US CIA or Israel Mossad Cyber attacks against Stew Webb Whistleblower 2018-02-08

By Stew Webb Federal Whistle blower

President Trump Stop Cyber Terrorism against Stew Webb Whistle blower

The Computer Fraud and Abuse Act (CFAA) [18 U.S.C. Section 1030] makes it illegal for anyone to distribute computer code or place it in the stream of commerce if they intend to cause either damage or economic loss. The CFAA focuses on a code’s damage to computer systems and the attendant economic losses, and it provides criminal penalties for either knowingly or recklessly releasing a computer virus into computers used in interstate commerce.

Someone convicted under the CFAA could face a prison sentence as long as 20 years and a fine of up to $250,000.

I will be posting the entire report proving over 6 million felonies over three years against my email account, my internet service providers and my website stewwebb.com under The Computer Fraud and Abuse Act (CFAA) [18 U.S.C. Section 1030] and Violations of my 1st Amendment Right to freedom of speech and Violations under RICO The Racketeering Influence and Corruption Organization Act plus attempted murders since 2009 because of filings in US District Court in Kansas City for Injunctive Relief from attempted murder using Blackwater Helicopter to lazer and kill this whistle blower then three car crashes from October 2010 – November 2011 which I have not been paid and which the car crashes has disabled this Whistle blower and I am being cheated out of one half of the social security minimum that I am entitled to under US law.

Related

Below are at least 12 or more links to Israel, US DOD, British Intel, Larry Mizel, George HW Bush, Kansas City FBI, Missouri Fusing Center and many others in the US Shadow Government also now being called the Deep State. The Shadow Government is the top of the deep state also known as the Illuminati also known and the Council of 13 also known as the 12 Disciples of Satan, George HW Bush, Larry Mizel, Henry Kissinger, William Grace, Answar Ben Shari, Pope Benidick, David Rockefeller, Patrick WU aka Patrick WY, Meyer Rothchild, Paul Warberg, and I am missing 2 of the 12.

Note: These links are cyber terror attacks trying to plant malicious codes in stewwebb.com

this was after the cia was blocked see previous us cia cyber attacks against stew webb whistleblower

President Trump Stop Cyber Terrorism against Stew Webb Whistle blower

US CIA or Israel Mossad Cyber attacks against Stew Webb Whistleblower 2018-02-08
Malicious File Upload
Valencia, United States was blocked by firewall at http://stewwebb.com/wp-content/plugins/dzs-portfolio/admin/upload.php
2/8/2018 8:05:52 PM (34 minutes ago)
IP: 50.113.182.82 Hostname: pxy01twcca.ladc.ca.charter.com
Human/Bot: Bot
Browser: Safari version 0.0 running on iOS
Mozilla/5.0 (iPad; CPU OS 7_1_1 like Mac OS X; sl-SI) AppleWebKit/531.36.7 (KHTML, like Gecko) Version/4.0.5 Mobile/8B115 Safari/6531.36.7
NetRange: 50.113.0.0 – 50.113.255.255
[65536 addresses in this network]
CIDR: 50.113.0.0/16 (50.113.0.0 – 50.113.255.255)
[65536 addresses in this network]
NetName: RRWE
NetHandle: NET-50-113-0-0-1
Parent: NET50 (NET-50-0-0-0-0)
NetType: Direct Allocation
OriginAS: AS11955, AS21522, AS20001
Organization: Time Warner Cable Internet LLC (RRWE)
RegDate: 2011-05-20
Updated: 2011-05-20
Ref: https://whois.arin.net/rest/net/NET-50-113-0-0-1

OrgName: Time Warner Cable Internet LLC
OrgId: RRWE
Address: 13820 Sunrise Valley Drive
City: Herndon
StateProv: VA
PostalCode: 20171
Country: US
RegDate: 2000-10-04
Updated: 2017-01-30
Comment: Allocations for this OrgID serve Road Runner residential customers out of the Honolulu, HI, Kansas City, KS, Orange, CA and San Diego, CA RDCs.
Ref: https://whois.arin.net/rest/org/RRWE

ReferralServer: rwhois://ipmt.rr.com:4321

OrgTechHandle: IPTEC-ARIN
OrgTechName: IP Tech
OrgTechPhone: +1-703-345-3416
OrgTechEmail: abuse@rr.com
OrgTechRef: https://whois.arin.net/rest/poc/IPTEC-ARIN

OrgAbuseHandle: ABUSE10-ARIN
OrgAbuseName: Abuse
OrgAbusePhone: +1-703-345-3416
OrgAbuseEmail: abuse@rr.com
OrgAbuseRef: https://whois.arin.net/rest/poc/ABUSE10-ARIN
pxy01twcca.ladc.ca.charter.com
Domain IPv4 address Ranking Alexa Pagerank
charter.ac.th 61.47.2.173 4
charter.accountants 37.58.107.93
charter.adult
charter.africa 199.73.55.48
charter.agency 66.96.160.140
charter.airforce 184.168.221.54
charter.amsterdam 52.58.78.16
charter.asia 192.64.147.221
charter.at 144.76.42.134
charter.bar 89.31.143.1
charter.be 52.58.78.16
charter.bet 216.239.131.99
charter.bg 85.25.148.40 1
charter.biz 54.208.24.193
charter.biz.ua 185.67.0.201
charter.bm 192.254.189.223 3
charter.business 89.31.143.1
charter.by 93.125.99.156 0
charter.bz 208.91.197.130
charter.ca 149.56.27.142 3
charter.capital 50.63.202.27
charter.casa 209.99.40.225
charter.cc
charter.center
charter.ch 128.65.195.67 3
charter.chat 34.195.211.251
charter.cheap
charter.city
charter.cloud 50.63.202.13
charter.cm 103.224.182.252
charter.cn 23.27.192.117
charter.co 208.73.211.70
charter.co.id 54.251.170.4
charter.co.in 45.55.118.33
charter.co.kr 121.78.127.249
charter.co.nz 13.210.235.63 2
charter.co.th 61.19.246.34 0
charter.co.uk 193.0.60.152 396,797
charter.co.za 197.221.14.32
charter.coach 198.46.82.242
charter.com 142.136.81.135 35,563 6
charter.com.au 52.64.13.194 4
charter.com.co 107.180.44.131 1
charter.com.eg 212.129.60.22
charter.com.mx 72.52.4.122
charter.com.pl
charter.com.ua 62.149.0.230
charter.community 216.239.32.21
charter.company 192.64.147.227
charter.coop 90.161.233.239
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
Netherlands was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-admin/admin-ajax.php
2/8/2018 7:59:23 PM (39 minutes ago)
IP: 103.251.164.13 Hostname: 103.251.164.13
Human/Bot: Bot
Browser: Chrome version 0.0 running on Win32
Mozilla/5.0 (Windows NT 5.1) AppleWebKit/5321 (KHTML, like Gecko) Chrome/38.0.821.0 Mobile Safari/5321
% Information related to ‘103.0.0.0 – 103.255.255.255’
[16777216 addresses in this network]
% Abuse contact for ‘103.0.0.0 – 103.255.255.255’ is ‘security@apnic.net’
[16777216 addresses in this network]
inetnum: 103.0.0.0 – 103.255.255.255
[16777216 addresses in this network]
netname: APNIC-AP
descr: Asia Pacific Network Information Centre
descr: Regional Internet Registry for the Asia-Pacific Region
descr: 6 Cordelia Street
descr: PO Box 3646
descr: South Brisbane, QLD 4101
descr: Australia
country: AU
admin-c: HM20-AP
admin-c: IANA1-AP
tech-c: NO4-AP
mnt-by: APNIC-HM
mnt-lower: APNIC-HM
mnt-irt: IRT-APNIC-AP
status: ALLOCATED PORTABLE
last-modified: 2016-06-24T00:32:40Z
source: APNIC

irt: IRT-APNIC-AP
address: Brisbane, Australia
e-mail: helpdesk@apnic.net
abuse-mailbox: security@apnic.net
admin-c: HM20-AP
tech-c: NO4-AP
auth: # Filtered
remarks: APNIC is a Regional Internet Registry.
remarks: We do not operate the referring network and
remarks: is unable to investigate complaints of network abuse.
remarks: For more information, see www.apnic.net/irt
mnt-by: APNIC-HM
last-modified: 2011-01-24T04:06:22Z
source: APNIC

role: APNIC Hostmaster
address: 6 Cordelia Street
address: South Brisbane
address: QLD 4101
country: AU
phone: +61 7 3858 3100
fax-no: +61 7 3858 3199
e-mail: helpdesk@apnic.net
admin-c: AMS11-AP
tech-c: AH256-AP
nic-hdl: HM20-AP
remarks: Administrator for APNIC
notify: hostmaster@apnic.net
mnt-by: MAINT-APNIC-AP
last-modified: 2013-10-23T04:06:51Z
source: APNIC

role: Internet Assigned Numbers Authority
address: see http://www.iana.org.
country: US
phone: +1-310-823-9358
e-mail: nobody@apnic.net
admin-c: IANA1-AP
tech-c: IANA1-AP
nic-hdl: IANA1-AP
remarks: For more information on IANA services
remarks: go to IANA web site at http://www.iana.org.
mnt-by: MAINT-APNIC-AP
last-modified: 2011-12-06T03:04:43Z
source: APNIC

person: APNIC Network Operations
address: 6 Cordelia Street
address: South Brisbane
address: QLD 4101
country: AU
phone: +61 7 3858 3100
fax-no: +61 7 3858 3199
e-mail: netops@apnic.net
nic-hdl: NO4-AP
remarks: Administrator for APNIC Network Operations
notify: netops@apnic.net
mnt-by: MAINT-APNIC-AP
last-modified: 2010-12-17T01:17:45Z
source: APNIC
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
??????????????????????????????????
Centerview, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/dzs-videogallery/admin/upload.php
2/8/2018 7:58:07 PM (39 minutes ago)
IP: 76.0.4.88 Hostname: mo-76-0-4-88.dhcp.embarqhsd.net
Human/Bot: Bot
Browser: IE version 9.0 running on Win32
Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 4.0; Trident/4.0)
NetRange: 76.0.0.0 – 76.7.255.255
[524288 addresses in this network]
CIDR: 76.0.0.0/13 (76.0.0.0 – 76.15.255.255)
[1048576 addresses in this network]
NetName: EMBARQ-GLOBAL
NetHandle: NET-76-0-0-0-1
Parent: NET76 (NET-76-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: Embarq Corporation (EMBAR)
RegDate: 2006-01-19
Updated: 2012-03-02
Ref: https://whois.arin.net/rest/net/NET-76-0-0-0-1

OrgName: Embarq Corporation
OrgId: EMBAR
Address: 500 N New York Ave
City: Winter Park
StateProv: FL
PostalCode: 32789
Country: US
RegDate: 2006-07-06
Updated: 2017-04-07
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/EMBAR

OrgTechHandle: ESC36-ARIN
OrgTechName: Embarq Services – CDS
OrgTechPhone: +1-407-741-0500
OrgTechEmail: ipsupport@centurylinkservices.net
OrgTechRef: https://whois.arin.net/rest/poc/ESC36-ARIN

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN
he first DNS server is authns2.qwest.net. The current IPv4 address is 64.45.201.2. The mail server with the highest priority is mc3.centurylinkservices.net.
DNS server (NS records) authns2.qwest.net (208.44.130.120)
authns1.qwest.net (63.150.72.4)
Mail server (MX records) mc3.centurylinkservices.net (205.138.230.170)
mc2.centurylinkservices.net (205.138.231.145)
IP address (IPv4) 64.45.201.2
IP address (IPv6)
ASN number 2379
ASN name (ISP) Embarq Corporation
IP-range/subnet 64.45.192.0/19
64.45.192.0 – 64.45.223.255

