Help RSS API Feed Maltego Contact                        

Domain > www.baidu.com

Welcome! Right click nodes and scroll the mouse to navigate the graph.
More information on this domain is in AlienVault OTX

Is this malicious?

Most users have voted this as MALICIOUS

Files that talk to www.baidu.com

MD5A/V
4be9f22829677e62d2ce762a14464068[W32.GeminiC.Worm] [Packed.Win32.TDSS!O] [Trojan.Downloader] [W32/Heuristic-210!Eldorado] [Suspicious_F.E] [Win32/Oflwr.A!crypt] [Trojan.Win32.Badur.gixt] [Packed/FSG] [Mal/Behav-160] [Heuristic.BehavesLike.Win32.Suspicious-BAY.G] [PE:Trojan.Friet!1.9DB0] [W32/Qhost_Banker.OM!tr] [Luhe.Packed.A] [Trojan.Win32.Badur.aPti]
d7aabf05ec9d618b561540a420102bb2[TR/Benban.xt]
81cfba68fdc8cd5117a13be6648de00d[Artemis!81CFBA68FDC8] [Riskware.Chindo] [WS.Reputation.1] [Trojan-Downloader.NSIS.AdLoad.aj] [Win32.Adware.Malplayer.Odur] [Heuristic.BehavesLike.Win32.Suspicious-PKR.G] [Hacktool.Win32.Chindo.BA] [Win32/RiskWare.Chindo.A]
1136f9e6ab6128bc311001050b0d0f73
40b64fe20f745676c1a1f07e1642bf20[W32.Nokosan1.PE] [Win32.Viking.AZ] [Virus.Win32.Qvod!O] [W32.Pikroms.A] [W32/Fujacks.be] [Virus.Qvod.Win32.4] [W32/Pikor.A] [W32.Wapomi!inf] [Killav.AWIG] [Win32/Wapomi.A] [PE_PIKOR.A] [Virus.Qvod] [Virus.Win32.Qvod.a] [Virus.Win32.Qvod.bmnus] [Win32.Qvod.C] [Trojan.Starter.1410] [W32/Viking.AT] [W32/Jadtre-B] [Virus/Win32.Qvod.a] [Win32.Section.e.1470464] [Virus:Win32/Jadtre.F] [Win32/Dellboy.BF] [W32/Bototer.B] [PE:Win32.Cmt.b!1587860] [Virus.Win32.Jadtre] [W32/Krypt.C!tr.bdr] [Virus.Win32.Qvod.$a] [Virus.Win32.Downloader.M]
15c140e70cc7d709050a4fc05dd94541[W32.HfsAutoA.3116] [Backdoor.Bot] [Worm.AutoRun.Win32.112055] [W32/Trojan2.MARR] [W32.Virut.CF] [Win32/Emerleox.FC] [Win32:Vitro] [Rootkit.Win32.Small.aoo] [Trojan.Win32.Dakedam.wirom] [PE:Worm.VobfusEx!1.99E2] [Worm.Win32.Pronny.BL] [Mal_Opet-3] [BehavesLike.Win32.Autorun.cc] [Mal/EncPk-MN] [W32/Trojan.BOPZ-1378] [Trojan[Downloader]/Win32.Dakedam] [Trojan:Win32/Hideproc.E] [HEUR/Fakon.mwf] [W32/Autorun.worm.gv] [Rootkit.Small] [Trojan.Win32.Rootkit.ag] [Win32/AutoRun.Delf.ES] [Trojan.Win32.FakeFolder.pb] [Trojan-Downloader.Win32.Dakedam] [W32/Virut.CE] [Trj/FakeFolder.N]
