<?xml version="1.0" encoding="iso-8859-15"?>
<output>
	<response>
		<error>0</error>
		<hits>25</hits>
	</response>
<entries>
<entry>
	<line>1</line>
	<id>10163960</id>
	<first>1366035814</first>
	<last>0</last>
	<md5>6f02f6b4bbe7bd99d2a7733e12d1eda7</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=6f02f6b4bbe7bd99d2a7733e12d1eda7</virustotal>
	<vt_score>5/47 (10.6%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[EXP%2FFLASH.Nebefy.Gen]]></virusname>
	<url><![CDATA[http://lopinaksof.otzo.com/fine/contactus.php?kdkskmj=1g:1j:30:2w:2w&uqfmbcew=2v:34:39:3h&bmy=2w:1f:1f:1m:1h:1k:2w:1i:1o:1l:1p:1p:1o:1g:1l:2v:1h:1m:1j:1h:32:2v:1p:1p:1g:1n:1o:30:1g:2w:33:1k:1j:1i&gyvjj=mrjhxlo]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>173.208.164.38</ip>
	<as>AS32097</as>
	<review>173.208.164.38</review>
	<domain>otzo.com</domain>
	<country>US</country>
	<source>ARIN</source>
	<email>abuse@wholesaleinternet.net</email>
	<inetnum>173.208.128.0 - 173.208.255.255</inetnum>
	<netname>WII-OAK-2</netname>
	<descr><![CDATA[WholeSale Internet, Inc. WHOLE-125 324 E. 11th St. Suite 1000 Kansas City MO 64106]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns3.changeip.org</ns2>
	<ns3>ns1.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>2</line>
	<id>9427022</id>
	<first>1360538436</first>
	<last>0</last>
	<md5>c010c2b3f77e8524defff135259019f5</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c010c2b3f77e8524defff135259019f5</virustotal>
	<vt_score>16/35 (45.7%)</vt_score>
	<scanner>AVG</scanner>
	<virusname><![CDATA[SHeur4.BAKT]]></virusname>
	<url><![CDATA[http://7slkhgwjghkj.qhigh.com/closest/98yf8913fjipgjialhg8239jgighnjh4i6k5o.php?kzskg=30:1g:1l:2w:1m&amp;dym=1k:1f:2w:1m:31:1o:1l:1l:30:31&amp;dcs=1i&amp;jdi=dkymdm&amp;sms=xzf]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>89.253.230.132</ip>
	<as>AS41535</as>
	<review>89.253.230.132</review>
	<domain>qhigh.com</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@rusonyx.ru</email>
	<inetnum>89.253.192.0 - 89.253.255.255</inetnum>
	<netname>RU-RUSONYX-20060829</netname>
	<descr><![CDATA[Rusonyx, Ltd.]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns3.changeip.org</ns2>
	<ns3>ns1.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>3</line>
	<id>9445796</id>
	<first>1360639203</first>
	<last>0</last>
	<md5>eeda9bc7459c3bee9c70b22c19953a3c</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=eeda9bc7459c3bee9c70b22c19953a3c</virustotal>
	<vt_score>10/35 (28.6%)</vt_score>
	<scanner>BitDefender</scanner>
	<virusname><![CDATA[Trojan.Generic.KD.856452]]></virusname>
	<url><![CDATA[http://7slkhgwjghkj.qhigh.com/closest/98yf8913fjipgjialhg8239jgighnjh4i6k5o.php?dcs=1i&dym=1k:1f:2w:1m:31:1o:1l:1l:30:31&jdi=dkymdm&kzskg=30:1g:1l:2w:1m&sms=xzf]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>89.253.230.132</ip>
	<as>AS41535</as>
	<review>89.253.230.132</review>
	<domain>qhigh.com</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@rusonyx.ru</email>
	<inetnum>89.253.192.0 - 89.253.255.255</inetnum>
	<netname>RU-RUSONYX-20060829</netname>
	<descr><![CDATA[Rusonyx, Ltd.]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns3.changeip.org</ns2>
	<ns3>ns1.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>4</line>
	<id>9426887</id>
	<first>1360534804</first>
	<last>0</last>
	<md5>02ccdfd232b5c670d3e1d46bde5b5778</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=02ccdfd232b5c670d3e1d46bde5b5778</virustotal>
	<vt_score>2/44 (4.5%)</vt_score>
	<scanner>McAfee</scanner>
	<virusname><![CDATA[JS%2FExploit-Blacole.gq]]></virusname>
	<url><![CDATA[http://7whjhwjg.mrslove.com/closest/209tuj2dsljdglsgjwrigslgkjskga.php]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>89.253.230.132</ip>