Domain IPv4 address Ranking Alexa Pagerank
embarqhsd.com
embarqhsd.info
embarqhsd.net 64.45.201.2 -1
embarqhsd.org
IPv4 routes
Startip Endip Description Country #domains #spamhosts
185.67.40.0 185.67.43.255 DHCP customer net NO 0 0
103.255.150.0 103.255.150.255 Delta Net Dhcp clients 150.0 – 150.255 PK 0 1
103.255.151.0 103.255.151.255 Delta Net Dhcp clients 151.0 – 151.255 PK 0 2
5.158.128.0 5.158.191.255 B2B customer static DHCP range DE 736 0
5.179.32.0 5.179.63.255 Residential Wi-Free DHCP IE 0 0
5.179.64.0 5.179.71.255 Residential DHCP IE 5 0
31.185.64.0 31.185.95.255 Syd Energi internet – DHCP pooled DK 40 0
37.128.208.0 37.128.223.255 Syd Energi internet – DHCP pooled DK 190 0
37.228.192.0 37.228.255.255 Residential DHCP IE 17 36
41.58.0.0 41.58.255.255 SWIFT-NETWORKS-DHCP NG 15 25
41.63.128.0 41.63.159.255 2G-3G Public DHCP Services MG 2 3
41.74.16.0 41.74.31.255 2G and 3G public DHCP services MG 7 3
41.74.208.0 41.74.223.255 2G-3G Public DHCP Services MG 0 0
41.217.128.0 41.217.159.255 Assigned for dynamic DHCP pool for RINGO S.A.’s customers in Yaounde. CM 0 1
41.223.100.0 41.223.103.255 Clients whit DHCP in Benguela and Lobito. AO 0 2
41.223.124.0 41.223.127.255 To provide ip for our Nextnet (wireless platform) DHCP MZ 25 1
46.7.0.0 46.7.255.255 Residential DHCP IE 55 1
77.41.0.0 77.41.127.255 BRAS E-320-01 DHCP-pool RU 301 3
78.157.96.0 78.157.127.255 Syd Energi internet – DHCP pooled DK 258 0
79.97.0.0 79.97.255.255 Residential DHCP IE 78 1
79.133.0.0 79.133.31.255 Residential broadband access, DHCP addressing. FI 12 0
80.242.112.0 80.242.127.255 CMTS BL-10K-01 – DHCP POOL BA 6 0
81.13.128.0 81.13.255.255 IP DHCP Villages CH 24 3
81.24.240.0 81.24.247.255 DHCP pool for broadband cable modem RS 0 0
84.205.128.0 84.205.159.255 FTTx DHCP Client Pool FR 0 0
85.191.0.0 85.191.127.255 AURA – DHCP Dynamic DK 641 1
89.20.224.0 89.20.255.255 DHCP nett for Enivest NO 25 0
89.98.0.0 89.99.255.255 Residential DHCP NL 422 2
89.150.64.0 89.150.127.255 DHCP customers of Danish Broadband A/S DK 39 0
89.237.0.0 89.237.63.255 Southern Urals TransTelecom MSS DHCP + IPoE RU 43 1
92.241.128.0 92.241.159.255 CMTS NTK-01 DHCP pool BA 15 0
93.92.56.0 93.92.63.255 COMUNIQUE-DHCP-POOL-3 HU 1 0
93.94.216.0 93.94.223.255 ADC SOHO internet access dhcp address range AM 36 0
93.152.128.0 93.152.255.255 OnlineDirect DHCP Pool Space BG 243 17
93.186.0.0 93.186.15.255 FTTC-DHCP-POOL-NORD DE 9 0
94.138.64.0 94.138.95.255 Syd Energi internet – DHCP pooled DK 253 0
95.85.128.0 95.85.191.255 DHCP pool for broadband cable modem customers RS 1 29
95.157.0.0 95.157.63.255 DHCP Space DE 53 0
111.125.152.0 111.125.159.255 KBL035 WLL BTS in Kabul (DHCP pool allocated to subscribers) AF 0 0
124.195.192.0 124.195.223.255 Dhivehinet-ADSL-DHCP-POOL MV 7 7
151.252.216.0 151.252.223.255 Pool for DHCP connections DE 7 0
154.70.96.0 154.70.127.255 Assigned to Broadband DHCP Postpaid Customers Douala CM 26 4
154.120.128.0 154.120.191.255 2G and 3G public DHCP services MG 7 4
165.16.240.0 165.16.255.255 DHCP rnge for FTTH users ZA 0 0
165.90.224.0 165.90.239.255 Voice and Data IPC dhcp Pool ZA 0 0
176.61.0.0 176.61.127.255 Residential DHCP IE 36 1
178.16.208.0 178.16.223.255 I2B DHCP IPs for Broadband customers, Sollentuna (Core 1) SE 50 0
178.21.48.0 178.21.55.255 COMUNIQUE-DHCP-POOL-3 HU 0 1
178.23.96.0 178.23.103.255 Cabel Modem DHCP Pool NO 12 1
178.132.224.0 178.132.239.255 Syd Energi internet – DHCP pooled DK 112 0
IPv6 routes
Startip Endip Description Country #domains #spamhosts
2a00:d18:: 2a00:d18:ffff:ffff:ffff:ffff:ffff:ffff Net By Net Holding LLC RU 2 0
2a00:16d0:: 2a00:16d0:ffff:ffff:ffff:ffff:ffff:ffff Net By Net Holding LLC RU 0 0
2a03:d240:: 2a03:d240:ffff:ffff:ffff:ffff:ffff:ffff Net-Surf.net Ltd. BG 0 0
2001:518:: 2001:518:ffff:ffff:ffff:ffff:ffff:ffff Net Access Corporation US 6 0
2001:5a8:: 2001:5a8:ffff:ffff:ffff:ffff:ffff:ffff SONIC.NET, INC. US 12 0
2001:678:d4:: 2001:678:d4:ffff:ffff:ffff:ffff:ffff Medi@net S.r.l. IT 0 0
2001:678:170:: 2001:678:170:ffff:ffff:ffff:ffff:ffff Air NET Marcin Gola PL 0 0
2001:678:178:: 2001:678:178:ffff:ffff:ffff:ffff:ffff PROGRESS NET Sp. z o.o. PL 0 0
2001:678:190:: 2001:678:190:ffff:ffff:ffff:ffff:ffff Forest Net LTD RU 0 0
2001:678:320:: 2001:678:320:ffff:ffff:ffff:ffff:ffff Tipsport.net a.s. CZ 0 0
2001:678:38c:: 2001:678:38c:ffff:ffff:ffff:ffff:ffff Rawi-Net Sp. z o.o PL 0 0
2001:678:3c8:: 2001:678:3c8:ffff:ffff:ffff:ffff:ffff ARX-NET SA GR 5 0
2001:678:3e8:: 2001:678:3e8:ffff:ffff:ffff:ffff:ffff Janex-Net Marek Jasinski PL 2 0
2001:67c:84:: 2001:67c:84:ffff:ffff:ffff:ffff:ffff MAN net Ltd. CZ 0 0
2001:67c:e8:: 2001:67c:e8:ffff:ffff:ffff:ffff:ffff Multi-Net plus Ltd CZ 0 0
2001:67c:11c:: 2001:67c:11c:ffff:ffff:ffff:ffff:ffff MT-NEt G.Wojcik J.Kusnierz s.c. PL 3 0
2001:67c:53c:: 2001:67c:53c:ffff:ffff:ffff:ffff:ffff RECRO-NET d.o.o. HR 0 0
2001:67c:618:: 2001:67c:618:ffff:ffff:ffff:ffff:ffff KM-NET Marek Sobol PL 0 0
2001:67c:668:: 2001:67c:668:ffff:ffff:ffff:ffff:ffff SC ITNS.NET SRL MD 0 0
2001:67c:738:: 2001:67c:738:ffff:ffff:ffff:ffff:ffff Maximum-Net LLC UA 2 0
2001:67c:7e4:: 2001:67c:7e4:ffff:ffff:ffff:ffff:ffff BB-ONE.net Limited DE 0 0
2001:67c:10a8:: 2001:67c:10a9:ffff:ffff:ffff:ffff:ffff berli.net DE 2 0
2001:67c:1160:: 2001:67c:1160:ffff:ffff:ffff:ffff:ffff Schuh-NET DE 0 0
2001:67c:11e8:: 2001:67c:11e8:ffff:ffff:ffff:ffff:ffff WI-HURA.NET Sp. z o.o. PL 0 0
2001:67c:1320:: 2001:67c:1320:ffff:ffff:ffff:ffff:ffff integration.net GmbH DE 215 0
2001:67c:13e0:: 2001:67c:13e0:ffff:ffff:ffff:ffff:ffff MS-NET MICHAL SLUSARCZYK PL 0 0
2001:67c:1728:: 2001:67c:1728:ffff:ffff:ffff:ffff:ffff 6assist.net IXP UA 0 0
2001:67c:2100:: 2001:67c:2100:ffff:ffff:ffff:ffff:ffff CH-NET S.R.L. RO 1 0
2001:67c:2158:: 2001:67c:2158:ffff:ffff:ffff:ffff:ffff WIECZOR-NET Sieci Komputerowe, Internet Henryk Wieczorek PL 1 0
2001:67c:2190:: 2001:67c:2190:ffff:ffff:ffff:ffff:ffff SPOJE.NET s.r.o. CZ 160 0
2001:67c:21ec:: 2001:67c:21ec:ffff:ffff:ffff:ffff:ffff e-utp.net Marcin Gondek PL 8 0
2001:67c:24f4:: 2001:67c:24f4:ffff:ffff:ffff:ffff:ffff BEST-NET s.r.o. CZ 1,425 0
2001:67c:2604:: 2001:67c:2604:ffff:ffff:ffff:ffff:ffff SURANY.NET s.r.o. SK 3 0
2001:67c:286c:: 2001:67c:286c:ffff:ffff:ffff:ffff:ffff thirdnode.net IPv6 PI GB 8 0
2001:67c:2ac0:: 2001:67c:2ac0:ffff:ffff:ffff:ffff:ffff secondary.net.ua UA 1 0
2001:67c:2b5c:: 2001:67c:2b5c:ffff:ffff:ffff:ffff:ffff Juraj Koba – SOBOTISTE.NET SK 0 0
2001:67c:2db4:: 2001:67c:2db4:ffff:ffff:ffff:ffff:ffff elzappero.net Marcin Zapotoczny PL 0 0
2001:67c:2e34:: 2001:67c:2e34:ffff:ffff:ffff:ffff:ffff NPK Home-Net Ltd. UA 0 0
2001:7f8:29:: 2001:7f8:29:ffff:ffff:ffff:ffff:ffff contact: ipv6@n-ix.net for information DE 0 0
2001:7f8:9b:: 2001:7f8:9b:ffff:ffff:ffff:ffff:ffff Podkarpacki.net Rafal Czarny PL 0 0
2001:7f8:a9:: 2001:7f8:a9:ffff:ffff:ffff:ffff:ffff SC ITNS.NET SRL MD 0 0
2001:7fe:: 2001:7fe:ffff:ffff:ffff:ffff:ffff:ffff Prefix reserved for DNS root name server i.root-servers.net. SE 0 0
2001:930:: 2001:930:ffff:ffff:ffff:ffff:ffff:ffff VODAFONE NET ILETISIM HIZMETLERI ANONIM SIRKETI TR 0 0
2001:a60:: 2001:a67:ffff:ffff:ffff:ffff:ffff:ffff M-net Telekommunikations GmbH DE 922 0
2001:ae0:: 2001:ae1:ffff:ffff:ffff:ffff:ffff:ffff teuto.net Netzdienste GmbH DE 4 0
2001:df0:4b:: 2001:df0:4b:ffff:ffff:ffff:ffff:ffff CardGate.net Pty Ltd AU 1 0
2001:df0:68:: 2001:df0:68:ffff:ffff:ffff:ffff:ffff Convivial Net JP 1 0
2001:df0:aa:: 2001:df0:aa:ffff:ffff:ffff:ffff:ffff PT. Fotografer Net Global ID 0 0
2001:df1:1e00:: 2001:df1:1e00:ffff:ffff:ffff:ffff:ffff INTERMEDIA.NET AUSTRALIA PTY. LTD. AU 0 0
2001:df1:3f00:: 2001:df1:3f00:ffff:ffff:ffff:ffff:ffff Crystal Net Pte Ltd SG 0 0
Providers
ASN Provider Country #prefixes IPv4 #prefixes IPv6 #domains #spamhosts
12714 Net By Net Holding LLC RU 193 2 4,005 74
20911 Net-Surf.net Ltd. BG 28 0 69 12
51939 Net By Net Holding LLC RU 1 0 0 0
267 Nether.Net US 1 0 0 0
606 schat.net US 3 0 49 0
819 LARG*net CA 21 1 166 0
1618 Daytona Net Works, Inc. US 2 0 252 1
1886 BT NET d.o.o. za trgovinu i usluge HR 6 8 20 2
1902 Deutsche Telekom Pan-Net s.r.o. SK 3 0 0 0
2527 So-net Entertainment Corporation JP 49 2 4,021 16
3254 Lucky Net Ltd UA 4 0 2,373 0
3263 Erfan Net Fars Internet and Support Services Company PJSC IR 1 0 0 2
3595 Global Net Access, LLC US 37 3 91,367 13
3931 Logical Net Corporation US 6 0 744 0
3976 I.Net Technologies Inc. KR 1 0 0 0
4685 Asahi Net JP 33 2 8,844 22
4776 A-Net Co., Ltd. TH 35 1 147 2
4781 PAGIC.net , INC. TW 8 0 3 0
4788 TM Net, Internet Service Provider MY 385 13 33,876 741
5405 CSO.net Internet Services GmbH AT 1 1 3,955 0
5541 SC AD NET MARKET MEDIA SRL RO 23 3 676 7
6364 Atlantic.net, Inc. US 47 5 18,807 1
6381 BellSouth.net Inc. US 7 0 0 0
6382 BellSouth.net Inc. US 5 0 0 0
6383 BellSouth.net Inc. US 5 0 0 0
6384 BellSouth.net Inc. US 7 0 0 0
6385 BellSouth.net Inc. US 6 0 0 0
6386 BellSouth.net Inc. US 12 0 4 0
6389 BellSouth.net Inc. US 1,938 0 11,120 12
6624 Gower.Net US 2 0 27 0
6735 sdt.net AG DE 6 0 301 1
6831 Net & Com s.r.l. IT 2 1 649 0
6911 Pro-Net Internet Services Limited GB 4 0 165 0
7106 Com Net, Inc. US 9 1 964 0
7146 Georgia Business Net, Inc US 2 0 44 0
7175 aussie.net Pty Limited AU 2 3 0 0
7350 MetComm.Net, LLC US 1 0 38 0
7403 Colba Net Inc. CA 9 0 289 0
7600 Escape.net AU 54 4 518 0
7641 China Broadcasting TV Net CN 9 0 51 0
7806 Binary Net, LLC US 14 0 1,276 0
7850 iHighway.net, Inc. US 22 1 36 0
7891 Bellsouth.Net US 1 0 0 0
7894 Bellsouth.Net US 2 0 1 0
8001 Net Access Corporation US 39 4 15,397 0
8057 Vision Net, Inc. US 43 1 315 1
8061 Bellsouth.Net US 13 0 0 0
8063 Bellsouth.Net US 4 0 0 0
8345 Irkutsk Business Net RU 9 0 294 8
8386 VODAFONE NET ILETISIM HIZMETLERI ANONIM SIRKETI TR 506 0 342 3,679

@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
?????????????????????????????????
Mount Gilead, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/dzs-portfolio/upload.php
2/8/2018 7:56:52 PM (39 minutes ago)
IP: 71.213.176.237 Hostname: 71-213-176-237.mnfd.qwest.net
Human/Bot: Bot
Browser: undefined
Opera/8.91 (Windows 95; sl-SI) Presto/2.12.257 Version/12.00
NetRange: 71.208.0.0 – 71.223.255.255
[1048576 addresses in this network]
CIDR: 71.208.0.0/12 (71.208.0.0 – 71.223.255.255)
[1048576 addresses in this network]
NetName: QWEST-INET-118
NetHandle: NET-71-208-0-0-1
Parent: NET71 (NET-71-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: Qwest Communications Company, LLC (QCC-18)
RegDate: 2005-05-06
Updated: 2013-09-16
Ref: https://whois.arin.net/rest/net/NET-71-208-0-0-1

OrgName: Qwest Communications Company, LLC
OrgId: QCC-18
Address: 100 CENTURYLINK DR
City: Monroe
StateProv: LA
PostalCode: 71203
Country: US
RegDate: 2005-05-09
Updated: 2017-01-28
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/QCC-18

OrgTechHandle: QIA-ARIN
OrgTechName: Qwest IP Admin
OrgTechPhone: +1-877-886-6515
OrgTechEmail: ipadmin@centurylink.com
OrgTechRef: https://whois.arin.net/rest/poc/QIA-ARIN

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN

RNOCHandle: QIN-ARIN
RNOCName: Qwest IP NOC
RNOCPhone: +1-877-886-6515
RNOCEmail: support@qwestip.net
RNOCRef: https://whois.arin.net/rest/poc/QIN-ARIN

RTechHandle: QIA-ARIN
RTechName: Qwest IP Admin
RTechPhone: +1-877-886-6515
RTechEmail: ipadmin@centurylink.com
RTechRef: https://whois.arin.net/rest/poc/QIA-ARIN

RAbuseHandle: QIA2-ARIN
RAbuseName: Qwest Abuse
RAbusePhone: +1-877-886-6515
RAbuseEmail: abuse@qwest.net
RAbuseRef: https://whois.arin.net/rest/poc/QIA2-ARIN

@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
??????????????????????????????????
malicious file upload
Kissimmee, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/dzs-videogallery/upload.php
2/8/2018 7:56:33 PM (1 minute ago)
IP: 71.54.179.124 Hostname: fl-71-54-179-124.dhcp.embarqhsd.net
Human/Bot: Bot
Browser: IE version 9.0 running on Win32
Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 4.0; Trident/4.0)
NetRange: 71.48.0.0 – 71.55.255.255
[524288 addresses in this network]
CIDR: 71.48.0.0/13 (71.48.0.0 – 71.63.255.255)
[1048576 addresses in this network]
NetName: EMBARQ-GLOBAL
NetHandle: NET-71-48-0-0-1
Parent: NET71 (NET-71-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: Embarq Corporation (EMBAR)
RegDate: 2005-04-26
Updated: 2012-03-02
Ref: https://whois.arin.net/rest/net/NET-71-48-0-0-1

OrgName: Embarq Corporation
OrgId: EMBAR
Address: 500 N New York Ave
City: Winter Park
StateProv: FL
PostalCode: 32789
Country: US
RegDate: 2006-07-06
Updated: 2017-04-07
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/EMBAR

OrgTechHandle: ESC36-ARIN
OrgTechName: Embarq Services – CDS
OrgTechPhone: +1-407-741-0500
OrgTechEmail: ipsupport@centurylinkservices.net
OrgTechRef: https://whois.arin.net/rest/poc/ESC36-ARIN

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN

#
# ARIN WHOIS data and services are subject to the Terms of Use
This domain is hosted by Embarq Corporation (AS2379). The first DNS server is dns-auth-2.centurylinkservices.net. The current IPv4 address is 64.45.201.2. The mail server with the highest priority is mail.centurylinkservices.net.
DNS server (NS records) dns-auth-2.centurylinkservices.net (208.44.130.120)
dns-auth-3.embarqservices.net (63.150.72.4)
dns-auth-1.embarqservices.net (63.150.72.4)
dns-auth-5.embarqservices.net (63.150.72.4)
dns-auth-1.centurylinkservices.net (63.150.72.4)
authns2.qwest.net (208.44.130.120)
dns-auth-4.embarqservices.net (208.44.130.120)
authns1.qwest.net (63.150.72.4)
dns-auth-3.centurylinkservices.net (63.150.72.4)
dns-auth-5.centurylinkservices.net (63.150.72.4)
dns-auth-4.centurylinkservices.net (208.44.130.120)
dns-auth-2.embarqservices.net (208.44.130.120)
Mail server (MX records) mail.centurylinkservices.net (209.26.88.20)
IP address (IPv4) 64.45.201.2
IP address (IPv6)
ASN number 2379
ASN name (ISP) Embarq Corporation
IP-range/subnet 64.45.192.0/19
64.45.192.0 – 64.45.223.255

@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
Nusajaya, Malaysia visited http://www.stewwebb.com/
2/8/2018 7:55:24 PM (4 minutes ago)
IP: 60.51.63.126 Hostname: 60.51.63.126
Browser: Safari version 0.0 running on MacOSX
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_3) AppleWebKit/604.5.6 (KHTML, like Gecko) Version/11.0.3 Safari/604.5.6
% Information related to ‘60.51.0.0 – 60.51.255.255’
[65536 addresses in this network]
% Abuse contact for ‘60.51.0.0 – 60.51.255.255’ is ‘abuse@tm.com.my’
[65536 addresses in this network]
inetnum: 60.51.0.0 – 60.51.255.255
[65536 addresses in this network]
netname: ADSL-STREAMYX
descr: TMNST
country: MY
admin-c: EAK2-AP
tech-c: EAK2-AP
status: ASSIGNED NON-PORTABLE
mnt-by: MAINT-AP-STREAMYX
mnt-lower: MAINT-AP-STREAMYX
mnt-routes: MAINT-AP-STREAMYX
mnt-irt: IRT-TMNST-MY
notify: tmcops@tm.net.my
last-modified: 2014-05-15T02:43:00Z
source: APNIC

irt: IRT-TMNST-MY
address: TELEKOM MALAYSIA BERHAD
address: TM BRICKFIELD
address: Jalan Tun Sambanthan
address: 43200 KUALA LUMPUR
e-mail: ipmc_ipcore@tm.com.my
abuse-mailbox: abuse@tm.com.my
admin-c: TIA7-AP
tech-c: TIA7-AP
auth: # Filtered
mnt-by: MAINT-AP-STREAMYX
last-modified: 2014-02-11T03:36:40Z
source: APNIC

person: EMRAN AHMED KAMAL
nic-hdl: EAK2-AP
e-mail: abuse@tm.com.my
address: Telekom Malaysia
address: Jalan Pantai Baru, Kuala Lumpur.
phone: +6-03-83185434
fax-no: +6-03-22402126
country: MY
mnt-by: TM-NET-AP
abuse-mailbox: abuse@tm.com.my
last-modified: 2014-02-11T04:58:41Z
source: APNIC

@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
???????????????????????
Malicious File Upload
United States Warrenton, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/uploader/uploadify/uploadify.php
2/8/2018 7:55:17 PM (5 minutes ago)
IP: 174.125.14.182 Hostname: 174-125-14-182.dyn.centurytel.net
Human/Bot: Bot
IP address 174.125.14.182
Location Warrenton, Missouri, United States
IP address 174.125.14.182
Reverse DNS (PTR record) 174-125-14-182.dyn.centurytel.net
DNS server (NS record) authns1.qwest.net (63.150.72.4)
authns2.qwest.net (208.44.130.120)
ASN number 22561
ASN name (ISP) CenturyTel Internet Holdings, Inc.
IP-range/subnet 174.125.0.0/16
174.125.0.0 – 174.125.255.255
Number of SPAM hosts on 174.125.0.0/16 32
centurytel.net
This domain is hosted by Synacor, Inc. (AS36271). The first DNS server is authns2.qwest.net. The current IPv4 address is 69.168.97.85. The mail server with the highest priority is mx.centurylink.net.
v=spf1 include:centurylink.net ip4:206.152.134.0/24
ip4:209.235.148.0/24 ip4:209.235.152.0/24 ip4:205.219.233.0/24
ip4:69.179.208.252 ip4:209.142.136.105 ~a
DNS server (NS records) authns2.qwest.net (208.44.130.120)
authns1.qwest.net (63.150.72.4)
Mail server (MX records) mx.centurylink.net (206.152.134.65)
IP address (IPv4) 69.168.97.85
IP address (IPv6)
ASN number 36271
ASN name (ISP) Synacor, Inc.
IP-range/subnet 69.168.97.0/24
69.168.97.0 – 69.168.97.255