1a8753eb24509e60344a501bd4833801[W32.UninstallOctLTA.PE] [Virus.Win32.Otwycal!O] [W32.Qvod.F] [W32/Simfect] [Virus.Win32.Otwycal.bopofk] [W32.Wapomi.C!inf] [Win32/Wapomi.CD] [PE_WAPOMI.SM] [W32.Virus.Wapomi] [Virus.Win32.Otwycal.a] [Virus.Win32.Dropper.a] [TrojWare.Win32.KillAV.iu] [Win32.HLLP.Protil.1] [W32/Etap] [Heuristic.LooksLike.Win32.SuspiciousPE.J] [Win32/Protil.e] [Virus/Win32.Otwycal.a] [Win32.ExeAggmg.a.30720] [Win32.Otwycal.A] [Win32/Viking.DR] [Virus.Otwycal.a] [Win32/Wapomi.U] [PE:Worm.Win32.ShellCode.b!1594282] [Exploit.Win32.ShellCode] [Win32/Wapomi] [Virus.Win32.Otwycal.$a] [Virus.Win32.Downloader.Z]
5eb06e80995cb25e2c0e38fb1c260a8b[WS.Reputation.1]
07195335e5fc0fc708b53178d5c0cd10[W32.excCloud16a.PE] [Win32.VJadtre.3] [Virus.Win32.Otwycal.1!O] [W32.Otwyacal.C] [W32/Simfect] [Trojan.FakeMS.ED] [Virus.Win32.Otwycal.dszex] [W32.Wapomi.C!inf] [Win32/Wapomi.CD] [PE_WAPOMI.SM] [W32.Virus.Wapomi-1] [Virus.Win32.Otwycal.a] [Win32.Otwycal.A] [Virus.Win32.Wapomi.AA] [Win32.HLLP.Protil.1] [Virus.Otwycal.Win32.1] [W32/Jadtre.A] [Heuristic.LooksLike.Win32.SuspiciousPE.F] [W32/Patched-AG] [Win32/Protil.e] [Virus/Win32.Otwycal.a] [Win32.Otwycal.xp.112128] [Virus:Win32/Mikcer.A] [Win32/Wampori] [Virus.Otwycal.a] [Win32/Wapomi.AA] [Win32/Wapomi] [Virus.Win32.Otwycal.$a] [Virus.Win32.Downloader.AB]
340d49c79a4fa2fa6fc669784a05a956[W32.excCloud16a.PE] [Win32.VJadtre.3] [Virus.Win32.Otwycal.1!O] [W32.Otwyacal.C] [W32/Simfect] [W32.Wapomi.C!inf] [Win32/Wapomi.CD] [PE_WAPOMI.SM] [W32.Virus.Wapomi-1] [Virus.Win32.Otwycal.a] [Virus.Win32.Otwycal.dszex] [Win32.Otwycal.A] [Virus.Win32.Wapomi.AA] [Win32.HLLP.Protil.1] [Virus.Otwycal.Win32.1] [W32/Jadtre.A] [Heuristic.LooksLike.Win32.SuspiciousPE.F] [W32/Patched-AG] [Win32/Protil.e] [Virus/Win32.Otwycal.a] [Win32.Otwycal.xp.112128] [Virus:Win32/Mikcer.A] [Win32/Wampori] [Virus.Otwycal.a] [Win32/Wapomi.AA] [Virus.Win32.Dropper.a] [Virus.Win32.Otwycal] [Win32/Wapomi] [Virus.Win32.Otwycal.$a] [Virus.Win32.Downloader.AB]
1c6d585ea79a1db12f69426576724411
db4c077e35d249e8ccfd5bc434e58f62[Packed.Win32.TDSS!O] [Trojan.Downloader] [W32/Heuristic-210!Eldorado] [Suspicious_F.E] [Win32/Oflwr.A!crypt] [Suspicious!SA] [Mal/Behav-160] [Trojan.MulDrop5.6661] [Heuristic.BehavesLike.Win32.Suspicious-BAY.G] [PE:Trojan.Friet!1.9DB0] [Luhe.Packed.A]
438101709b80273e176e49cff079ebc1[W32.Numnul.C] [W32/Simfect] [Virus] [W32/Nimnul.A] [W32.Loorp.C!inf] [PE_NIMNUL.A] [PUA.Packed.ASPack] [Virus.Win32.Nimnul.c] [Win32.Qvod.C] [Virus.Win32.Nimnul.C] [Win32.Rmnet.5] [Heuristic.BehavesLike.Win32.Suspicious.P] [Win32/KillAV.ELG] [Win32/Qvod.a] [Win32/Qvod] [Trojan.KillAV.grg] [Malware.Loorp] [Win32.Yxi.a] [Trojan-Dropper.Win32.Bototer] [W32/Nimnul.C] [W32/Qvod.A]