	<as>AS41535</as>
	<review>89.253.230.132</review>
	<domain>mrslove.com</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@rusonyx.ru</email>
	<inetnum>89.253.192.0 - 89.253.255.255</inetnum>
	<netname>RU-RUSONYX-20060829</netname>
	<descr><![CDATA[Rusonyx, Ltd.]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns1.changeip.org</ns2>
	<ns3>ns3.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>5</line>
	<id>9429325</id>
	<first>1360548059</first>
	<last>0</last>
	<md5>ea24f9297d11023076d9b10de14d15ec</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ea24f9297d11023076d9b10de14d15ec</virustotal>
	<vt_score>32/46 (69.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://vcl.jkub.com:66/o/eh.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.61.0.26</ip>
	<as>AS4837</as>
	<review>218.61.0.26</review>
	<domain>jkub.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>218.60.0.0 - 218.61.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning province networkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns1.changeip.org</ns2>
	<ns3>ns3.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>6</line>
	<id>9422942</id>
	<first>1360476024</first>
	<last>0</last>
	<md5>ea24f9297d11023076d9b10de14d15ec</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ea24f9297d11023076d9b10de14d15ec</virustotal>
	<vt_score>32/46 (69.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://vch.jkub.com:66/o/eh.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.61.0.26</ip>
	<as>AS4837</as>
	<review>218.61.0.26</review>
	<domain>jkub.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>218.60.0.0 - 218.61.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning province networkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns3.changeip.org</ns2>
	<ns3>ns1.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>7</line>
	<id>9421422</id>
	<first>1360453171</first>
	<last>0</last>
	<md5>1749391662b359a484f823963258edac</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1749391662b359a484f823963258edac</virustotal>
	<vt_score>18/35 (51.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[EXP%2FCVE-2012-1889.T]]></virusname>
	<url><![CDATA[http://vcb.jkub.com:66/1/36b0.htm]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.61.0.26</ip>
	<as>AS4837</as>
	<review>218.61.0.26</review>
	<domain>jkub.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>218.60.0.0 - 218.61.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning province networkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns3.changeip.org</ns2>
	<ns3>ns1.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>8</line>
	<id>9617545</id>
	<first>1362020421</first>
	<last>0</last>
	<md5>ea24f9297d11023076d9b10de14d15ec</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ea24f9297d11023076d9b10de14d15ec</virustotal>
	<vt_score>32/46 (69.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://ves.jkub.com:66/o/eh.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.61.0.26</ip>
	<as>AS4837</as>
	<review>218.61.0.26</review>
	<domain>jkub.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>218.60.0.0 - 218.61.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning province networkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns1.changeip.org</ns2>
	<ns3>ns3.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>9</line>
	<id>9439138</id>
	<first>1360611181</first>
	<last>0</last>
	<md5>ea24f9297d11023076d9b10de14d15ec</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ea24f9297d11023076d9b10de14d15ec</virustotal>
