Help RSS API Feed Maltego Contact                        

Domain > gtms04.alicdn.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to gtms04.alicdn.com

MD5A/V
d99e3c9ec38b228d4b0e33edb1a3d1f1[UnclassifiedMalware] [Win32/Trojan.5a3]
25190c93399e76348671ddc3f3c92cd0[W32.Clod55e.Trojan.1b32] [Backdoor.VB.jyc] [Backdoor.VB.Win32.7238] [Backdoor/VB.jyc] [Trojan.Win32.VB.gwlya] [W32/Backdoor2.GITN] [Backdoor.Win32.VB.jyc] [Backdoor.VB!K8mb9j4P4k8] [Backdoor.Win32.A.VB.311296.H] [Backdoor.Win32.VB.~O] [Trojan.Click3.5816] [BDS/VB.jyb] [Heuristic.BehavesLike.Win32.Suspicious-BAY.K] [Trojan[Backdoor]/Win32.VB] [Trojan:Win32/Provis!rts] [W32/Backdoor.XNIO-8368] [Trojan/Win32.Xema] [Trojan.VBRA.012924] [PE:Trojan.StartPage!1.6871] [Backdoor.Win32.VB] [W32/VB.JYC!tr.bdr] [BackDoor.VB.ICO] [Backdoor.Win32.VB.ab] [Win32/Backdoor.dd2]
886e1510a3fcdda160a3461965623501[Artemis!88156F8F2748] [Trojan.FakeATI] [Infostealer.Limitail] [TROJ_GE.529FCC97] [Zip.Suspect.WinDoubleExtension-zippwd-2] [Backdoor.Win32.Androm.fcyl] [Win32.Trojan.Inject.Auto] [Troj/MSIL-AMR] [Trojan.PWS.Stealer.13025] [TR/Dropper.MSIL.87001] [Backdoor.Win32.Androm.AI] [MSIL/Spy.LimitLogger.A] [Trojan.Win32.Resetter] [MSIL5.ROY] [Trj/Chgt.H]
67b4b2433c45df797fd95cff59ddc733[W32.Clod3d6.Trojan.426d] [Trojan/W32.Vilsel.204800.C] [Artemis!67B4B2433C45] [Trojan.Vilsel.Win32.7281] [Trojan/Vilsel.agqy] [Trojan.Win32.Vilsel.cwsdd] [Trojan.Win32.Vilsel.agqy] [Trojan.Vilsel!PEvXyqIpQ9A] [Trojan.Win32.Vilsel.204800] [UnclassifiedMalware] [Trojan.DownLoader4.57163] [Trojan/Vilsel.hre] [Trojan/Win32.Vilsel] [Win32.Troj.Vilsel.(kcloud)] [Trojan.Win32.Vilsel] [W32/Vilsel.AGQY!tr]
e682b625ae543d6b059baa49569954db[HW32.Packed.4BA6] [Trojan.MicroJoiner.A] [Suspicious.MH690.A] [Downloader] [TROJ_MICROJOIN.W] [Trojan.Dropper-4960] [Trojan.Win32.Microjoin.jkzg] [TrojWare.Win32.TrojanDownloader.Tiny.~BU] [Trojan.Packed.1722] [Mal/Dropper-C] [TrojanDropper.Microjoin.acm] [Trojan:Win32/Bulta!rfn] [Virus.Win32.Heur.c] [Trojan-PWS.Win32.LdPinch] [W32/Dropper.MLTR!tr] [Dropper.Microjoin] [Win32/Trojan.ffd]
961c0ed105b1f4ade335051a3a1b0816
08e862628686a670faf5854daf29485b
87682693f4e2d6d6aa676e4270267d7b
6946a5584bf8fc445899ffc20767e744[Artemis!6946A5584BF8] [Win32.Trojan.WisdomEyes.151026.9950.9986] [TROJ_RAZY.A] [Trojan.Win32.Razy.edogyd] [TROJ_RAZY.A] [BehavesLike.Win32.Cryptlore.th] [W32/Trojan.GFIA-0402] [TR/Razy.xulg] [Trojan.Razy.DF519] [Pakes2_c.CJJX] [Win32/Trojan.0d9]

Whois

PropertyValue
Email dnsadmin@hk.alibaba-inc.com
NameServer NSHZ.ALIBABAONLINE.COM
Created 2008-06-25 00:00:00
Changed 2014-06-12 00:00:00
Expires 2016-06-25 00:00:00
Registrar MARKMONITOR INC.