e7ec711409ded29fc55b0380f1ccf3a5[HW32.CDB.618b] [Suspicious.Cloud.5] [Cryp_Xin1] [Packed/PECompact] [Trojan.Click3.4811] [Mal/Behav-160] [TrojanProxy:Win32/Potukorp.A] [PE:Trojan.Friet!1.9DB0]
0bea5ca2037703987dcb83eb3615c181[W32.Loggerf1ND.PE] [Win32.VJadtre.3] [Virus.Win32.Otwycal!O] [W32.Qvod.F] [W32/Simfect] [Virus.Win32.Otwycal.bopofk] [W32.Wapomi.C!inf] [Kryptik.CDHN] [Win32/Wapomi.CD] [PE_WAPOMI.SM] [W32.Virus.Wapomi] [Virus.Win32.Otwycal.a] [Win32.Otwycal.A] [PE:Worm.Win32.ShellCode.d!1595207] [Virus.Win32.Wapomi.K] [Win32.HLLP.Protil.1] [Virus.Otwycal.Win32.1] [W32/Etap] [Heuristic.LooksLike.Win32.SuspiciousPE.J] [W32/Patched-AG] [Win32/Protil.e] [Virus/Win32.Otwycal.a] [Win32.ExeAggmg.b.30720] [Win32/Viking.DQ] [Virus.Otwycal.a] [Win32/Wapomi.AA] [Virus.Win32.Dropper.a] [Virus.Win32.Otwycal] [Win32/Wapomi] [Virus.Win32.Otwycal.$a] [Virus.Win32.Downloader.AM]
0576b898bdd8b2f1366fb018111e5d42[HW32.CDB.F532] [Artemis!0576B898BDD8] [Trojan.Dropper] [Suspicious.Cloud.5] [Packed/PECompact] [Trojan.Click3.4959] [Cryp_Xin1] [Heuristic.LooksLike.Win32.Suspicious.F] [PE:Trojan.Friet!1.9DB0] [Win32/Trojan.663]
09da4e01fdf0d942ee1fd1ba3f7454a9[Virus.Win32.Downloader.M] [Win32.Viking.AZ] [W32/Pikor.A] [W32/Viking.AT] [Win32/Wapomi.A] [W32.Pikroms.A] [Virus.Qvod] [Trojan.Starter.1410] [W32/Krypt.C!tr.bdr] [Virus.Win32.Jadtre] [Virus.Win32.Qvod.a] [W32/Fujacks.be] [Virus*Win32/Jadtre.F] [Win32.Cmt.b] [W32/Jadtre-B] [W32.Wapomi!inf] [PE_PIKOR.A]
ee83fcb38d49f720160e79582b4603e2
2fbdc14651bbb51e3e2530c007180ec2
0c5e629b57fb6b9a082cef28038e8fd6[W32.StChinCharA.PE] [Win32.Jadtre.E] [Virus/W32.Patched.P] [Virus.Win32.Qvod!O] [W32.Jadtre.I] [W32/Fujacks.be] [W32/Jadtre.A] [W32.Wapomi.B!inf] [Killav.AWIG] [Win32/Wapomi.A] [W32.Wapomi-3] [Virus.Win32.Qvod.b] [Virus.Win32.Qvod.bmnus] [Win32.Qvod.C] [PE:Win32.Fednu.e!1588847] [W32/Jadtre-B] [Win32.Dropper.5] [W32/Wapomi.B] [PE_PIKOR.A] [Heuristic.BehavesLike.Win32.Suspicious.H] [Virus/Win32.Qvod.b] [Virus:Win32/Jadtre.I] [Win32/Dellboy.BG] [W32/Bototer.D] [Win32/AutoRun.NAX] [Virus.Win32.Dropper.a] [Worm.Win32.Pikorms] [W32/Krypt.C!tr.bdr] [Worm/AutoRun.JT] [Virus.Win32.Qvod.$b] [Virus.Win32.Downloader.AF]

