Help RSS API Feed Maltego Contact                        

Domain > hi.n.shifen.com

Welcome! Right click nodes and scroll the mouse to navigate the graph.
More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to hi.n.shifen.com

MD5A/V
1a1828bc7b54cdbc844593d2a454cad1[W32/A-8128ee96!Eldorado]
115ecce965247f8ed9ca6cdb69a3a131[Backdoor.Hupigon.275309] [TR/Offend.6266912] [Win32/Oflwr.A!crypt] [Trojan.Danginex.A2] [Worm.Autorun-4618] [BackDoor.BlackHole.19996] [W32/Hupigon.PUG!tr] [SHeur3.CJCC] [Backdoor.Win32.Hupigon] [Trojan*Win32/Danginex] [Trojan.Gnail!484E] [Troj/Danginex-A] [TROJ_AG.DBF0A141] [Backdoor.Hupigon]
e6246a4a1d58f8591ddd0971ac981b9c[TR/Alyak.C.1] [Trojan.Alyak.B3] [Trojan.DownLoader6.58829] [Win32/Alyak.C] [Trojan.Win32.Alyak] [PWS-OnlineGames.lq] [TrojanDownloader*Win32/Kanav.H] [Trojan.DL.Kanav!56EF] [Mal/GamerPWS-D] [TROJ_ALYAK.SMAE] [BScope.Trojan.Win32.Inject.2]
e9ed5a2ba483785c4258446a05112b81[W32/Badur.LKGQ!tr] [Trojan.Win32.Badur.lkgq]
d7aabf05ec9d618b561540a420102bb2[TR/Benban.xt]
61a7ad7b261c51c00bea4275c555685a[Heur.W32] [W32/A-8128ee96!Eldorado] [Win32/Heur]
77a4c556cbe75d4b8f22885b1da99cb9
0e4043d71b63742c750c059acf5d8d6f[TR/Rogue.3690496] [Trojan.DownLoader11.11699] [Riskware/FlyStudio] [Trojan-FDRA!0E4043D71B63]
e1184fb04077fc067ed56fcfeb335c3a[Riskware/FlyStudio]
91a66f47ef7a8a00fe07aea1fdc0a5b7[Win32/Packed.VMProtect.AAA] [W32/FlyStudio_Packed.A] [Win32/Blacked] [VirTool*Win32/Obfuscator.XZ] [Mal/VMProtBad-A]
d62eba31475b6fcf83b1a06bf5bd62f2[Riskware/FlyStudio]
a81760cdf227705a0e17c196114e595f[Riskware/Qhost] [Trojan*W32/DelfInject.R] [HackTool.Sniffer.WpePro]
244b45e8d20744e32852f0c409e5f914[W32/A-cf2e9719!Eldorado] [TR/Graftor.142484.1] [Win32/Tnega.GHHKGOC] [Trojan.Badur.48] [Win32/TrojanDownloader.Raykmerd.A] [W32/Raykmerd.A!tr.dldr] [Trojan-Downloader.Win32.Raykmerd] [Trojan.Win32.Badur.hsua] [RDN/Downloader.a!tx] [TrojanDownloader*Win32/Raykmerd.A] [Trojan.Badur]
dffbeee5a82a1f96bcc5ed68a8ab2e0f[W32/Trojan.CEDF-7582] [TR/Rogue.565865] [Win.Trojan.Expone] [PossibleThreat] [Trojan.Win32.Reconyc.dnro] [Trojan.Dropper]
7e5815ac57ab0ae2029bad3e006082b4[TR/Obfuscate.XZ.12842] [Win32/Oflwr.A!crypt] [Riskware/Qhost] [Trojan*W32/DelfInject.R] [Trojan.Win32.Pincav] [Trojan.Win32.Invader] [VirTool*Win32/Obfuscator.XZ]
1aabb8a3a6ae4eb143635344dbcbbfd9[Mal/VMProtBad-A] [TrojanDropper.Mudrop]
a22cb71c1bb17056cf4098aba35e8c12[Win32/Oflwr.A!crypt] [Riskware/FlyStudio] [Win32.SuspectCrc] [Spyware.OnlineGames]
f898579ed879ae09da0e170b8a7bf8cd
0201ef7b01a7a32cdf05109cdb168d6d[Win32/Oflwr.A!crypt] [Riskware/FlyStudio] [Trojan*W32/DelfInject.R] [RiskTool.Win32.IMEStartup.lej]
1e1d008e57c73e386106f0736f18f11e[Riskware/Qhost] [Trojan*W32/DelfInject.R] [RiskTool.Win32.IMEStartup.lpt] [Backdoor.BlackHole]

Whois

PropertyValue
Email domainmaster@baidu.com
NameServer NS2.BAIDU.COM
Created 2001-08-01 00:00:00
Changed 2010-10-27 00:00:00
Expires 2015-08-01 00:00:00
Registrar MARKMONITOR INC.