	<vt_score>32/46 (69.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://vcn.jkub.com:66/o/eh.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.61.0.26</ip>
	<as>AS4837</as>
	<review>218.61.0.26</review>
	<domain>jkub.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>218.60.0.0 - 218.61.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning province networkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns3.changeip.org</ns2>
	<ns3>ns1.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>10</line>
	<id>9147075</id>
	<first>1358654749</first>
	<last>0</last>
	<md5>d41d8cd98f00b204e9800998ecf8427e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=bb89f0c48c36d04380c9c3ba24efd285</virustotal>
	<vt_score>26/36 (72.2%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[JS%2FRunForest.C.1]]></virusname>
	<url><![CDATA[http://uxt.jkub.com:66/1/36vaba0.htm]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.61.0.26</ip>
	<as>AS4837</as>
	<review>undef</review>
	<domain>jkub.com</domain>
	<country>CN</country>
	<source>ARIN</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>218.60.0.0 - 218.61.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning province networkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns1.changeip.org</ns2>
	<ns3>ns3.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>11</line>
	<id>9686740</id>
	<first>1362487507</first>
	<last>0</last>
	<md5>ea24f9297d11023076d9b10de14d15ec</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ea24f9297d11023076d9b10de14d15ec</virustotal>
	<vt_score>32/46 (69.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://vfn.jkub.com:66/o/eh.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.61.0.26</ip>
	<as>AS4837</as>
	<review>218.61.0.26</review>
	<domain>jkub.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>218.60.0.0 - 218.61.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning province networkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns3.changeip.org</ns2>
	<ns3>ns1.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>12</line>
	<id>9430744</id>
	<first>1360546591</first>
	<last>0</last>
	<md5>ea24f9297d11023076d9b10de14d15ec</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=ea24f9297d11023076d9b10de14d15ec</virustotal>
	<vt_score>32/46 (69.6%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[TR%2FDropper.Gen]]></virusname>
	<url><![CDATA[http://vce.jkub.com:66/o/eh.exe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.61.0.26</ip>
	<as>AS4837</as>
	<review>218.61.0.26</review>
	<domain>jkub.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>218.60.0.0 - 218.61.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning province networkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns3.changeip.org</ns2>
	<ns3>ns1.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>13</line>
	<id>9457883</id>
	<first>1360715149</first>
	<last>0</last>
	<md5>dd5a63741b8e5fe0b2913843faf3483e</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=dd5a63741b8e5fe0b2913843faf3483e</virustotal>
	<vt_score>18/35 (51.4%)</vt_score>
	<scanner>avira</scanner>
	<virusname><![CDATA[EXP%2FCVE-2012-1889.T]]></virusname>
	<url><![CDATA[http://vco.jkub.com:66/1/36b0.htm]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>218.61.0.26</ip>
	<as>AS4837</as>
	<review>218.61.0.26</review>
	<domain>jkub.com</domain>
	<country>CN</country>
	<source>APNIC</source>
	<email>abuse@online.ln.cn</email>
	<inetnum>218.60.0.0 - 218.61.255.255</inetnum>
	<netname>UNICOM-LN</netname>
	<descr><![CDATA[China Unicom Liaoning province networkChina UnicomCNC Group CHINA169 Liaoning Province Network]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns1.changeip.org</ns2>
