<?xml version="1.0" encoding="iso-8859-15"?>
<output>
	<response>
		<error>0</error>
		<hits>13</hits>
	</response>
<entries>
<entry>
	<line>1</line>
	<id>10833328</id>
	<first>1368229331</first>
	<last>0</last>
	<md5>3f927759eed6e3ed3670685a7c1aa515</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=3f927759eed6e3ed3670685a7c1aa515</virustotal>
	<vt_score>23/46 (50%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[HTML%2FTwitScroll.B]]></virusname>
	<url><![CDATA[http://www.handwerk-trifft-schule.de/]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>83.169.4.178</ip>
	<as>AS20773</as>
	<review>83.169.4.178</review>
	<domain>handwerk-trifft-schule.de</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>net-abuse@hosteurope.de</email>
	<inetnum>83.169.0.0 - 83.169.7.255</inetnum>
	<netname>DE-HE-VPS-83-169-0-CGN3-NET</netname>
	<descr><![CDATA[Hosteurope GmbHnoc@hosteurope.de]]></descr>
	<ns1>ns2.hans.hosteurope.de</ns1>
	<ns2>ns.handwerk-trifft-schule.de</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>2</line>
	<id>10724909</id>
	<first>1367966405</first>
	<last>0</last>
	<md5>c3354db09f16fd523949dc406a721b92</md5>
	<virustotal></virustotal>
	<vt_score>18/46 (39.1%)</vt_score>
	<scanner>undef</scanner>
	<virusname><![CDATA[Exploit.HTML.IframeRef]]></virusname>
	<url><![CDATA[http://dienstanfaenger.de/]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>83.169.5.18</ip>
	<as>AS20773</as>
	<review>83.169.5.18</review>
	<domain>dienstanfaenger.de</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>net-abuse@hosteurope.de</email>
	<inetnum>83.169.0.0 - 83.169.7.255</inetnum>
	<netname>DE-HE-VPS-83-169-0-CGN3-NET</netname>
	<descr><![CDATA[Hosteurope GmbHnoc@hosteurope.de]]></descr>
	<ns1>ns1.hans.hosteurope.de</ns1>
	<ns2>ns2.hans.hosteurope.de</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>3</line>
	<id>10696653</id>
	<first>1367835122</first>
	<last>0</last>
	<md5>b000cf520cb7547ae0da3e03c01745b9</md5>
	<virustotal></virustotal>
	<vt_score>3/46 (6.5%)</vt_score>
	<scanner>GData</scanner>
	<virusname><![CDATA[Win32%3AMalOb-IJ]]></virusname>
	<url><![CDATA[http://www.wingcenter.net/downloadcenter/download/wcp-wcpep-release-zip.html]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>83.169.6.9</ip>
	<as>AS20773</as>
	<review>83.169.6.9</review>
	<domain>wingcenter.net</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>net-abuse@hosteurope.de</email>
	<inetnum>83.169.0.0 - 83.169.7.255</inetnum>
	<netname>DE-HE-VPS-83-169-0-CGN3-NET</netname>
	<descr><![CDATA[Hosteurope GmbHnoc@hosteurope.de]]></descr>
	<ns1>ns1.hans.hosteurope.de</ns1>
	<ns2>ns2.hans.hosteurope.de</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>4</line>
	<id>10552792</id>
	<first>1367337636</first>
	<last>0</last>
	<md5>cf7ef6000cee8641bde751ba2048e2a8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=cf7ef6000cee8641bde751ba2048e2a8</virustotal>
	<vt_score>18/35 (51.4%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[JS%2FBlacoleRef.CZ.3]]></virusname>
	<url><![CDATA[http://www.oberkrainerpower.at/termine.php]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>83.169.5.158</ip>
	<as>AS20773</as>
	<review>83.169.5.158</review>
	<domain>oberkrainerpower.at</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>net-abuse@hosteurope.de</email>
	<inetnum>83.169.0.0 - 83.169.7.255</inetnum>
	<netname>DE-HE-VPS-83-169-0-CGN3-NET</netname>
	<descr><![CDATA[Hosteurope GmbHnoc@hosteurope.de]]></descr>
	<ns1>ns2.hans.hosteurope.de</ns1>
	<ns2>ns.oberkrainerpower.at</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>5</line>
	<id>10459335</id>
	<first>1367018429</first>
	<last>0</last>
	<md5>d743f48275bbdc65073aac2d0e571196</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=d743f48275bbdc65073aac2d0e571196</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[JS%2FBlacoleRef.CZ.3]]></virusname>
