379b99478e7128027bb8cca07b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ae32c9379b99478e7128027bb8cca07b</virustotal>
	<vt_score>26/36 (72.2%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FSpy.Agent.139371]]></virusname>
	<url><![CDATA[http://down2.youxiaxiazai.com/ziyuan/kaijihuanyuanjingling.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.160.200.226</ip>
	<as>AS23650</as>
	<review>61.160.200.226</review>
	<domain>youxiaxiazai.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.160.0.0 - 61.160.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>ns4.xgslb.net</ns1>
	<ns2>ns1.xgslb.net</ns2>
	<ns3>ns2.xgslb.net</ns3>
	<ns4>ns3.xgslb.net</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>845</line>
	<id>11231841</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>51d580e350bba5369817a37a060279aa</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=51d580e350bba5369817a37a060279aa</virustotal>
	<vt_score>26/36 (72.2%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FCrypt.XPACK.Gen]]></virusname>
	<url><![CDATA[http://down2.youxiaxiazai.com/ziyuan/jiamijingangsuo.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.160.200.226</ip>
	<as>AS23650</as>
	<review>61.160.200.226</review>
	<domain>youxiaxiazai.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.160.0.0 - 61.160.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>ns4.xgslb.net</ns1>
	<ns2>ns1.xgslb.net</ns2>
	<ns3>ns2.xgslb.net</ns3>
	<ns4>ns3.xgslb.net</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>846</line>
	<id>11231840</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>8c7b793b366570d1fc49c2336b92362c</md5>
	<virustotal></virustotal>
	<vt_score>7/47 (14.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down2.upantool.com:88/file/software/z7z8/2013/sinawen.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.69</ip>
	<as>AS4134</as>
	<review>222.186.43.69</review>
	<domain>upantool.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>847</line>
	<id>11231839</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>7a219758b103fbb6c58172869511dd84</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7a219758b103fbb6c58172869511dd84</virustotal>
	<vt_score>12/47 (25.5%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down2.upantool.com:88/file/software/test/2012/FlashGenius.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.69</ip>
	<as>AS4134</as>
	<review>222.186.43.69</review>
	<domain>upantool.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>848</line>
	<id>11231838</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>1bef4bfcdcd875a3fc9fcbd3f42a9f88</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1bef4bfcdcd875a3fc9fcbd3f42a9f88</virustotal>
	<vt_score>7/47 (14.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down2.upantool.com:88/file/software/repair/2012/xiqukaMP3huifu.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.69</ip>
	<as>AS4134</as>
	<review>222.186.43.69</review>
	<domain>upantool.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>849</line>
	<id>11231837</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>f0025fe34ed09cc8b6d4ce5e4fbe6058</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f0025fe34ed09cc8b6d4ce5e4fbe6058</virustotal>
	<vt_score>10/46 (21.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down2.upantool.com:88/file/software/others/2012/restorator_2007.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.43.69</ip>
	<as>AS4134</as>
	<review>222.186.43.69</review>
	<domain>upantool.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>850</line>
	<id>11231836</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>af419b06d27906b66204276d3ef16973</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=af419b06d27906b66204276d3ef16973</virustotal>
	<vt_score>11/46 (23.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down2.upanfile.com:88/file/software/test/2012/ChipGenius_v4.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.136.101.135</ip>
	<as>AS4837</as>
	<review>61.136.101.135</review>
	<domain>upanfile.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@public.zz.ha.cn</email>
	<inetnum>61.136.64.0 - 61.136.127.255</inetnum>
	<netname>UNICOM-HA</netname>
	<descr><![CDATA[China Unicom Henan province networkChina UnicomCNC Group CHINA169 Henan Province Network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>851</line>
	<id>11231835</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>543287f12f09445a248260b6486c77bd</md5>
	<virustotal></virustotal>
	<vt_score>10/47 (21.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down2.upanfile.com:88/file/software/repair/2013/cf_disk_format_tool_v1017.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.136.101.135</ip>
	<as>AS4837</as>
	<review>61.136.101.135</review>
	<domain>upanfile.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@public.zz.ha.cn</email>
	<inetnum>61.136.64.0 - 61.136.127.255</inetnum>
	<netname>UNICOM-HA</netname>
	<descr><![CDATA[China Unicom Henan province networkChina UnicomCNC Group CHINA169 Henan Province Network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>852</line>
	<id>11231834</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>95da70ef58861eecc6b13dedd3075514</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=95da70ef58861eecc6b13dedd3075514</virustotal>
	<vt_score>6/46 (13%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[Win.Trojan.Agent-48]]></virusname>
	<url><![CDATA[http://down2.upanfile.com:88/file/software/mass/Skymedi/2013/SK6221_V2013-04-25.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.136.101.135</ip>
	<as>AS4837</as>
	<review>61.136.101.135</review>
	<domain>upanfile.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@public.zz.ha.cn</email>
	<inetnum>61.136.64.0 - 61.136.127.255</inetnum>
	<netname>UNICOM-HA</netname>
	<descr><![CDATA[China Unicom Henan province networkChina UnicomCNC Group CHINA169 Henan Province Network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>853</line>
	<id>11231833</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>6b3adcaaea07b85e151ace7ec96b9092</md5>
	<virustotal></virustotal>
	<vt_score>8/47 (17%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down2.upanfile.com:88/file/software/mass/Phison/2012/UP21_PS2251_61_3.31_OA.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.136.101.135</ip>
	<as>AS4837</as>
	<review>61.136.101.135</review>
	<domain>upanfile.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@public.zz.ha.cn</email>
	<inetnum>61.136.64.0 - 61.136.127.255</inetnum>
	<netname>UNICOM-HA</netname>
	<descr><![CDATA[China Unicom Henan province networkChina UnicomCNC Group CHINA169 Henan Province Network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>854</line>
	<id>11231832</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>855cee6979004de5700e19e9f6555c41</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=855cee6979004de5700e19e9f6555c41</virustotal>
	<vt_score>6/46 (13%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down2.upanfile.com:88/file/software/mass/Innostor/2012/InnostorMP_Tool_Package_V1.0.05.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.136.101.135</ip>
	<as>AS4837</as>
	<review>61.136.101.135</review>
	<domain>upanfile.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@public.zz.ha.cn</email>
	<inetnum>61.136.64.0 - 61.136.127.255</inetnum>
	<netname>UNICOM-HA</netname>
	<descr><![CDATA[China Unicom Henan province networkChina UnicomCNC Group CHINA169 Henan Province Network]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>855</line>
	<id>11231831</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>0548a377230fffb9cc74d187f75e09de</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0548a377230fffb9cc74d187f75e09de</virustotal>
	<vt_score>34/36 (94.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[W32%2FParite]]></virusname>
	<url><![CDATA[http://down2.cnzz.cc/soft/200812/camera_raw_4_6.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.59.56</ip>
	<as>AS4134</as>
	<review>222.186.59.56</review>
	<domain>cnzz.cc</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>856</line>
	<id>11231830</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>95653be3b7dd6a10a39b7ffedd3c9009</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=95653be3b7dd6a10a39b7ffedd3c9009</virustotal>
	<vt_score>20/36 (55.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[BDS%2FBackdoor.Gen2]]></virusname>
	<url><![CDATA[http://down1.youxiaxiazai.com/ziyuan/wannengTXTzhuanhuanqi.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.160.200.226</ip>
	<as>AS23650</as>
	<review>61.160.200.226</review>
	<domain>youxiaxiazai.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>61.160.0.0 - 61.160.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1>ns1.xgslb.net</ns1>
	<ns2>ns3.xgslb.net</ns2>
	<ns3>ns4.xgslb.net</ns3>
	<ns4>ns2.xgslb.net</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>857</line>
	<id>11231829</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>4838f0471fbd1cc89549fd24daa3c958</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4838f0471fbd1cc89549fd24daa3c958</virustotal>
	<vt_score>12/46 (26.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down1.upanfile.com:88/file/software/test/2013/CheckUDisk.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.221.21</ip>
	<as>AS4134</as>
	<review>222.187.221.21</review>
	<domain>upanfile.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>858</line>
	<id>11231828</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>2cb2cb169db19fbb17bc39ed402481ac</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=2cb2cb169db19fbb17bc39ed402481ac</virustotal>
	<vt_score>9/47 (19.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down1.upanfile.com:88/file/software/test/2011/ChipGenius_v4_00_0020_RC2.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.221.21</ip>
	<as>AS4134</as>
	<review>222.187.221.21</review>
	<domain>upanfile.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>859</line>
	<id>11231827</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>543287f12f09445a248260b6486c77bd</md5>
	<virustotal></virustotal>
	<vt_score>10/47 (21.3%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down1.upanfile.com:88/file/software/repair/2013/cf_disk_format_tool_v1017.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.221.21</ip>
	<as>AS4134</as>