	<ns3>ns3.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>14</line>
	<id>9416612</id>
	<first>1360439410</first>
	<last>0</last>
	<md5>58fff1751a0d362b777ad15464f08c69</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=58fff1751a0d362b777ad15464f08c69</virustotal>
	<vt_score>6/35 (17.1%)</vt_score>
	<scanner>BitDefender</scanner>
	<virusname><![CDATA[Trojan.Generic.KD.854227]]></virusname>
	<url><![CDATA[http://sspmrwli.jkub.com/xlawr/next/acquires-board.php?dwwsvqih=1k:33:1m:1m:1n&plsmltdq=1f:30:2w:1k:31:1i:2v:1f:2v:32&zrbup=1i&gmfbj=wcvevwn&axvmdmns=ncbchrha]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>92.63.105.23</ip>
	<as>AS29182</as>
	<review>92.63.105.23</review>
	<domain>jkub.com</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@ispsystem.net</email>
	<inetnum>92.63.104.0 - 92.63.107.255</inetnum>
	<netname>ISPSYSTEM</netname>
	<descr><![CDATA[ISPsystem MSK]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns3.changeip.org</ns2>
	<ns3>ns1.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>15</line>
	<id>9301262</id>
	<first>1359666561</first>
	<last>0</last>
	<md5>16336d3ca04da1a3e5d02f266d4122ae</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=16336d3ca04da1a3e5d02f266d4122ae</virustotal>
	<vt_score>1/46 (2.2%)</vt_score>
	<scanner>Kaspersky</scanner>
	<virusname><![CDATA[HEUR%3AExploit.Java.CVE-2013-0422.gen]]></virusname>
	<url><![CDATA[http://ppkixged.portrelay.com/fagebide/abunlast.jar]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>78.110.62.75</ip>
	<as>AS31240</as>
	<review>78.110.62.75</review>
	<domain>portrelay.com</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@ht-systems.ru</email>
	<inetnum>78.110.56.0 - 78.110.63.255</inetnum>
	<netname>RU-HT-SYSTEMS-BIS</netname>
	<descr><![CDATA[Hosting Telesystems network]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns1.changeip.org</ns2>
	<ns3>ns3.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>16</line>
	<id>9296083</id>
	<first>1359646929</first>
	<last>0</last>
	<md5>f7d9686a6ab91e88480fe0ac1177fd01</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f7d9686a6ab91e88480fe0ac1177fd01</virustotal>
	<vt_score>5/46 (10.9%)</vt_score>
	<scanner>Ikarus</scanner>
	<virusname><![CDATA[Exploit.Java.CVE-2012]]></virusname>
	<url><![CDATA[http://ppkixged.portrelay.com/fagebide/lantimed.jar]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>78.110.62.75</ip>
	<as>AS31240</as>
	<review>78.110.62.75</review>
	<domain>portrelay.com</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@ht-systems.ru</email>
	<inetnum>78.110.56.0 - 78.110.63.255</inetnum>
	<netname>RU-HT-SYSTEMS-BIS</netname>
	<descr><![CDATA[Hosting Telesystems network]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns3.changeip.org</ns2>
	<ns3>ns1.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>17</line>
	<id>9383128</id>
	<first>1360237341</first>
	<last>0</last>
	<md5>979a3ce4974004a5fc172f74a2c2fc62</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=979a3ce4974004a5fc172f74a2c2fc62</virustotal>
	<vt_score>12/35 (34.3%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[EXP%2FPdfjsc.agd]]></virusname>
	<url><![CDATA[http://coelhq.wikaba.com/ntedbove.php]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>78.110.63.168</ip>
	<as>AS31240</as>
	<review>78.110.63.168</review>
	<domain>wikaba.com</domain>
	<country>RU</country>
	<source>RIPE</source>
	<email>abuse@ht-systems.ru</email>
	<inetnum>78.110.56.0 - 78.110.63.255</inetnum>
	<netname>RU-HT-SYSTEMS-BIS</netname>
	<descr><![CDATA[Hosting Telesystems network]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns1.changeip.org</ns2>
	<ns3>ns3.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>18</line>
