date started: Sat May 25 12:00:02 CEST 2013 checking domain: images.wiltec.info --> seems to be INFECTED: http://travelmeant.net/cgi-bin/r.cgi --> DNS: travelmeant.net / 199.59.243.107, 199.59.243.108, 199.59.243.109, / checking domain: www.rci-jeux.com --> seems to be INFECTED: http://zarona.3tserver.net/url --> DNS: zarona.3tserver.net / 208.87.34.65, 23.23.210.22 checking domain: leftiesshowroom.com --> seems to be INFECTED: http://agiula.agentonpoint.com/__utm.gif --> DNS: agiula.agentonpoint.com / 81.92.219.62 checking domain: leosat.at --> seems to be INFECTED: http://baygo.nutritionbydesign.com/s --> DNS: baygo.nutritionbydesign.com / 81.92.219.62 checking domain: rhs-airco.com --> seems to be INFECTED: http://kaliosa.mrsstyleseeker.com/__utm.gif --> DNS: kaliosa.mrsstyleseeker.com / 31.210.96.157 checking domain: rhs-klima.de --> seems to be INFECTED: http://kaliosa.autoeventregistration.com/re_/ping --> DNS: kaliosa.autoeventregistration.com / 31.210.96.157 checking domain: www.automania.ch --> seems to be INFECTED: http://rahpita.custom-chocolate-favors.com/new2/www/delivery/lg.php --> DNS: rahpita.custom-chocolate-favors.com / 31.210.96.155 checking domain: www.bootsboerse24.de --> seems to be INFECTED: http://karkala.elcevent.com/w/2.0/ajs --> DNS: karkala.elcevent.com / 31.210.96.155 checking domain: www.mc-ststephan.ch --> seems to be INFECTED: http://gauntsmith.southvalleyrugby.com/pview --> DNS: gauntsmith.southvalleyrugby.com / 31.210.96.155 checking domain: www.moratec.ch --> seems to be INFECTED: http://tweddy.devilwithacause.com/t.gif --> DNS: tweddy.devilwithacause.com / 31.210.96.155 checking domain: www.psicoterapeutas.org --> seems to be INFECTED: http://pantakit.registerforautoevent.com/__utm.gif --> DNS: pantakit.registerforautoevent.com / 31.210.96.158 checking domain: www.rebo-rohstoffe.de --> seems to be INFECTED: http://argles.autoeventregistration.com/lg.php --> DNS: argles.autoeventregistration.com / 31.210.96.157 checking domain: equestrianinfluence.com --> seems to be INFECTED: http://capitalinformer.com/cgi-bin/r.cgi --> DNS: capitalinformer.com / 82.98.86.165 checking domain: www.publibusiness24.com --> seems to be INFECTED: http://underbuild.net/cgi-bin/r.cgi --> DNS: underbuild.net / 62.116.143.10 checking domain: www.empfehlungsmarketing-studie.de --> seems to be INFECTED: http://cylla.softmn.com/pview --> DNS: cylla.softmn.com / 31.210.96.157 checking domain: stalders.com --> seems to be INFECTED: http://phalangy.venicefloridarealestatesearchonline.net/ajs.php --> DNS: phalangy.venicefloridarealestatesearchonline.net / 31.210.96.155 checking domain: www.riviera-raptors.ch --> seems to be INFECTED: http://xaahie.southvalleyrugby.com/api/getCount2.php --> DNS: xaahie.southvalleyrugby.com / 31.210.96.155 checking domain: firstsaturday.hu --> seems to be INFECTED: http://vertica.reikisolar.com/api/getCount2.php --> DNS: vertica.reikisolar.com / 31.210.96.157 checking domain: www.nordicneurolab.com --> seems to be INFECTED: http://hormilla.jordandowney.net/pview --> DNS: hormilla.jordandowney.net / 31.210.96.155 checking domain: www.bestattungsinstitut-petri.de --> seems to be INFECTED: http://youremy.autoeventregistration.com/m2/chegginc/mbox/ajax --> DNS: youremy.autoeventregistration.com / 31.210.96.157 checking domain: www.saketattoo.com --> seems to be INFECTED: http://indanetwall.net/cgi-bin/r.cgi --> DNS: indanetwall.net / 199.59.243.107, 199.59.243.108, 199.59.243.109, / checking domain: www.clubescuelagr.com --> seems to be INFECTED: http://nakashian.mrsstyleseeker.com/new/www/delivery/lg.php --> DNS: nakashian.mrsstyleseeker.com / 31.210.96.157 checking domain: www.dreams4ever.de --> seems to be INFECTED: http://eredar.kalkanhorizon.com/url --> DNS: eredar.kalkanhorizon.com / 178.211.33.205 checking domain: www.tab-blog.de --> seems to be INFECTED: http://checkforsec.com/cgi-bin/r.cgi --> DNS: checkforsec.com / 8.5.1.45 checking domain: www.dream-edition.de --> seems to be INFECTED: http://yhulo.fightliberalmedia.com/b/ss/jobsdb-prd-id/1/H.23.6/s29160950270861 --> DNS: yhulo.fightliberalmedia.com / 81.92.219.60 checking domain: www.aceefrancophonie.org --> seems to be INFECTED: http://dahro.strevel.net/images/rt.gif --> DNS: dahro.strevel.net / 81.92.219.62 checking domain: www.zum-fliegenden-bauern.de --> seems to be INFECTED: http://hudgson.thehiddencorner.com/b --> DNS: hudgson.thehiddencorner.com / 31.210.96.155 checking domain: www.schmoove.fr --> seems to be INFECTED: http://mdrafiqul.wanderingwitchdoctor.com/url --> DNS: mdrafiqul.wanderingwitchdoctor.com / 178.211.33.203 checking domain: www.jawa-club.at --> seems to be INFECTED: http://matinisi.nitplus.com/www/delivery/spc.php --> DNS: matinisi.nitplus.com / 81.92.219.62 checking domain: boisdolivier.biz --> seems to be INFECTED: http://herocopter.com/cgi-bin/r.cgi --> DNS: herocopter.com / 199.59.243.105, 199.59.243.106, 199.59.243.107, / checking domain: biodis.ch --> seems to be INFECTED: http://ansomah.assistlist.com/__utm.gif --> DNS: ansomah.assistlist.com / 81.92.219.61 checking domain: www.holidayinn-mulhouse.com --> seems to be INFECTED: http://hunton.radiadoresautoair.com/api/getCount2.php --> DNS: hunton.radiadoresautoair.com / 178.211.33.203 checking domain: www.justin.it --> seems to be INFECTED: http://habibagahi.lynngoodpasture.com/url --> DNS: habibagahi.lynngoodpasture.com / 178.211.33.205 checking domain: www.forum-ofppt.com --> seems to be INFECTED: http://protechere.com/cgi-bin/r.cgi --> DNS: protechere.com / 69.43.161.177 checking domain: www.hostpix.de --> seems to be INFECTED: http://xlau.kalkanturqouise.com/__utm.gif --> DNS: xlau.kalkanturqouise.com / 31.210.96.156 checking domain: www.tumegl-tomils.com --> seems to be INFECTED: http://34016.soroki.info/url --> DNS: 34016.soroki.info / 176.53.112.108 checking domain: www.kreatividee.net --> seems to be INFECTED: http://szufnarowska.savedalyfield.com/event.js --> DNS: szufnarowska.savedalyfield.com / 31.210.96.157 checking domain: bramsche-basketball.de --> seems to be INFECTED: http://kinlichini.goldenpridewrestling.com/b --> DNS: kinlichini.goldenpridewrestling.com / 31.210.96.155 checking domain: www.alexandria.ro --> seems to be INFECTED: http://vrenily.bedfordshirekitchens.com/social --> DNS: vrenily.bedfordshirekitchens.com / 31.210.96.155 checking domain: www.clicker.de --> seems to be INFECTED: http://blesyl.reikisolar.com/delivery/lg.php --> DNS: blesyl.reikisolar.com / 31.210.96.157 checking domain: sivota-land.gr --> seems to be INFECTED: http://lewisentitled.com/cgi-bin/r.cgi --> DNS: lewisentitled.com / 64.74.223.30 checking domain: www.recrutam.ro --> seems to be INFECTED: http://dambalang.vehicleexchangeprogram.com/b --> DNS: dambalang.vehicleexchangeprogram.com / 31.210.96.157 checking domain: boutique-hotel-chiangmai.com --> seems to be INFECTED: http://enenche.hollyspringssavingsnetwork.com/pview --> DNS: enenche.hollyspringssavingsnetwork.com / 31.210.96.155 checking domain: www.compta-geniale.com --> seems to be INFECTED: http://alipan.fantasyintro.com/www/delivery/lg.php --> DNS: alipan.fantasyintro.com / 31.210.96.156 checking domain: www.laufen-in-koeln.de --> seems to be INFECTED: http://43160.majesticbetta.com/url --> DNS: 43160.majesticbetta.com / 178.211.33.203 checking domain: www.hotelwindsornice.com --> seems to be INFECTED: http://benziman.southvalleyrugby.com/pixel;r=680050353;a=p-dd9FcP3j0Ujek;fpan=0;fpa=P0-448768694-1340327916931;ns=0;ce=1;je=0;sr=1024x768x24;enc=n;dst=0;et=1340328127818;tzo=-420;ref=http%3A%2F%2Fwww.hotelwindsornice.com%2F --> DNS: benziman.southvalleyrugby.com / 31.210.96.155 checking domain: www.agroservis.rs --> seems to be INFECTED: http://voictoall.com/cgi-bin/r.cgi --> DNS: voictoall.com / 62.116.143.10 checking domain: www.niceshop.at --> seems to be INFECTED: http://perrugina.coreywasley.com/s --> DNS: perrugina.coreywasley.com / 31.210.96.155 checking domain: www.scmra.ca --> seems to be INFECTED: http://kitabevi.autoeventregistration.com/js_flat_1_0/ --> DNS: kitabevi.autoeventregistration.com / 31.210.96.157 checking domain: www.phuketvilla-elisabeth.com --> seems to be INFECTED: http://kovacina.webrunchhard.com/api/getCount2.php --> DNS: kovacina.webrunchhard.com / 31.210.96.155 checking domain: www.mazus-art.com --> seems to be INFECTED: http://allintercom.net/cgi-bin/r.cgi --> DNS: allintercom.net / 208.73.211.197 checking domain: www.artistas-americanos.com --> seems to be INFECTED: http://watchingsquare.com/cgi-bin/r.cgi --> DNS: watchingsquare.com / 173.212.56.245 checking domain: www.foto-weller.de --> seems to be INFECTED: http://praylu.nutritionbydesign.com/t.gif --> DNS: praylu.nutritionbydesign.com / 81.92.219.62 checking domain: www.golden-champion.com --> seems to be INFECTED: http://updude.glsfinancials.com/lg.php --> DNS: updude.glsfinancials.com / failed: Name or service not known. checking domain: shop.grostar-aquaristik.de --> seems to be INFECTED: http://39492.customshowerdoorsc.com/url --> DNS: 39492.customshowerdoorsc.com / 176.74.176.167 checking domain: www.riadcoram.com --> seems to be INFECTED: http://quintenz.advertisewiththedevil.com/neo/darla/php/fc.php --> DNS: quintenz.advertisewiththedevil.com / 31.210.96.155 checking domain: globalserve.com.cy --> seems to be INFECTED: http://weebam.fighttheliberalmedia.com/delivery/lg.php --> DNS: weebam.fighttheliberalmedia.com / 81.92.219.60 checking domain: www.brichzin.de --> seems to be INFECTED: http://zhainia.prestigehonda.net/s --> DNS: zhainia.prestigehonda.net / 31.210.96.157 checking domain: www.colornova.ch --> seems to be INFECTED: http://banerjie.springcleaningevent.com/new/www/delivery/ajs.php --> DNS: banerjie.springcleaningevent.com / 31.210.96.156 checking domain: www.franken-gmbh.de --> seems to be INFECTED: http://grosaru.dunstablekitchens.com/gampad/ads --> DNS: grosaru.dunstablekitchens.com / 31.210.96.155 checking domain: www.pino-travel.com --> seems to be INFECTED: http://virtualmapping.org/cgi-bin/r.cgi --> DNS: virtualmapping.org / 82.98.86.175 checking domain: www.vonjowanka.de --> seems to be INFECTED: http://travelmeant.net/cgi-bin/r.cgi --> DNS: travelmeant.net / 199.59.243.108, 199.59.243.109, 199.59.243.105, / checking domain: vestidosnoivaoramatina.net --> seems to be INFECTED: http://kruch.zarrisgroup.com/s --> DNS: kruch.zarrisgroup.com / 182.50.135.128 checking domain: www.greenfieldadvisorsltd.com --> seems to be INFECTED: http://moutsiouna.iretarpg.com/t.gif --> DNS: moutsiouna.iretarpg.com / 31.210.96.155 checking domain: www.hekimce.com --> seems to be INFECTED: http://merchx.golfnewsmaine.com/__utm.gif --> DNS: merchx.golfnewsmaine.com / 31.210.96.157 checking domain: www.jordanbad.de --> seems to be INFECTED: http://facuri.chelseyfatula.com/csi --> DNS: facuri.chelseyfatula.com / 