	<url><![CDATA[http://www.oberkrainerpower.at/page.php?page_id=150]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>83.169.5.158</ip>
	<as>AS20773</as>
	<review>83.169.5.158</review>
	<domain>oberkrainerpower.at</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>net-abuse@hosteurope.de</email>
	<inetnum>83.169.0.0 - 83.169.7.255</inetnum>
	<netname>DE-HE-VPS-83-169-0-CGN3-NET</netname>
	<descr><![CDATA[Hosteurope GmbHnoc@hosteurope.de]]></descr>
	<ns1>ns2.hans.hosteurope.de</ns1>
	<ns2>ns.oberkrainerpower.at</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>6</line>
	<id>10334171</id>
	<first>1366635520</first>
	<last>0</last>
	<md5>0413682927234659527e9389f8986138</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=0413682927234659527e9389f8986138</virustotal>
	<vt_score>13/35 (37.1%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[JS%2FiFrame.bxr.1]]></virusname>
	<url><![CDATA[http://www.ferienwohnungen-datenbank.de/]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>83.169.4.134</ip>
	<as>AS20773</as>
	<review>83.169.4.134</review>
	<domain>ferienwohnungen-datenbank.de</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>net-abuse@hosteurope.de</email>
	<inetnum>83.169.0.0 - 83.169.7.255</inetnum>
	<netname>DE-HE-VPS-83-169-0-CGN3-NET</netname>
	<descr><![CDATA[Hosteurope GmbHnoc@hosteurope.de]]></descr>
	<ns1>ns1.hans.hosteurope.de</ns1>
	<ns2>ns2.hans.hosteurope.de</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>7</line>
	<id>10127934</id>
	<first>1365947424</first>
	<last>0</last>
	<md5>142828ec0a7c170e7ea9af8dde6cec49</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=142828ec0a7c170e7ea9af8dde6cec49</virustotal>
	<vt_score>18/46 (39.1%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[JS%2FBlacoleRef.CZ.2]]></virusname>
	<url><![CDATA[http://www.oberkrainerpower.at/]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>83.169.5.158</ip>
	<as>AS20773</as>
	<review>83.169.5.158</review>
	<domain>oberkrainerpower.at</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>net-abuse@hosteurope.de</email>
	<inetnum>83.169.0.0 - 83.169.7.255</inetnum>
	<netname>DE-HE-VPS-83-169-0-CGN3-NET</netname>
	<descr><![CDATA[Hosteurope GmbHnoc@hosteurope.de]]></descr>
	<ns1>ns2.hans.hosteurope.de</ns1>
	<ns2>ns.oberkrainerpower.at</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>8</line>
	<id>9993214</id>
	<first>1365283905</first>
	<last>0</last>
	<md5>8a19713a7b5eff379f5ccf3db2813cd4</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=8a19713a7b5eff379f5ccf3db2813cd4</virustotal>
	<vt_score>13/46 (28.3%)</vt_score>
	<scanner>trendmicro</scanner>
	<virusname><![CDATA[Mal_Hifrm]]></virusname>
	<url><![CDATA[http://www.geja-event.de/Texte/seemarkt-herrsching-april-2012.html]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>83.169.5.140</ip>
	<as>AS20773</as>
	<review>83.169.5.140</review>
	<domain>geja-event.de</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>net-abuse@hosteurope.de</email>
	<inetnum>83.169.0.0 - 83.169.7.255</inetnum>
	<netname>DE-HE-VPS-83-169-0-CGN3-NET</netname>
	<descr><![CDATA[Hosteurope GmbHnoc@hosteurope.de]]></descr>
	<ns1>ns.inwx.de</ns1>
	<ns2>ns3.inwx.de</ns2>
	<ns3>ns2.inwx.de</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>9</line>
	<id>9951609</id>
	<first>1364945536</first>
	<last>0</last>
	<md5>e64b88537b08e33c83dac2bdce6e0804</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=e64b88537b08e33c83dac2bdce6e0804</virustotal>
	<vt_score>10/46 (21.7%)</vt_score>
	<scanner>trendmicro</scanner>
	<virusname><![CDATA[Mal_Hifrm]]></virusname>
	<url><![CDATA[http://geja-event.de/termine.html]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>83.169.5.140</ip>
	<as>AS20773</as>
	<review>83.169.5.140</review>
	<domain>geja-event.de</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>net-abuse@hosteurope.de</email>