	<id>10373198</id>
	<first>1366810894</first>
	<last>0</last>
	<md5>9b2d2943e3ef654dfc8aa32f870a1309</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=9b2d2943e3ef654dfc8aa32f870a1309</virustotal>
	<vt_score>13/46 (28.3%)</vt_score>
	<scanner>Avast</scanner>
	<virusname><![CDATA[BV%3ABicololo-FF+%5BTrj%5D]]></virusname>
	<url><![CDATA[http://semituk-funila.ddns.info/sevvva/index.php?mefs=%E3%E5%ED%E5%F0%E0%F2%EE%F0%20%EA%EB%FE%F7%E5%E9%20%E4%EB%FF%20starcraft%202&qwerty=971&vcxz=hskoohxx]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>176.9.32.230</ip>
	<as>AS24940</as>
	<review>176.9.32.230</review>
	<domain>ddns.info</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>abuse@hetzner.de</email>
	<inetnum>176.9.0.0 - 176.9.255.255</inetnum>
	<netname>DE-HETZNER-20110517</netname>
	<descr><![CDATA[Hetzner Online AG]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns1.changeip.org</ns2>
	<ns3>ns3.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>19</line>
	<id>10396771</id>
	<first>1366877732</first>
	<last>0</last>
	<md5>44329184502105e37b429fb5b231ad57</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=44329184502105e37b429fb5b231ad57</virustotal>
	<vt_score>22/46 (47.8%)</vt_score>
	<scanner>Avast</scanner>
	<virusname><![CDATA[BV%3ABicololo-FG+%5BTrj%5D]]></virusname>
	<url><![CDATA[http://semituk-funila.ddns.info/sevvva/index.php?mefs=starcraft2]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>176.9.32.230</ip>
	<as>AS24940</as>
	<review>176.9.32.230</review>
	<domain>ddns.info</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>abuse@hetzner.de</email>
	<inetnum>176.9.0.0 - 176.9.255.255</inetnum>
	<netname>DE-HETZNER-20110517</netname>
	<descr><![CDATA[Hetzner Online AG]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns3.changeip.org</ns2>
	<ns3>ns1.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>20</line>
	<id>10396772</id>
	<first>1366877732</first>
	<last>0</last>
	<md5>1671b8851ec5e671982937c46a291cca</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=1671b8851ec5e671982937c46a291cca</virustotal>
	<vt_score>21/46 (45.7%)</vt_score>
	<scanner>Avast</scanner>
	<virusname><![CDATA[BV%3ABicololo-FG+%5BTrj%5D]]></virusname>
	<url><![CDATA[http://semituk-funila.ddns.info/sevvva/index.php?mefs=starcraft2&qwerty=971&vcxz=hskoohxx]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>176.9.32.230</ip>
	<as>AS24940</as>
	<review>176.9.32.230</review>
	<domain>ddns.info</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>abuse@hetzner.de</email>
	<inetnum>176.9.0.0 - 176.9.255.255</inetnum>
	<netname>DE-HETZNER-20110517</netname>
	<descr><![CDATA[Hetzner Online AG]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns3.changeip.org</ns2>
	<ns3>ns1.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>21</line>
	<id>9384550</id>
	<first>1360241824</first>
	<last>0</last>
	<md5>a4c59a5d7503242aac28413f9e711cdb</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=a4c59a5d7503242aac28413f9e711cdb</virustotal>
	<vt_score>2/36 (5.6%)</vt_score>
	<scanner>McAfee</scanner>
	<virusname><![CDATA[JS%2FExploit-Blacole.gq]]></virusname>
	<url><![CDATA[http://5jijefijdjw.mywww.biz/closest/209tuj2dsljdglsgjwrigslgkjskga.php]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>178.63.214.21</ip>
	<as>AS24940</as>
	<review>178.63.214.21</review>
	<domain>mywww.biz</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>abuse@hetzner.de</email>
	<inetnum>178.63.0.0 - 178.63.255.255</inetnum>
	<netname>DE-HETZNER-20100302</netname>
	<descr><![CDATA[Hetzner Online AG]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns1.changeip.org</ns2>