Browser: Firefox version 36.0 running on MacOSX
Mozilla/5.0 (Macintosh; PPC Mac OS X 10_6_6 rv:2.0) Gecko/20161124 Firefox/36.0
Domain IPv4 address Ranking Alexa Pagerank
centurytel.adult
centurytel.ch 216.239.38.21
centurytel.com 155.70.44.25 7
centurytel.info
centurytel.net 69.168.97.85 5
centurytel.porn
centurytel.sex
centurytel.xxx 199.253.28.249 -1
centurytelarena.com
centurytelbusiness.com 155.70.55.25 -1
centurytelcenter.com 208.91.196.113 4
centurytelco.com 162.241.217.210
centuryteldigitaltv.com 184.168.221.47
centurytele.com 52.73.124.185
centurytelecom.com 207.148.248.143
centurytelecom.com.br 174.36.74.106
centurytelecom.net 212.32.242.61
centurytelecom.net.br 174.36.74.106
centurytelecomhn.com 74.208.236.253
centurytelemail.com
centurytelemail.net 64.91.66.178 -1
centurytelembarqmerger.com 155.70.44.25 -1
centurytelephone.com 54.174.212.152
centurytelevision.co.uk 217.160.0.216
centurytelfax.com
centurytelgallery.com 204.115.251.24 -1
centurytelhosting.com
centurytelhotspots.com 155.70.44.25 7
centurytelink.com
centurytelink.net
centurytelink.org
centurytelinsider.com 64.91.66.179 -1
centurytell.com 69.162.80.54
centurytell.net 208.91.196.94
centurytellincv.com 206.188.192.54
centurytellink.com 72.52.4.122
centurytellink.net
centurytellink.org
centurytelmail.net
centurytelmyway.com
centurytelnet.com 173.230.149.193 0
centuryteloffers.com 184.168.221.57
centurytelpersonaltouch.com
centurytelphones.com
centurytelportal.com
centurytelrewards.com 155.70.55.25 -1
centurytels.net
centurytelsecurity.com
centurytelsolutions.com 155.70.44.25 -1
centurytelsolutions.net 63.172.100.91 -1
IPv4 routes
Startip Endip Description Country #domains #spamhosts
91.109.174.0 91.109.174.255 Comuni Riuniti XL s.r.l. Net 174 IT 0 0
95.182.32.0 95.182.63.255 ASVT-NET-95.182.32 RU 13 0
27.0.156.0 27.0.159.255 6F, Yue Xie Building, No.160-174, Lockhart Road, Wanchai HK 2,899 0
103.106.66.0 103.106.67.255 174.io New Zealand Network NZ 0 0
103.208.8.0 103.208.11.255 6F, Yue Xie Building, No.160-174, Lockhart Road, Wanchai HK 2,452 0
103.106.67.0 103.106.67.255 174.io Anycast Network NZ 0 0
103.208.8.0 103.208.8.255 6F, Yue Xie Building, No.160-174, Lockhart Road, Wanchai HK 0 0
195.123.174.0 195.123.175.255 NTCU 195.123.174.0/23 UA 4 0
202.1.174.0 202.1.174.255 ADSL Subscribers in 202.1.174.0/24 SB 7 1
94.125.168.0 94.125.175.255 Armatis-LC public net 94.125.168.0/24 FR 8 0
94.125.168.0 94.125.168.255 Armatis-LC public net 94.125.168.0/24 FR 8 0
81.26.112.0 81.26.127.255 AS5587.NET ADSL Dyn range 2 GB 0 0
5.152.182.0 5.152.182.255 MMI-A 5.152.182.0/24 GB 74 0
45.126.182.0 45.126.182.255 Action POS LLC – 45.126.182.0/24 HK 330 0
82.163.68.0 82.163.71.255 SuperLink ADSL Service 182 PS 1 0
89.108.182.0 89.108.182.255 89.108.182.0/24 LB 0 0
93.126.182.0 93.126.182.255 93.126.182.0/23, 93.126.184.0/22 LB 0 4
93.126.183.0 93.126.183.255 93.126.182.0/23, 93.126.184.0/22 LB 0 7
93.126.184.0 93.126.187.255 93.126.182.0/23, 93.126.184.0/22 LB 0 12
93.126.184.0 93.126.184.255 93.126.182.0/23, 93.126.184.0/22 LB 0 5
93.126.185.0 93.126.185.255 93.126.182.0/23, 93.126.184.0/22 LB 0 2
93.126.186.0 93.126.186.255 93.126.182.0/23, 93.126.184.0/22 LB 0 2
93.126.187.0 93.126.187.255 93.126.182.0/23, 93.126.184.0/22 LB 0 3
195.123.182.0 195.123.183.255 RIM2000 195.123.182.0/23 UA 0 0
91.198.100.0 91.198.100.255 Al. Jerozolimskie 125/127 PL 0 0
103.68.200.0 103.68.203.255 Woodlands Drive 14 BLK 514 #09-125 SG 0 0
125.255.0.0 125.255.255.255 125.255.0.0/17 JP 1,527 0
193.43.90.0 193.43.90.255 Al. Jerozolimskie 125/127 PL 1 0
202.9.65.0 202.9.65.255 Level 1, 125 Queen St AU 2 0
202.12.103.0 202.12.103.255 Sector 125 IN 1 1
5.105.124.0 5.105.127.255 TRINITY-CLNTS-BLOCK-125 UA 0 3
89.34.125.0 89.34.125.255 Noop-89-34-125-0-24 GB 0 0
125.255.64.0 125.255.95.255 125.255.0.0/17 JP 490 0
125.255.116.0 125.255.119.255 125.255.0.0/17 JP 11 0
125.255.120.0 125.255.127.255 125.255.0.0/17 JP 0 0
125.255.224.0 125.255.231.255 125.255.128.0/17 JP 0 0
125.255.240.0 125.255.255.255 125.255.128.0/17 JP 268 0
178.236.125.0 178.236.125.255 COMENERSOL-125/24 ES 0 0
202.21.96.0 202.21.96.255 MobiNet-Customer-125 MN 1 1
202.21.122.0 202.21.122.255 MobiNet-Customer-125 MN 0 0
31.7.16.0 31.7.31.255 ELISA-DYN-EX-KYMP FI 0 0
85.157.0.0 85.157.255.255 ELISA-DYN FI 195 1
91.198.22.0 91.198.22.255 Dyn Ltd GB 8 0
134.90.208.0 134.90.215.255 Dyn. address space for broadband users RU 0 0
185.38.96.0 185.38.99.255 Dyn Ltd GB 0 0
188.117.192.0 188.117.255.255 RS-IKOMLINE-CUST-CABLE-DYN AT 14 4
31.200.234.0 31.200.235.255 ISP Podryad – ART – PPP Dyn Pool – 1 RU 5 0
46.47.8.0 46.47.15.255 Dyn clients Yaroslavl region RU 0 0
46.47.16.0 46.47.23.255 Dyn clients Yaroslavl region RU 0 0
80.95.38.0 80.95.39.255 Dyn. address space for broadband users RU 0 0
IPv6 routes
Startip Endip Description Country #domains #spamhosts
2001:df3:2600:: 2001:df3:2600:ffff:ffff:ffff:ffff:ffff Woodlands Drive 14 BLK 514 #09-125 SG 0 0
2402:3e40:: 2402:3e40:ffff:ffff:ffff:ffff:ffff:ffff 174.io New Zealand Network NZ 0 0
2a02:e180:: 2a02:e187:ffff:ffff:ffff:ffff:ffff:ffff Dyn Ltd GB 0 0
2a02:e180:: 2a02:e180::ffff:ffff:ffff:ffff:ffff Dyn Ltd GB 0 0
2a02:e180:1:: 2a02:e180:1:ffff:ffff:ffff:ffff:ffff Dyn Ltd GB 0 0
2a02:e180:2:: 2a02:e180:2:ffff:ffff:ffff:ffff:ffff Dyn Ltd GB 0 0
2a02:e180:3:: 2a02:e180:3:ffff:ffff:ffff:ffff:ffff Dyn Ltd GB 0 0
2a02:e180:4:: 2a02:e180:4:ffff:ffff:ffff:ffff:ffff Dyn Ltd GB 0 0
2a02:e180:5:: 2a02:e180:5:ffff:ffff:ffff:ffff:ffff Dyn Ltd GB 0 0
2a02:e180:6:: 2a02:e180:6:ffff:ffff:ffff:ffff:ffff Dyn Ltd GB 0 0
2a02:e180:7:: 2a02:e180:7:ffff:ffff:ffff:ffff:ffff Dyn Ltd GB 0 0
2a02:e180:8:: 2a02:e180:8:ffff:ffff:ffff:ffff:ffff Dyn Ltd GB 0 0
2a02:e184:: 2a02:e184:ffff:ffff:ffff:ffff:ffff:ffff Dyn Ltd GB 0 0
2a02:e185:: 2a02:e185:ffff:ffff:ffff:ffff:ffff:ffff Dyn Ltd GB 0 0
2a02:e186:: 2a02:e186:ffff:ffff:ffff:ffff:ffff:ffff Dyn Ltd GB 0 0
2a02:e187:: 2a02:e187:ffff:ffff:ffff:ffff:ffff:ffff Dyn Ltd GB 0 0
2a00:d18:: 2a00:d18:ffff:ffff:ffff:ffff:ffff:ffff Net By Net Holding LLC RU 2 0
2a00:16d0:: 2a00:16d0:ffff:ffff:ffff:ffff:ffff:ffff Net By Net Holding LLC RU 0 0
2a03:d240:: 2a03:d240:ffff:ffff:ffff:ffff:ffff:ffff Net-Surf.net Ltd. BG 0 0
2001:518:: 2001:518:ffff:ffff:ffff:ffff:ffff:ffff Net Access Corporation US 6 0
2001:5a8:: 2001:5a8:ffff:ffff:ffff:ffff:ffff:ffff SONIC.NET, INC. US 12 0
2001:678:d4:: 2001:678:d4:ffff:ffff:ffff:ffff:ffff Medi@net S.r.l. IT 0 0
2001:678:170:: 2001:678:170:ffff:ffff:ffff:ffff:ffff Air NET Marcin Gola PL 0 0
2001:678:178:: 2001:678:178:ffff:ffff:ffff:ffff:ffff PROGRESS NET Sp. z o.o. PL 0 0
2001:678:190:: 2001:678:190:ffff:ffff:ffff:ffff:ffff Forest Net LTD RU 0 0
2001:678:320:: 2001:678:320:ffff:ffff:ffff:ffff:ffff Tipsport.net a.s. CZ 0 0
2001:678:38c:: 2001:678:38c:ffff:ffff:ffff:ffff:ffff Rawi-Net Sp. z o.o PL 0 0
2001:678:3c8:: 2001:678:3c8:ffff:ffff:ffff:ffff:ffff ARX-NET SA GR 5 0
2001:678:3e8:: 2001:678:3e8:ffff:ffff:ffff:ffff:ffff Janex-Net Marek Jasinski PL 2 0
2001:67c:84:: 2001:67c:84:ffff:ffff:ffff:ffff:ffff MAN net Ltd. CZ 0 0
2001:67c:e8:: 2001:67c:e8:ffff:ffff:ffff:ffff:ffff Multi-Net plus Ltd CZ 0 0
2001:67c:11c:: 2001:67c:11c:ffff:ffff:ffff:ffff:ffff MT-NEt G.Wojcik J.Kusnierz s.c. PL 3 0
2001:67c:53c:: 2001:67c:53c:ffff:ffff:ffff:ffff:ffff RECRO-NET d.o.o. HR 0 0
2001:67c:618:: 2001:67c:618:ffff:ffff:ffff:ffff:ffff KM-NET Marek Sobol PL 0 0
2001:67c:668:: 2001:67c:668:ffff:ffff:ffff:ffff:ffff SC ITNS.NET SRL MD 0 0
2001:67c:738:: 2001:67c:738:ffff:ffff:ffff:ffff:ffff Maximum-Net LLC UA 2 0
2001:67c:7e4:: 2001:67c:7e4:ffff:ffff:ffff:ffff:ffff BB-ONE.net Limited DE 0 0
2001:67c:10a8:: 2001:67c:10a9:ffff:ffff:ffff:ffff:ffff berli.net DE 2 0
2001:67c:1160:: 2001:67c:1160:ffff:ffff:ffff:ffff:ffff Schuh-NET DE 0 0
2001:67c:11e8:: 2001:67c:11e8:ffff:ffff:ffff:ffff:ffff WI-HURA.NET Sp. z o.o. PL 0 0
2001:67c:1320:: 2001:67c:1320:ffff:ffff:ffff:ffff:ffff integration.net GmbH DE 215 0
2001:67c:13e0:: 2001:67c:13e0:ffff:ffff:ffff:ffff:ffff MS-NET MICHAL SLUSARCZYK PL 0 0
2001:67c:1728:: 2001:67c:1728:ffff:ffff:ffff:ffff:ffff 6assist.net IXP UA 0 0
2001:67c:2100:: 2001:67c:2100:ffff:ffff:ffff:ffff:ffff CH-NET S.R.L. RO 1 0
2001:67c:2158:: 2001:67c:2158:ffff:ffff:ffff:ffff:ffff WIECZOR-NET Sieci Komputerowe, Internet Henryk Wieczorek PL 1 0
2001:67c:2190:: 2001:67c:2190:ffff:ffff:ffff:ffff:ffff SPOJE.NET s.r.o. CZ 160 0
2001:67c:21ec:: 2001:67c:21ec:ffff:ffff:ffff:ffff:ffff e-utp.net Marcin Gondek PL 8 0
2001:67c:24f4:: 2001:67c:24f4:ffff:ffff:ffff:ffff:ffff BEST-NET s.r.o. CZ 1,425 0
2001:67c:2604:: 2001:67c:2604:ffff:ffff:ffff:ffff:ffff SURANY.NET s.r.o. SK 3 0
2001:67c:286c:: 2001:67c:286c:ffff:ffff:ffff:ffff:ffff thirdnode.net IPv6 PI GB 8 0
Providers
ASN Provider Country #prefixes IPv4 #prefixes IPv6 #domains #spamhosts
137259 174.net.nz Limited NZ 1 1 0 0
56056 Sector 125 IN 2 0 3 1
5668 CenturyTel Internet Holdings, Inc. US 3 0 6 0
7191 CenturyTel Internet Holdings, Inc. US 1 0 0 0
16835 CenturyTel Internet Holdings, Inc. US 17 0 17 0
17047 CenturyTel Solutions, LLC US 1 0 1 0
22561 CenturyTel Internet Holdings, Inc. US 344 0 1,838 136
23126 CenturyTel Solutions, LLC US 40 0 56 0
12714 Net By Net Holding LLC RU 193 2 4,005 74
20911 Net-Surf.net Ltd. BG 28 0 69 12
51939 Net By Net Holding LLC RU 1 0 0 0
267 Nether.Net US 1 0 0 0
606 schat.net US 3 0 49 0
819 LARG*net CA 21 1 166 0
1618 Daytona Net Works, Inc. US 2 0 252 1
1886 BT NET d.o.o. za trgovinu i usluge HR 6 8 20 2
1902 Deutsche Telekom Pan-Net s.r.o. SK 3 0 0 0
2527 So-net Entertainment Corporation JP 49 2 4,021 16
3254 Lucky Net Ltd UA 4 0 2,373 0
3263 Erfan Net Fars Internet and Support Services Company PJSC IR 1 0 0 2
3595 Global Net Access, LLC US 37 3 91,367 13
3931 Logical Net Corporation US 6 0 744 0
3976 I.Net Technologies Inc. KR 1 0 0 0
4685 Asahi Net JP 33 2 8,844 22
4776 A-Net Co., Ltd. TH 35 1 147 2
4781 PAGIC.net , INC. TW 8 0 3 0
4788 TM Net, Internet Service Provider MY 385 13 33,876 741
5405 CSO.net Internet Services GmbH AT 1 1 3,955 0
5541 SC AD NET MARKET MEDIA SRL RO 23 3 676 7
6364 Atlantic.net, Inc. US 47 5 18,807 1
6381 BellSouth.net Inc. US 7 0 0 0
6382 BellSouth.net Inc. US 5 0 0 0
6383 BellSouth.net Inc. US 5 0 0 0
6384 BellSouth.net Inc. US 7 0 0 0
6385 BellSouth.net Inc. US 6 0 0 0
6386 BellSouth.net Inc. US 12 0 4 0
6389 BellSouth.net Inc. US 1,938 0 11,120 12
6624 Gower.Net US 2 0 27 0
6735 sdt.net AG DE 6 0 301 1
6831 Net & Com s.r.l. IT 2 1 649 0
6911 Pro-Net Internet Services Limited GB 4 0 165 0
7106 Com Net, Inc. US 9 1 964 0
7146 Georgia Business Net, Inc US 2 0 44 0
7175 aussie.net Pty Limited AU 2 3 0 0
7350 MetComm.Net, LLC US 1 0 38 0
7403 Colba Net Inc. CA 9 0 289 0
7600 Escape.net AU 54 4 518 0
7641 China Broadcasting TV Net CN 9 0 51 0
7806 Binary Net, LLC US 14 0 1,276 0
7850 iHighway.net, Inc. US 22
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
??????????????????????????????
Malicious File Upload
Belleville, United States was blocked by firewall for a Malicious File Upload in file: files=Vsvsd.php at http://stewwebb.com/wp-content/plugins/php-event-calendar/server/file-uploader/
2/8/2018 7:54:58 PM (6 minutes ago)
IP: 67.234.107.79 Hostname: pa-67-234-107-79.dhcp.embarqhsd.net
Human/Bot: Bot
Browser: Safari version 0.0 running on MacOSX
Mozilla/5.0 (Macintosh; PPC Mac OS X 10_5_6 rv:3.0; sl-SI) AppleWebKit/535.7.2 (KHTML, like Gecko) Version/4.0.2 Safari/535.7.2

NetRange: 67.232.0.0 – 67.239.255.255
[524288 addresses in this network]
CIDR: 67.232.0.0/13 (67.232.0.0 – 67.239.255.255)
[524288 addresses in this network]
NetName: EMBARQ-GLOBAL
NetHandle: NET-67-232-0-0-1
Parent: NET67 (NET-67-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: Embarq Corporation (EMBAR)
RegDate: 2008-01-14
Updated: 2012-03-02
Ref: https://whois.arin.net/rest/net/NET-67-232-0-0-1

OrgName: Embarq Corporation
OrgId: EMBAR
Address: 500 N New York Ave
City: Winter Park
StateProv: FL
PostalCode: 32789
Country: US
RegDate: 2006-07-06
Updated: 2017-04-07
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/EMBAR

OrgTechHandle: ESC36-ARIN
OrgTechName: Embarq Services – CDS
OrgTechPhone: +1-407-741-0500
OrgTechEmail: ipsupport@centurylinkservices.net
OrgTechRef: https://whois.arin.net/rest/poc/ESC36-ARIN

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN

#
# ARIN WHOIS data and services are subject to the Terms of Use
# available at: https://www.arin.net/whois_tou.html
#
# If you see inaccuracies in the results, please report at
# https://www.arin.net/public/whoisinaccuracy/index.xhtml
#
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
????????????????????????????
Malicious File Upload
Mebane, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/simple-ads-manager/sam-ajax-admin.php
2/8/2018 7:54:51 PM (8 minutes ago)
IP: 99.194.16.24 Hostname: 99-194-16-24.dyn.centurytel.net
Human/Bot: Bot
Browser: Chrome version 0.0 running on MacOSX
Mozilla/5.0 (Macintosh; U; Intel Mac OS X 10_6_7) AppleWebKit/5312 (KHTML, like Gecko) Chrome/37.0.818.0 Mobile Safari/5312
NetRange: 99.194.0.0 – 99.195.255.255
[131072 addresses in this network]
CIDR: 99.194.0.0/15 (99.194.0.0 – 99.195.255.255)
[131072 addresses in this network]
NetName: NETBLK-CENTURYTEL13
NetHandle: NET-99-194-0-0-1
Parent: NET99 (NET-99-0-0-0-0)
NetType: Direct Allocation
OriginAS: AS5668
Organization: CenturyTel Internet Holdings, Inc. (CIH-12)
RegDate: 2007-09-04
Updated: 2012-03-02
Ref: https://whois.arin.net/rest/net/NET-99-194-0-0-1

OrgName: CenturyTel Internet Holdings, Inc.
OrgId: CIH-12
Address: 100 CenturyTel Drive
City: Monroe
StateProv: LA
PostalCode: 71201
Country: US
RegDate: 2003-11-05
Updated: 2017-04-07
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/CIH-12