	<review>222.187.221.21</review>
	<domain>upanfile.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>860</line>
	<id>11231826</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>1b5b45e1480c34d209ca7c8969b63a41</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1b5b45e1480c34d209ca7c8969b63a41</virustotal>
	<vt_score>11/47 (23.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down1.upanfile.com:88/file/software/mass/SSS/2011/3S_USB_OnCardSorting_V3.017.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.221.21</ip>
	<as>AS4134</as>
	<review>222.187.221.21</review>
	<domain>upanfile.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>861</line>
	<id>11231825</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>001587ddb0640f7817d2516375fe67c4</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=001587ddb0640f7817d2516375fe67c4</virustotal>
	<vt_score>8/35 (22.9%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down1.upanfile.com:88/file/software/mass/iCreate/2010/Usbpdx16_v0.5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.221.21</ip>
	<as>AS4134</as>
	<review>222.187.221.21</review>
	<domain>upanfile.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>862</line>
	<id>11231824</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>1b681b59b15e443d3c4543dbec3ecde3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1b681b59b15e443d3c4543dbec3ecde3</virustotal>
	<vt_score>14/46 (30.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FAgent.28672.2]]></virusname>
	<url><![CDATA[http://down1.upanfile.com:88/file/software/mass/2009/Unis_qing_hua_zi_guang_ChipsBank.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.221.21</ip>
	<as>AS4134</as>
	<review>222.187.221.21</review>
	<domain>upanfile.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>863</line>
	<id>11231823</id>
	<first>1369085901</first>
	<last>0</last>
	<md5>438fefa44a4f35ecaab38730b1544e71</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=438fefa44a4f35ecaab38730b1544e71</virustotal>
	<vt_score>6/47 (12.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://down1.upanfile.com:88/file/software/boot/2013/fbinst.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.187.221.21</ip>
	<as>AS4134</as>
	<review>222.187.221.21</review>
	<domain>upanfile.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>864</line>
	<id>11231822</id>
	<first>1369085900</first>
	<last>0</last>
	<md5>e86566c53d66e8e04d41b5c2af070307</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e86566c53d66e8e04d41b5c2af070307</virustotal>
	<vt_score>1/47 (2.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Dropper%2FWin32.Banki]]></virusname>
	<url><![CDATA[http://down1.down33.net:81/2013/soft4_2010/HB-NG2003-fxj.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>222.186.44.85</ip>
	<as>AS4134</as>
	<review>222.186.44.85</review>
	<domain>down33.net</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>222.184.0.0 - 222.191.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>865</line>
	<id>11231821</id>
	<first>1369085900</first>
	<last>0</last>
	<md5>8c5fc4d25c3ac1927687905c1a4153d5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8c5fc4d25c3ac1927687905c1a4153d5</virustotal>
	<vt_score>24/36 (66.7%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FJorik.Vernet.sp]]></virusname>
	<url><![CDATA[http://down1.cr173.com/soft3/PasswordBreaker.zip]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>61.147.118.80</ip>
	<as>AS23650</as>
	<review>61.147.118.80</review>
	<domain>cr173.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@jsinfo.net</email>
	<inetnum>61.147.0.0 - 61.147.255.255</inetnum>
	<netname>CHINANET-JS</netname>
	<descr><![CDATA[CHINANET jiangsu province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088CHINANET jiangsu province network]]></descr>
	<ns1></ns1>
	<ns2></ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>866</line>
	<id>11231818</id>
	<first>1369085900</first>
	<last>0</last>
	<md5>86b21bfc957997e21dff55f415b6f29f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=86b21bfc957997e21dff55f415b6f29f</virustotal>
	<vt_score>35/46 (76.1%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[DR%2FDelphi.Gen]]></virusname>
	<url><![CDATA[http://down1.3ddown.com/Down/2008/05B/WinTOPO.Pro.v3.3.0.0.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>219.138.163.66</ip>
	<as>AS4134</as>
	<review>219.138.163.66</review>
	<domain>3ddown.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>219.138.0.0 - 219.140.255.255</inetnum>
	<netname>CHINANET-HB</netname>
	<descr><![CDATA[CHINANET hubei province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns55.domaincontrol.com</ns1>
	<ns2>ns47.domaincontrol.com</ns2>
	<ns3>ns63.domaincontrol.com</ns3>
	<ns4>ns67.domaincontrol.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>867</line>
	<id>11231817</id>
	<first>1369085900</first>
	<last>0</last>
	<md5>b5181b3bdb88cb156d98e79d23be497a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b5181b3bdb88cb156d98e79d23be497a</virustotal>
	<vt_score>29/36 (80.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[DR%2FDelphi.Gen]]></virusname>
	<url><![CDATA[http://down1.3ddown.com/Down/2007/08/Advanced.Office.Password.Recovery.v3.14.zip]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>219.138.163.66</ip>
	<as>AS4134</as>
	<review>219.138.163.66</review>
	<domain>3ddown.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>219.138.0.0 - 219.140.255.255</inetnum>
	<netname>CHINANET-HB</netname>
	<descr><![CDATA[CHINANET hubei province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns55.domaincontrol.com</ns1>
	<ns2>ns47.domaincontrol.com</ns2>
	<ns3>ns63.domaincontrol.com</ns3>
	<ns4>ns67.domaincontrol.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>868</line>
	<id>11231816</id>
	<first>1369085900</first>
	<last>0</last>
	<md5>ec2d16d9f08ec59ce1d6d934b3202307</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ec2d16d9f08ec59ce1d6d934b3202307</virustotal>
	<vt_score>38/45 (84.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FRenaz.66565]]></virusname>
	<url><![CDATA[http://down1.3ddown.com/Crack/2008/06B/3D-Coat.v2.092-Keygen.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>219.138.163.66</ip>
	<as>AS4134</as>
	<review>219.138.163.66</review>
	<domain>3ddown.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>219.138.0.0 - 219.140.255.255</inetnum>
	<netname>CHINANET-HB</netname>
	<descr><![CDATA[CHINANET hubei province networkChina TelecomA12,Xin-Jie-Kou-Wai StreetBeijing 100088]]></descr>
	<ns1>ns55.domaincontrol.com</ns1>
	<ns2>ns47.domaincontrol.com</ns2>
	<ns3>ns63.domaincontrol.com</ns3>
	<ns4>ns67.domaincontrol.com</ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>869</line>
	<id>11231815</id>
	<first>1369085900</first>
	<last>0</last>
	<md5>034556ba33a7627de9c82c2e32d0eda2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3b46d181afa61f2d77588a7c7f682bef</virustotal>
	<vt_score>4/35 (11.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[BDS%2FHupigon.Gen]]></virusname>
	<url><![CDATA[http://down1.020pidai.com/5711/mmtv_5711_90017_online.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>116.208.7.75</ip>
	<as>AS4134</as>
	<review>116.208.7.75</review>
	<domain>020pidai.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>116.208.0.0 - 116.211.255.255</inetnum>
	<netname>CHINANET-HB</netname>
	<descr><![CDATA[CHINANET Hubei province networkData Communication DivisionChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>870</line>
	<id>11231814</id>
	<first>1369085900</first>
	<last>0</last>
	<md5>034556ba33a7627de9c82c2e32d0eda2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3b46d181afa61f2d77588a7c7f682bef</virustotal>
	<vt_score>4/35 (11.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[BDS%2FHupigon.Gen]]></virusname>
	<url><![CDATA[http://down1.020pidai.com/5711/mmtv_5711_24864_online.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>116.208.7.75</ip>
	<as>AS4134</as>
	<review>116.208.7.75</review>
	<domain>020pidai.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>116.208.0.0 - 116.211.255.255</inetnum>
	<netname>CHINANET-HB</netname>
	<descr><![CDATA[CHINANET Hubei province networkData Communication DivisionChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>871</line>
	<id>11231813</id>
	<first>1369085900</first>
	<last>0</last>
	<md5>034556ba33a7627de9c82c2e32d0eda2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3b46d181afa61f2d77588a7c7f682bef</virustotal>
	<vt_score>4/35 (11.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[BDS%2FHupigon.Gen]]></virusname>
	<url><![CDATA[http://down1.020pidai.com/3500/%E7%88%BDx%E7%89%87%E6%92%AD%E6%94%BE%E5%99%A8_3500_2598_online.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>116.208.7.75</ip>
	<as>AS4134</as>
	<review>116.208.7.75</review>
	<domain>020pidai.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>116.208.0.0 - 116.211.255.255</inetnum>
	<netname>CHINANET-HB</netname>
	<descr><![CDATA[CHINANET Hubei province networkData Communication DivisionChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>872</line>
	<id>11231791</id>
	<first>1369085899</first>
	<last>0</last>
	<md5>034556ba33a7627de9c82c2e32d0eda2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3b46d181afa61f2d77588a7c7f682bef</virustotal>
	<vt_score>4/35 (11.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[BDS%2FHupigon.Gen]]></virusname>
	<url><![CDATA[http://down.020pidai.com/%E7%88%BD%E7%89%87%E6%92%AD%E6%94%BE%E5%99%A8_5990_1_online.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>116.208.7.75</ip>
	<as>AS4134</as>
	<review>116.208.7.75</review>
	<domain>020pidai.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>anti-spam@ns.chinanet.cn.net</email>
	<inetnum>116.208.0.0 - 116.211.255.255</inetnum>
	<netname>CHINANET-HB</netname>
	<descr><![CDATA[CHINANET Hubei province networkData Communication DivisionChina Telecom]]></descr>
	<ns1>f1g1ns2.dnspod.net</ns1>
	<ns2>f1g1ns1.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>873</line>
	<id>11231789</id>
	<first>1369085899</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://dn.lq.filmwit.com/down/80l/46334.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>874</line>
	<id>11231788</id>
	<first>1369085899</first>
	<last>0</last>
	<md5>913501ca73386a1451c8ead93725133d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=913501ca73386a1451c8ead93725133d</virustotal>
