xmp.down.sandai.net

Xunlei Networking Technologies Ltd.

Domain Information

The domain xmp.down.sandai.net registered by Xunlei Networking Technologies Ltd. was initially registered in January of 2003 through HICHINA ZHICHENG TECHNOLOGY LTD.. The hosted servers are located in Jilin, Jilin within China which resides on the Asia Pacific Network Information Centre network.
Remove Malware from xmp.down.sandai.net - Powered by Reason Core Security
Registrar:
HICHINA ZHICHENG TECHNOLOGY LTD.

Server location:
Jilin, China (CN)

Create date:
Monday, January 27, 2003

Expires date:
Monday, January 27, 2020

Updated date:
Wednesday, December 23, 2015

ASN:
AS4837 CHINA169-BACKBONE CNCGROUP China169 Backbone

Root domain:

Google Safe Browsing:
malware

Scan engine
Details
Detections

NANO AntiVirus
Trojan.Win32.IframeExec.cqoyfb, Trojan.Win32.Nimda.crhbax, Trojan.Win32.Ramnit.cszaka
80.00%

Dr.Web
Trojan.DownLoader11.16538, Adware.Spigot.40, DLOADER.Trojan
60.00%

The domain xmp.down.sandai.net has been seen to resolve to the following 26 IP addresses.

December 1, 2014

December 1, 2014

December 1, 2014

December 1, 2014

December 1, 2014

December 1, 2014

December 1, 2014

December 1, 2014

August 17, 2014

57.5.143.122.adsl-pool.jlccptt.net.cn
August 17, 2014

55.5.143.122.adsl-pool.jlccptt.net.cn
August 17, 2014

54.5.143.122.adsl-pool.jlccptt.net.cn
August 17, 2014

February 20, 2014

100.5.143.122.adsl-pool.jlccptt.net.cn
February 20, 2014

58.5.143.122.adsl-pool.jlccptt.net.cn
February 20, 2014

February 20, 2014

February 20, 2014

February 20, 2014

February 20, 2014

February 20, 2014

February 20, 2014

February 20, 2014

February 20, 2014

February 20, 2014

February 20, 2014

February 20, 2014

File downloads found at URLs served by xmp.down.sandai.net.

0 / 68

0 / 68
http://xmp.down.sandai.net/.../XMPSetup-aofei.exe  (21f14858fcdeb056b549db85b5a28445)

0 / 68

0 / 68

0 / 68

0 / 68

0 / 68

0 / 68

0 / 68

1 / 68      (inconclusive)

2 / 68      (inconclusive)

0 / 68
http://xmp.down.sandai.net/kankan/.../evrcp.dll  (0799635c08c6cffa39616b45727c6034)

0 / 68
http://xmp.down.sandai.net/kankan/.../flvsplitter.dll  (2bd471e0d9d6e6c3a63cdcbf1605436f)

0 / 68
http://xmp.down.sandai.net/kankan/.../hevcdecoder.dll  (c7318ba84caa511a27065aa84789668a)

0 / 68
http://xmp.down.sandai.net/kankan/.../mp4splitter.dll  (b74fb5e65da3b2e7f577f6af5611e084)

0 / 68
http://xmp.down.sandai.net/kankan/.../mpegsplitter.dll  (c14f22e70927a428e4a108df96d4a577)

0 / 68
http://xmp.down.sandai.net/kankan/.../vsfilter.dll  (6810525107b8631be9068e586f1a76be)

0 / 68
http://xmp.down.sandai.net/kankan/.../msvcr120.dll  (034ccadc1c073e4216e9466b720f9849)

0 / 68
http://xmp.down.sandai.net/kankan/.../ovr043.dll  (7bd8930d160869cdc122ce7e1eada753)

0 / 68
http://xmp.down.sandai.net/kankan/.../ovr080.dll  (bf9c2483c4ddfc0c52987dbeb1edb3aa)

0 / 68

0 / 68

2 / 68      (inconclusive)

1 / 68

2 / 68      (inconclusive)

1 / 68

0 / 68

0 / 68

 
Latest 30 of 32 download URLs

URL:
http://xmp.down.sandai.net/

Web server:
nginx/1.4.4

Remove Malware from xmp.down.sandai.net - Powered by Reason Core Security