OrgTechHandle: NA397-ORG-ARIN
OrgTechName: Network Availability
OrgTechPhone: +1-800-809-1410
OrgTechEmail: ipsupport@centurylinkservices.net
OrgTechRef: https://whois.arin.net/rest/poc/NA397-ORG-ARIN

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN

@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
?????????????????????????????????
United States Lake Saint Louis, United States tried to access non-existent page http://stewwebb.com/wp-content/plugins/gallery-slider/register.php
2/8/2018 7:54:47 PM (10 minutes ago)
IP: 174.125.5.69 Hostname: 174-125-5-69.dyn.centurytel.net
Human/Bot: Bot
Browser: Chrome version 0.0 running on Linux
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/5322 (KHTML, like Gecko) Chrome/39.0.836.0 Mobile Safari/5322
NetRange: 174.124.0.0 – 174.125.255.255
[131072 addresses in this network]
CIDR: 174.124.0.0/15 (174.124.0.0 – 174.127.255.255)
[262144 addresses in this network]
NetName: NETBLK-CENTURYTEL14
NetHandle: NET-174-124-0-0-1
Parent: NET174 (NET-174-0-0-0-0)
NetType: Direct Allocation
OriginAS: AS5668
Organization: CenturyTel Internet Holdings, Inc. (CIH-12)
RegDate: 2009-04-07
Updated: 2012-03-02
Ref: https://whois.arin.net/rest/net/NET-174-124-0-0-1

OrgName: CenturyTel Internet Holdings, Inc.
OrgId: CIH-12
Address: 100 CenturyTel Drive
City: Monroe
StateProv: LA
PostalCode: 71201
Country: US
RegDate: 2003-11-05
Updated: 2017-04-07
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/CIH-12

OrgTechHandle: NA397-ORG-ARIN
OrgTechName: Network Availability
OrgTechPhone: +1-407-741-0500
OrgTechEmail: ipsupport@centurylinkservices.net
OrgTechRef: https://whois.arin.net/rest/poc/NA397-ORG-ARIN

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
????????????????????????????
Bucyrus, United States tried to access non-existent page http://stewwebb.com/wp-content/plugins/cardoza-facebook-like-box/cardoza_facebook_like_box.php
2/8/2018 7:54:42 PM (11 minutes ago)
IP: 71.213.242.51 Hostname: 71-213-242-51.mnfd.qwest.net
Human/Bot: Bot
Browser: undefined
Opera/8.27 (X11; Linux i686; en-US) Presto/2.9.234 Version/11.00
NetRange: 71.208.0.0 – 71.223.255.255
[1048576 addresses in this network]
CIDR: 71.208.0.0/12 (71.208.0.0 – 71.223.255.255)
[1048576 addresses in this network]
NetName: QWEST-INET-118
NetHandle: NET-71-208-0-0-1
Parent: NET71 (NET-71-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: Qwest Communications Company, LLC (QCC-18)
RegDate: 2005-05-06
Updated: 2013-09-16
Ref: https://whois.arin.net/rest/net/NET-71-208-0-0-1

OrgName: Qwest Communications Company, LLC
OrgId: QCC-18
Address: 100 CENTURYLINK DR
City: Monroe
StateProv: LA
PostalCode: 71203
Country: US
RegDate: 2005-05-09
Updated: 2017-01-28
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/QCC-18

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN

OrgTechHandle: QIA-ARIN
OrgTechName: Qwest IP Admin
OrgTechPhone: +1-877-886-6515
OrgTechEmail: ipadmin@centurylink.com
OrgTechRef: https://whois.arin.net/rest/poc/QIA-ARIN

RAbuseHandle: QIA2-ARIN
RAbuseName: Qwest Abuse
RAbusePhone: +1-877-886-6515
RAbuseEmail: abuse@qwest.net
RAbuseRef: https://whois.arin.net/rest/poc/QIA2-ARIN

RNOCHandle: QIN-ARIN
RNOCName: Qwest IP NOC
RNOCPhone: +1-877-886-6515
RNOCEmail: support@qwestip.net
RNOCRef: https://whois.arin.net/rest/poc/QIN-ARIN

RTechHandle: QIA-ARIN
RTechName: Qwest IP Admin
RTechPhone: +1-877-886-6515
RTechEmail: ipadmin@centurylink.com
RTechRef: https://whois.arin.net/rest/poc/QIA-ARIN
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
???????????????????????????????????????????????????
Malicious File Upload
Trussville, United States was blocked by firewall for a Malicious File Upload in file: files=2W4yr.php.php.png at http://stewwebb.com/wp-admin/admin-ajax.php?action=load_ajax_function
2/8/2018 7:54:33 PM (13 minutes ago)
IP: 174.125.207.38 Hostname: 174-125-207-38.dyn.centurytel.net
Human/Bot: Bot
Browser: undefined
Opera/8.18 (Windows 98; Win 9x 4.90; sl-SI) Presto/2.11.335 Version/10.00
NetRange: 174.124.0.0 – 174.125.255.255
[131072 addresses in this network]
CIDR: 174.124.0.0/15 (174.124.0.0 – 174.127.255.255)
[262144 addresses in this network]
NetName: NETBLK-CENTURYTEL14
NetHandle: NET-174-124-0-0-1
Parent: NET174 (NET-174-0-0-0-0)
NetType: Direct Allocation
OriginAS: AS5668
Organization: CenturyTel Internet Holdings, Inc. (CIH-12)
RegDate: 2009-04-07
Updated: 2012-03-02
Ref: https://whois.arin.net/rest/net/NET-174-124-0-0-1

OrgName: CenturyTel Internet Holdings, Inc.
OrgId: CIH-12
Address: 100 CenturyTel Drive
City: Monroe
StateProv: LA
PostalCode: 71201
Country: US
RegDate: 2003-11-05
Updated: 2017-04-07
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/CIH-12

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN

OrgTechHandle: NA397-ORG-ARIN
OrgTechName: Network Availability
OrgTechPhone: +1-407-741-0500
OrgTechEmail: ipsupport@centurylinkservices.net
OrgTechRef: https://whois.arin.net/rest/poc/NA397-ORG-ARIN

@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
???????????????????????????????
Shippensburg, United States was blocked by firewall at http://stewwebb.com/wp-content/plugins/page-google-maps/pr.php
2/8/2018 7:54:28 PM (14 minutes ago)
IP: 67.234.191.187 Hostname: pa-67-234-191-187.dhcp.embarqhsd.net
Human/Bot: Bot
Browser: Chrome version 0.0 running on Linux
Mozilla/5.0 (X11; Linux i686) AppleWebKit/5340 (KHTML, like Gecko) Chrome/38.0.825.0 Mobile Safari/5340
NetRange: 67.232.0.0 – 67.239.255.255
[524288 addresses in this network]
CIDR: 67.232.0.0/13 (67.232.0.0 – 67.239.255.255)
[524288 addresses in this network]
NetName: EMBARQ-GLOBAL
NetHandle: NET-67-232-0-0-1
Parent: NET67 (NET-67-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: Embarq Corporation (EMBAR)
RegDate: 2008-01-14
Updated: 2012-03-02
Ref: https://whois.arin.net/rest/net/NET-67-232-0-0-1

OrgName: Embarq Corporation
OrgId: EMBAR
Address: 500 N New York Ave
City: Winter Park
StateProv: FL
PostalCode: 32789
Country: US
RegDate: 2006-07-06
Updated: 2017-04-07
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/EMBAR

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN

OrgTechHandle: ESC36-ARIN
OrgTechName: Embarq Services – CDS
OrgTechPhone: +1-407-741-0500
OrgTechEmail: ipsupport@centurylinkservices.net
OrgTechRef: https://whois.arin.net/rest/poc/ESC36-ARIN

@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
?????????????????????????????
Malicious File Upload
United States Centerburg, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-admin/admin-ajax.php
2/8/2018 7:54:07 PM (16 minutes ago)
IP: 71.213.21.24 Hostname: 71-213-21-24.mnfd.qwest.net
Human/Bot: Bot
Browser: undefined
Mozilla/5.0 (Windows CE; en-US; rv:1.9.2.20) Gecko/20100828 Firefox/36.0
NetRange: 71.208.0.0 – 71.223.255.255
[1048576 addresses in this network]
CIDR: 71.208.0.0/12 (71.208.0.0 – 71.223.255.255)
[1048576 addresses in this network]
NetName: QWEST-INET-118
NetHandle: NET-71-208-0-0-1
Parent: NET71 (NET-71-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: Qwest Communications Company, LLC (QCC-18)
RegDate: 2005-05-06
Updated: 2013-09-16
Ref: https://whois.arin.net/rest/net/NET-71-208-0-0-1

OrgName: Qwest Communications Company, LLC
OrgId: QCC-18
Address: 100 CENTURYLINK DR
City: Monroe
StateProv: LA
PostalCode: 71203
Country: US
RegDate: 2005-05-09
Updated: 2017-01-28
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/QCC-18

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN

OrgTechHandle: QIA-ARIN
OrgTechName: Qwest IP Admin
OrgTechPhone: +1-877-886-6515
OrgTechEmail: ipadmin@centurylink.com
OrgTechRef: https://whois.arin.net/rest/poc/QIA-ARIN

RAbuseHandle: QIA2-ARIN
RAbuseName: Qwest Abuse
RAbusePhone: +1-877-886-6515
RAbuseEmail: abuse@qwest.net
RAbuseRef: https://whois.arin.net/rest/poc/QIA2-ARIN

RTechHandle: QIA-ARIN
RTechName: Qwest IP Admin
RTechPhone: +1-877-886-6515
RTechEmail: ipadmin@centurylink.com
RTechRef: https://whois.arin.net/rest/poc/QIA-ARIN

RNOCHandle: QIN-ARIN
RNOCName: Qwest IP NOC
RNOCPhone: +1-877-886-6515
RNOCEmail: support@qwestip.net
RNOCRef: https://whois.arin.net/rest/poc/QIN-ARIN
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
?????????????????????????????????
Sparta, United States was blocked by firewall for a Malicious File Upload in file: files=yt93x.php at http://stewwebb.com/wp-content/plugins/simple-dropbox-upload-form/dragup/
2/8/2018 7:54:00 PM (17 minutes ago)
IP: 184.158.68.215 Hostname: 184-158-68-215.dyn.centurytel.net
Human/Bot: Bot
Browser: Chrome version 0.0 running on Win32
Mozilla/5.0 (Windows CE) AppleWebKit/5341 (KHTML, like Gecko) Chrome/37.0.875.0 Mobile Safari/5341
NetRange: 184.156.0.0 – 184.159.255.255
[262144 addresses in this network]
CIDR: 184.156.0.0/14 (184.156.0.0 – 184.159.255.255)
[262144 addresses in this network]
NetName: NETBLK-CENTURYTEL16
NetHandle: NET-184-156-0-0-1
Parent: NET184 (NET-184-0-0-0-0)
NetType: Direct Allocation
OriginAS: AS5668
Organization: CenturyTel Internet Holdings, Inc. (CIH-12)
RegDate: 2010-06-21
Updated: 2012-03-02
Ref: https://whois.arin.net/rest/net/NET-184-156-0-0-1

OrgName: CenturyTel Internet Holdings, Inc.
OrgId: CIH-12
Address: 100 CenturyTel Drive
City: Monroe
StateProv: LA
PostalCode: 71201
Country: US
RegDate: 2003-11-05
Updated: 2017-04-07
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/CIH-12

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN

OrgTechHandle: NA397-ORG-ARIN
OrgTechName: Network Availability
OrgTechPhone: +1-800-809-1410
OrgTechEmail: ipsupport@centurylinkservices.net
OrgTechRef: https://whois.arin.net/rest/poc/NA397-ORG-ARIN
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
?????????????????????????????????????
Pleasant Hill, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/font-uploader/font-upload.php
2/8/2018 7:53:53 PM (19 minutes ago)
IP: 184.5.199.59 Hostname: mo-184-5-199-59.dhcp.embarqhsd.net
Human/Bot: Bot
Browser: Safari version 0.0 running on MacOSX
Mozilla/5.0 (Macintosh; PPC Mac OS X 10_7_0 rv:6.0; sl-SI) AppleWebKit/532.35.3 (KHTML, like Gecko) Version/5.0 Safari/532.35.3
NetRange: 184.0.0.0 – 184.7.255.255
[524288 addresses in this network]
CIDR: 184.0.0.0/13 (184.0.0.0 – 184.15.255.255)
[1048576 addresses in this network]
NetName: EMBARQ-GLOBAL
NetHandle: NET-184-0-0-0-1
Parent: NET184 (NET-184-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: Embarq Corporation (EMBAR)
RegDate: 2009-06-23
Updated: 2012-03-02
Ref: https://whois.arin.net/rest/net/NET-184-0-0-0-1

OrgName: Embarq Corporation
OrgId: EMBAR
Address: 500 N New York Ave
City: Winter Park
StateProv: FL
PostalCode: 32789
Country: US
RegDate: 2006-07-06
Updated: 2017-04-07
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/EMBAR

OrgTechHandle: ESC36-ARIN
OrgTechName: Embarq Services – CDS
OrgTechPhone: +1-407-741-0500
OrgTechEmail: ipsupport@centurylinkservices.net
OrgTechRef: https://whois.arin.net/rest/poc/ESC36-ARIN

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN

@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
??????????????????????????????????
Bucyrus, United States was blocked by firewall for a Malicious File Upload in file: files=Vsvsd.php at http://stewwebb.com/wp-content/plugins/php-event-calendar/server/file-uploader/
2/8/2018 7:53:43 PM (20 minutes ago)
IP: 71.213.171.142 Hostname: 71-213-171-142.mnfd.qwest.net
Human/Bot: Bot
Browser: Safari version 0.0 running on MacOSX
Mozilla/5.0 (Macintosh; PPC Mac OS X 10_5_6 rv:3.0; sl-SI) AppleWebKit/535.7.2 (KHTML, like Gecko) Version/4.0.2 Safari/535.7.2
NetRange: 71.208.0.0 – 71.223.255.255
[1048576 addresses in this network]
CIDR: 71.208.0.0/12 (71.208.0.0 – 71.223.255.255)
[1048576 addresses in this network]
NetName: QWEST-INET-118
NetHandle: NET-71-208-0-0-1
Parent: NET71 (NET-71-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: Qwest Communications Company, LLC (QCC-18)
RegDate: 2005-05-06
Updated: 2013-09-16
Ref: https://whois.arin.net/rest/net/NET-71-208-0-0-1

OrgName: Qwest Communications Company, LLC
OrgId: QCC-18
Address: 100 CENTURYLINK DR
City: Monroe
StateProv: LA
PostalCode: 71203
Country: US
RegDate: 2005-05-09
Updated: 2017-01-28
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/QCC-18

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN

OrgTechHandle: QIA-ARIN
OrgTechName: Qwest IP Admin
OrgTechPhone: +1-877-886-6515
OrgTechEmail: ipadmin@centurylink.com
OrgTechRef: https://whois.arin.net/rest/poc/QIA-ARIN

RAbuseHandle: QIA2-ARIN
RAbuseName: Qwest Abuse
RAbusePhone: +1-877-886-6515
RAbuseEmail: abuse@qwest.net
RAbuseRef: https://whois.arin.net/rest/poc/QIA2-ARIN

RNOCHandle: QIN-ARIN
RNOCName: Qwest IP NOC
RNOCPhone: +1-877-886-6515
RNOCEmail: support@qwestip.net
RNOCRef: https://whois.arin.net/rest/poc/QIN-ARIN

RTechHandle: QIA-ARIN
RTechName: Qwest IP Admin
RTechPhone: +1-877-886-6515
RTechEmail: ipadmin@centurylink.com
RTechRef: https://whois.arin.net/rest/poc/QIA-ARIN
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
?????????????????????????????
Shippensburg, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/reflex-gallery/admin/scripts/FileUploader/php.php?Year=2018&Month=…
2/8/2018 7:53:41 PM (21 minutes ago)
IP: 67.234.2.7 Hostname: pa-67-234-2-7.dhcp.embarqhsd.net
Human/Bot: Bot
Browser: undefined
Opera/8.30 (X11; Linux i686; sl-SI) Presto/2.8.251 Version/10.00
NetRange: 67.232.0.0 – 67.239.255.255
[524288 addresses in this network]
CIDR: 67.232.0.0/13 (67.232.0.0 – 67.239.255.255)
[524288 addresses in this network]
NetName: EMBARQ-GLOBAL
NetHandle: NET-67-232-0-0-1
Parent: NET67 (NET-67-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: Embarq Corporation (EMBAR)
RegDate: 2008-01-14
Updated: 2012-03-02
Ref: https://whois.arin.net/rest/net/NET-67-232-0-0-1

OrgName: Embarq Corporation
OrgId: EMBAR
Address: 500 N New York Ave
City: Winter Park
StateProv: FL
PostalCode: 32789
Country: US
RegDate: 2006-07-06
Updated: 2017-04-07
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/EMBAR

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN

OrgTechHandle: ESC36-ARIN
OrgTechName: Embarq Services – CDS
OrgTechPhone: +1-407-741-0500
OrgTechEmail: ipsupport@centurylinkservices.net
OrgTechRef: https://whois.arin.net/rest/poc/ESC36-ARIN

@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
????????????????????????????????
Las Vegas, United States tried to access non-existent page http://stewwebb.com/wp-content/plugins/wp-symposium/server/php/index.php
2/8/2018 7:53:27 PM (22 minutes ago)
IP: 71.222.9.200 Hostname: 71-222-9-200.lsv2.qwest.net
Human/Bot: Bot
Browser: Firefox version 35.0 running on Linux
Mozilla/5.0 (X11; Linux x86_64; rv:7.0) Gecko/20160710 Firefox/35.0
NetRange: 71.208.0.0 – 71.223.255.255
[1048576 addresses in this network]
CIDR: 71.208.0.0/12 (71.208.0.0 – 71.223.255.255)
[1048576 addresses in this network]
NetName: QWEST-INET-118
NetHandle: NET-71-208-0-0-1
Parent: NET71 (NET-71-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: Qwest Communications Company, LLC (QCC-18)
RegDate: 2005-05-06
Updated: 2013-09-16
Ref: https://whois.arin.net/rest/net/NET-71-208-0-0-1

OrgName: Qwest Communications Company, LLC
OrgId: QCC-18
Address: 100 CENTURYLINK DR
City: Monroe
StateProv: LA
PostalCode: 71203
Country: US
RegDate: 2005-05-09
Updated: 2017-01-28
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/QCC-18

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN

OrgTechHandle: QIA-ARIN
OrgTechName: Qwest IP Admin
OrgTechPhone: +1-877-886-6515
OrgTechEmail: ipadmin@centurylink.com
OrgTechRef: https://whois.arin.net/rest/poc/QIA-ARIN