	<vt_score>2/35 (5.7%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Trojan.Win32.Spy]]></virusname>
	<url><![CDATA[http://dn.j3.filmwit.com/down/5sj/39438.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>184.82.197.5</ip>
	<as>AS21788</as>
	<review>184.82.197.5</review>
	<domain>filmwit.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>nic@hostnoc.net</email>
	<inetnum>184.82.0.0 - 184.82.255.255</inetnum>
	<netname>HOSTNOC-8BLK</netname>
	<descr><![CDATA[Network Operations Center Inc. NOC PO Box 591 Scranton PA 18501-0591]]></descr>
	<ns1>f1g1ns1.dnspod.net</ns1>
	<ns2>f1g1ns2.dnspod.net</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>875</line>
	<id>11231777</id>
	<first>1369085898</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls4.rasonal.ru/output/hqebbu9awheqarqcgrecg1shafoseaeqerocgxkafbeqdrgzkkzkhbfi/00/30/f3/75/setup/chrome_update.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.193.26</ip>
	<as>AS42632</as>
	<review>146.255.193.26</review>
	<domain>rasonal.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>876</line>
	<id>11231776</id>
	<first>1369085898</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls4.pozvolo.ru/output/xebara4bg1bdwl1aulsarkebu1faa0xzwatsxvhra11qcq3d3d/02/66/f8/34/audio/farid_mamedov_evrovidenie_2013_-azerbaydjan_-.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.192.218</ip>
	<as>AS42632</as>
	<review>146.255.192.218</review>
	<domain>pozvolo.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>877</line>
	<id>11231775</id>
	<first>1369085898</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls4.pozvolo.ru/output/wnzc2jkhh8zfxshgzseg2t2hz83c99dfxjfowctn98hmlq3d3d/02/4c/3c/a8/torrent/lednikovyiy-period-4-kontinentalnyiy-dreyf-_torrentino.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.192.218</ip>
	<as>AS42632</as>
	<review>146.255.192.218</review>
	<domain>pozvolo.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>878</line>
	<id>11231774</id>
	<first>1369085898</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls4.pozvolo.ru/output/my8vk2f0dd8snti1ptr1ks50pd4vbcm2n2q9mjc2bbdi2fzg3d3d/01/b5/7d/5b/torrent/t145233.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.192.218</ip>
	<as>AS42632</as>
	<review>146.255.192.218</review>
	<domain>pozvolo.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>879</line>
	<id>11231773</id>
	<first>1369085898</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls4.pozvolo.ru/output/izwvkdvozowwj4iph47pk5tohosvvpmmjd6hii2evoif3a3d3d/01/f6/3a/e1/torrent/vihozhu_tebya_iskat_2.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.192.218</ip>
	<as>AS42632</as>
	<review>146.255.192.218</review>
	<domain>pozvolo.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>880</line>
	<id>11231772</id>
	<first>1369085898</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls4.pozvolo.ru/output/fwfhzs86onfie3x7c3o7z2a6cnbhsm14espzfhlwsnxxka3d3d/02/9a/bf/15/torrent/21_i_bolshe_tfile_ru.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.192.218</ip>
	<as>AS42632</as>
	<review>146.255.192.218</review>
	<domain>pozvolo.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>881</line>
	<id>11231762</id>
	<first>1369085898</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls4.maznari.ru/output/misegmrf35shnpmelp2fegoxfl5wer4idnm2bwmzyvr5muzq3d3d/00/e2/b3/f0/audio/sk1ter_imminence_-_bez_prava_na_oshibku_polufinal_-tyegi_krutaya.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.192.218</ip>
	<as>AS42632</as>
	<review>146.255.192.218</review>
	<domain>maznari.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>882</line>
	<id>11231746</id>
	<first>1369085897</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls4.astursu.ru/output/zxl5ftciimloewxkywl6yyn2fecjqahlsawj6y2fibglsdwbhuj4yzgkw/00/28/6f/0d/classic/samp_money_hack.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.193.26</ip>
	<as>AS42632</as>
	<review>146.255.193.26</review>
	<domain>astursu.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>883</line>
	<id>11231745</id>
	<first>1369085897</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls4.astursu.ru/output/9urq7qsxsfr76v2f38vrp8lds67h52b2brb2bvhp8plx2f2frb5vpywa2h92fqj/00/1a/dd/9e/setup/finereader-9-rus.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.193.26</ip>
	<as>AS42632</as>
	<review>146.255.193.26</review>
	<domain>astursu.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>884</line>
	<id>11231717</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>edb3e02cfb9e2b17dad8097ffd46bfff</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=edb3e02cfb9e2b17dad8097ffd46bfff</virustotal>
	<vt_score>20/47 (42.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.sholobe.ru/output/xnjy3jadg8jj2m3fwmjbwole2yplydjzympbwsddzcjz1mha852btxcir/00/18/b3/ac/setup/wmp11-windowsxp-x86-ru.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>sholobe.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>885</line>
	<id>11231716</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>ff0baaac4ffe538ab78f99481c7429c8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff0baaac4ffe538ab78f99481c7429c8</virustotal>
	<vt_score>18/46 (39.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.sholobe.ru/output/psehjw96ejewitq8oteio3snihoymcekmtoiozk6ndekltg5cmzqpdfo/00/00/08/55/archive/life_128x_vers.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>sholobe.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>886</line>
	<id>11231715</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>2d941f98b4ab08bc3b3f6b2f7d54a7f2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=2d941f98b4ab08bc3b3f6b2f7d54a7f2</virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.raswal.ru/output/zhh4fdyji2h7ymviammifnkja2l4u3rhydnqzwbpu2vomq3d3d/02/89/af/0c/torrent/legenda-17-_torrentino.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>raswal.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>887</line>
	<id>11231714</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>74b18fa09eda3d83e149300b4ff6fed1</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=74b18fa09eda3d83e149300b4ff6fed1</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.oktusyv.ru/output/sq6uqud19b62frruztr6ttpsor2fw9v66fvrwttla1u76fore2henls77n/00/35/35/da/archive/otvety-na-konturnye-karty-po-istorii-5-klass.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>oktusyv.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>888</line>
	<id>11231713</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>7091be26ec777d267b0c94c145197327</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7091be26ec777d267b0c94c145197327</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.oktusyv.ru/output/cbquefpptwqffaejdaqxdk4sfu8hbrq2fba8xdgwpaqq2fga0mp1nfcqrd/00/09/88/60/archive/dlinnyy_noj_cfg_dlya_css_v34_v75_v76_v77_v78.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>oktusyv.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>889</line>
	<id>11231712</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>9464188e565214b19c716b9cc03f051d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9464188e565214b19c716b9cc03f051d</virustotal>
	<vt_score>13/36 (36.1%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[APPL%2FDownloader.Gen]]></virusname>
	<url><![CDATA[http://dls3.natnode.ru/output/rrkytvzp6akjsqevqqkxqoi0s2bmho7kzoqmxqkqpp6kzvquqmfx5r6l7/00/1e/2c/c6/setup/sonyvegaspro.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>natnode.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>890</line>
	<id>11231711</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>ff7c681edf09c863651f19cde4217193</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff7c681edf09c863651f19cde4217193</virustotal>
	<vt_score>19/47 (40.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.mydwnloader.ru/output/72fpz972oqopw6e7p4eip9fko4olz2p2fq67jh7uvi2o7jug3d3d/01/b3/83/87/archive/tuneup-utilities-2013-13_0_3020_19-key.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>mydwnloader.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>891</line>
	<id>11231710</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>b804e090aa3e8318401d5da026fffcf0</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b804e090aa3e8318401d5da026fffcf0</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.monosti.ru/output/42f2f2f2b7gkpo2fu2f2bri52b2f85ax52fqts7v2fu72bt85efk6u2fu82bbn1li04u2b2/00/2d/6d/8b/setup/mod-40_tonn-0.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>monosti.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>892</line>
	<id>11231709</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls3.maznari.ru/output/bxfxdt8qkmfya2xry2ord3aqymbxwn1oatpjbglgwmxhoa3d3d/02/48/4f/05/torrent/skachat-3d-instruktor-2-2-7-crack-_torrentino.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.192.218</ip>
	<as>AS42632</as>
	<review>146.255.192.218</review>
	<domain>maznari.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>893</line>
	<id>11231708</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls3.maznari.ru/output/6pt08lqvr2bt37unu5u2bu8vwv52bx032fjt7l2fm6ezl32bnkvq3d3d/02/49/13/80/torrent/krepkiy-oreshek-5-horoshiy-den-chtobyi-umeret-_torrentino.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.192.218</ip>
	<as>AS42632</as>
	<review>146.255.192.218</review>
	<domain>maznari.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>894</line>
	<id>11231707</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls3.maznari.ru/output/62ff387msrof07ert5eyt8fas5ob33pvu77zl6u2fm3ornvg3d3d/01/d0/fb/83/disk/minecraft_151.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.192.218</ip>
	<as>AS42632</as>
	<review>146.255.192.218</review>
	<domain>maznari.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>895</line>
	<id>11231706</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>a6b7a07f9113ecc2fc176a0d240009ac</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a6b7a07f9113ecc2fc176a0d240009ac</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.ljufawi.ru/output/xtra3psbgcrl2s2fhwsrzwidc24hjy9rxyshzwmlbz8rx1spc8z2rx8qt/00/2c/ff/ae/archive/xvm-0.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>ljufawi.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>896</line>
	<id>11231705</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>82ac9d5e47e9f74d7407c4818c33645c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=82ac9d5e47e9f74d7407c4818c33645c</virustotal>
