Help RSS API Feed Maltego Contact                        

Domain > game4.down.sandai.net

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to game4.down.sandai.net

MD5A/V
7c6722e3d52a578a080ac35de81c2e8e[W32/Trojan.UYFU-9205*W32/Backdoor.KWBJ-4867] [BDS/Plugx.A.68] [Backdoor.Plugx] [Trojan.DownLoader7.28550] [Win32/Korplug.DG*Win32/Korplug.A*Win32/Korplug.BJ] [Backdoor.Win32.Gulpix.a*Backdoor.Win32.Gulpix.cr*Backdoor.Win32.Gulpix.cq] [TROJ_PLUGX.SMO]
4e432ad824484d5d22a2f2198a1f046d[Backdoor.Plugx] [Backdoor.Bot] [Backdoor] [Backdoor.Korplug] [Win32.Trojan] [Backdoor.Win32.Gulpix.a] [Trojan.DownLoader7.27671] [BDS/Plugx.A.71] [TROJ_PLUGX.SMO] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Plugx.A] [Backdoor/Win32.Gulpix] [Backdoor.Win32.RA-based] [W32/RA_based.BZ!tr.bdr] [Trj/CI.A]
fe128688737d6633fe6f3afaa2812f11[W32/Backdoor.KWBJ-4867*W32/Trojan.UYFU-9205] [BDS/RABased.bz] [Win.Trojan.PlugX-71] [BackDoor.Spy.1955] [Win32/Korplug.BJ*Win32/Korplug.A] [W32/Gulpix.CQ!tr.bdr] [Backdoor.Korplug] [TROJ_PLUGX.SMO]
8a4ca8e69718f30d8c4d03296228153a
b39b15e19c999636338d3e131e321a45

Whois

PropertyValue
Email wkn@sandai.net
NameServer NS2.XUNLEI.NET
Created 2003-01-27 00:00:00
Changed 2013-08-01 00:00:00
Expires 2017-01-27 00:00:00
Registrar HICHINA ZHICHENG TEC

DNS Resolutions

DateIP Address
2013-04-0161.137.191.74 (ClassC)
2013-04-01119.188.11.1 (ClassC)
2013-04-0161.137.191.72 (ClassC)
2013-04-30119.188.94.179 (ClassC)
2013-07-21119.188.94.179 (ClassC)
2013-08-1661.54.12.151 (ClassC)
2013-09-10122.143.5.55 (ClassC)
2013-09-12122.143.5.58 (ClassC)
2013-09-12122.143.1.163 (ClassC)
2013-09-21122.143.5.90 (ClassC)
2013-09-21122.143.1.164 (ClassC)
2013-09-22122.143.1.131 (ClassC)
2013-09-23122.143.5.100 (ClassC)
2013-09-23122.143.5.57 (ClassC)
2013-09-23122.143.5.54 (ClassC)
2014-03-05112.80.23.134 (ClassC)
2014-03-11112.80.23.132 (ClassC)
2014-10-17112.87.43.16 (ClassC)
2014-12-15112.87.43.168 (ClassC)
2015-01-17112.87.43.170 (ClassC)
2015-01-25112.87.43.172 (ClassC)
2015-01-31112.87.43.169 (ClassC)
2015-02-10112.87.43.173 (ClassC)
2015-02-13112.87.43.171 (ClassC)
2015-05-26112.87.43.8 (ClassC)
2016-10-10122.143.5.115 (ClassC)
2016-10-22122.143.5.116 (ClassC)
2019-03-10182.118.18.122 (ClassC)
2019-03-11122.193.41.43 (ClassC)
2019-03-11122.143.5.46 (ClassC)
2019-11-02153.35.132.238 (ClassC)
2020-03-1749.7.55.164 (ClassC)
2025-08-09106.8.130.190 (ClassC)

