Malware on IP...

Where we found it? → http://urlquery.net/report.php?id=1491088292923
More on that IP: http://cyberwarzone.com/malicious-history-of-199-34-228-54/
and
https://cymon.io/199.34.228.54
and
https://www.scumware.org/report/199.34.228.54.html
and
https://www.reasoncoresecurity.com/ip-address-199.34.228.54.aspx

Here only ads given: https://urlscan.io/result/2d9adff5-c40f-4907-a3cb-a43affa1ee58#summary

Insecurity also via external facebook links: http://www.domxssscanner.com/scan?url=http%3A%2F%2Fmailowaserviceaccess.weebly.com

polonus

Malware on IP...
Not malware, but Phishing (on the urlquery link) > Fake mailserver log in it seems

https://www.virustotal.com/en/url/f4812443851e0e209e30ecfa37b0137257e81b2c740778c9ac46685ef98ff052/analysis/1491162006/

but yepp, lots of fun on that IP > https://www.virustotal.com/en/ip-address/199.34.228.54/information/

Pondus,

Also see this: https://check.torproject.org/cgi-bin/TorBulkExitList.py?ip=199.34.228.54&port=

pol

P.S. and also try to resolve IPs like here: http://toolbar.netcraft.com/site_report?url=108-204-96-113.lightspeed.hstntx.sbcglobal.net

Also use this scan to give some additional inside e.g.: https://webcookies.org/cookies/newbigbrainss.com/3156503

D