RAbuseHandle: QIA2-ARIN
RAbuseName: Qwest Abuse
RAbusePhone: +1-877-886-6515
RAbuseEmail: abuse@qwest.net
RAbuseRef: https://whois.arin.net/rest/poc/QIA2-ARIN

RTechHandle: QIA-ARIN
RTechName: Qwest IP Admin
RTechPhone: +1-877-886-6515
RTechEmail: ipadmin@centurylink.com
RTechRef: https://whois.arin.net/rest/poc/QIA-ARIN

RNOCHandle: QIN-ARIN
RNOCName: Qwest IP NOC
RNOCPhone: +1-877-886-6515
RNOCEmail: support@qwestip.net
RNOCRef: https://whois.arin.net/rest/poc/QIN-ARIN

@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
????????????????????????????
Ulan-Ude, Russia was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/gallery-plugin/upload/php.php
2/8/2018 7:53:22 PM (23 minutes ago)
IP: 92.126.154.118 Hostname: 92.126.154.118.stbur.ru
Human/Bot: Bot
Browser: Firefox version 35.0 running on MacOSX
Mozilla/5.0 (Macintosh; PPC Mac OS X 10_8_6 rv:3.0) Gecko/20111223 Firefox/35.0
% Information related to ‘92.126.152.0 – 92.126.155.255’
[1024 addresses in this network]
% Abuse contact for ‘92.126.152.0 – 92.126.155.255’ is ‘abuse@rt.ru’
[1024 addresses in this network]
inetnum: 92.126.152.0 – 92.126.155.255
[1024 addresses in this network]
netname: WEBSTREAM
descr: OJSC “Sibirtelecom”
remarks: Buryat branch of OJSC “Sibirtelecom”
remarks: broadband service
country: RU
remarks:
remarks: NCC#2008111874
remarks: INFRA AW
remarks:
admin-c: JSN33-RIPE
tech-c: JSN33-RIPE
mnt-by: NSOELSV-NCC
mnt-lower: NSOELSV-NCC
mnt-lower: STBUR-RIPE-MNT
mnt-domains: STBUR-RIPE-MNT
mnt-domains: NSOELSV-NCC
mnt-routes: STBUR-RIPE-MNT
mnt-routes: NSOELSV-NCC
status: ASSIGNED PA
remarks:
remarks: Direct reference for the general info on spam
remarks: In unsoluble cases for the general info on spam,
remarks: abusing & hacking complaints email abuse@sinor.ru
remarks:
created: 2011-02-01T09:40:07Z
last-modified: 2011-02-01T09:40:07Z
source: RIPE # Filtered

person: Juriy S. Nikolaev
address: JSC “Sibirtelecom” Buryat branch
phone: +7 3012 214650
fax-no: +7 3012 220606
nic-hdl: JSN33-RIPE
mnt-by: STBUR-RIPE-MNT
created: 1970-01-01T00:00:00Z
last-modified: 2007-11-22T10:35:24Z
source: RIPE # Filtered

% Information related to ‘92.126.128.0/19AS41440’ (92.126.128.0 – 92.126.191.255)
[16384 addresses in this network]
route: 92.126.128.0/19 (92.126.128.0 – 92.126.191.255)
[16384 addresses in this network]
descr: RU-SIBNET-NETWORKS
descr: OJSC “Rostelecom”
origin: AS41440
mnt-by: NSOELSV-NCC
created: 2012-02-27T02:35:06Z
last-modified: 2012-02-27T02:35:06Z
source: RIPE
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
????????????????????????????????
Wake Forest, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-admin/admin-post.php?task=wpmp_upload_previews
2/8/2018 7:53:21 PM (24 minutes ago)
IP: 184.3.173.178 Hostname: nc-184-3-173-178.dhcp.embarqhsd.net
Human/Bot: Bot
Browser: Firefox version 36.0 running on Linux
Mozilla/5.0 (X11; Linux x86_64; rv:6.0) Gecko/20140513 Firefox/36.0
NetRange: 184.0.0.0 – 184.7.255.255
[524288 addresses in this network]
CIDR: 184.0.0.0/13 (184.0.0.0 – 184.15.255.255)
[1048576 addresses in this network]
NetName: EMBARQ-GLOBAL
NetHandle: NET-184-0-0-0-1
Parent: NET184 (NET-184-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: Embarq Corporation (EMBAR)
RegDate: 2009-06-23
Updated: 2012-03-02
Ref: https://whois.arin.net/rest/net/NET-184-0-0-0-1

OrgName: Embarq Corporation
OrgId: EMBAR
Address: 500 N New York Ave
City: Winter Park
StateProv: FL
PostalCode: 32789
Country: US
RegDate: 2006-07-06
Updated: 2017-04-07
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/EMBAR

OrgTechHandle: ESC36-ARIN
OrgTechName: Embarq Services – CDS
OrgTechPhone: +1-407-741-0500
OrgTechEmail: ipsupport@centurylinkservices.net
OrgTechRef: https://whois.arin.net/rest/poc/ESC36-ARIN

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN

#
# ARIN WHOIS data and services are subject to the Terms of Use
# available at: https://www.arin.net/whois_tou.html
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
?????????????????????????????
embarq
United States Greenville, United States was blocked by firewall for a Malicious File Upload in file: files=Vsvsd.php at http://stewwebb.com/wp-content/plugins/php-event-calendar/server/file-uploader/
2/8/2018 7:53:13 PM (26 minutes ago)
IP: 76.0.176.164 Hostname: nc-76-0-176-164.dhcp.embarqhsd.net
Human/Bot: Bot
Browser: Safari version 0.0 running on MacOSX
Mozilla/5.0 (Macintosh; PPC Mac OS X 10_5_6 rv:3.0; sl-SI) AppleWebKit/535.7.2 (KHTML, like Gecko) Version/4.0.2 Safari/535.7.2
NetRange: 76.0.0.0 – 76.7.255.255
[524288 addresses in this network]
CIDR: 76.0.0.0/13 (76.0.0.0 – 76.15.255.255)
[1048576 addresses in this network]
NetName: EMBARQ-GLOBAL
NetHandle: NET-76-0-0-0-1
Parent: NET76 (NET-76-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: Embarq Corporation (EMBAR)
RegDate: 2006-01-19
Updated: 2012-03-02
Ref: https://whois.arin.net/rest/net/NET-76-0-0-0-1

OrgName: Embarq Corporation
OrgId: EMBAR
Address: 500 N New York Ave
City: Winter Park
StateProv: FL
PostalCode: 32789
Country: US
RegDate: 2006-07-06
Updated: 2017-04-07
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/EMBAR

OrgTechHandle: ESC36-ARIN
OrgTechName: Embarq Services – CDS
OrgTechPhone: +1-407-741-0500
OrgTechEmail: ipsupport@centurylinkservices.net
OrgTechRef: https://whois.arin.net/rest/poc/ESC36-ARIN

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
??????????????????????????????
lists
Alibaba.com
San Mateo, United States was blocked by firewall at http://stewwebb.com/wp-content/plugins/mailpress/mp-includes/action.php
2/8/2018 7:53:00 PM (28 minutes ago)
IP: 198.11.183.69 Hostname: 198.11.183.69
Human/Bot: Bot
Browser: Chrome version 0.0 running on Win7
Mozilla/5.0 (Windows NT 6.1) AppleWebKit/5322 (KHTML, like Gecko) Chrome/37.0.872.0 Mobile Safari/5322
Type: Blocked
United States San Mateo, United States was blocked by firewall at http://stewwebb.com/wp-content/plugins/mailpress/mp-includes/action.php
2/8/2018 7:53:00 PM (28 minutes ago)
IP: 198.11.183.69 Hostname: 198.11.183.69
Human/Bot: Bot
Browser: Chrome version 0.0 running on Win7
Mozilla/5.0 (Windows NT 6.1) AppleWebKit/5322 (KHTML, like Gecko) Chrome/37.0.872.0 Mobile Safari/5322
NetRange: 198.11.128.0 – 198.11.191.255
[16384 addresses in this network]
CIDR: 198.11.128.0/18 (198.11.128.0 – 198.11.255.255)
[32768 addresses in this network]
NetName: ALIBABA-US-CDN
NetHandle: NET-198-11-128-0-1
Parent: NET198 (NET-198-0-0-0-0)
NetType: Direct Allocation
OriginAS: AS45102
Organization: Alibaba.com LLC (AL-3)
RegDate: 2013-04-23
Updated: 2017-04-26
Ref: https://whois.arin.net/rest/net/NET-198-11-128-0-1

OrgName: Alibaba.com LLC
OrgId: AL-3
Address: 400 S El Camino Real, Suite 400
City: San Mateo
StateProv: CA
PostalCode: 94402
Country: US
RegDate: 2010-10-29
Updated: 2017-06-16
Comment: 1.For AliCloud IPR Infringement and Abuse Claim, please use below link with browser to report: https://intl.aliyun.com/report
Comment:
Comment: 2.For Alibaba.com and Aliexpress.com’s IPR Infringement , please use below link with browser to report: https://ipp.alibabagroup.com
Comment:
Comment: 3.For Alibaba.com and Aliexpress.com’s Abuse, please send email to those two mail lists to report: intl-abuse@list.alibaba-inc.com and abuse@alibaba-inc.com
Comment:
Comment: 4. For network issue, please send email to this mail list: aliops-goc@list.alibaba-inc.com
Ref: https://whois.arin.net/rest/org/AL-3

OrgTechHandle: ALIBA-ARIN
OrgTechName: Alibaba NOC
OrgTechPhone: +1-408-748-1200
OrgTechEmail: noc@list.alibaba-inc.com
OrgTechRef: https://whois.arin.net/rest/poc/ALIBA-ARIN

OrgNOCHandle: ALIBA-ARIN
OrgNOCName: Alibaba NOC
OrgNOCPhone: +1-408-748-1200
OrgNOCEmail: noc@list.alibaba-inc.com
OrgNOCRef: https://whois.arin.net/rest/poc/ALIBA-ARIN

OrgAbuseHandle: NETWO4028-ARIN
OrgAbuseName: Network Abuse
OrgAbusePhone: +1-408-785-5580
OrgAbuseEmail: intl-abuse@list.alibaba-inc.com
OrgAbuseRef: https://whois.arin.net/rest/poc/NETWO4028-ARIN
198.11.183.69
P address 198.11.183.69
Location San Mateo, California, United States
IP address 198.11.183.69
Reverse DNS (PTR record) not available
DNS server (NS record) rdns1.alidns.com (140.205.71.250)
rdns2.alidns.com (140.205.253.62)
ASN number 45102
ASN name (ISP) Alibaba (China) Technology Co., Ltd.
IP-range/subnet 198.11.128.0/18
198.11.128.0 – 198.11.191.255
198.11.183.69
Domains around 198.11.183.69
@@@@@@@@@@@@@@@@@@@@@@@@@@
left off

IP address #domains
198.11.183.9 3
198.11.183.11 3
198.11.183.14 1
198.11.183.15 1
198.11.183.17 1
198.11.183.24 1
198.11.183.25 2
198.11.183.26 5
198.11.183.28 10
198.11.183.30 5
198.11.183.33 4
198.11.183.35 4
198.11.183.36 1
198.11.183.46 1
198.11.183.50 13
198.11.183.55 2
198.11.183.60 2
198.11.183.61 1
198.11.183.63 2
198.11.183.66 1
198.11.183.67 1
198.11.183.70 2
198.11.183.71 2
198.11.183.72 2
198.11.183.75 1
198.11.183.79 11
198.11.183.86 1
198.11.183.88 1
198.11.183.95 162
198.11.183.105 1
198.11.183.109 1
198.11.183.110 2
198.11.183.114 1
198.11.183.116 2
198.11.183.122 1
198.11.183.124 63
198.11.183.129 4
198.11.183.133 1
198.11.183.138 1
198.11.183.144 3
198.11.183.147 1
198.11.183.150 1
198.11.183.154 1
198.11.183.155 1
198.11.183.161 2
198.11.183.167 4
198.11.183.168 10
198.11.183.169 1
198.11.183.171 2
198.11.183.177 1
198.11.183.179 1
198.11.183.180 1
198.11.183.183 2
198.11.183.185 38
198.11.183.187 1
198.11.183.189 7
198.11.183.190 2
198.11.183.193 2
198.11.183.194 1
198.11.183.195 1
198.11.183.197 1
198.11.183.207 2
198.11.183.209 10
198.11.183.211 1
198.11.183.214 1
198.11.183.216 2
198.11.183.221 3
198.11.183.225 2
198.11.183.226 196
198.11.183.228 1
198.11.183.230 3
198.11.183.231 1
198.11.183.232 6
198.11.183.234 2
198.11.183.238 4
198.11.183.239 2
198.11.183.240 2

@@@@@@@@@@@@@@@@@@@@@@@@@@@@
completed below
@@@@@@@@@@@@@@@@@@@@@@@@@@
Whois information
NetRange: 198.11.128.0 – 198.11.191.255
CIDR: 198.11.128.0/18
NetName: ALIBABA-US-CDN
NetHandle: NET-198-11-128-0-1
Parent: NET198 (NET-198-0-0-0-0)
NetType: Direct Allocation
OriginAS: AS45102
Organization: Alibaba.com LLC (AL-3)
RegDate: 2013-04-23
Updated: 2017-04-26
Ref: https://whois.arin.net/rest/net/NET-198-11-128-0-1

OrgName: Alibaba.com LLC
OrgId: AL-3
Address: 400 S El Camino Real, Suite 400
City: San Mateo
StateProv: CA
PostalCode: 94402
Country: US
RegDate: 2010-10-29
Updated: 2017-06-16
Comment: 1.For AliCloud IPR Infringement and Abuse Claim, please use below link with browser to report: https://intl.aliyun.com/report
Comment:
Comment: 2.For Alibaba.com and Aliexpress.com’s IPR Infringement , please use below link with browser to report: https://ipp.alibabagroup.com
Comment:
Comment: 3.For Alibaba.com and Aliexpress.com’s Abuse, please send email to those two mail lists to report: removed email address and removed email address
Comment:

ipp.alibabagroup.com
Domain IPv4 address Ranking Alexa Pagerank
alibabagroup.asia -1
alibabagroup.bid
alibabagroup.cc
alibabagroup.click 47.89.58.141
alibabagroup.club
alibabagroup.co
alibabagroup.co.in 50.63.202.21
alibabagroup.co.uk 50.63.202.16
alibabagroup.com 198.11.132.52 12,450 -1
alibabagroup.com.au 50.63.202.40
alibabagroup.com.cn
alibabagroup.company 50.63.202.55
alibabagroup.de 81.169.145.93
alibabagroup.es
alibabagroup.eu 130.185.109.77
alibabagroup.gift 47.89.58.141
alibabagroup.in 103.232.215.150
alibabagroup.info
alibabagroup.ir
alibabagroup.kz 81.177.140.214 0
alibabagroup.loan 47.89.58.141
alibabagroup.ltd 170.178.178.37
alibabagroup.me
alibabagroup.mobi 116.251.214.80
alibabagroup.net 141.8.225.31 -1
alibabagroup.net.cn
alibabagroup.news 47.89.58.141
alibabagroup.nu 185.53.178.9
alibabagroup.online 118.193.11.34
alibabagroup.org 50.63.202.63
alibabagroup.party
alibabagroup.pw 141.8.226.58
alibabagroup.ren
alibabagroup.ru 185.12.92.179
alibabagroup.space
alibabagroup.top 23.234.27.209
alibabagroup.trade 47.89.58.141
alibabagroup.us 69.64.147.242
alibabagroup.video 47.89.58.141
alibabagroup.vn 103.1.236.124
alibabagroup.wang 205.204.101.42
alibabagroup.win
alibabagroup.xn--io0a7i 47.89.58.32
alibabagroup.xn--ses554g
alibabagroup.xxx 125.212.224.227
alibabagroup-inc.com 50.63.202.27
alibabagroupbd.com
alibabagroupholding.com 184.168.221.46
alibabagroupholdinglimited.com 50.62.160.249
alibabagroupholdingltd.com 50.63.202.47
Are you looking for IPv4 address 198.11.188.72?
Are you looking for domain alibabagroup.com?
alibabagroup.com
This domain is hosted by Alibaba (China) Technology Co., Ltd. (AS45102). The first DNS server is nsp2.alibabaonline.com. The current IPv4 address is 198.11.132.52. The mail server with the highest priority is mxn.mxhichina.com.
v=spf1 include:spf.mxhichina.com -all
DNS server (NS records) nsp2.alibabaonline.com (198.11.138.242)
ns8.alibabaonline.com (198.11.138.244)
nshz.alibabaonline.com (198.11.138.243)
nsp.alibabaonline.com (200.196.225.111)
Mail server (MX records) mxn.mxhichina.com (205.204.101.145)
mxw.mxhichina.com (198.11.189.243)
IP address (IPv4) 198.11.132.52
IP address (IPv6)
ASN number 45102
ASN name (ISP) Alibaba (China) Technology Co., Ltd.
IP-range/subnet 198.11.132.0/24
198.11.132.0 – 198.11.132.255
Registrant Street: 19/F Building A Xihu International Technology Bldg, 391 Wen Er Road
Registrant City: Hangzhou
Registrant State/Province: Zhejiang
Registrant Postal Code: 310099
Registrant Country: CN
Registrant Phone: removed phone number
Registrant Phone Ext:
Registrant Fax: removed phone number
Registrant Fax Ext:
Registrant Email: removed email address
Registry Admin ID:
Admin Name: Timothy Alexander Steinert
Alibaba.com
Alibaba.com
This domain is hosted by Alibaba (China) Technology Co., Ltd. (AS45102). The first DNS server is nsp.alibabaonline.com. The current IPv4 address is 198.11.132.23. The mail server with the highest priority is mx01.mail.alibaba.com.
v=spf1 include:spf1.alibaba.mail.aliyun.com -all
DNS server (NS records) nsp.alibabaonline.com (200.196.225.111)
ns8.alibabaonline.com (198.11.138.244)
nsp2.alibabaonline.com (198.11.138.242)
nshz.alibabaonline.com (198.11.138.243)
Mail server (MX records) mx01.mail.alibaba.com (42.120.219.27)
mx02.mail.alibaba.com (42.120.219.135)
IP address (IPv4) 198.11.132.23
205.204.101.42
IP address (IPv6)
ASN number 45102
ASN name (ISP) Alibaba (China) Technology Co., Ltd.
IP-range/subnet 198.11.132.0/24
198.11.132.0 – 198.11.132.255
Admin Street: No. 699 Wangshang Road , Binjiang District
Admin City: Hangzhou
Admin State/Province: Zhejiang
Admin Postal Code: 310052
Admin Country: CN
Admin Phone: removed phone number
Admin Phone Ext:
Admin Fax: removed phone number
Admin Fax Ext:
Admin Email: removed email address
Registry Tech ID:
Tech Name: Timothy Alexander Steinert
852.22155100
Aliexpress.com
This domain is hosted by Alibaba (China) Technology Co., Ltd. (AS45102). The first DNS server is nsp2.alibabaonline.com. The current IPv4 address is 198.11.132.250. The mail server with the highest priority is mx2.mail.aliyun.com.
v=spf1 include:spf1.service.alibaba.com include:spf2.service.alibaba.com include:spf2.ocm.aliyun.com -al
DNS server (NS records) nsp2.alibabaonline.com (198.11.138.242)
nsp.alibabaonline.com (200.196.225.111)
ns8.alibabaonline.com (198.11.138.244)
nshz.alibabaonline.com (198.11.138.243)
Mail server (MX records) mx2.mail.aliyun.com (140.205.94.14)
IP address (IPv4) 198.11.132.250
IP address (IPv6)
ASN number 45102
ASN name (ISP) Alibaba (China) Technology Co., Ltd.
IP-range/subnet 198.11.132.0/24
198.11.132.0 – 198.11.132.255
Domain Name: aliexpress.com
Registry Domain ID: 413519034_DOMAIN_COM-VRSN
Registrar WHOIS Server: whois.markmonitor.com
Registrar URL: http://www.markmonitor.com
Updated Date: 2016-03-16T02:23:44-0700
Creation Date: 2006-04-16T11:16:46-0700
Registrar Registration Expiration Date: 2018-04-16T00:00:00-0700
Registrar: MarkMonitor, Inc.
Registrar IANA ID: 292
Registrar Abuse Contact Email: removed email address
Registrar Abuse Contact Phone: removed phone number
Domain Status: clientUpdateProhibited (https://www.icann.org/epp#clientUpdateProhibited)
Domain Status: clientTransferProhibited (https://www.icann.org/epp#clientTransferProhibited)
Domain Status: clientDeleteProhibited (https://www.icann.org/epp#clientDeleteProhibited)
Domain Status: serverUpdateProhibited (https://www.icann.org/epp#serverUpdateProhibited)
Domain Status: serverTransferProhibited (https://www.icann.org/epp#serverTransferProhibited)
Domain Status: serverDeleteProhibited (https://www.icann.org/epp#serverDeleteProhibited)
Registry Registrant ID:
Registrant Name: Timothy Alexander Steinert
Registrant Organization: Hangzhou Alibaba Advertising Co., Lt
Registrant Street: No. 699 Wangshang Road , Binjiang District
Registrant City: Hangzhou
Registrant State/Province: Zhejiang
Registrant Postal Code: 310052
Registrant Country: CN
Registrant Phone: removed phone number
Registrant Phone Ext:
Registrant Fax: removed phone number
Registrant Fax Ext:
Registrant Email: removed email address
Registry Admin ID:
Admin Name: Timothy Alexander Steinert
list.alibaba-inc.com
Are you looking for IPv4 address 10.20.3.90?
IP address 10.20.3.90
Summary IP Address 10.20.3.90 is a private IP address. Private IP addresses are used inside a local area network (LAN) and are not visible on the internet. Private IP addresses are defined in RFC 1918 (IPv4) and RFC 4193 (IPv6).
NetRange: 10.0.0.0 – 10.255.255.255
CIDR: 10.0.0.0/8
NetName: PRIVATE-ADDRESS-ABLK-RFC1918-IANA-RESERVED
NetHandle: NET-10-0-0-0-1
Parent: ()
NetType: IANA Special Use
OriginAS:
Organization: Internet Assigned Numbers Authority (IANA)
RegDate:
Updated: 2013-08-30
Are you looking for domain alibaba-inc.com?
This domain is hosted by Hangzhou Alibaba Advertising Co.,Ltd. (AS37963). The first DNS server is ns8.alibabaonline.com. The current IPv4 address is 121.0.17.65. The mail server with the highest priority is mx1.alibaba-inc.com.
v=spf1 include:spf1.staff.mail.aliyun.com -al
DNS server (NS records) ns8.alibabaonline.com (198.11.138.244)
nshz.alibabaonline.com (198.11.138.243)
nsp2.alibabaonline.com (198.11.138.242)
nsp.alibabaonline.com (200.196.225.111)
Mail server (MX records) mx1.alibaba-inc.com (205.204.101.143)
mxus1.alibaba-inc.com (205.204.101.143)
IP address (IPv4) 121.0.17.65
IP address (IPv6)
ASN number 37963
ASN name (ISP) Hangzhou Alibaba Advertising Co.,Ltd.
IP-range/subnet 121.0.16.0/21
121.0.16.0 – 121.0.23.255