	<ns3>ns3.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>22</line>
	<id>9767337</id>
	<first>1363327522</first>
	<last>0</last>
	<md5>c049f90a9a1d5f830b9393af574736ee</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=c049f90a9a1d5f830b9393af574736ee</virustotal>
	<vt_score>12/36 (33.3%)</vt_score>
	<scanner>AntiVir</scanner>
	<virusname><![CDATA[HTML%2FBlackhole.B]]></virusname>
	<url><![CDATA[http://1iohrgjewoleg.dns04.com/closest/98yf8913fjipgjialhg8239jgighnjh4i6k5o.php]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>78.46.222.234</ip>
	<as>AS24940</as>
	<review>78.46.222.234</review>
	<domain>dns04.com</domain>
	<country>DE</country>
	<source>RIPE</source>
	<email>abuse@hetzner.de</email>
	<inetnum>78.46.0.0 - 78.47.255.255</inetnum>
	<netname>DE-HETZNER-20070416</netname>
	<descr><![CDATA[Hetzner Online AG]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns3.changeip.org</ns2>
	<ns3>ns1.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>23</line>
	<id>10523872</id>
	<first>1367252794</first>
	<last>0</last>
	<md5>468302e7cf99f31e3dcf60d77157ca08</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=468302e7cf99f31e3dcf60d77157ca08</virustotal>
	<vt_score>1/35 (2.9%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[JS.Redirect-4]]></virusname>
	<url><![CDATA[http://media.www1.biz/in.cgi?18&ad_type=static&ad_size=728x90&log=6812&ur=1&HTTP_REFERER=http://ad.yieldmanager.com/st?ad_type=iframe]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>217.23.5.159</ip>
	<as>AS49981</as>
	<review>217.23.5.159</review>
	<domain>www1.biz</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>abuse@customerpanel.nl</email>
	<inetnum>217.23.5.0 - 217.23.5.255</inetnum>
	<netname>WorldStream</netname>
	<descr><![CDATA[WorldStream IPv4.12CUSTOMERPANEL-BLK-217-23-0-0]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns3.changeip.org</ns2>
	<ns3>ns1.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>24</line>
	<id>9954789</id>
	<first>1364972517</first>
	<last>0</last>
	<md5>5362efd051087493ec9c3cab684375c1</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=5362efd051087493ec9c3cab684375c1</virustotal>
	<vt_score>3/36 (8.3%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[JS.Redirect-4]]></virusname>
	<url><![CDATA[http://statonline.jungleheart.com/in.cgi?16]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>217.23.5.159</ip>
	<as>AS49981</as>
	<review>217.23.5.159</review>
	<domain>jungleheart.com</domain>
	<country>NL</country>
	<source>RIPE</source>
	<email>abuse@customerpanel.nl</email>
	<inetnum>217.23.5.0 - 217.23.5.255</inetnum>
	<netname>WorldStream</netname>
	<descr><![CDATA[WorldStream IPv4.12CUSTOMERPANEL-BLK-217-23-0-0]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns1.changeip.org</ns2>
	<ns3>ns3.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
<entry>
	<line>25</line>
	<id>10122406</id>
	<first>1365919893</first>
	<last>0</last>
	<md5>f1cc6584fcb1655d3f8c79979688f70d</md5>
	<virustotal>http://www.virustotal.com/latest-report.html?resource=f1cc6584fcb1655d3f8c79979688f70d</virustotal>
	<vt_score>2/46 (4.3%)</vt_score>
	<scanner>clamav</scanner>
	<virusname><![CDATA[JS.Redirect-4]]></virusname>
	<url><![CDATA[http://media.www1.biz/in.cgi?18]]></url>
	<recent>up</recent>
	<response>alive</response>
	<ip>5.199.175.172</ip>
	<as>AS16125</as>
	<review>5.199.175.172</review>
	<domain>www1.biz</domain>
	<country>LT</country>
	<source>RIPE</source>
	<email></email>
	<inetnum>5.199.160.0 - 5.199.175.255</inetnum>
	<netname></netname>
	<descr><![CDATA[]]></descr>
	<ns1>ns2.changeip.org</ns1>
	<ns2>ns1.changeip.org</ns2>
	<ns3>ns3.changeip.org</ns3>
	<ns4></ns4>
	<ns5></ns5>
</entry>
</entries>
</output>