	<inetnum>83.169.0.0 - 83.169.7.255</inetnum>
	<netname>DE-HE-VPS-83-169-0-CGN3-NET</netname>
	<descr><![CDATA[Hosteurope GmbHnoc@hosteurope.de]]></descr>
	<ns1>ns.inwx.de</ns1>
	<ns2>ns3.inwx.de</ns2>
	<ns3>ns2.inwx.de</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>10</line>
	<id>9928019</id>
	<first>1364750603</first>
	<last>0</last>
	<md5>61296a52c256b146f21cf7f771367ae8</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=61296a52c256b146f21cf7f771367ae8</virustotal>
	<vt_score>5/36 (13.9%)</vt_score>
	<scanner>trendmicro</scanner>
	<virusname><![CDATA[Mal_Hifrm]]></virusname>
	<url><![CDATA[http://www.geja-event.de/termine.html]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>83.169.5.140</ip>
	<as>AS20773</as>
	<review>83.169.5.140</review>
	<domain>geja-event.de</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>net-abuse@hosteurope.de</email>
	<inetnum>83.169.0.0 - 83.169.7.255</inetnum>
	<netname>DE-HE-VPS-83-169-0-CGN3-NET</netname>
	<descr><![CDATA[Hosteurope GmbHnoc@hosteurope.de]]></descr>
	<ns1>ns2.inwx.de</ns1>
	<ns2>ns3.inwx.de</ns2>
	<ns3>ns.inwx.de</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>11</line>
	<id>9748759</id>
	<first>1363217216</first>
	<last>0</last>
	<md5>68d4b4ef00d6528e5afcaaad1aa736de</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=68d4b4ef00d6528e5afcaaad1aa736de</virustotal>
	<vt_score>2/30 (6.7%)</vt_score>
	<scanner>Avast</scanner>
	<virusname><![CDATA[Win32%3AMalOb-IJ+Cryp]]></virusname>
	<url><![CDATA[http://www.wingcenter.net/downloadcenter/download/wcp-wcphr-zip.html]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>83.169.6.9</ip>
	<as>AS20773</as>
	<review>83.169.6.9</review>
	<domain>wingcenter.net</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>net-abuse@hosteurope.de</email>
	<inetnum>83.169.0.0 - 83.169.7.255</inetnum>
	<netname>DE-HE-VPS-83-169-0-CGN3-NET</netname>
	<descr><![CDATA[Hosteurope GmbHnoc@hosteurope.de]]></descr>
	<ns1>ns2.hans.hosteurope.de</ns1>
	<ns2>ns1.hans.hosteurope.de</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>12</line>
	<id>9252652</id>
	<first>1359401407</first>
	<last>0</last>
	<md5>41057ca7f589223464f3c38b2f89aa94</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=41057ca7f589223464f3c38b2f89aa94</virustotal>
	<vt_score>1/36 (2.8%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[PHISH%2FPayPal.27959]]></virusname>
	<url><![CDATA[http://soulvista.de/blog/wp-admin/option-cart.php]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>83.169.6.89</ip>
	<as>AS20773</as>
	<review>83.169.6.89</review>
	<domain>soulvista.de</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>net-abuse@hosteurope.de</email>
	<inetnum>83.169.0.0 - 83.169.7.255</inetnum>
	<netname>DE-HE-VPS-83-169-0-CGN3-NET</netname>
	<descr><![CDATA[Hosteurope GmbHnoc@hosteurope.de]]></descr>
	<ns1>ns1.hans.hosteurope.de</ns1>
	<ns2>ns2.hans.hosteurope.de</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>13</line>
	<id>9249777</id>
	<first>1359385165</first>
	<last>0</last>
	<md5>12e39accd078de3072399f8a1ec8df6f</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=12e39accd078de3072399f8a1ec8df6f</virustotal>
	<vt_score>26/36 (72.2%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[JS%2FRedirector.DC.7]]></virusname>
	<url><![CDATA[http://treedev.com/Create8/index.htm]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>83.169.7.178</ip>
	<as>AS20773</as>
	<review>83.169.7.178</review>
	<domain>treedev.com</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>net-abuse@hosteurope.de</email>
	<inetnum>83.169.0.0 - 83.169.7.255</inetnum>
	<netname>DE-HE-VPS-83-169-0-CGN3-NET</netname>
	<descr><![CDATA[Hosteurope GmbHnoc@hosteurope.de]]></descr>
	<ns1>ns1.hans.hosteurope.de</ns1>
	<ns2>ns2.hans.hosteurope.de</ns2>
	<ns3></ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
</entries>
</output>