DNS Resolutions

DateIP Address
2013-09-1166.102.255.40 (ClassC)
2013-10-1966.102.255.50 (ClassC)
2013-12-10183.61.241.120 (ClassC)
2013-12-10119.167.151.240 (ClassC)
2013-12-17222.73.134.50 (ClassC)
2013-12-22183.61.241.110 (ClassC)
2013-12-2727.221.24.150 (ClassC)
2014-01-0827.221.24.140 (ClassC)
2014-03-19114.80.174.50 (ClassC)
2014-03-22114.80.174.40 (ClassC)
2014-05-13195.59.70.240 (ClassC)
2014-05-15220.181.141.240 (ClassC)
2014-05-25220.181.141.250 (ClassC)
2014-06-03180.149.155.50 (ClassC)
2014-06-09180.149.155.40 (ClassC)
2014-06-10195.27.31.240 (ClassC)
2014-06-20195.27.31.250 (ClassC)
2014-07-15195.59.70.240 (ClassC)
2014-07-2563.85.36.24 (ClassC)
2014-08-0565.126.84.40 (ClassC)
2014-08-13199.117.103.88 (ClassC)
2014-08-14199.117.103.59 (ClassC)
2014-08-19199.117.103.128 (ClassC)
2014-08-2096.17.197.33 (ClassC)
2014-08-2063.85.36.18 (ClassC)
2014-08-2523.67.244.81 (ClassC)
2014-08-27199.117.103.147 (ClassC)
2014-08-2963.156.193.154 (ClassC)
2014-08-29199.117.103.154 (ClassC)
2014-08-2923.67.242.34 (ClassC)
2014-09-0167.132.183.42 (ClassC)
2014-09-0323.3.68.211 (ClassC)
2014-09-0496.17.111.11 (ClassC)
2014-09-08128.177.96.26 (ClassC)
2014-09-1523.67.242.35 (ClassC)
2014-09-25199.117.103.136 (ClassC)
2014-09-28165.254.114.26 (ClassC)
2014-10-01165.254.206.147 (ClassC)
2014-10-145.178.43.10 (ClassC)
2014-10-1423.15.4.16 (ClassC)
2014-10-145.178.43.18 (ClassC)
2014-10-1423.15.4.8 (ClassC)
2014-10-165.178.43.48 (ClassC)
2014-10-165.178.43.50 (ClassC)
2014-10-1967.132.183.67 (ClassC)
2014-10-2223.74.9.222 (ClassC)
2014-10-24128.177.96.97 (ClassC)
2014-10-29205.185.206.147 (ClassC)
2014-10-31128.177.96.10 (ClassC)
2014-11-02165.254.94.145 (ClassC)
2014-11-04198.173.2.56 (ClassC)
2014-11-06205.185.206.170 (ClassC)
2014-11-07165.254.94.41 (ClassC)
2014-11-09165.254.207.72 (ClassC)
2014-11-11107.14.32.11 (ClassC)
2014-11-15165.254.206.161 (ClassC)
2014-11-19184.25.56.179 (ClassC)
2014-11-19198.173.2.11 (ClassC)
2014-11-20165.254.207.83 (ClassC)
2014-11-20165.254.155.43 (ClassC)
2014-11-27165.254.207.11 (ClassC)
2014-12-01204.93.46.171 (ClassC)
2014-12-10165.254.207.33 (ClassC)
2014-12-10165.254.206.122 (ClassC)
2014-12-18204.93.47.194 (ClassC)
2014-12-21184.27.202.89 (ClassC)
2015-01-13205.185.206.168 (ClassC)
2015-01-16220.181.105.250 (ClassC)
2015-01-18220.181.105.240 (ClassC)
2015-01-20101.226.181.110 (ClassC)
2015-01-22101.226.181.100 (ClassC)
2015-05-1166.198.24.250 (ClassC)
2017-04-2966.198.178.91 (ClassC)
2017-06-2266.231.239.95 (ClassC)
2017-08-0966.198.178.90 (ClassC)
2017-09-0766.102.255.43 (ClassC)
2017-09-18213.244.178.220 (ClassC)
2017-09-2280.231.126.224 (ClassC)
2017-09-24195.59.70.250 (ClassC)
2017-10-0480.231.126.240 (ClassC)
2017-11-2266.231.239.96 (ClassC)
2017-12-05183.110.156.110 (ClassC)
2017-12-16183.110.156.92 (ClassC)
2017-12-18121.194.7.219 (ClassC)
2017-12-2839.130.137.108 (ClassC)
2018-01-0258.30.206.140 (ClassC)
2018-01-11202.47.28.112 (ClassC)
2018-02-10211.144.94.36 (ClassC)
2018-03-06116.77.74.99 (ClassC)
2018-03-20150.138.211.29 (ClassC)
2018-03-20124.232.128.109 (ClassC)
2018-03-20150.138.211.30 (ClassC)
2018-03-21117.174.128.240 (ClassC)
2018-04-0442.123.102.96 (ClassC)
2018-04-23117.180.227.228 (ClassC)
2018-04-2458.30.206.172 (ClassC)
2018-04-2458.30.206.180 (ClassC)
2018-06-13218.203.11.96 (ClassC)
2018-06-14202.47.28.98 (ClassC)
2018-06-14202.47.28.99 (ClassC)
2018-06-22111.1.160.98 (ClassC)
2018-07-04180.136.97.241 (ClassC)
2018-07-10117.157.225.253 (ClassC)
2018-07-14118.212.227.5 (ClassC)
2018-07-15117.21.189.122 (ClassC)
2018-07-20202.105.176.71 (ClassC)
2018-08-1847.88.135.254 (ClassC)
2018-10-0747.89.66.240 (ClassC)
2019-04-0966.102.255.45 (ClassC)
2019-06-1247.89.68.241 (ClassC)
2019-08-1247.246.19.253 (ClassC)
2019-08-3147.246.19.254 (ClassC)
2019-08-3147.246.2.254 (ClassC)
2019-08-3147.246.22.253 (ClassC)
2019-10-0247.246.17.254 (ClassC)
2019-12-1247.246.23.254 (ClassC)
2021-12-281.193.218.97 (ClassC)
2024-02-218.48.85.251 (ClassC)
2024-03-138.48.85.252 (ClassC)
2024-04-03163.181.50.251 (ClassC)
2024-04-1247.246.23.248 (ClassC)
2024-04-17163.181.92.148 (ClassC)
2024-04-1947.246.23.249 (ClassC)
2024-04-308.25.82.236 (ClassC)
2024-05-058.25.82.235 (ClassC)
2024-05-138.25.82.217 (ClassC)
2025-01-2947.246.23.250 (ClassC)
2025-03-1247.246.23.251 (ClassC)
2025-04-088.25.82.193 (ClassC)
2025-06-1447.246.20.173 (ClassC)
2025-07-1447.246.23.188 (ClassC)
2025-08-1047.246.23.187 (ClassC)