	<vt_score>20/47 (42.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.ljufawi.ru/output/wd3d2zoghs3m3cjaxc3ex4fb3ibozn32zcbex8xgym320ctf9pqwwm2u/00/26/ac/a9/archive/uopilot2.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>ljufawi.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>897</line>
	<id>11231704</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>a414e84d9fa8e7d3e20e29d56e9f2901</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a414e84d9fa8e7d3e20e29d56e9f2901</virustotal>
	<vt_score>17/46 (37%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.faylazagruzka.ru/output/v0tltwuqeftiuvzrwvartuoqwfplyedsuwbzvlnayfzbag3d3d/01/76/93/3f/torrent/www_torrents_kg_festival_avtoradio_zolotye_hity_80-90-h_v_sovrem.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>faylazagruzka.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>898</line>
	<id>11231703</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>0d42ce0488817b03ab62e925c7731b8a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0d42ce0488817b03ab62e925c7731b8a</virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.excelta.ru/output/osuliwt2bfjumpzg2fnz52fiyr2bnjqldik8pw43od00djg1ba3d3d/02/bb/b7/51/torrent/ten_inch_hero.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>excelta.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>899</line>
	<id>11231702</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>f22e7e2b1b7bbbb890010c1fbc639690</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f22e7e2b1b7bbbb890010c1fbc639690</virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.excelta.ru/output/misegmrf35shnpmelp2fegoxfl5wer4idnm2bwmzyvr5muzq3d3d/01/9a/31/f0/torrent/minecraft_1_2_5_2012_pc_rus.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>excelta.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>900</line>
	<id>11231701</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>f4be12c28a99f08369d479808b7251e5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f4be12c28a99f08369d479808b7251e5</virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.excelta.ru/output/ldawnh5rayazki0qiitqnjfriyewgzwpkhsilsghgy0geq3d3d/02/b9/3d/44/torrent/bezdna_tfile_ru.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>excelta.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>901</line>
	<id>11231700</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>ae38885f17d31dd8a3c419cf840cd6c9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ae38885f17d31dd8a3c419cf840cd6c9</virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.excelta.ru/output/i5exk9nmzieujyqnhyznkzbmhiaxvjuoj9yfio2bgviqh3g3d3d/02/bb/87/e3/torrent/9652_peter_pan.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>excelta.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>902</line>
	<id>11231699</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>579a7fe1074d397042f2ef5532e95423</md5>
	<virustotal></virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.excelta.ru/output/emzmyig9pxzlfht8dh08ygc9dxdmtwp2ffi10e353txt2lw3d3d/02/bb/8c/12/torrent/lyudi-protiv-zombi-_torrentino.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>excelta.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>903</line>
	<id>11231698</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>14e822d5cd4d732cd20aedaa23989356</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=14e822d5cd4d732cd20aedaa23989356</virustotal>
	<vt_score>9/29 (31%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[APPL%2FDownloader.Gen]]></virusname>
	<url><![CDATA[http://dls3.excelta.ru/output/6fx18buurux272bjv52b6v82fsu5ut13vns7b7n6o3k3ujlva3d3d/01/e7/4c/81/torrent/assassin_s_creed_brotherhood_2011_pc_skachat_igry_cherez_torrent.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>excelta.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>904</line>
	<id>11231697</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls3.enovac.ru/output/rvlzxrccakliwuxequlaqwnfwajksflysujaq0fctelyvubbch4srekq/00/00/47/2d/setup/skypesetup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.193.26</ip>
	<as>AS42632</as>
	<review>146.255.193.26</review>
	<domain>enovac.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>905</line>
	<id>11231696</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>982038abe716f34b3f44112872790d76</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=982038abe716f34b3f44112872790d76</virustotal>
	<vt_score>14/46 (30.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.ekbonfi.ru/output/0mzmyikxl9zdznnr1nzp1pbkzzff3czn3nfp1ttx2dznwnxu54uh0dyf/00/00/11/b8/torrent/minecraft_hd.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>ekbonfi.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>906</line>
	<id>11231695</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>c3b4c047be990b861574beab93f72420</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c3b4c047be990b861574beab93f72420</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.butega.ru/output/vuljtqcsellysvxuuvlkuxnpsbjaweliwvjku1fsxflirvbryg4cvfka/00/36/9f/3d/archive/studetbank.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>butega.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>907</line>
	<id>11231694</id>
	<first>1369085896</first>
	<last>0</last>
	<md5>ba9397574190843e70d258f0d25b4bb3</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ba9397574190843e70d258f0d25b4bb3</virustotal>
	<vt_score>20/47 (42.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.bakerke.ru/output/yntu0jqpj8txzsnoxs2bo0twpx8xu2f9jnzj2fgyczf2f8nenq3d3d/00/d8/bc/a0/android/viber_besplatnye.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>bakerke.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>908</line>
	<id>11231693</id>
	<first>1369085895</first>
	<last>0</last>
	<md5>01701bfd0a0d9328f6cd334a3c95cee5</md5>
	<virustotal></virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.bakerke.ru/output/v0tltwuqeftiuvzrwvartuoqwfplyedsuwbzvlnayfzbag3d3d/02/47/fe/3f/torrent/torrent-3-3-build-29126-stable-pc-_torrentino.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>bakerke.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>909</line>
	<id>11231692</id>
	<first>1369085895</first>
	<last>0</last>
	<md5>2129efa90b796893dd180a142b4def51</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=2129efa90b796893dd180a142b4def51</virustotal>
	<vt_score>17/46 (37%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.bakerke.ru/output/kdq0mhpvbyq3likuji9umjvvjyu0hzgtlh8mkswlhykkfq3d3d/02/ba/68/40/audio/agata_kristi_and_bi-2_and_lyumen_-_a_my_ne_angely_paren_zaycev_n.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>bakerke.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>910</line>
	<id>11231691</id>
	<first>1369085895</first>
	<last>0</last>
	<md5>cfb748cdf761a1d42d335260c2de99a4</md5>
	<virustotal></virustotal>
	<vt_score>16/46 (34.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.bakerke.ru/output/hgicbkxzwribgb8yeblybanzermckq4bgkkqhxotkr8ssw3d3d/02/ba/a9/76/audio/yarmak_-_detskaya_obida_zaycev_net.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>bakerke.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>911</line>
	<id>11231690</id>
	<first>1369085895</first>
	<last>0</last>
	<md5>aee28c5d53e6c7d29182899c091efbe9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=aee28c5d53e6c7d29182899c091efbe9</virustotal>
	<vt_score>19/47 (40.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.azsonic.ru/output/x0ndrw0ygfnawv5zuvgzruiyufjdae9awwhrxltsaf5tcg3d3d/02/b9/d4/37/audio/nyusha_-_chudo_zaycev_net.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>azsonic.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>912</line>
	<id>11231689</id>
	<first>1369085895</first>
	<last>0</last>
	<md5>3db208e83a92b9071406fcc3c9b0d065</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3db208e83a92b9071406fcc3c9b0d065</virustotal>
	<vt_score>17/47 (36.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.azsonic.ru/output/wt7e2pcfhc7dxmpezmwe2n2bfzc2fe9dlhxpxmw8bp9cpolw3d3d/00/9a/fe/aa/torrent/devushka_s_tatuirovkoi_drakona_tfile_ru.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>azsonic.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>913</line>
	<id>11231688</id>
	<first>1369085895</first>
	<last>0</last>
	<md5>633fbc28f77ce140753be109c057a784</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=633fbc28f77ce140753be109c057a784</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.azsonic.ru/output/vkpktgqrevpjufdqwfeqtesrwvtkyuztugfyv1jbyvdaaw3d3d/02/b9/c9/3e/audio/g-nise_i_denis_rider_-_bez_lzhi_zaycev_net.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>azsonic.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>914</line>
	<id>11231687</id>
	<first>1369085895</first>
	<last>0</last>
	<md5>6e22d339157e0dd7e23913d78f9a6b23</md5>
	<virustotal></virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.azsonic.ru/output/gz2dmdpgxo2eh4chj4bhm5zgjoydtpgehdapgiwmtocn1a3d3d/02/b9/7c/e9/audio/tarkan_-_simarik_zaycev_net.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>azsonic.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>915</line>
	<id>11231686</id>
	<first>1369085895</first>
	<last>0</last>
	<md5>bd98a3af368b8481038babc6a668ad67</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=bd98a3af368b8481038babc6a668ad67</virustotal>
	<vt_score>14/46 (30.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.azsonic.ru/output/axv1ctsulmv2b2hvz24vc3quzmr1xnlsbt5nag1kxmhlpa3d3d/02/44/cb/01/torrent/bigpirat_ru_gta_4.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>azsonic.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>916</line>
	<id>11231685</id>
	<first>1369085895</first>
	<last>0</last>
	<md5>2f8d4b9375b9daf06fad9c21297321cb</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=2f8d4b9375b9daf06fad9c21297321cb</virustotal>
	<vt_score>17/47 (36.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.azsonic.ru/output/6pt08lqvr2bt37unu5u2bu8vwv52bx032fjt7l2fm6ezl32bnkvq3d3d/02/88/a5/80/torrent/dead_to_rights_reckoning_2005_rus_pbp_psp_skachat_igry_cherez_to.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>azsonic.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>917</line>
	<id>11231684</id>
	<first>1369085895</first>
	<last>0</last>
	<md5>28e69c024352293d5c60a146cbfd818d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=28e69c024352293d5c60a146cbfd818d</virustotal>