Domain IPv4 address Ranking Alexa Pagerank
alibaba-inc.asia -1
alibaba-inc.bid
alibaba-inc.biz 60.205.17.162
alibaba-inc.cc 35.201.173.170
alibaba-inc.club 10.244.35.92 -1
alibaba-inc.cn -1
alibaba-inc.co
alibaba-inc.com 121.0.17.65 2,111 2
alibaba-inc.com.cn
alibaba-inc.date
alibaba-inc.ink 121.42.72.40
alibaba-inc.jp 5
alibaba-inc.loan
alibaba-inc.ltd
alibaba-inc.mobi 219.137.207.17
alibaba-inc.mom
alibaba-inc.net 222.76.250.26 -1
alibaba-inc.net.cn
alibaba-inc.nl 185.53.177.20
alibaba-inc.org 93.191.168.52
alibaba-inc.pro
alibaba-inc.shop
alibaba-inc.site
alibaba-inc.tech 127.0.0.1
alibaba-inc.top
alibaba-inc.us 184.168.221.38
alibaba-inc.vip 47.89.58.32
alibaba-inc.wang
alibaba-inc.xin
alibaba-inc.xn--ses554g
alibaba-inc.xyz
alibaba-incs.com 104.16.91.230
IPv4 routes
Startip Endip Description Country #domains #spamhosts
135.84.40.0 135.84.41.255 Angie’s List, Inc. US 0 0
204.27.248.0 204.27.248.255 Amarican List Counsel, Inc. US 0 0
204.130.201.0 204.130.201.255 American List Counsel, Inc US 0 0
91.236.59.0 91.236.59.255 List Technology Iberica S.A. ES 0 0
157.247.0.0 157.247.255.255 AVL LIST GmbH AT 3 0
185.178.64.0 185.178.67.255 Martin List-Petersen trading as Tuxbox IE 0 0
192.102.17.0 192.102.17.255 AVL LIST GmbH AT 8 0
193.26.220.0 193.26.220.255 Javno podjetje uradni list Republike Slovenije d.o.o. SI 8 0
77.74.229.0 77.74.229.255 Sluzbeni list Bosne i Hercegovine BA 15 0
43.230.32.0 43.230.35.255 Hangzhou Alibaba Advertising Co.,Ltd. CN 0 0
43.250.12.0 43.250.15.255 Hangzhou Alibaba Advertising Co.,Ltd. CN 1 0
45.112.208.0 45.112.211.255 Hangzhou Alibaba Advertising Co.,Ltd. CN 0 0
45.112.212.0 45.112.215.255 Hangzhou Alibaba Advertising Co.,Ltd. CN 0 0
45.112.216.0 45.112.219.255 Hangzhou Alibaba Advertising Co.,Ltd. CN 0 0
45.112.220.0 45.112.223.255 Hangzhou Alibaba Advertising Co.,Ltd. CN 0 0
47.56.0.0 47.57.255.255 Alibaba.com LLC US 1 0
47.74.0.0 47.75.255.255 Alibaba.com LLC US 48,712 2
47.76.0.0 47.79.255.255 Alibaba.com LLC US 3 0
47.80.0.0 47.87.255.255 Alibaba.com LLC US 14 0
47.88.0.0 47.91.255.255 Alibaba.com LLC US 1,830,436 20
47.235.0.0 47.235.255.255 Alibaba.com LLC US 0 0
47.236.0.0 47.239.255.255 Alibaba.com LLC US 0 0
47.240.0.0 47.243.255.255 Alibaba.com LLC US 1 0
47.244.0.0 47.245.255.255 Alibaba.com LLC US 0 0
47.246.0.0 47.246.255.255 Alibaba.com LLC US 1 0
47.250.0.0 47.251.255.255 Alibaba.com LLC US 0 0
47.252.0.0 47.253.255.255 Alibaba.com LLC US 12 0
47.254.0.0 47.254.255.255 Alibaba.com LLC US 3,743 0
72.254.0.0 72.254.255.255 Alibaba.com LLC US 0 0
103.216.108.0 103.216.111.255 Hangzhou Alibaba Advertising Co.,Ltd. CN 0 0
110.75.192.0 110.75.255.255 Hangzhou Alibaba Advertising Co.,Ltd. CN 81 0
119.38.208.0 119.38.223.255 Hangzhou Alibaba Advertising Co.,Ltd. CN 9 0
121.0.16.0 121.0.31.255 Hangzhou Alibaba Advertising Co.,Ltd. CN 88 0
139.95.0.0 139.95.255.255 Alibaba.com LLC US 0 0
147.139.0.0 147.139.255.255 Alibaba.com LLC US 0 0
155.102.0.0 155.102.255.255 Alibaba.com LLC US 0 0
157.119.240.0 157.119.243.255 Hangzhou Alibaba Advertising Co.,Ltd. CN 0 0
161.117.0.0 161.117.255.255 Alibaba.com Singapore E-Commerce Private Limited SG 0 0
163.181.0.0 163.181.255.255 Alibaba.com LLC US 27 0
170.33.0.0 170.33.255.255 Alibaba.com Singapore E-Commerce Private Limited SG 14 0
185.218.176.0 185.218.179.255 Alibaba Cloud (Singapore) Private Limited RU 0 0
198.11.128.0 198.11.191.255 Alibaba.com LLC US 103,048 1
205.204.96.0 205.204.127.255 Alibaba.com LLC US 14,189 0
45.112.212.0 45.112.212.255 Hangzhou Alibaba Advertising Co.,Ltd. CN 0 0
45.112.213.0 45.112.213.255 Hangzhou Alibaba Advertising Co.,Ltd. CN 0 0
45.112.214.0 45.112.214.255 Hangzhou Alibaba Advertising Co.,Ltd. CN 0 0
45.112.215.0 45.112.215.255 Hangzhou Alibaba Advertising Co.,Ltd. CN 0 0
47.74.0.0 47.74.63.255 Alibaba.com LLC US 15,381 0
47.74.0.0 47.74.7.255 Alibaba.com LLC US 5,806 0
47.74.64.0 47.74.127.255 Alibaba.com LLC US 85 0
IPv6 routes
Startip Endip Description Country #domains #spamhosts
2a0a:5780:: 2a0a:5780:ffff:ffff:ffff:ffff:ffff:ffff Martin List-Petersen trading as Tuxbox IE 0 0
2401:2e00:: 2401:2e00:ffff:ffff:ffff:ffff:ffff:ffff Alibaba (China) Technology Co., Ltd. CN 0 0
2a0b:da40:: 2a0b:da47:ffff:ffff:ffff:ffff:ffff:ffff Alibaba Cloud (Singapore) Private Limited RU 0 0
2001:330:: 2001:330:1fff:ffff:ffff:ffff:ffff:ffff SamsungSDS Inc. KR 0 0
2001:330:2000:: 2001:330:3fff:ffff:ffff:ffff:ffff:ffff SamsungSDS Inc. KR 0 0
2001:330:4000:: 2001:330:7fff:ffff:ffff:ffff:ffff:ffff SamsungSDS Inc. KR 0 0
2001:330:8000:: 2001:330:ffff:ffff:ffff:ffff:ffff:ffff SamsungSDS Inc. KR 0 0
2001:3e8:: 2001:3e8:ffff:ffff:ffff:ffff:ffff:ffff MediaLive Japan,Inc. JP 0 0
2001:410:: 2001:410:ffff:ffff:ffff:ffff:ffff:ffff Canarie Inc CA 12 0
2001:418:: 2001:418:ffff:ffff:ffff:ffff:ffff:ffff NTT America, Inc. US 132 0
2001:420:: 2001:420:ffff:ffff:ffff:ffff:ffff:ffff Cisco Systems, Inc. US 384 0
2001:450:: 2001:450:ffff:ffff:ffff:ffff:ffff:ffff Level 3 Communications, Inc. US 4 0
2001:458:: 2001:458:ffff:ffff:ffff:ffff:ffff:ffff Stealth Communications, Inc. US 3 0
2001:470:: 2001:470:ffff:ffff:ffff:ffff:ffff:ffff Hurricane Electric, Inc. US 18,918 0
2001:4b0:: 2001:4b0:ffff:ffff:ffff:ffff:ffff:ffff AOL Inc. US 0 0
2001:4b8:: 2001:4b8:ffff:ffff:ffff:ffff:ffff:ffff Wayport, Inc. US 0 0
2001:4e8:: 2001:4e8:ffff:ffff:ffff:ffff:ffff:ffff Shaw Communications Inc. CA 0 0
2001:4f8:: 2001:4f8:ffff:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 28 0
2001:500:10:: 2001:500:10:ffff:ffff:ffff:ffff:ffff Gauss Research Laboratory, Inc. PR 0 0
2001:500:2e:: 2001:500:2f:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:60:: 2001:500:60:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:61:: 2001:500:61:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:62:: 2001:500:62:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:63:: 2001:500:63:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:64:: 2001:500:64:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:65:: 2001:500:65:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:66:: 2001:500:66:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:67:: 2001:500:67:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:68:: 2001:500:68:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:69:: 2001:500:69:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:6a:: 2001:500:6a:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:6b:: 2001:500:6b:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:6c:: 2001:500:6c:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:6d:: 2001:500:6d:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:6e:: 2001:500:6e:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:6f:: 2001:500:6f:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:70:: 2001:500:70:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:71:: 2001:500:71:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:72:: 2001:500:72:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:73:: 2001:500:73:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:74:: 2001:500:74:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:75:: 2001:500:75:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:76:: 2001:500:76:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:77:: 2001:500:77:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:78:: 2001:500:78:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:79:: 2001:500:79:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:7a:: 2001:500:7a:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:7b:: 2001:500:7b:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:7c:: 2001:500:7c:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
2001:500:85:: 2001:500:85:ffff:ffff:ffff:ffff:ffff Internet Systems Consortium, Inc. US 0 0
Providers
ASN Provider Country #prefixes IPv4 #prefixes IPv6 #domains #spamhosts
56651 Javno podjetje uradni list Republike Slovenije d.o.o. SI 1 0 8 0
37963 Hangzhou Alibaba Advertising Co.,Ltd. CN 238 0 2,038,735 121
45102 Alibaba (China) Technology Co., Ltd. CN 233 0 2,278,472 36
134963 Alibaba.com Singapore E-Commerce Private Limited SG 22 0 225 0
1 Level 3 Communications, Inc. US 10 0 15 8
5 Symbolics, Inc. US 15 0 5 12
6 Bull HN Information Systems Inc. US 29 0 82 0
19 Leidos, Inc. US 8 0 85 0
78 BT Americas, Inc US 6 0 2 0
97 NTT America, Inc. US 2 0 0 0
106 General Dynamics Advanced Information Systems, Inc. US 10 0 48 0
109 Cisco Systems, Inc. US 77 26 816 2
125 Honeywell International, Inc. US 49 0 907 0
158 Ericsson Network Systems, Inc. US 89 12 252 0
161 Texas Instruments, Inc. US 16 0 134 0
200 Level 3 Communications, Inc. US 2 0 0 9
202 Level 3 Communications, Inc. US 1 0 7 0
229 Merit Network Inc. US 2 0 0 0
231 Merit Network Inc. US 4 1 1 0
237 Merit Network Inc. US 55 5 1,270 1
260 Xconnect24 Inc. US 16 4 97 1
262 NTT America, Inc. US 1 1 0 0
283 MPower Labs, Inc. US 5 0 7 0
555 Velocity Technology Solutions II, Inc. US 3 0 193 0
560 Level 3 Communications, Inc. US 0 2 0 0
572 Greater Baltimore Medical Center Inc US 6 0 0 0
598 Level 3 Communications, Inc. US 1 0 0 0
605 Vanguard Health Management, Inc. US 1 0 0 0
613 BP America, Inc. US 2 0 0 0
684 MTS Inc. CA 2 0 0 0
699 KANOBE INC US 3 0 16 0
701 MCI Communications Services, Inc. d/b/a Verizon Business US 1,164 19 151,206 170
702 MCI Communications Services, Inc. d/b/a Verizon Business US 198 54 60,385 5
703 MCI Communications Services, Inc. d/b/a Verizon Business US 91 3 1,106 1
705 MCI Communications Services, Inc. d/b/a Verizon Business US 145 0 9 0
714 Apple Inc. US 597 68 9,598 5
797 AT&T Services, Inc. US 57 0 742 0
801 AtTask, Inc US 1 0 0 0
812 Rogers Communications Canada Inc. CA 501 43 26,501 45
813 MCI Communications Services, Inc. d/b/a Verizon Business US 28 0 140 0
852 TELUS Communications Inc. CA 700 21 18,343 36
1236 General Dynamics C4 Systems, Inc. US 6 0 86 0
1280 Internet Systems Consortium, Inc. US 22 8 466 0
1313 Adobe Systems Inc. US 9 2 161 0
1321 Advanced Networks & Services Inc. US 11 0 0 0
1323 Advanced Networks & Services Inc. US 1 0 0 0
1325 Advanced Networks & Services Inc. US 2 0 0 0
1326 Advanced Networks & Services Inc. US 8 0 1 0
1331 Advanced Networks & Services Inc. US 4 0 0 0
1337 Advanced Networks & Services Inc. US 12 12 0 0

left off

@@@@@@@@@@@@@@
hk.alibaba-inc.com

https://ipp.alibabagroup.com
https://intl.aliyun.com/

@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
????????????????????????????
Fall Creek, United States was blocked by firewall for Slider Revolution: Arbitrary File Upload at http://stewwebb.com/wp-admin/admin-ajax.php
2/8/2018 7:52:58 PM (30 minutes ago)
IP: 184.158.0.64 Hostname: 184-158-0-64.dyn.centurytel.net
Human/Bot: Bot
Browser: Chrome version 0.0 running on Win8
Mozilla/5.0 (Windows NT 6.2) AppleWebKit/5362 (KHTML, like Gecko) Chrome/37.0.829.0 Mobile Safari/5362
Type: Blocked
United States Fall Creek, United States was blocked by firewall for Slider Revolution: Arbitrary File Upload at http://stewwebb.com/wp-admin/admin-ajax.php
2/8/2018 7:52:58 PM (30 minutes ago)
IP: 184.158.0.64 Hostname: 184-158-0-64.dyn.centurytel.net
Human/Bot: Bot
Browser: Chrome version 0.0 running on Win8
Mozilla/5.0 (Windows NT 6.2) AppleWebKit/5362 (KHTML, like Gecko) Chrome/37.0.829.0 Mobile Safari/5362
NetRange: 184.156.0.0 – 184.159.255.255
[262144 addresses in this network]
CIDR: 184.156.0.0/14 (184.156.0.0 – 184.159.255.255)
[262144 addresses in this network]
NetName: NETBLK-CENTURYTEL16
NetHandle: NET-184-156-0-0-1
Parent: NET184 (NET-184-0-0-0-0)
NetType: Direct Allocation
OriginAS: AS5668
Organization: CenturyTel Internet Holdings, Inc. (CIH-12)
RegDate: 2010-06-21
Updated: 2012-03-02
Ref: https://whois.arin.net/rest/net/NET-184-156-0-0-1

