Help RSS API Feed Maltego Contact                        

Domain > jifendownload.2345.cn

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to jifendownload.2345.cn

MD5A/V
c1bc8110893981e3354cc38c9c71a7e7[Artemis!C1BC81108939] [Trojan.Downloader] [Heuristic.LooksLike.Win32.SuspiciousPE.J!86] [Win32/DH{QSAlV04}]
b72e8406ca6764fbae18838f62372fc7[W32.Clodf87.Trojan.547b] [Trojan/W32.StartPage.1261568] [Spyware.OnlineGames] [Trojan.StartPage.Win32.23033] [Trojan/Downloader.Adload.nrq] [Heur.AdvML.B] [Win32/Oflwr.A!crypt] [Win.Trojan.Startpage-6804] [Trojan.Win32.StartPage.umjd] [Trojan.Win32.StartPage1.dknpkl] [Worm.Win32.Dropper.RA] [Trojan.StartPage1.18848] [trojan.win32.voinjet.a] [BehavesLike.Win32.Pasta.th] [Trojan/StartPage.prl] [TR/Graftor.1261568.3] [W32/StartPage.FPQN!tr] [TrojanDownloader:Win32/Nefhop!rfn] [Trojan/Win32.Blackhole.R135729] [Trojan.StartPage] [Win32/TrojanDownloader.Adload.NRQ] [Trojan.StartPage!0Qx3lfKX0uw] [Win32.Ramnit] [Win32.Adware.FlyStudio.O]
517d989335f0518e438db4134eeceec5

Whois

PropertyValue
Organization 上海二三四五网络科技有限公司
Email ch3web@hotmail.com
NameServer dns4.50bang.org
Created 2005-04-07 18:05:22
Expires 2019-04-07 18:05:22

DNS Resolutions

DateIP Address
2013-04-0160.190.223.158 (ClassC)
2013-04-01218.65.134.103 (ClassC)
2013-04-0160.190.223.174 (ClassC)
2013-04-01218.77.78.75 (ClassC)
2013-04-01218.65.134.105 (ClassC)
2013-04-0160.190.223.81 (ClassC)
2013-04-01218.77.78.70 (ClassC)
2013-04-05218.65.134.233 (ClassC)
2013-04-15218.65.134.234 (ClassC)
2013-04-16218.77.78.74 (ClassC)
2013-05-0858.215.133.149 (ClassC)
2013-05-1861.164.108.11 (ClassC)
2013-05-1861.164.109.126 (ClassC)
2013-10-1158.215.240.143 (ClassC)
2013-10-15218.75.155.244 (ClassC)
2013-10-1661.147.127.202 (ClassC)
2013-10-1661.147.127.203 (ClassC)
2013-10-1660.191.223.4 (ClassC)
2013-10-1658.215.240.175 (ClassC)
2013-10-1660.191.223.15 (ClassC)
2013-10-17122.228.248.3 (ClassC)
2013-10-1760.191.223.2 (ClassC)
2013-10-1758.215.240.104 (ClassC)
2013-10-1960.191.187.15 (ClassC)
2014-03-0258.215.240.143 (ClassC)
2014-03-0260.191.223.4 (ClassC)
2014-03-0261.147.127.202 (ClassC)
2014-06-2761.160.245.11 (ClassC)
2014-07-0161.160.245.14 (ClassC)
2014-07-0661.160.245.8 (ClassC)
2015-06-2661.147.204.51 (ClassC)
2015-06-2861.147.204.47 (ClassC)
2015-06-2861.147.204.55 (ClassC)
2015-06-2861.147.204.56 (ClassC)
2015-06-2861.147.204.49 (ClassC)
2015-07-1261.147.204.50 (ClassC)
2017-05-18218.77.78.69 (ClassC)
2017-05-18218.75.155.213 (ClassC)
2019-06-1961.147.204.48 (ClassC)
2019-10-25218.77.78.68 (ClassC)
2020-04-23120.52.140.45 (ClassC)
2020-09-04218.12.76.155 (ClassC)
2020-11-12120.52.95.245 (ClassC)
2021-10-13117.91.177.113 (ClassC)
2021-10-13117.91.177.115 (ClassC)
2021-10-13117.91.177.117 (ClassC)
2021-10-14120.39.195.241 (ClassC)
2021-10-14120.39.195.238 (ClassC)
2021-10-14120.39.195.240 (ClassC)
2021-10-16150.139.250.248 (ClassC)
2021-10-16150.139.250.236 (ClassC)
2021-10-16150.139.250.239 (ClassC)
2021-10-20222.186.16.214 (ClassC)
2021-10-21116.211.224.243 (ClassC)
2021-10-21116.211.224.245 (ClassC)
2021-12-05119.147.156.228 (ClassC)
2021-12-05183.61.168.240 (ClassC)
2021-12-05119.147.156.230 (ClassC)
2021-12-05202.104.186.230 (ClassC)
2021-12-05121.9.232.240 (ClassC)
2021-12-13103.15.99.84 (ClassC)
2021-12-13103.15.99.86 (ClassC)
2021-12-27116.55.237.239 (ClassC)
2021-12-28103.228.211.99 (ClassC)
2021-12-28202.143.102.227 (ClassC)
2022-01-13113.219.136.32 (ClassC)
2022-01-13113.219.136.27 (ClassC)
2022-05-05113.96.150.226 (ClassC)
2022-05-14106.4.83.219 (ClassC)
2022-05-14106.4.83.214 (ClassC)
2022-07-03150.138.45.35 (ClassC)
2024-01-07113.142.207.35 (ClassC)
2024-02-10113.219.142.35 (ClassC)
2024-02-18111.170.27.1 (ClassC)
2024-03-14124.239.243.35 (ClassC)
2024-05-03171.107.86.35 (ClassC)
2024-05-08182.106.158.35 (ClassC)
2024-05-2660.188.66.35 (ClassC)
2024-11-03183.240.238.35 (ClassC)
2025-03-04183.240.240.35 (ClassC)
2025-04-22120.233.47.193 (ClassC)
2025-08-06111.20.254.35 (ClassC)

Port 80

Port 443

View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information