Port 80

Port 443

Subdomains

DateDomainIP
g20.alicdn.com2023-10-0447.246.24.251
akamaissl0.alicdn.com2024-06-1358.218.215.159
sc01.alicdn.com2023-08-04184.28.50.49
ae01.alicdn.com2023-08-1523.75.208.45
gwl01.alicdn.com2024-11-258.38.121.229
sm01.alicdn.com2023-10-168.45.52.251
atms01.alicdn.com2015-01-2723.74.9.223
gtms01.alicdn.com2014-10-1423.15.4.16
cbu01.alicdn.com2015-04-29222.73.134.40
o201411.alicdn.com2025-01-078.38.121.230
a1.alicdn.com2021-07-2747.246.23.253
hdc1.alicdn.com2014-08-18195.27.31.240
gd1.alicdn.com2014-08-19195.27.31.240
yqfile1.alicdn.com2024-04-12163.181.56.244
g-search1.alicdn.com2015-04-02101.226.178.100
g.search1.alicdn.com2013-10-1366.102.255.40
gaitaobao1.alicdn.com2014-06-03195.27.31.240
gshop1.alicdn.com2014-07-30134.159.210.110
gdsns1.alicdn.com2025-07-28140.205.122.66
gdt1.alicdn.com2024-04-04163.181.56.244
gsctst1.alicdn.com2025-03-088.25.82.193
gju1.alicdn.com2015-07-2966.102.255.50
gw1.alicdn.com2013-11-0566.102.255.50
sc02.alicdn.com2023-10-2723.38.191.9
ae02.alicdn.com2023-08-1523.54.19.89
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information