Whois

PropertyValue
Email domainmaster@baidu.com
NameServer NS2.BAIDU.COM
Created 1999-10-11 00:00:00
Changed 2013-10-14 00:00:00
Expires 2015-10-11 00:00:00
Registrar MARKMONITOR INC.

DNS Resolutions

DateIP Address
0000-00-00pid:812 (ClassC)
2013-04-25220.181.111.147 (ClassC)
2013-05-13123.125.114.238 (ClassC)
2013-05-13123.125.115.165 (ClassC)
2013-06-06119.75.218.77 (ClassC)
2013-06-06119.75.217.56 (ClassC)
2013-06-07220.181.112.143 (ClassC)
2013-07-2961.135.169.125 (ClassC)
2013-07-2961.135.169.105 (ClassC)
2013-08-1158.217.200.15 (ClassC)
2013-08-13220.181.111.148 (ClassC)
2013-08-23180.76.3.151 (ClassC)
2013-09-15220.181.112.143 (ClassC)
2013-09-1958.217.200.13 (ClassC)
2013-10-19115.239.210.26 (ClassC)
2013-10-19115.239.210.27 (ClassC)
2014-01-26180.76.3.151 (ClassC)
2014-03-16220.181.111.148 (ClassC)
2014-05-01115.239.211.110 (ClassC)
2014-07-10220.181.111.188 (ClassC)
2014-09-23116.255.231.112 (ClassC)
2014-12-11115.239.211.110 (ClassC)
2014-12-12115.239.210.27 (ClassC)
2014-12-27115.239.211.112 (ClassC)
2015-05-13115.239.211.114 (ClassC)
2015-05-20115.239.210.25 (ClassC)
2015-09-16180.97.33.108 (ClassC)
2017-03-0814.215.177.37 (ClassC)
2017-04-0514.215.178.60 (ClassC)
2017-09-26220.181.112.147 (ClassC)
2017-09-26220.181.111.149 (ClassC)
2017-09-26180.97.33.107 (ClassC)
2018-04-1814.215.178.61 (ClassC)
2018-07-04173.192.139.27 (ClassC)
2018-08-27220.181.112.244 (ClassC)
2018-09-1158.217.200.112 (ClassC)
2018-09-1158.217.200.113 (ClassC)
2018-09-30180.149.131.98 (ClassC)
2018-09-30180.149.132.151 (ClassC)
2018-11-0614.215.177.39 (ClassC)
2018-11-0614.215.177.38 (ClassC)
2018-11-15220.181.111.37 (ClassC)
2018-12-17220.181.111.188 (ClassC)
2018-12-28220.181.111.111 (ClassC)
2019-04-24180.149.144.223 (ClassC)
2019-04-24220.181.38.150 (ClassC)
2019-04-24180.149.144.224 (ClassC)
2019-04-24220.181.38.149 (ClassC)
2019-05-09183.232.231.172 (ClassC)
2019-05-10103.235.46.39 (ClassC)
2019-05-14162.255.119.253 (ClassC)
2019-05-1445.113.192.101 (ClassC)
2019-06-1045.113.192.102 (ClassC)
2019-06-2061.135.169.121 (ClassC)
2019-06-28106.120.159.141 (ClassC)
2019-06-28106.120.159.142 (ClassC)
2019-07-02180.101.49.12 (ClassC)
2019-07-21180.101.49.11 (ClassC)
2019-08-06183.232.231.173 (ClassC)
2019-08-11119.63.197.139 (ClassC)
2019-08-11119.63.197.151 (ClassC)
2019-08-26180.101.49.45 (ClassC)
2019-08-26180.101.49.46 (ClassC)
2019-12-12180.101.49.42 (ClassC)
2019-12-12180.97.34.94 (ClassC)
2019-12-12180.101.49.13 (ClassC)
2019-12-12180.97.34.96 (ClassC)
2019-12-12180.101.49.14 (ClassC)
2019-12-12180.101.49.41 (ClassC)
2020-01-09172.16.17.18 (ClassC)
2020-04-02111.206.223.172 (ClassC)
2020-04-02111.206.223.173 (ClassC)
2020-05-15103.235.47.102 (ClassC)
2021-01-21220.181.111.46 (ClassC)
2021-01-21220.181.111.47 (ClassC)
2021-02-20124.237.176.3 (ClassC)
2021-02-20124.237.176.4 (ClassC)
2021-12-10110.242.68.3 (ClassC)
2021-12-10110.242.68.4 (ClassC)
2021-12-10112.80.248.75 (ClassC)
2021-12-10112.80.248.76 (ClassC)
2022-01-17110.242.68.5 (ClassC)
2022-02-1949.44.79.236 (ClassC)
2022-03-20111.206.208.134 (ClassC)
2022-03-20111.206.208.133 (ClassC)
2022-04-27153.37.235.5 (ClassC)
2022-04-27153.37.235.4 (ClassC)
2022-06-24117.24.14.117 (ClassC)
2022-08-1713.127.247.216 (ClassC)
2022-12-30103.235.47.7 (ClassC)
2023-01-18180.101.50.172 (ClassC)
2023-01-29180.101.50.231 (ClassC)
2023-02-03180.101.50.242 (ClassC)
2023-02-03180.101.50.188 (ClassC)
2023-03-0114.119.104.189 (ClassC)
2023-03-3014.119.104.254 (ClassC)
2023-04-06202.83.24.75 (ClassC)
2024-02-23104.193.88.77 (ClassC)
2024-02-26104.193.88.123 (ClassC)
2024-05-20103.235.46.40 (ClassC)
2024-06-01183.240.99.202 (ClassC)
2024-06-08183.240.99.24 (ClassC)
2024-06-16103.235.47.103 (ClassC)
2025-01-29103.235.46.96 (ClassC)
2025-02-21103.235.47.188 (ClassC)
2025-04-10103.235.46.102 (ClassC)
2025-05-23103.235.46.115 (ClassC)