	<vt_score>19/47 (40.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.azsonic.ru/output/2mtewiqfn9th3tne1t2bewswf19xe78jd3i2fw2dzv79nujq3d3d/01/ad/d8/b0/archive/nero_2012_20platinum_2012_0_020_20patch_20_2b_20key_20_7bcyclono.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>azsonic.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>918</line>
	<id>11231683</id>
	<first>1369085895</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls3.astursu.ru/output/hqebbu9awheqarqcgrecg1shafoseaeqerocgxkafbeqdrgzkkzkhbfi/00/30/f3/75/setup/chrome_update.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.193.26</ip>
	<as>AS42632</as>
	<review>146.255.193.26</review>
	<domain>astursu.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>919</line>
	<id>11231682</id>
	<first>1369085895</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls3.astursu.ru/output/5vr62frshoerr2bu2fn4ur54kd82b6hp62frr6uh54olh72brr9upi0b2x52bqz/00/32/2e/8e/video/video.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.193.26</ip>
	<as>AS42632</as>
	<review>146.255.193.26</review>
	<domain>astursu.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>920</line>
	<id>11231681</id>
	<first>1369085895</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls3.ajtovos.ru/output/ipawktjnzyavjiumhi3mkjfnhyewvzqpjt2ei46hvyug3w3d3d/00/e9/8c/e2/audio/zhanna_friske-navsegda_chinkong_production_mix.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.192.218</ip>
	<as>AS42632</as>
	<review>146.255.192.218</review>
	<domain>ajtovos.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>921</line>
	<id>11231680</id>
	<first>1369085895</first>
	<last>0</last>
	<md5>a1b57d280a6e433bcd2f4811962aa1d4</md5>
	<virustotal></virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.ahpeno.ru/output/1cnjzyesktnyydzu0dnk05ppyjla2mni2dlk09hs3nnixddr4o6c1nma/00/07/0d/bd/setup/chitx301.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>ahpeno.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>922</line>
	<id>11231679</id>
	<first>1369085895</first>
	<last>0</last>
	<md5>a0850a51a1a30e0cb6f83bc7fe449d52</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a0850a51a1a30e0cb6f83bc7fe449d52</virustotal>
	<vt_score>15/46 (32.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.afrijen.ru/output/wereqaofh1rhxllevl8eqkufv1veb0hdxa9wwvxvb1ludq3d3d/02/bb/37/30/audio/grigoriy_leps_-_ya_schastlivyy_zaycev_net.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>afrijen.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>923</line>
	<id>11231678</id>
	<first>1369085895</first>
	<last>0</last>
	<md5>3e5907743bcf815646b0d01fd559f800</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3e5907743bcf815646b0d01fd559f800</virustotal>
	<vt_score>19/47 (40.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.afrijen.ru/output/uqamouj92fbalvlu8tl38okf9tbemjaq2fvu20u763jbu27w3d3d/02/b9/c6/d2/archive/alcohol120_20-24-713.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>afrijen.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>924</line>
	<id>11231677</id>
	<first>1369085895</first>
	<last>0</last>
	<md5>cf944185fd566ab58426a96472ce32f8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=cf944185fd566ab58426a96472ce32f8</virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.afrijen.ru/output/misegmrf35shnpmelp2fegoxfl5wer4idnm2bwmzyvr5muzq3d3d/00/db/94/f0/torrent/the_sims_2_sims_2_2004_rus.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>afrijen.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>925</line>
	<id>11231676</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>d82ffe2ccb3bd3419c39ac87a66aed3b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d82ffe2ccb3bd3419c39ac87a66aed3b</virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.afrijen.ru/output/gwcha0lcxbcehrodfrxdaqzcfbyhlaseh0wvgh8wlboxtg3d3d/02/bb/6c/73/audio/23_45_and_5ivesta_family_-_zdravstvuy_milyy_kak_dela_ya_skuchayu.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>afrijen.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>926</line>
	<id>11231675</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>4385493c6d605d8c016f6e01cf5f2c0f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4385493c6d605d8c016f6e01cf5f2c0f</virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.afrijen.ru/output/dghobcyzm3hrcnvyenmybmkze3loq2rxccn6dxb5q3v4iq3d3d/02/bb/6c/1c/audio/instrumental_naya_muzika_dlya_svad_bi-shostakovich.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>afrijen.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>927</line>
	<id>11231674</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>0a6bf3d2e10adc761bb07da641727c68</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0a6bf3d2e10adc761bb07da641727c68</virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.afrijen.ru/output/1srkzosrkdrj0nfq2ngqzmur2dvk4cbt0ohy19lb4dfagw3d3d/00/db/dd/be/torrent/sony_vegas_pro_11_0_2012_rus.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>afrijen.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>928</line>
	<id>11231673</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>85ab2ba89ced55d97a8d0906e9665e1b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=85ab2ba89ced55d97a8d0906e9665e1b</virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.abdoze.ru/output/vuljtqcsellku1rtw1itt0gswlhjykvquqjbvffyylrzaa3d3d/00/9d/37/3d/torrent/duhless_tfile_ru_mkv.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>abdoze.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>929</line>
	<id>11231672</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>0b8ce23baba61f0024be0aa6cd898124</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0b8ce23baba61f0024be0aa6cd898124</virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.abdoze.ru/output/uu1nsqmwfl1ov1bxx1yxs0wwxlxnzkfuvqzfufvczlbdba3d3d/02/4c/db/39/torrent/tomb_raider_2013_rs.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>abdoze.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>930</line>
	<id>11231671</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>0e229f0008aedffd9ed488390a175382</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0e229f0008aedffd9ed488390a175382</virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.abdoze.ru/output/prq6vvth4aq5okegqkhgvlvhqau6kbajovgop6krkaeq8w3d3d/02/bb/12/ce/audio/comedoz_-_potseluy_pryamo_v_serdtse_zaycev_net.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>abdoze.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>931</line>
	<id>11231670</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>fc4a35dfe9310068fce9cde5b8340f51</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=fc4a35dfe9310068fce9cde5b8340f51</virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.abdoze.ru/output/n4odh83y2joamz6zkzjzhylykjkdqi2bam8irnpusqj6tyg3d3d/02/ba/e9/f7/audio/afrodita_-_valera_zaycev_net.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>abdoze.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>932</line>
	<id>11231669</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>a7f0dc291b739e4674083fc1bff2adbf</md5>
	<virustotal></virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls3.abdoze.ru/output/cw1tasm2nn1ud3b3f3y3a2w2fnxtrmf0dsz2fchv8rnb9ja3d3d/01/80/45/19/setup/dxwebsetup.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>abdoze.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>933</line>
	<id>11231668</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>60acddc30c03d83eb15e45ca4becd723</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=60acddc30c03d83eb15e45ca4becd723</virustotal>
	<vt_score>17/46 (37%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Win32%2FCryptor]]></virusname>
	<url><![CDATA[http://dls3.abdoze.ru/output/62ff387msrof07ert5eyt8fas5ob33pvu77zl6u2fm3ornvg3d3d/01/d0/fb/83/disk/minecraft_151.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>abdoze.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>934</line>
	<id>11231667</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>a2185b8b4a088835a009c0eddd1799d8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a2185b8b4a088835a009c0eddd1799d8</virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.zdokhala.ru/output/zxl5ftciiml6y2rja2ijf3giamh5unvgytjrzgfoumrpma3d3d/02/b9/50/0d/torrent/corel_draw_x4_rus.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>zdokhala.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>935</line>
	<id>11231666</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>12db2cc48185c9dbae548fa1414a5ceb</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=12db2cc48185c9dbae548fa1414a5ceb</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.zdokhala.ru/output/ztls1pyjiclrym2fiwmmi1nojwcps2bd7lypnaz8rd2bc2fcmw3d3d/02/89/3a/a6/torrent/windows_7_x64_ultimate_with_program_v_1_5_13_by_romeo1994_2013_r.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>zdokhala.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>936</line>
	<id>11231665</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>b9e4e2ccbac5cdee3ffbb92c58fb7f9e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b9e4e2ccbac5cdee3ffbb92c58fb7f9e</virustotal>
	<vt_score>19/47 (40.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.zdokhala.ru/output/tqqqrutx8bqpslewulhwrkvxubuqgaazsug4t7k7gbe64w3d3d/02/b9/4d/de/archive/lea_2009-04_virkkausideoita.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>zdokhala.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>937</line>
	<id>11231664</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>8127d91be121272e9727975ee21b9505</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8127d91be121272e9727975ee21b9505</virustotal>
	<vt_score>17/47 (36.2%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.zdokhala.ru/output/egrkyco2fp3rnfnl2bdn82bymu2fd3vkt2h9fc92exx1t3l0lq3d3d/01/01/97/10/torrent/combatarms_exe_tfile_ru_1.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>zdokhala.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>938</line>
	<id>11231663</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>46b71ee9d18313f8568c04e4433ec70a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=46b71ee9d18313f8568c04e4433ec70a</virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.zdokhala.ru/output/dghobcyzm3hrcnvyenmybmkze3loq2rxccn6dxb5q3v4iq3d3d/00/ec/74/1c/audio/johnyboy_feat.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>zdokhala.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>939</line>