OrgName: CenturyTel Internet Holdings, Inc.
OrgId: CIH-12
Address: 100 CenturyTel Drive
City: Monroe
StateProv: LA
PostalCode: 71201
Country: US
RegDate: 2003-11-05
Updated: 2017-04-07
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/CIH-12

OrgTechHandle: NA397-ORG-ARIN
OrgTechName: Network Availability
OrgTechPhone: +1-407-741-0500
OrgTechEmail: ipsupport@centurylinkservices.net
OrgTechRef: https://whois.arin.net/rest/poc/NA397-ORG-ARIN

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
??????????????????????????????????????
Biysk, Russia was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/sharexy/ajaxresponder.php
2/8/2018 7:52:57 PM (31 minutes ago)
IP: 31.43.219.37 Hostname: 31.43.219.37
Human/Bot: Bot
Browser: Firefox version 36.0 running on MacOSX
Mozilla/5.0 (Macintosh; PPC Mac OS X 10_8_3 rv:6.0) Gecko/20111013 Firefox/36.0
Biysk, Russia was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/sharexy/ajaxresponder.php
2/8/2018 7:52:57 PM (30 minutes ago)
IP: 31.43.219.37 Hostname: 31.43.219.37
Human/Bot: Bot
Browser: Firefox version 36.0 running on MacOSX
Mozilla/5.0 (Macintosh; PPC Mac OS X 10_8_3 rv:6.0) Gecko/20111013 Firefox/36.0
% Information related to ‘31.43.192.0 – 31.43.223.255’
[8192 addresses in this network]
% Abuse contact for ‘31.43.192.0 – 31.43.223.255’ is ‘aospan@netup.ru’
[8192 addresses in this network]
inetnum: 31.43.192.0 – 31.43.223.255
[8192 addresses in this network]
netname: Sotrudnik-NET
country: RU
org: ORG-SL304-RIPE
admin-c: AT7077-RIPE
tech-c: AT7077-RIPE
status: ASSIGNED PI
mnt-by: RIPE-NCC-END-MNT
mnt-by: MNT-Sotrudnik
mnt-routes: MNT-Sotrudnik
mnt-domains: MNT-Sotrudnik
created: 2011-03-01T14:05:45Z
last-modified: 2016-04-14T08:58:34Z
source: RIPE
sponsoring-org: ORG-NA225-RIPE

organisation: ORG-SL304-RIPE
org-name: Sotrudnik LTD
org-type: OTHER
address: 659322 Biisk, Altai Krai, a ul.Sotsialisticheskaya
abuse-c: AR23001-RIPE
mnt-ref: MNT-Sotrudnik
mnt-by: MNT-Sotrudnik
created: 2011-01-13T10:14:40Z
last-modified: 2014-11-17T16:27:59Z
source: RIPE # Filtered

person: Alexandr Tulin
address: 659322 Biisk, Altai Krai, a ul.Sotsialisticheskaya
phone: +7 3854 303306
nic-hdl: AT7077-RIPE
mnt-by: MNT-Sotrudnik
created: 2011-01-13T10:14:27Z
last-modified: 2012-09-12T11:39:29Z
source: RIPE # Filtered

% Information related to ‘31.43.192.0/19AS56487’ (31.43.192.0 – 31.43.255.255)
[16384 addresses in this network]
route: 31.43.192.0/19 (31.43.192.0 – 31.43.255.255)
[16384 addresses in this network]
descr: Sotrudnik LTD
origin: AS56487
mnt-by: MNT-Sotrudnik
created: 2011-07-13T08:47:55Z
last-modified: 2011-07-13T08:47:55Z
source: RIPE
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
???????????????????????
West Plains, United States tried to access non-existent page http://stewwebb.com/wp-content/plugins/google-maps-by-daniel-martyn/inuse.php
2/8/2018 7:52:32 PM (33 minutes ago)
IP: 72.161.5.120 Hostname: 72-161-5-120.dyn.centurytel.net
Human/Bot: Bot
Browser: Firefox version 35.0 running on MacOSX
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_6_2 rv:6.0) Gecko/20150704 Firefox/35.0
NetRange: 72.160.0.0 – 72.161.255.255
[131072 addresses in this network]
CIDR: 72.160.0.0/15 (72.160.0.0 – 72.163.255.255)
[262144 addresses in this network]
NetName: NETBLK-CENTURYTEL10
NetHandle: NET-72-160-0-0-1
Parent: NET72 (NET-72-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: CenturyTel Internet Holdings, Inc. (CIH-12)
RegDate: 2005-09-23
Updated: 2012-03-02
Ref: https://whois.arin.net/rest/net/NET-72-160-0-0-1

OrgName: CenturyTel Internet Holdings, Inc.
OrgId: CIH-12
Address: 100 CenturyTel Drive
City: Monroe
StateProv: LA
PostalCode: 71201
Country: US
RegDate: 2003-11-05
Updated: 2017-04-07
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/CIH-12

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN

OrgTechHandle: NA397-ORG-ARIN
OrgTechName: Network Availability
OrgTechPhone: +1-800-809-1410
OrgTechEmail: ipsupport@centurylinkservices.net
OrgTechRef: https://whois.arin.net/rest/poc/NA397-ORG-ARIN

@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
Clifton, United States left http://stewwebb.com/2015/01/15/stew-webb-1st-amendment-rights-violated-cyber-terrorism-attacks-2015-… and visited http://www.stewwebb.com/2015/01/15/stew-webb-1st-amendment-rights-violated-cyber-terrorism-attacks-2015-0…
2/8/2018 8:11:31 PM (16 minutes ago)
IP: 159.203.67.240 Hostname: 159.203.67.240
Browser: undefined
Go-http-client/1.1
NetRange: 159.203.0.0 – 159.203.255.255
[65536 addresses in this network]
CIDR: 159.203.0.0/16 (159.203.0.0 – 159.203.255.255)
[65536 addresses in this network]
NetName: DIGITALOCEAN-12
NetHandle: NET-159-203-0-0-1
Parent: NET159 (NET-159-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: DigitalOcean, LLC (DO-13)
RegDate: 2015-08-10
Updated: 2015-08-11
Comment: Simple Cloud Host
Comment: http://www.digitalocean.com
Ref: https://whois.arin.net/rest/net/NET-159-203-0-0-1

OrgName: DigitalOcean, LLC
OrgId: DO-13
Address: 101 Ave of the Americas
Address: 10th Floor
City: New York
StateProv: NY
PostalCode: 10013
Country: US
RegDate: 2012-05-14
Updated: 2017-07-03
Comment: http://www.digitalocean.com
Comment: Simple Cloud Hosting
Ref: https://whois.arin.net/rest/org/DO-13

OrgAbuseHandle: ABUSE5232-ARIN
OrgAbuseName: Abuse, DigitalOcean
OrgAbusePhone: +1-347-875-6044
OrgAbuseEmail: abuse@digitalocean.com
OrgAbuseRef: https://whois.arin.net/rest/poc/ABUSE5232-ARIN

OrgNOCHandle: NOC32014-ARIN
OrgNOCName: Network Operations Center
OrgNOCPhone: +1-347-875-6044
OrgNOCEmail: noc@digitalocean.com
OrgNOCRef: https://whois.arin.net/rest/poc/NOC32014-ARIN

OrgTechHandle: NOC32014-ARIN
OrgTechName: Network Operations Center
OrgTechPhone: +1-347-875-6044
OrgTechEmail: noc@digitalocean.com
OrgTechRef: https://whois.arin.net/rest/poc/NOC32014-ARIN

@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
????????????????????????????????
United States Warrensburg, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/real3d-flipbook/includes/process.php
2/8/2018 7:51:59 PM (51 minutes ago)
IP: 76.0.26.95 Hostname: mo-76-0-26-95.dyn.embarqhsd.net
Human/Bot: Bot
Browser: undefined
Mozilla/5.0 (compatible; MSIE 5.0; Windows 95; Trident/5.1)
NetRange: 76.0.0.0 – 76.7.255.255
[524288 addresses in this network]
CIDR: 76.0.0.0/13 (76.0.0.0 – 76.15.255.255)
[1048576 addresses in this network]
NetName: EMBARQ-GLOBAL
NetHandle: NET-76-0-0-0-1
Parent: NET76 (NET-76-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: Embarq Corporation (EMBAR)
RegDate: 2006-01-19
Updated: 2012-03-02
Ref: https://whois.arin.net/rest/net/NET-76-0-0-0-1

OrgName: Embarq Corporation
OrgId: EMBAR
Address: 500 N New York Ave
City: Winter Park
StateProv: FL
PostalCode: 32789
Country: US
RegDate: 2006-07-06
Updated: 2017-04-07
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/EMBAR

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN

OrgTechHandle: ESC36-ARIN
OrgTechName: Embarq Services – CDS
OrgTechPhone: +1-407-741-0500
OrgTechEmail: ipsupport@centurylinkservices.net
OrgTechRef: https://whois.arin.net/rest/poc/ESC36-ARIN

@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
??????????????????????????????????
Manchester, United States was blocked by firewall for UserPro – User Profiles with Social Login <= 4.9.17 – Authentication Bypass in query string: up_auto_log=true at http://stewwebb.com/?up_auto_log=true
2/8/2018 7:51:53 PM (52 minutes ago)
IP: 98.174.87.168 Hostname: customernet.completeitcenter.com
Human/Bot: Bot
Browser: undefined
Mozilla/5.0 (Windows NT 4.0; en-US; rv:1.9.0.20) Gecko/20120810 Firefox/35.0
NetRange: 98.160.0.0 – 98.191.255.255
[2097152 addresses in this network]
CIDR: 98.160.0.0/11 (98.160.0.0 – 98.191.255.255)
[2097152 addresses in this network]
NetName: CXA
NetHandle: NET-98-160-0-0-1
Parent: NET98 (NET-98-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: Cox Communications Inc. (CXA)
RegDate: 2007-07-20
Updated: 2012-03-02
Ref: https://whois.arin.net/rest/net/NET-98-160-0-0-1
OrgName: Cox Communications Inc.
OrgId: CXA
Address: 1400 Lake Hearn Dr.
City: Atlanta
StateProv: GA
PostalCode: 30319
Country: US
RegDate:
Updated: 2017-05-30
Comment: For legal requests/assistance please use the
Comment: following contact information:
Comment: Cox Subpoena Info: https://www.cox.com/aboutus/policies/law-enforcement-and-subpoenas-information.html
Ref: https://whois.arin.net/rest/org/CXA

OrgTechHandle: ADA131-ARIN
OrgTechName: Anderson, Alvin Demond
OrgTechPhone: +1-404-269-4416
OrgTechEmail: alvin.anderson@cox.com
OrgTechRef: https://whois.arin.net/rest/poc/ADA131-ARIN

OrgTechHandle: BERUB3-ARIN
OrgTechName: Berube, Tori
OrgTechPhone: +1-404-269-4416
OrgTechEmail: tori.berube@cox.com
OrgTechRef: https://whois.arin.net/rest/poc/BERUB3-ARIN

OrgTechHandle: RWA196-ARIN
OrgTechName: Waldron, Roderick
OrgTechPhone: +1-404-269-7626
OrgTechEmail: abuse@cox.net
OrgTechRef: https://whois.arin.net/rest/poc/RWA196-ARIN

OrgAbuseHandle: IC146-ARIN
OrgAbuseName: Cox Communications Inc
OrgAbusePhone: +1-404-269-7626
OrgAbuseEmail: abuse@cox.net
OrgAbuseRef: https://whois.arin.net/rest/poc/IC146-ARIN

OrgTechHandle: BAABO-ARIN
OrgTechName: BA, Aboubakr
OrgTechPhone: +1-404-269-4416
OrgTechEmail: abuse@cox.net
OrgTechRef: https://whois.arin.net/rest/poc/BAABO-ARIN

OrgTechHandle: NIA16-ARIN
OrgTechName: National IP Administrator
OrgTechPhone: +1-404-269-4416
OrgTechEmail: tiffany.coleman@cox.com
OrgTechRef: https://whois.arin.net/rest/poc/NIA16-ARIN

OrgTechHandle: MEROL3-ARIN
OrgTechName: Merola, Cari
OrgTechPhone: +1-404-269-4416
OrgTechEmail: cari.merola@cox.com
OrgTechRef: https://whois.arin.net/rest/poc/MEROL3-ARIN
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
??????????????????????????????????
London, United Kingdom was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/wpstorecart/php/upload.php
2/8/2018 7:50:39 PM (55 minutes ago)
IP: 35.178.19.46 Hostname: ec2-35-178-19-46.eu-west-2.compute.amazonaws.com
Human/Bot: Bot
Browser: IE version 6.0 running on Win32
Mozilla/5.0 (compatible; MSIE 6.0; Windows 98; Trident/5.0)
NetRange: 35.178.0.0 – 35.179.255.255
[131072 addresses in this network]
CIDR: 35.178.0.0/15 (35.178.0.0 – 35.179.255.255)
[131072 addresses in this network]
NetName: AMAZON-LHR
NetHandle: NET-35-178-0-0-1
Parent: AT-88-Z (NET-35-152-0-0-1)
NetType: Reallocated
OriginAS: AS16509
Organization: Amazon Data Services UK (ADSU)
RegDate: 2017-06-23
Updated: 2017-06-23
Ref: https://whois.arin.net/rest/net/NET-35-178-0-0-1

OrgName: Amazon Data Services UK
OrgId: ADSU
Address: Amazon Development Centre London
Address: Leadenhall Court
Address: One Leadenhall Street
City: London
StateProv:
PostalCode: EC3V 1PP
Country: GB
RegDate: 2016-12-14
Updated: 2016-12-14
Ref: https://whois.arin.net/rest/org/ADSU

OrgTechHandle: IPMAN40-ARIN
OrgTechName: IP Management
OrgTechPhone: +1-206-266-4064
OrgTechEmail: ipmanagement@amazon.com
OrgTechRef: https://whois.arin.net/rest/poc/IPMAN40-ARIN

OrgAbuseHandle: IPMAN40-ARIN
OrgAbuseName: IP Management
OrgAbusePhone: +1-206-266-4064
OrgAbuseEmail: ipmanagement@amazon.com
OrgAbuseRef: https://whois.arin.net/rest/poc/IPMAN40-ARIN
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
????????????????????????????????????
Auburn, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/wpstorecart/php/upload.php
2/8/2018 7:49:24 PM (57 minutes ago)
IP: 75.172.5.254 Hostname: 75-172-5-254.tukw.qwest.net
Human/Bot: Bot
Browser: IE version 6.0 running on Win32
Mozilla/5.0 (compatible; MSIE 6.0; Windows 98; Trident/5.0)
NetRange: 75.160.0.0 – 75.175.255.255
[1048576 addresses in this network]
CIDR: 75.160.0.0/12 (75.160.0.0 – 75.191.255.255)
[2097152 addresses in this network]
NetName: QWEST-INET-124
NetHandle: NET-75-160-0-0-1
Parent: NET75 (NET-75-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: Qwest Communications Company, LLC (QCC-18)
RegDate: 2006-10-24
Updated: 2013-09-19
Ref: https://whois.arin.net/rest/net/NET-75-160-0-0-1

OrgName: Qwest Communications Company, LLC
OrgId: QCC-18
Address: 100 CENTURYLINK DR
City: Monroe
StateProv: LA
PostalCode: 71203
Country: US
RegDate: 2005-05-09
Updated: 2017-01-28
Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment:
Comment: For abuse issues, please email abuse@centurylinkservices.net
Comment:
Comment: All abuse reports MUST include:
Comment: * src IP
Comment: * dest IP (your IP)
Comment: * dest port
Comment: * Accurate date/timestamp and timezone of activity
Comment: * Intensity/frequency (short log extracts)
Comment: * Your contact details (phone and email)
Comment: Without these we will be unable to identify the correct owner of the IP address at that point in time.
Comment:
Comment: For subpoena or court order please fax 844.254.5800 or refer to our Law Enforcement Support page https://www.centurylink.com/static/Pages/AboutUs/Legal/LawEnforcement/
Ref: https://whois.arin.net/rest/org/QCC-18

OrgTechHandle: QIA-ARIN
OrgTechName: Qwest IP Admin
OrgTechPhone: +1-877-886-6515
OrgTechEmail: ipadmin@centurylink.com
OrgTechRef: https://whois.arin.net/rest/poc/QIA-ARIN

OrgAbuseHandle: CAD54-ARIN
OrgAbuseName: Centurylink Abuse Desk
OrgAbusePhone: +1-877-886-6515
OrgAbuseEmail: abuse@centurylinkservices.net
OrgAbuseRef: https://whois.arin.net/rest/poc/CAD54-ARIN

RAbuseHandle: QIA2-ARIN
RAbuseName: Qwest Abuse
RAbusePhone: +1-877-886-6515
RAbuseEmail: abuse@qwest.net
RAbuseRef: https://whois.arin.net/rest/poc/QIA2-ARIN

RNOCHandle: QIN-ARIN
RNOCName: Qwest IP NOC
RNOCPhone: +1-877-886-6515
RNOCEmail: support@qwestip.net
RNOCRef: https://whois.arin.net/rest/poc/QIN-ARIN

RTechHandle: QIA-ARIN
RTechName: Qwest IP Admin
RTechPhone: +1-877-886-6515
RTechEmail: ipadmin@centurylink.com
RTechRef: https://whois.arin.net/rest/poc/QIA-ARIN
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
All above malicious file upload

@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
Stew Webb in United States Providence, United States tried to access non-existent page http://www.stewwebb.com/blog/tag/israel-spying/