Port 80

Port 443

Subdomains

DateDomainIP
0.baidu.com2016-09-20112.80.248.165
100.baidu.com2024-09-21180.97.94.12
f10.baidu.com2020-06-201.71.157.36
sf10.baidu.com2024-03-23106.225.194.38
i10.baidu.com2020-07-20113.113.67.36
t10.baidu.com2020-02-271.193.147.48
g20.baidu.com2025-05-15110.242.71.103
g0.baidu.com2024-05-11180.76.5.78
img0.baidu.com2024-01-16171.214.23.35
gimg0.baidu.com2024-02-20103.235.47.165
dj0.baidu.com2020-03-21112.34.111.158
offmap0.baidu.com2025-05-19104.193.90.80
dapp0.baidu.com2024-05-30111.177.8.47
sp0.baidu.com2015-03-09180.76.3.151
gsp0.baidu.com2025-04-23103.235.47.251
pics0.baidu.com2023-12-22104.193.90.80
mms0.baidu.com2024-08-13117.33.185.38
gips0.baidu.com2024-01-31171.214.23.38
ss0.baidu.com2025-05-19104.193.90.87
gss0.baidu.com2024-03-13180.76.5.109
qpst01.baidu.com2025-05-19110.242.69.147
11.baidu.com2025-03-06182.61.62.50
1111.baidu.com2019-02-07123.125.112.65
f11.baidu.com2020-02-271.193.147.48
g11.baidu.com2024-11-11110.242.68.12
i11.baidu.com2020-07-20113.113.67.36
t11.baidu.com2020-02-271.193.147.48
g1.baidu.com2025-05-08110.242.71.103
img1.baidu.com2023-08-05110.185.186.35
ucimg1.baidu.com2024-08-27118.180.40.48
gimg1.baidu.com2023-12-10180.97.64.36
i1.baidu.com2020-06-301.81.3.36
dj1.baidu.com2020-03-05112.34.111.158
m1.baidu.com2019-02-04103.235.47.34
offmap1.baidu.com2025-05-17104.193.90.80
sp1.baidu.com2020-05-12103.235.47.102
gsp1.baidu.com2024-07-04103.235.46.45
q1.baidu.com2019-05-15103.235.47.127
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information