Help RSS API Feed Maltego Contact                        

Domain > hi.n.shifen.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to hi.n.shifen.com

MD5A/V
1a1828bc7b54cdbc844593d2a454cad1[W32/A-8128ee96!Eldorado]
115ecce965247f8ed9ca6cdb69a3a131[Backdoor.Hupigon.275309] [TR/Offend.6266912] [Win32/Oflwr.A!crypt] [Trojan.Danginex.A2] [Worm.Autorun-4618] [BackDoor.BlackHole.19996] [W32/Hupigon.PUG!tr] [SHeur3.CJCC] [Backdoor.Win32.Hupigon] [Trojan*Win32/Danginex] [Trojan.Gnail!484E] [Troj/Danginex-A] [TROJ_AG.DBF0A141] [Backdoor.Hupigon]
e6246a4a1d58f8591ddd0971ac981b9c[TR/Alyak.C.1] [Trojan.Alyak.B3] [Trojan.DownLoader6.58829] [Win32/Alyak.C] [Trojan.Win32.Alyak] [PWS-OnlineGames.lq] [TrojanDownloader*Win32/Kanav.H] [Trojan.DL.Kanav!56EF] [Mal/GamerPWS-D] [TROJ_ALYAK.SMAE] [BScope.Trojan.Win32.Inject.2]
e9ed5a2ba483785c4258446a05112b81[W32/Badur.LKGQ!tr] [Trojan.Win32.Badur.lkgq]
d7aabf05ec9d618b561540a420102bb2[TR/Benban.xt]
61a7ad7b261c51c00bea4275c555685a[Heur.W32] [W32/A-8128ee96!Eldorado] [Win32/Heur]
77a4c556cbe75d4b8f22885b1da99cb9
0e4043d71b63742c750c059acf5d8d6f[TR/Rogue.3690496] [Trojan.DownLoader11.11699] [Riskware/FlyStudio] [Trojan-FDRA!0E4043D71B63]
e1184fb04077fc067ed56fcfeb335c3a[Riskware/FlyStudio]
91a66f47ef7a8a00fe07aea1fdc0a5b7[Win32/Packed.VMProtect.AAA] [W32/FlyStudio_Packed.A] [Win32/Blacked] [VirTool*Win32/Obfuscator.XZ] [Mal/VMProtBad-A]
d62eba31475b6fcf83b1a06bf5bd62f2[Riskware/FlyStudio]
a81760cdf227705a0e17c196114e595f[Riskware/Qhost] [Trojan*W32/DelfInject.R] [HackTool.Sniffer.WpePro]
244b45e8d20744e32852f0c409e5f914[W32/A-cf2e9719!Eldorado] [TR/Graftor.142484.1] [Win32/Tnega.GHHKGOC] [Trojan.Badur.48] [Win32/TrojanDownloader.Raykmerd.A] [W32/Raykmerd.A!tr.dldr] [Trojan-Downloader.Win32.Raykmerd] [Trojan.Win32.Badur.hsua] [RDN/Downloader.a!tx] [TrojanDownloader*Win32/Raykmerd.A] [Trojan.Badur]
dffbeee5a82a1f96bcc5ed68a8ab2e0f[W32/Trojan.CEDF-7582] [TR/Rogue.565865] [Win.Trojan.Expone] [PossibleThreat] [Trojan.Win32.Reconyc.dnro] [Trojan.Dropper]
7e5815ac57ab0ae2029bad3e006082b4[TR/Obfuscate.XZ.12842] [Win32/Oflwr.A!crypt] [Riskware/Qhost] [Trojan*W32/DelfInject.R] [Trojan.Win32.Pincav] [Trojan.Win32.Invader] [VirTool*Win32/Obfuscator.XZ]
1aabb8a3a6ae4eb143635344dbcbbfd9[Mal/VMProtBad-A] [TrojanDropper.Mudrop]
a22cb71c1bb17056cf4098aba35e8c12[Win32/Oflwr.A!crypt] [Riskware/FlyStudio] [Win32.SuspectCrc] [Spyware.OnlineGames]
f898579ed879ae09da0e170b8a7bf8cd
0201ef7b01a7a32cdf05109cdb168d6d[Win32/Oflwr.A!crypt] [Riskware/FlyStudio] [Trojan*W32/DelfInject.R] [RiskTool.Win32.IMEStartup.lej]
1e1d008e57c73e386106f0736f18f11e[Riskware/Qhost] [Trojan*W32/DelfInject.R] [RiskTool.Win32.IMEStartup.lpt] [Backdoor.BlackHole]

Whois

PropertyValue
Email domainmaster@baidu.com
NameServer NS2.BAIDU.COM
Created 2001-08-01 00:00:00
Changed 2010-10-27 00:00:00
Expires 2015-08-01 00:00:00
Registrar MARKMONITOR INC.