Subdomains

DateDomainIP
twin14528vm6.sandai.net2015-02-11111.161.125.232
lb1.c0367.sandai.net2014-01-1458.251.57.175
lb1.c04028.sandai.net2014-09-16163.177.79.253
sr.m.hub.sandai.net2024-07-29116.132.223.136
idx.m.hub.sandai.net2025-05-16112.64.218.154
cncidx.m.hub.sandai.net2024-07-27112.64.218.40
master.hub.sandai.net2019-08-08112.87.43.227
cdn.vabs.hub.sandai.net2023-12-04222.73.33.248
m.v6.shub.sandai.net2025-03-25112.64.218.40
cnc.m.v6.shub.sandai.net2025-05-18112.64.218.154
hub5btmain.v6.shub.sandai.net2024-07-13116.132.218.191
hub5sr.v6.shub.sandai.net2024-10-02112.64.218.40
hub5emu.v6.shub.sandai.net2025-03-10112.64.218.154
hub5idx.v6.shub.sandai.net2024-06-16116.132.223.136
hub5sr.shub.sandai.net2015-03-24123.129.242.139
hub5idx.shub.sandai.net2014-04-30123.129.242.139
hub5c.sandai.net2024-06-29112.64.218.64
down-hezi.sandai.net2025-06-05111.6.201.146
hub5btmain.em.sandai.net2013-11-05123.129.242.139
tel.hub5btmain.em.sandai.net2025-06-27180.163.202.31
hub5pn.em.sandai.net2024-06-1358.144.251.1
hub5sr.em.sandai.net2025-07-07180.163.203.6
cnc.hub5sr.em.sandai.net2025-07-06180.163.203.6
tel.hub5sr.em.sandai.net2025-07-04180.163.203.6
hub5u.em.sandai.net2025-06-1847.102.130.81
hub5emu.em.sandai.net2025-07-09180.163.203.6
hub5btmain.sandai.net2015-02-15123.129.242.139
hub5c.maxthon.sandai.net2024-07-30116.132.223.136
hub5t.maxthon.sandai.net2025-04-29112.64.218.40
hub5u.maxthon.sandai.net2025-04-1947.102.130.81
hub5c.union.sandai.net2024-08-15112.64.218.40
ftp.union.sandai.net2024-04-2561.160.227.237
hub5t.union.sandai.net2024-06-02112.64.218.64
hub5u.union.sandai.net2025-07-0547.92.164.165
hub5pn.sandai.net2014-09-30182.118.14.152
g1.hub5pn.sandai.net2024-06-1358.144.251.1
g2.hub5pn.sandai.net2024-07-04123.6.27.49
g3.hub5pn.sandai.net2024-05-19123.6.27.16
xzb.hub5pn.sandai.net2024-04-08111.206.4.164
cnc.hub5pn.sandai.net2024-09-24111.206.4.176
g1.cnc.hub5pn.sandai.net2025-01-14111.206.4.177
g2.cnc.hub5pn.sandai.net2024-07-29111.206.4.195
g3.cnc.hub5pn.sandai.net2024-06-28111.206.4.195
down.sandai.net2014-02-04112.80.23.153
game3.down.sandai.net2025-07-20106.8.130.190
game4.down.sandai.net2014-03-11112.80.23.132
mac.down.sandai.net2024-06-13180.163.207.107
upgrade.down.sandai.net2024-10-15180.97.147.12
patch.down.sandai.net2024-07-04180.163.145.201
m.down.sandai.net2014-01-2958.222.24.240
com.down.sandai.net2023-11-30101.226.26.218
xmp.down.sandai.net2014-02-06112.80.23.131
down.co.sandai.net2014-02-14112.80.23.160
xmp.down.co.sandai.net2015-02-11112.87.43.16
hub5btmain.wap.sandai.net2025-05-17112.64.218.154
hub5pn.wap.sandai.net2024-04-17211.91.242.37
hub5sr.wap.sandai.net2024-06-16116.132.223.136
hub5u.wap.sandai.net2025-06-1547.102.130.81
hub5emu.wap.sandai.net2024-07-30112.64.218.64
sub.xmp.sandai.net2025-05-31106.14.221.44
hub5pr.sandai.net2025-07-02140.206.220.33
hub5sr.sandai.net2013-09-03123.129.242.139
cnchub5sr.sandai.net2019-10-25112.87.43.227
hub4t.sandai.net2024-06-29112.64.218.154
hub5t.sandai.net2014-09-30123.129.242.139
hub5u.sandai.net2025-06-2147.102.130.81
cnchub5u.sandai.net2025-05-19116.128.216.220
bgphub5u.sandai.net2025-05-1247.92.164.165
hub5emu.sandai.net2015-05-13123.129.242.139
02.rcv.sandai.net2014-11-14119.189.1.39
www.sandai.net2025-07-25112.124.227.84
score.phub.hz.sandai.net2014-11-06163.177.79.152
relay.phub.hz.sandai.net2014-11-0658.254.134.245
hub5sr.shub.hz.sandai.net2024-06-16112.64.218.40
hub5idx.shub.hz.sandai.net2024-11-07112.64.218.40
hub5c.hz.sandai.net2014-11-06123.129.242.140
hub5pnc.hz.sandai.net2014-11-06119.188.108.56
hub5pn.hz.sandai.net2019-10-14118.212.146.21
pmap.hz.sandai.net2014-11-06122.143.5.59
hub5pr.hz.sandai.net2019-06-10119.188.108.13
imhub5pr.hz.sandai.net2019-08-15121.9.209.150
hub5sr.hz.sandai.net2019-08-07112.87.43.227
hubstat.hz.sandai.net2014-11-06123.129.242.154
hub5u.hz.sandai.net2014-11-0658.254.134.201
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information