	<id>11231662</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>8d873b097160844251d2b54dbba09278</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8d873b097160844251d2b54dbba09278</virustotal>
	<vt_score>19/47 (40.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.tsovkakha.ru/output/4f392bbompu32b52bdn72ban2b2fym7uz91vhk5bbv4oxs1udtta3d3d/02/ba/0b/89/audio/andrea_-_nay_velik_zaycev_net.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>tsovkakha.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>940</line>
	<id>11231661</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>5d175c12db5480beee05ecf97b1b2a0b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5d175c12db5480beee05ecf97b1b2a0b</virustotal>
	<vt_score>14/46 (30.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.ronilka.ru/output/nskplwdycjk4ktw0mtkqm3mvkhi6ockcotiqmzeypdkcjtaxam5indlg/00/1f/1c/5d/torrent/fotoshd_4_t-t_t_4_t_bf_bf_bb_a_l.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>ronilka.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>941</line>
	<id>11231660</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>3a6b0c2475faab03db29488c08e26e00</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3a6b0c2475faab03db29488c08e26e00</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.ronilka.ru/output/eawmcejxvxwddbkrfbwpflykdvcfhqwnhbcpfhqxgrwnabuuj0therxf/00/35/43/78/archive/gdz-bogdanova-rabochaya-tetrad-7-klass-2-chast-otvety-onlayn.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>ronilka.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>942</line>
	<id>11231659</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>1674ec1e0c9fdcbbed675d0368ad675a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1674ec1e0c9fdcbbed675d0368ad675a</virustotal>
	<vt_score>14/46 (30.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.raswal.ru/output/ocqkigp2ffzqnpjk2bnj92biiv2fnzukdyg9pg82otw1dzk0bq3d3d/02/49/f5/50/torrent/ya-tozhe-hochu-r5-original-rus-_torrentino.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>raswal.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>943</line>
	<id>11231658</id>
	<first>1369085894</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls2.rasonal.ru/output/iz82fo3fkzc8upyoijy88jwu5pmqslj8ulyq8jsckki8umyynfhh0ii92/00/31/01/4b/archive/timelesstheforgottentown_ce_key.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.193.26</ip>
	<as>AS42632</as>
	<review>146.255.193.26</review>
	<domain>rasonal.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>944</line>
	<id>11231657</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls2.rasonal.ru/output/eawmcejxvxwddbkrfbwpflykdvcfhqwnhbcpfhqxgrwnabuuj0therxf/00/25/9f/78/torrent/3454torrent.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.193.26</ip>
	<as>AS42632</as>
	<review>146.255.193.26</review>
	<domain>rasonal.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>945</line>
	<id>11231656</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls2.rasonal.ru/output/8u7u6qc1tf72f7vvz9v7t9lto77x92f2b7f2fvxt9pb12b2f7f4vf2xaml82f6n/00/0d/20/9a/setup/lovivkontakte.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.193.26</ip>
	<as>AS42632</as>
	<review>146.255.193.26</review>
	<domain>rasonal.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>946</line>
	<id>11231655</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>f8ee7dd961fe58fe2020aa7dac07606d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f8ee7dd961fe58fe2020aa7dac07606d</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.natnode.ru/output/nioqlmrxcto7kj83mjopmhask3e5oyobojepmdixpzobjjmyaw1hnzpj/00/34/21/5e/setup/abbyy_finereader11.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>natnode.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>947</line>
	<id>11231654</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>a4baa0e33fc3df23e5f0f2358a760880</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a4baa0e33fc3df23e5f0f2358a760880</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.natnode.ru/output/8ozs6kk3t2fz97pnx9pzv9rbq7bf2f2fezh2fpfv9vt32bfzh4px0x6un8fyl/00/08/58/98/archive/borderlands_2_save.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>natnode.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>948</line>
	<id>11231653</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>b60f97ccf5eada4a2d896b74e8578dd9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b60f97ccf5eada4a2d896b74e8578dd9</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.mydwnloader.ru/output/z3t7fzugigt4ywzhawahfxogagp7uhdiyzbpzmnqugzrmg3d3d/02/b8/b4/0f/archive/tuneup_utilities_2013_13_0_3020_7_final_repack.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>mydwnloader.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>949</line>
	<id>11231652</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>28ef4fa604d37a6cecbd85a249405d1a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=28ef4fa604d37a6cecbd85a249405d1a</virustotal>
	<vt_score>14/46 (30.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.monosti.ru/output/ydxv0zuojsxe1cdizcxwz42ft1i7gxnx2bxc7wz83owmx2b2czn2fpkeymwc/00/00/6e/a1/torrent/gta-san-andreas-multiplayer-v0.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>monosti.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>950</line>
	<id>11231651</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>13edc2f4d2dac9d2707fb249e55a970c</md5>
	<virustotal></virustotal>
	<vt_score>19/47 (40.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.monosti.ru/output/nokchszz2zktgpefmpkbmnieg9mrk4kpkpmbmjqzl5kpjpuaqcxjn5ll/00/2c/96/f6/archive/file--------------_----.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>monosti.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>951</line>
	<id>11231648</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls2.loadservice.ru/output/uqamouj92fba3pro7vralvpygp2f21t6antr2lvl69s7anqr2b2bjehtu7bv/00/2e/1e/d2/classic/n7.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.193.26</ip>
	<as>AS42632</as>
	<review>146.255.193.26</review>
	<domain>loadservice.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>952</line>
	<id>11231647</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>e3bbf4880a9afa721af8fdc450b68959</md5>
	<virustotal></virustotal>
	<vt_score>19/46 (41.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.ljufawi.ru/output/kzc3m3lsbccmnyiqlyc0lw0xnmwkjjccjyw0ls8siiccoy4vhhb8kid2b/00/03/ed/43/classic/nero-7_11.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>ljufawi.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>953</line>
	<id>11231646</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>1f8d36bf0902b0addc4f77475f00aac2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1f8d36bf0902b0addc4f77475f00aac2</virustotal>
	<vt_score>21/47 (44.7%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.faylazagruzka.ru/output/3mdaxi6bm9dd2t3a0tuaxsgb09ha68zz2ivs3djr693qiq3d3d/02/b8/fc/b4/archive/2292_zolotaya_kollekciya_54_2013.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>faylazagruzka.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>954</line>
	<id>11231645</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>fe8f26688e33c2ae4bdd1ffa0ce3216b</md5>
	<virustotal></virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.excelta.ru/output/xkjcrgwzgvjbwf9yufkyremzuvncau5bwglqx1ptav9scw3d3d/01/ba/cd/36/audio/bahti-pesnya_pro_detdomovskih_detey.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>excelta.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>955</line>
	<id>11231644</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>6bcd482c8c61b7f9910a4fe0b5ebbc5f</md5>
	<virustotal></virustotal>
	<vt_score>14/47 (29.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.excelta.ru/output/vqkipuz52bbkhul2b4sln4pkp5sboiia67uumwv7qzib2by6w3d3d/00/01/72/d6/torrent/autocad_2012_2011_rus_seedoff_net.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>excelta.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>956</line>
	<id>11231643</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>cdc6929e1a45de8de4d377527212b417</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=cdc6929e1a45de8de4d377527212b417</virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.excelta.ru/output/oly8upln56y2fpqgmrqfmur3nr628l7clppeuoastl6gs9q3d3d/02/bb/bf/c8/audio/nicki_minaj_ft_2_chainz_-_beez_in_the_trap_dirty_zaycev_net.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>excelta.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>957</line>
	<id>11231642</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>2d15e422344e39c5a1b22b825ed4a236</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=2d15e422344e39c5a1b22b825ed4a236</virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.excelta.ru/output/oly8upln56y2fpqgmrqfmur3nr628l7clppeuoastl6gs9q3d3d/02/48/2f/c8/torrent/gta-vice-city-_torrentino.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>excelta.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>958</line>
	<id>11231641</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>05aec6c1eb62288042c80d9ca9235d8f</md5>
	<virustotal></virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.excelta.ru/output/my8vk2f0dd8snti1ptr1ks50pd4vbcm2n2q9mjc2bbdi2fzg3d3d/02/bb/8c/5b/torrent/word2007_exe.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>excelta.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>959</line>
	<id>11231640</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>7c39d1424516bbaf7e340e399ca66729</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7c39d1424516bbaf7e340e399ca66729</virustotal>
	<vt_score>19/47 (40.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.excelta.ru/output/gwcha0lcxbcehrodfrxdaqzcfbyhlaseh0wvgh8wlboxtg3d3d/02/78/47/73/archive/dr_web.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>excelta.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>960</line>
	<id>11231639</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>637b5bbf7db341a957d716b6e87d78b9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=637b5bbf7db341a957d716b6e87d78b9</virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.excelta.ru/output/fgokdkrrurojebcqgbfqdatrgrskiqytekeyfxibircaqw3d3d/02/bb/89/7e/audio/viktoriya_dayneko_-_dyshi_zaycev_net.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>excelta.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>961</line>