31.210.96.155 checking domain: www.literatur-vsm.at --> seems to be INFECTED: http://wmanou.telecomindiana.com/s --> DNS: wmanou.telecomindiana.com / 31.210.96.155 checking domain: www.oople.com --> seems to be INFECTED: http://assington.whhusainc.net/s2.html --> DNS: assington.whhusainc.net / 81.92.219.62 checking domain: www.pssst.de --> seems to be INFECTED: http://yhulo.fightliberalmedia.com/pview --> DNS: yhulo.fightliberalmedia.com / 81.92.219.60 checking domain: www.sportmodelagency.com --> seems to be INFECTED: http://violoka.benahavisrealestate.com/b --> DNS: violoka.benahavisrealestate.com / 31.210.96.156 checking domain: www.windsorsuiteshotel.com --> seems to be INFECTED: http://mishor.ancestorworshippublishing.com/s --> DNS: mishor.ancestorworshippublishing.com / 81.92.219.61 checking domain: agroservis.rs --> seems to be INFECTED: http://voictoall.com/cgi-bin/r.cgi --> DNS: voictoall.com / 62.116.143.10 checking domain: kewb.co.ke --> seems to be INFECTED: http://ugwuezumba.iconarchitects.net/lg.php --> DNS: ugwuezumba.iconarchitects.net / 81.92.219.61 checking domain: www.asia-federblumen.de --> seems to be INFECTED: http://metromanias.com/cgi-bin/r.cgi --> DNS: metromanias.com / failed: Connection timed out. checking domain: www.mschaer.ch --> seems to be INFECTED: http://waziona.greatserviceforless.com/pview --> DNS: waziona.greatserviceforless.com / 31.210.96.157 checking domain: www.brillenpesche.ch --> seems to be INFECTED: http://brayley.telecommichigan.com/t.gif --> DNS: brayley.telecommichigan.com / 31.210.96.155 checking domain: www.vitaminbude.de --> seems to be INFECTED: http://karepii.dealerholidayevent.com/b/ss/wmg,wmgatl,wmgd2cparamore,wmgparamoreall/1/H.20.3/s61743588075041 --> DNS: karepii.dealerholidayevent.com / failed: Connection timed out. checking domain: www.mapet.de --> seems to be INFECTED: http://cielma.williespage.com/pview --> DNS: cielma.williespage.com / 31.210.96.155 checking domain: www.bad-saulgau.de --> seems to be INFECTED: http://solent.alloyradianttubes.com/delivery/lg.php --> DNS: solent.alloyradianttubes.com / 31.210.96.155 checking domain: www.kelliewinnell.com.au --> seems to be INFECTED: http://yiceli.thecinema6.com/f.gif --> DNS: yiceli.thecinema6.com / 31.210.96.156 checking domain: www.elektrolok.de --> seems to be INFECTED: http://malvaez.bvvk.com/st --> DNS: malvaez.bvvk.com / 31.210.96.158 checking domain: www.cepsuisse.com --> seems to be INFECTED: http://trialworld.net/cgi-bin/r.cgi --> DNS: trialworld.net / 69.43.161.177 checking domain: www.perfume-worldwide.com --> seems to be INFECTED: http://cosha.electhillary2016.com/www/delivery/spc.php --> DNS: cosha.electhillary2016.com / 81.92.219.60 checking domain: www.log-in-verlag.de --> seems to be INFECTED: http://wcameron.arrozconbeans.com/s --> DNS: wcameron.arrozconbeans.com / failed: Name or service not known. checking domain: forum.adoptionefa.org --> seems to be INFECTED: http://delacuseta.ancestorworshippublishing.com/a/8240/13310/25504-15.html --> DNS: delacuseta.ancestorworshippublishing.com / 81.92.219.61 checking domain: bgs-architekten.com --> seems to be INFECTED: http://capitalinformer.com/cgi-bin/r.cgi --> DNS: capitalinformer.com / 82.98.86.165 checking domain: www.natalshopping.com.br --> seems to be INFECTED: http://watchingsquare.com/cgi-bin/r.cgi --> DNS: watchingsquare.com / 173.212.56.245 checking domain: www.fraichattitude.com --> seems to be INFECTED: http://formalytidy.boeckman.net/dcs1lh0aif9xjyop7fqv7rnoc_8w8t/dcs.gif --> DNS: formalytidy.boeckman.net / 81.92.219.61 date finished: Sat May 25 12:03:45 CEST 2013