Blocked by firewall
United States Valencia, United States was blocked by firewall at http://stewwebb.com/wp-content/plugins/dzs-portfolio/admin/upload.php
2/8/2018 8:05:52 PM (42 minutes ago)
IP: 50.113.182.82 Hostname: pxy01twcca.ladc.ca.charter.com
Human/Bot: Bot
Browser: Safari version 0.0 running on iOS
Mozilla/5.0 (iPad; CPU OS 7_1_1 like Mac OS X; sl-SI) AppleWebKit/531.36.7 (KHTML, like Gecko) Version/4.0.5 Mobile/8B115 Safari/6531.36.7
Type: Blocked
Netherlands Netherlands was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-admin/admin-ajax.php
2/8/2018 7:59:23 PM (48 minutes ago)
IP: 103.251.164.13 Hostname: 103.251.164.13
Human/Bot: Bot
Browser: Chrome version 0.0 running on Win32
Mozilla/5.0 (Windows NT 5.1) AppleWebKit/5321 (KHTML, like Gecko) Chrome/38.0.821.0 Mobile Safari/5321
Type: Blocked
United States Centerview, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/dzs-videogallery/admin/upload.php
2/8/2018 7:58:07 PM (50 minutes ago)
IP: 76.0.4.88 Hostname: mo-76-0-4-88.dhcp.embarqhsd.net
Human/Bot: Bot
Browser: IE version 9.0 running on Win32
Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 4.0; Trident/4.0)
Type: Blocked
United States Mount Gilead, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/dzs-portfolio/upload.php
2/8/2018 7:56:52 PM (51 minutes ago)
IP: 71.213.176.237 Hostname: 71-213-176-237.mnfd.qwest.net
Human/Bot: Bot
Browser: undefined
Opera/8.91 (Windows 95; sl-SI) Presto/2.12.257 Version/12.00
Type: Blocked
United States Kissimmee, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/dzs-videogallery/upload.php
2/8/2018 7:56:33 PM (51 minutes ago)
IP: 71.54.179.124 Hostname: fl-71-54-179-124.dhcp.embarqhsd.net
Human/Bot: Bot
Browser: IE version 9.0 running on Win32
Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 4.0; Trident/4.0)
Type: Blocked
United States Warrenton, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/uploader/uploadify/uploadify.php
2/8/2018 7:55:17 PM (53 minutes ago)
IP: 174.125.14.182 Hostname: 174-125-14-182.dyn.centurytel.net
Human/Bot: Bot
Browser: Firefox version 36.0 running on MacOSX
Mozilla/5.0 (Macintosh; PPC Mac OS X 10_6_6 rv:2.0) Gecko/20161124 Firefox/36.0
Type: Blocked
United States Belleville, United States was blocked by firewall for a Malicious File Upload in file: files=Vsvsd.php at http://stewwebb.com/wp-content/plugins/php-event-calendar/server/file-uploader/
2/8/2018 7:54:58 PM (53 minutes ago)
IP: 67.234.107.79 Hostname: pa-67-234-107-79.dhcp.embarqhsd.net
Human/Bot: Bot
Browser: Safari version 0.0 running on MacOSX
Mozilla/5.0 (Macintosh; PPC Mac OS X 10_5_6 rv:3.0; sl-SI) AppleWebKit/535.7.2 (KHTML, like Gecko) Version/4.0.2 Safari/535.7.2
Type: Blocked
United States Mebane, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/simple-ads-manager/sam-ajax-admin.php
2/8/2018 7:54:51 PM (53 minutes ago)
IP: 99.194.16.24 Hostname: 99-194-16-24.dyn.centurytel.net
Human/Bot: Bot
Browser: Chrome version 0.0 running on MacOSX
Mozilla/5.0 (Macintosh; U; Intel Mac OS X 10_6_7) AppleWebKit/5312 (KHTML, like Gecko) Chrome/37.0.818.0 Mobile Safari/5312
Type: Blocked
United States Trussville, United States was blocked by firewall for a Malicious File Upload in file: files=2W4yr.php.php.png at http://stewwebb.com/wp-admin/admin-ajax.php?action=load_ajax_function
2/8/2018 7:54:33 PM (54 minutes ago)
IP: 174.125.207.38 Hostname: 174-125-207-38.dyn.centurytel.net
Human/Bot: Bot
Browser: undefined
Opera/8.18 (Windows 98; Win 9x 4.90; sl-SI) Presto/2.11.335 Version/10.00
Type: Blocked
United States Shippensburg, United States was blocked by firewall at http://stewwebb.com/wp-content/plugins/page-google-maps/pr.php
2/8/2018 7:54:28 PM (54 minutes ago)
IP: 67.234.191.187 Hostname: pa-67-234-191-187.dhcp.embarqhsd.net
Human/Bot: Bot
Browser: Chrome version 0.0 running on Linux
Mozilla/5.0 (X11; Linux i686) AppleWebKit/5340 (KHTML, like Gecko) Chrome/38.0.825.0 Mobile Safari/5340
Type: Blocked
United States Centerburg, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-admin/admin-ajax.php
2/8/2018 7:54:07 PM (54 minutes ago)
IP: 71.213.21.24 Hostname: 71-213-21-24.mnfd.qwest.net
Human/Bot: Bot
Browser: undefined
Mozilla/5.0 (Windows CE; en-US; rv:1.9.2.20) Gecko/20100828 Firefox/36.0
Type: Blocked
United States Sparta, United States was blocked by firewall for a Malicious File Upload in file: files=yt93x.php at http://stewwebb.com/wp-content/plugins/simple-dropbox-upload-form/dragup/
2/8/2018 7:54:00 PM (54 minutes ago)
IP: 184.158.68.215 Hostname: 184-158-68-215.dyn.centurytel.net
Human/Bot: Bot
Browser: Chrome version 0.0 running on Win32
Mozilla/5.0 (Windows CE) AppleWebKit/5341 (KHTML, like Gecko) Chrome/37.0.875.0 Mobile Safari/5341
Type: Blocked
United States Pleasant Hill, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/font-uploader/font-upload.php
2/8/2018 7:53:53 PM (54 minutes ago)
IP: 184.5.199.59 Hostname: mo-184-5-199-59.dhcp.embarqhsd.net
Human/Bot: Bot
Browser: Safari version 0.0 running on MacOSX
Mozilla/5.0 (Macintosh; PPC Mac OS X 10_7_0 rv:6.0; sl-SI) AppleWebKit/532.35.3 (KHTML, like Gecko) Version/5.0 Safari/532.35.3
Type: Blocked
United States Bucyrus, United States was blocked by firewall for a Malicious File Upload in file: files=Vsvsd.php at http://stewwebb.com/wp-content/plugins/php-event-calendar/server/file-uploader/
2/8/2018 7:53:43 PM (55 minutes ago)
IP: 71.213.171.142 Hostname: 71-213-171-142.mnfd.qwest.net
Human/Bot: Bot
Browser: Safari version 0.0 running on MacOSX
Mozilla/5.0 (Macintosh; PPC Mac OS X 10_5_6 rv:3.0; sl-SI) AppleWebKit/535.7.2 (KHTML, like Gecko) Version/4.0.2 Safari/535.7.2
Type: Blocked
United States Shippensburg, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/reflex-gallery/admin/scripts/FileUploader/php.php?Year=2018&Month=…
2/8/2018 7:53:41 PM (55 minutes ago)
IP: 67.234.2.7 Hostname: pa-67-234-2-7.dhcp.embarqhsd.net
Human/Bot: Bot
Browser: undefined
Opera/8.30 (X11; Linux i686; sl-SI) Presto/2.8.251 Version/10.00
Type: Blocked
Russia Ulan-Ude, Russia was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/gallery-plugin/upload/php.php
2/8/2018 7:53:22 PM (55 minutes ago)
IP: 92.126.154.118 Hostname: 92.126.154.118.stbur.ru
Human/Bot: Bot
Browser: Firefox version 35.0 running on MacOSX
Mozilla/5.0 (Macintosh; PPC Mac OS X 10_8_6 rv:3.0) Gecko/20111223 Firefox/35.0
Type: Blocked
United States Wake Forest, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-admin/admin-post.php?task=wpmp_upload_previews
2/8/2018 7:53:21 PM (55 minutes ago)
IP: 184.3.173.178 Hostname: nc-184-3-173-178.dhcp.embarqhsd.net
Human/Bot: Bot
Browser: Firefox version 36.0 running on Linux
Mozilla/5.0 (X11; Linux x86_64; rv:6.0) Gecko/20140513 Firefox/36.0
Type: Blocked
United States Greenville, United States was blocked by firewall for a Malicious File Upload in file: files=Vsvsd.php at http://stewwebb.com/wp-content/plugins/php-event-calendar/server/file-uploader/
2/8/2018 7:53:13 PM (55 minutes ago)
IP: 76.0.176.164 Hostname: nc-76-0-176-164.dhcp.embarqhsd.net
Human/Bot: Bot
Browser: Safari version 0.0 running on MacOSX
Mozilla/5.0 (Macintosh; PPC Mac OS X 10_5_6 rv:3.0; sl-SI) AppleWebKit/535.7.2 (KHTML, like Gecko) Version/4.0.2 Safari/535.7.2
Type: Blocked
United States San Mateo, United States was blocked by firewall at http://stewwebb.com/wp-content/plugins/mailpress/mp-includes/action.php
2/8/2018 7:53:00 PM (55 minutes ago)
IP: 198.11.183.69 Hostname: 198.11.183.69
Human/Bot: Bot
Browser: Chrome version 0.0 running on Win7
Mozilla/5.0 (Windows NT 6.1) AppleWebKit/5322 (KHTML, like Gecko) Chrome/37.0.872.0 Mobile Safari/5322
Type: Blocked
United States San Mateo, United States was blocked by firewall at http://stewwebb.com/wp-content/plugins/mailpress/mp-includes/action.php
2/8/2018 7:53:00 PM (55 minutes ago)
IP: 198.11.183.69 Hostname: 198.11.183.69
Human/Bot: Bot
Browser: Chrome version 0.0 running on Win7
Mozilla/5.0 (Windows NT 6.1) AppleWebKit/5322 (KHTML, like Gecko) Chrome/37.0.872.0 Mobile Safari/5322
Type: Blocked
United States Fall Creek, United States was blocked by firewall for Slider Revolution: Arbitrary File Upload at http://stewwebb.com/wp-admin/admin-ajax.php
2/8/2018 7:52:58 PM (55 minutes ago)
IP: 184.158.0.64 Hostname: 184-158-0-64.dyn.centurytel.net
Human/Bot: Bot
Browser: Chrome version 0.0 running on Win8
Mozilla/5.0 (Windows NT 6.2) AppleWebKit/5362 (KHTML, like Gecko) Chrome/37.0.829.0 Mobile Safari/5362
Type: Blocked
United States Fall Creek, United States was blocked by firewall for Slider Revolution: Arbitrary File Upload at http://stewwebb.com/wp-admin/admin-ajax.php
2/8/2018 7:52:58 PM (55 minutes ago)
IP: 184.158.0.64 Hostname: 184-158-0-64.dyn.centurytel.net
Human/Bot: Bot
Browser: Chrome version 0.0 running on Win8
Mozilla/5.0 (Windows NT 6.2) AppleWebKit/5362 (KHTML, like Gecko) Chrome/37.0.829.0 Mobile Safari/5362
Type: Blocked
Russia Biysk, Russia was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/sharexy/ajaxresponder.php
2/8/2018 7:52:57 PM (55 minutes ago)
IP: 31.43.219.37 Hostname: 31.43.219.37
Human/Bot: Bot
Browser: Firefox version 36.0 running on MacOSX
Mozilla/5.0 (Macintosh; PPC Mac OS X 10_8_3 rv:6.0) Gecko/20111013 Firefox/36.0
Type: Blocked
Russia Biysk, Russia was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/sharexy/ajaxresponder.php
2/8/2018 7:52:57 PM (55 minutes ago)
IP: 31.43.219.37 Hostname: 31.43.219.37
Human/Bot: Bot
Browser: Firefox version 36.0 running on MacOSX
Mozilla/5.0 (Macintosh; PPC Mac OS X 10_8_3 rv:6.0) Gecko/20111013 Firefox/36.0
Type: Blocked
United States Warrensburg, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/real3d-flipbook/includes/process.php
2/8/2018 7:51:59 PM (57 minutes ago)
IP: 76.0.26.95 Hostname: mo-76-0-26-95.dyn.embarqhsd.net
Human/Bot: Bot
Browser: undefined
Mozilla/5.0 (compatible; MSIE 5.0; Windows 95; Trident/5.1)
Type: Blocked
United States Manchester, United States was blocked by firewall for UserPro – User Profiles with Social Login <= 4.9.17 – Authentication Bypass in query string: up_auto_log=true at http://stewwebb.com/?up_auto_log=true
2/8/2018 7:51:53 PM (57 minutes ago)
IP: 98.174.87.168 Hostname: customernet.completeitcenter.com
Human/Bot: Bot
Browser: undefined
Mozilla/5.0 (Windows NT 4.0; en-US; rv:1.9.0.20) Gecko/20120810 Firefox/35.0
Type: Blocked
United Kingdom London, United Kingdom was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/wpstorecart/php/upload.php
2/8/2018 7:50:39 PM (58 minutes ago)
IP: 35.178.19.46 Hostname: ec2-35-178-19-46.eu-west-2.compute.amazonaws.com
Human/Bot: Bot
Browser: IE version 6.0 running on Win32
Mozilla/5.0 (compatible; MSIE 6.0; Windows 98; Trident/5.0)
Type: Blocked
United States Auburn, United States was blocked by firewall for Malicious File Upload (PHP) at http://stewwebb.com/wp-content/plugins/wpstorecart/php/upload.php
2/8/2018 7:49:24 PM (59 minutes ago)
IP: 75.172.5.254 Hostname: 75-172-5-254.tukw.qwest.net
Human/Bot: Bot
Browser: IE version 6.0 running on Win32
Mozilla/5.0 (compatible; MSIE 6.0; Windows 98; Trident/5.0)
Type: Blocked
Canada Montreal, Canada was blocked by firewall at http://stewwebb.com/?author=4
2/8/2018 7:43:26 PM (1 hour 5 mins ago)
IP: 198.245.60.60 Hostname: ns4000056.ip-198-245-60.net
Human/Bot: Bot
Type: Blocked
Canada Montreal, Canada was blocked by firewall at http://stewwebb.com/?author=3
2/8/2018 7:43:26 PM (1 hour 5 mins ago)
IP: 198.245.60.60 Hostname: ns4000056.ip-198-245-60.net
Human/Bot: Bot
Type: Blocked
Canada Montreal, Canada was blocked by firewall at http://stewwebb.com/?author=2
2/8/2018 7:43:26 PM (1 hour 5 mins ago)
IP: 198.245.60.60 Hostname: ns4000056.ip-198-245-60.net
Human/Bot: Bot
Type: Blocked
Canada Montreal, Canada was blocked by firewall at http://stewwebb.com/?author=1
2/8/2018 7:43:26 PM (1 hour 5 mins ago)
IP: 198.245.60.60 Hostname: ns4000056.ip-198-245-60.net
Human/Bot: Bot
Type: Blocked
Canada Montreal, Canada was blocked by firewall at http://stewwebb.com/?author=0
2/8/2018 7:43:25 PM (1 hour 5 mins ago)
IP: 198.245.60.60 Hostname: ns4000056.ip-198-245-60.net
Human/Bot: Bot
Type: Blocked
Venezuela Caracas, Venezuela was blocked by firewall at http://www.stewwebb.com/
2/8/2018 6:24:10 PM (2 hours 25 mins ago)
IP: 190.72.143.141 Hostname: 190-72-143-141.dyn.dsl.cantv.net
Human/Bot: Bot
Browser: Chrome version 59.0 running on Win7
Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/59.0.3071.86 Safari/537.36
Type: Blocked
Venezuela Caracas, Venezuela left http://www.stewwebb.com/ and was blocked by firewall at http://www.stewwebb.com/2015/01/15/stew-webb-1st-amendment-rights-violated-cyber-terrorism-attacks-2015-0…
2/8/2018 6:23:55 PM (2 hours 25 mins ago)
IP: 190.72.143.141 Hostname: 190-72-143-141.dyn.dsl.cantv.net
Human/Bot: Bot
Browser: Chrome version 59.0 running on Win7
Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/59.0.3071.86 Safari/537.36
Type: Blocked
United States Dallas, United States was blocked by firewall at http://www.stewwebb.com/xmlrpc.php
2/8/2018 2:42:28 PM (6 hours 6 mins ago)
IP: 50.22.59.195 Hostname: linux.servidor5.net
Human/Bot: Bot
Browser: undefined
wp-windowsphone

 

Your kind Contributions are very much appreciated thank you. – Stew Webb



flagususmcflag france_flag
stewwebbradionetwork-com-2015-09-24

You can Mute the Audio

AudioNow

StewWebb-RadioNetwork-Store
Stew Webb Radio Store

Bush Illuminati Human Sacrifice Denver June 20-21 2018

REAL NEWS PRESIDENT TRUMP DOESN’T WANT YOU TO MISS

President Trump Twitter feed

FBI Raids Satanic Human Sacrifice Video

Letter to Kansas City US Attorney Timothy Garrison purpose to Prosecute Cyber Terrorism April 18 2010

SEE: PROOF (Exhibits 1-22 below) Attemped murder of Stew Webb Federal Whistle blower and Grandview, Missouri Police Covered up the car crash.

March 26, 2018 Letter to President Trump Stop NSA NAZI Espionage

Please email or twitter to President Trump


Letter to President Trump 2017-02-23 from Whistle blowers How to Drain the Swamp Monsters

President Trump Stop Cyber Terrorism against Stew Webb Whistle blower

George Bush High Treason Illegal Sale of F-16s, Apache Helicopters, M-1 Tanks

AIPAC and Abramoff Operate Child Sex Blackmail Ring

Breaking News

Archives


Stew Webb 34 Years a Federal Whistle blower
Stew Webb served in the United States Marine Corps and was Honorable Discharge. Stew was a General Contractor-Home Builder until 3 car crashes in one year and is now disabled. Stew turned Federal Whistle blower – Activist of 31 years and has been a guest on over 3,000 Radio and TV Programs since September 18, 1991 and now has his own Radio and TV Network http://www.stewwebb.com Stew was responsible for the Congressional Investigations and hearings that lead to the Appointment of Independent Prosecutor Arlin Adams in the 1989 HUD Hearings, the Silverado Savings and Loan Hearings, the Denver International Airport Frauds hearings, the MDC Holdings, Inc. (MDC-NYSE) Illegal Political Campaign Money Laundering Colorado’s biggest case aka Keating 5 hearings and the information provided that lead to the 2008 Illegal Bank Bailout.
Stew was held as a Political Prisoner from 1992-1993 to silence his exposure by Leonard Millman his former in law with illegal charges of threatening harassing telephone calls charges which were dismissed with prejudice. Leonard Millman, George HW Bush, George W Bush, Jeb Bush, Neil Bush, Bill Clinton, Hillary Clinton, Larry Mizel, Phil Winn, Norman Brownstein, John McCain and Mitt Romney to name a few are all partners in what is known as the Bush-Millman-Clinton Organized Crime Syndicate. Leonard Millman (Deceased 2004) was member of the “Illuminati Council of 13”