	<id>11231638</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>3484920715ef9ad110a39104480b5ba1</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3484920715ef9ad110a39104480b5ba1</virustotal>
	<vt_score>19/47 (40.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.ekbonfi.ru/output/lymjjcfs0pmyizyukzmkk9opinkamimimzkkk5gsnjmihzcros7cljna/00/2b/cf/fd/archive/0844000005.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>ekbonfi.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>962</line>
	<id>11231637</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>84cd1d578a2ad2555a8fd871b382b261</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=84cd1d578a2ad2555a8fd871b382b261</virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.ekbonfi.ru/output/ij42bonblzs4vpisjji49jgq4p2utlz4vliu9jcylky4vmicmfxl1iy53/00/36/5b/4a/setup/cheatskopatelonline11.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>ekbonfi.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>963</line>
	<id>11231636</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>35dc190e6add94a85f3bebcd474f0fcb</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=35dc190e6add94a85f3bebcd474f0fcb</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.ekbonfi.ru/output/62ff387msrofm92blq72bf07a3x9qzk5vfc52bz07e2fs4ufc2b2b7v3lc86ue2b/00/13/a9/83/archive/archive.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>ekbonfi.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>964</line>
	<id>11231635</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>92c209afd87892da0107b5537f0ccbe5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=92c209afd87892da0107b5537f0ccbe5</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.dwnloady.ru/output/2fuli5qy5uflh2bp2f48pm45oo58fpiye772bqnw2f2frzyf2fyqw3d3d/01/ed/6e/96/torrent/ukraschenie_blitskriga_ukraschenie_blitskriga_tfile_ru.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>dwnloady.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>965</line>
	<id>11231634</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>fa1b4170923336f020eef8f5e8539c74</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=fa1b4170923336f020eef8f5e8539c74</virustotal>
	<vt_score>19/46 (41.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.butega.ru/output/tvfrvr8kckfauurmsufsswtxuapcqff6qupss0lkref6xuhjehyateey/00/04/d7/25/archive/topfigur.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>butega.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>966</line>
	<id>11231633</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>71778cb63441e62a8a93d611da7d47d7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=71778cb63441e62a8a93d611da7d47d7</virustotal>
	<vt_score>20/47 (42.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.butega.ru/output/ky2nicpw1p2cjziqlz2ol9eljnaeni2mnzaol5wwmj2mgzsvpsrgkj3e/00/19/6c/f9/classic/java_dlya_minecraft.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>butega.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>967</line>
	<id>11231632</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>1543272f78681b99bd45ecb70e8ae1ad</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1543272f78681b99bd45ecb70e8ae1ad</virustotal>
	<vt_score>22/47 (46.8%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.butega.ru/output/ktu1mxtubiuknsaolsu2l28zng4mjduejs42ly0uicueoswthnj2bkcv8/00/00/01/41/torrent/microsoft_office_2010.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>butega.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>968</line>
	<id>11231631</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>7ee638a664d453a444d812a0215c8073</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=7ee638a664d453a444d812a0215c8073</virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.bakerke.ru/output/vuljtqcsellku1rtw1itt0gswlhjykvquqjbvffyylrzaa3d3d/02/b8/78/3d/torrent/taymless_rubinovaya_kniga_rubinrot_tfile_ru.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>bakerke.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>969</line>
	<id>11231630</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>4d105c4cfd08f347ccc3b3d1db7521e8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=4d105c4cfd08f347ccc3b3d1db7521e8</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.bakerke.ru/output/v6ojp2b342blogub65sbj5pal4slkjik2b6u2bixvruyil6z6g3d3d/01/a9/14/d7/torrent/minecraft-v-151-2012-pc-portable.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>bakerke.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>970</line>
	<id>11231629</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>466a61e903bd0f0176726946e806c441</md5>
	<virustotal></virustotal>
	<vt_score>19/46 (41.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.bakerke.ru/output/lymjjcfs0pmkk5stm5ltj4jsmpijoowqkckbljgyopszwa3d3d/02/ba/91/fd/archive/qeo_marks.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>bakerke.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>971</line>
	<id>11231628</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>be1fb61a1d02f8b3e7dcd682865d3c59</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=be1fb61a1d02f8b3e7dcd682865d3c59</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.bakerke.ru/output/kiymimlx15yplpgwnpfwio3xn52mp4cvlmeekzsdp5gcxq3d3d/02/ba/98/f8/audio/laurita_-_ya_drugaya_zaycev_net.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>bakerke.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>972</line>
	<id>11231627</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>21f3b96d7e962885eafe37eedb2c1dbe</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=21f3b96d7e962885eafe37eedb2c1dbe</virustotal>
	<vt_score>19/47 (40.4%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.bakerke.ru/output/cbquefpptwqxdgkobg9oehvpbwuupxgndf8gcqwfpwkexq3d3d/01/b3/3f/60/archive/mw-2010-x64-ru-packed.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>bakerke.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>973</line>
	<id>11231626</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>b159e744d243306cd81df428254e7125</md5>
	<virustotal></virustotal>
	<vt_score>20/47 (42.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.bakerke.ru/output/ar0dgvngrg0ebwahdwzhgxxgdgwdnheebvypaaumnganva3d3d/00/c5/1f/69/classic/mod_smart_moving_dlya_minecraft_1_4.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>bakerke.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>974</line>
	<id>11231625</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>ff0f55f84cf1f3a069e82f020d7875e9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ff0f55f84cf1f3a069e82f020d7875e9</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.bakerke.ru/output/8e3t6ao2tv3u92fd32f2fa362by22fvztxuh09ab2f8px8xvd9pa3d3d/02/b7/a4/99/torrent/temnije_krugi_tfile_ru.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>bakerke.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>975</line>
	<id>11231624</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>26915f243111eaa638edc89bab87cb41</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=26915f243111eaa638edc89bab87cb41</virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.bakerke.ru/output/4pz82blknp2bz2f5uhm7uem2bv2n72b3812fdl5lfu4ett12bhstq3d3d/02/ba/8f/88/torrent/daemon_tools_lite_4_40_1_exe.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>bakerke.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>976</line>
	<id>11231622</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>47a12e301f32bcf89402950c33366492</md5>
	<virustotal></virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.azsonic.ru/output/wt7e2pcfhc7dxmpezmwe2n2bfzc2fe9dlhxpxmw8bp9cpolw3d3d/02/b9/a0/aa/audio/gummy_bear_-_ya_mishka_gumi_ber_zaycev_net.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>azsonic.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>977</line>
	<id>11231621</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>8a6bfb7ed703c8cec6d1d14cd27f90e2</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8a6bfb7ed703c8cec6d1d14cd27f90e2</virustotal>
	<vt_score>17/36 (47.2%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[APPL%2FDownloader.Gen]]></virusname>
	<url><![CDATA[http://dls2.azsonic.ru/output/uu1nsqmwfl1ov1bxx1yxs0wwxlxnzkfuvqzfufvczlbdba3d3d/02/b9/7d/39/archive/cfpro_18_05_13.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>azsonic.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>978</line>
	<id>11231620</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>33f7a055c1655f30d0c9f4563c5d15fd</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=33f7a055c1655f30d0c9f4563c5d15fd</virustotal>
	<vt_score>13/35 (37.1%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[APPL%2FDownloader.Gen]]></virusname>
	<url><![CDATA[http://dls2.azsonic.ru/output/uu1nsqmwfl1ov1bxx1yxs0wwxlxnzkfuvqzfufvczlbdba3d3d/01/86/f8/39/torrent/torrent_319752.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>azsonic.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>979</line>
	<id>11231619</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>a73724d463b5c4a69c4a9ab6a34ae74e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a73724d463b5c4a69c4a9ab6a34ae74e</virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.azsonic.ru/output/sq6uqud19b6ttlo0vlx0qk2f1vb2buhak3tuw8s7a2fhbo2b5w3d3d/01/7e/bb/da/torrent/policejskaja_akademija_7-_missija_v_moskvu_-_police_academy_7-_m.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>azsonic.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>980</line>
	<id>11231618</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>8ff860b0ac3cdfc096b4a82dc28fb1a4</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8ff860b0ac3cdfc096b4a82dc28fb1a4</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.azsonic.ru/output/n4odh83y2joamz6zkzjzhylykjkdqi2bam8irnpusqj6tyg3d3d/02/b9/a5/f7/audio/charlie_parker_-_hot_house_zaycev_net.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>azsonic.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>981</line>
	<id>11231617</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls2.astursu.ru/output/hqebbu9awheqarqcgrecg1shafoseaeqerocgxkafbeqdrgzkkzkhbfi/00/30/f3/75/setup/chrome_update.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.193.26</ip>
	<as>AS42632</as>
	<review>146.255.193.26</review>
	<domain>astursu.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>982</line>
	<id>11231616</id>
	<first>1369085893</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls2.aqvapac.ru/output/5vr62frshoerr2bu2fn4ur54kd82b6hp62frr6uh54olh72brr9upi0b2x52bqz/00/14/99/8e/torrent/dead-space-3.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>83.222.117.6</ip>
	<as>AS42632</as>
	<review>83.222.117.6</review>
	<domain>aqvapac.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>info@mnogobyte.ru</email>
	<inetnum>83.222.96.0 - 83.222.127.255</inetnum>
	<netname>RU-MNOGOBYTE-20090109</netname>
	<descr><![CDATA[MnogoByte LLCMnogoByte data-centre servicesMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>983</line>
	<id>11231615</id>
	<first>1369085892</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls2.ajtovos.ru/output/t1ntvx0icenqsu5jqugjvviiqejtef9ksxhbtktcee5dgg3d3d/02/49/e1/27/torrent/gamora-vremena-from-agr-mp3-_torrentino.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.192.218</ip>
	<as>AS42632</as>
	<review>146.255.192.218</review>
	<domain>ajtovos.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>984</line>
	<id>11231614</id>
	<first>1369085892</first>
	<last>0</last>
	<md5>5b6d74f1453e20c09d6a20d909779ad7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f600ce7c4fda0de42a700d35b509cc9</virustotal>
	<vt_score>7/36 (19.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[ADSPY%2FAdSpy.Gen]]></virusname>
	<url><![CDATA[http://dls2.ajtovos.ru/output/fgbgzc47o3bjen16cns6zme7c3fgs2x5ectyfxhxs31wkq3d3d/02/b8/38/14/audio/riki_martin_i_kristina_agilera_-_nobody_wants_to_be_iplayer_fm.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.192.218</ip>
	<as>AS42632</as>
	<review>146.255.192.218</review>
	<domain>ajtovos.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>985</line>
	<id>11231613</id>
	<first>1369085892</first>
	<last>0</last>
	<md5>09847beafc5b2f0d39639c77e86b68a6</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=09847beafc5b2f0d39639c77e86b68a6</virustotal>
	<vt_score>20/47 (42.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.ahpeno.ru/output/jtk5pxdiyikooswkisk6i2m2fogiqkdksksi6iyeilcksnsahen5yjclw/00/35/3b/4d/setup/worldguard-5.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>ahpeno.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>986</line>
	<id>11231612</id>
	<first>1369085892</first>
	<last>0</last>
	<md5>df53a02f19b8b24f4f90931e2d0943a9</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=df53a02f19b8b24f4f90931e2d0943a9</virustotal>
	<vt_score>20/47 (42.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.ahpeno.ru/output/cruvevtotguefqaidquwd08tfe4gbbu2bbq4wdw0oaau2bgqwnpljecavc/00/2c/7a/61/archive/nospread.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.194</ip>
	<as>AS42632</as>
	<review>146.255.194.194</review>
	<domain>ahpeno.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns2.reg.ru</ns1>
	<ns2>ns1.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>987</line>
	<id>11231611</id>
	<first>1369085892</first>
	<last>0</last>
	<md5>44781c84ccae3c0884aaf5ed05b31531</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=44781c84ccae3c0884aaf5ed05b31531</virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.afrijen.ru/output/xnjy3jadg8jbwsxcysoc3tmdy8ny89tbwjpkxcdj88xikq3d3d/02/bb/50/ac/audio/cher_-_strong_enough_zaycev_net.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>afrijen.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>988</line>
	<id>11231610</id>
	<first>1369085892</first>
	<last>0</last>
	<md5>0aa30293e8495da850ea048707c3e0de</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0aa30293e8495da850ea048707c3e0de</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.afrijen.ru/output/g52bfm9hexi2bchykfjytfmz7eji6ftjogh9sngoeotikp1g3d3d/02/33/34/eb/torrent/vozvrashhenie_geroja-the_last_stand-2013-bdrip_ot_torrent.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>afrijen.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>989</line>
	<id>11231609</id>
	<first>1369085892</first>
	<last>0</last>
	<md5>f5a18ffa08db0f185eb274c78006918b</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f5a18ffa08db0f185eb274c78006918b</virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.afrijen.ru/output/72fpz972oqopw6e7p4eip9fko4olz2p2fq67jh7uvi2o7jug3d3d/02/bb/2b/87/audio/muzyka_dlya_bega_-_lyogkij_rok_iplayer_fm.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>afrijen.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>990</line>
	<id>11231608</id>
	<first>1369085892</first>
	<last>0</last>
	<md5>20c9b92d1c3c07419422ff746ff0287a</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=20c9b92d1c3c07419422ff746ff0287a</virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.abdoze.ru/output/zxl5ftciiml6y2rja2ijf3giamh5unvgytjrzgfoumrpma3d3d/02/48/e1/0d/torrent/sbornik-drayverov-iz-obraza-zver-dlya-windows-xp-_torrentino.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>abdoze.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>991</line>
	<id>11231607</id>
	<first>1369085892</first>
	<last>0</last>
	<md5>bbcc417ddb9c2836c0381a8254305a81</md5>
	<virustotal></virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.abdoze.ru/output/vaghpe2f62brgiu7y7s7r7p6d6srchiq24ueqzvlmwiryx6a3d3d/02/bb/1a/d5/audio/dz_dzo_vova_z_lvova_-_ya_tya_kokham_i_love_you_ya_tebe_kokhayu_y.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>abdoze.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>992</line>
	<id>11231606</id>
	<first>1369085892</first>
	<last>0</last>
	<md5>8b5d103620efad8d5a558c9a3692b47e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8b5d103620efad8d5a558c9a3692b47e</virustotal>
	<vt_score>16/45 (35.6%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.abdoze.ru/output/nokchszz2zkbmj2bykjnyhipzkzocqy6bmsmqn5qtqz2bsyw3d3d/02/8b/81/f6/torrent/startrek_vozmezdie_2013_d_camrip_1400mb.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>abdoze.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>993</line>
	<id>11231605</id>
	<first>1369085892</first>
	<last>0</last>
	<md5>906f6579372f3a5d63e54ee47ddc785b</md5>
	<virustotal></virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.abdoze.ru/output/kdq0mhpvbyq3likuji9umjvvjyu0hzgtlh8mkswlhykkfq3d3d/02/ba/d0/40/audio/enrique_iglesias_-_ring_my_bells_zaycev_net.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>abdoze.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>994</line>
	<id>11231604</id>
	<first>1369085892</first>
	<last>0</last>
	<md5>e34b34aa54a6f1fd82ca370e95c7ba84</md5>
	<virustotal></virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.abdoze.ru/output/ijsuknrpz4sxjomoho2fokpxph4wuv5injn2bgiyyfv4me3q3d3d/02/4f/99/e0/torrent/vadim-panov-sobranie-sochineniy-_torrentino.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>abdoze.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>995</line>
	<id>11231603</id>
	<first>1369085892</first>
	<last>0</last>
	<md5>fbee644256c19a499e91cc5a60703040</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=fbee644256c19a499e91cc5a60703040</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls2.abdoze.ru/output/idw8ohjnzyw2fjiemlidmoj1nly08fzaljhcuisqtfyesdq3d3d/00/ea/1e/48/audio/prost-sbori-tut_bez_posadki_avto_net.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>abdoze.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>996</line>
	<id>11231602</id>
	<first>1369085892</first>
	<last>0</last>
	<md5>0c81137bc0dc2db109c62a60ad98cdbb</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0c81137bc0dc2db109c62a60ad98cdbb</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls1.zdokhala.ru/output/znp6fjqhiwp5ygdgagegfhshawt6uxzjyjfoz2jruwdqmw3d3d/02/b7/ac/0e/torrent/keys-20-05-2013.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>zdokhala.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>997</line>
	<id>11231601</id>
	<first>1369085892</first>
	<last>0</last>
	<md5>ddaff08874d30c2720dee6d1adbe316d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ddaff08874d30c2720dee6d1adbe316d</virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls1.zdokhala.ru/output/ydxv0zuojsxwz8jpx86p09soxstv2ftnmzz7hym3e2fsjfna3d3d/02/b9/4b/a1/audio/lana_del_ray_-_young_and_beautiful_full_iplayer_fm.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>zdokhala.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>998</line>
	<id>11231600</id>
	<first>1369085892</first>
	<last>0</last>
	<md5>fabd9ea69e07156fbf99220065bd29ac</md5>
	<virustotal></virustotal>
	<vt_score>15/47 (31.9%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls1.zdokhala.ru/output/y9fx05mmjmfuzcrnxcyn0damxmbx2fnvoz5zfys2fg2fmrhng3d3d/02/b9/4d/a3/torrent/x-torrents_nu_the_sims_2_collection_17_in_1.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>zdokhala.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>999</line>
	<id>11231599</id>
	<first>1369085892</first>
	<last>0</last>
	<md5>b5fa8281ff7aff964553a6f4bfbbdc91</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=b5fa8281ff7aff964553a6f4bfbbdc91</virustotal>
	<vt_score>18/47 (38.3%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls1.zdokhala.ru/output/wuvfqqsehlvgx1hfv14fq0qevlrfbklcxq5xwf1ublhvda3d3d/02/63/cb/31/torrent/ohotniki_na_vedm_2013_dub_dvdrip_1400mb_avi_torrent.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>zdokhala.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>1000</line>
	<id>11231598</id>
	<first>1369085892</first>
	<last>0</last>
	<md5>c37d909e9e1a918a98050355cd08abe3</md5>
	<virustotal></virustotal>
	<vt_score>16/47 (34%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Trj%2FSKContx.B]]></virusname>
	<url><![CDATA[http://dls1.zdokhala.ru/output/ij42bonblzs49jcmklcvkod9lls82bftinjnusiyyvfsmudw3d3d/02/b9/54/4a/audio/mehrnoosh_-_cheshmat_get-tune_net.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>146.255.194.18</ip>
	<as>AS42632</as>
	<review>146.255.194.18</review>
	<domain>zdokhala.ru</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@mnogobyte.ru</email>
	<inetnum>146.255.192.0 - 146.255.195.255</inetnum>
	<netname>MNOGOBYTE-COLO-MF</netname>
	<descr><![CDATA[MnogoByte colocation and dedicatedMoscow, Russia]]></descr>
	<ns1>ns1.reg.ru</ns1>
	<ns2>ns2.reg.ru</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
</entries>
</output>

