Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ip | user_agent | |
---|---|---|---|---|---|---|---|---|
0 | 352 | 350 | 832 | 0 | 0 | 2022-12-30 | 207.244.67.215 | android |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | dirbin.info | 1 | Key-Systems GmbH | ns1.commonmx.com | c/o whoisproxy.com |
1 | tier_1 | dicelo.com | 1 | NamePal.com #8025, LLC | NS1.COMMONMX.COM | None |
2 | tier_1 | ilfashionisto.com | 1 | Travel Domains, LLC | NS1.COMMONMX.COM | None |
3 | tier_1 | avincidesign.com | 1 | Baracuda Domains, LLC | NS1.COMMONMX.COM | None |
4 | tier_1 | 2ke3nt.info | 1 | Dynadot, LLC | ns1.commonmx.com | None |
5 | tier_1 | orangesexlive.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
6 | tier_1 | ghesports.com | 1 | TurnCommerce, Inc. DBA NameBright.com | NSG1.NAMEBRIGHTDNS.COM | HugeDomains.com |
7 | tier_1 | borro.co | 1 | NAMECHEAP INC | ns1.commonmx.com | Privacy service provided by Withheld for Privacy ehf |
8 | tier_1 | tradewindscostumes.us | 1 | Dynadot LLC | ns1.commonmx.com | None |
9 | tier_1 | missingcatsanglia.org.uk | 1 | Dynadot, LLC t/a Dynadot [Tag = DYNADOT] | n | None |
10 | tier_1 | computerautosales.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
11 | tier_1 | sessizsinemagunleri.com | 1 | Magnolia Domains, LLC | NS1.COMMONMX.COM | None |
12 | tier_1 | caomc.com | 1 | SNAPNAMES 90, LLC | NS1.COMMONMX.COM | None |
13 | tier_1 | porncro.com | 1 | Ad Valorem Domains, LLC | NS1.COMMONMX.COM | None |
14 | tier_1 | geecart.com | 1 | Eagle Eye Domains, LLC | NS1.COMMONMX.COM | None |
15 | tier_1 | mymilitarymedals.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
16 | tier_1 | ffaworldofrunning.com | 1 | Layup Domains LLC | NS1.COMMONMX.COM | None |
17 | tier_1 | gogglw.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
18 | tier_1 | yangleni.com | 1 | SNAPNAMES 27, LLC | NS1.COMMONMX.COM | None |
19 | tier_1 | homexchangevacation.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
20 | tier_1 | apuxa.com | 1 | SNAPNAMES 47, LLC | NS1.COMMONMX.COM | None |
21 | tier_1 | statistics-made-easy.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
22 | tier_1 | aider.io | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
23 | tier_1 | lokxun.com | 1 | Dynadot3 LLC | NS1.COMMONMX.COM | None |
24 | tier_1 | excitedcosmos.com | 1 | Dynadot6 LLC | NS1.COMMONMX.COM | None |
25 | tier_1 | autoblogkyo.com | 1 | NamePal.com #8009, LLC | NS1.COMMONMX.COM | None |
26 | tier_1 | txclosers.com | 1 | GoDaddy.com, LLC | NS1.COMMONMX.COM | Domains By Proxy, LLC |
27 | tier_1 | fogoforum.us | 1 | CommuniGal Communication Ltd. | ns1.commonmx.com | None |
28 | tier_1 | bankexamtutor.com | 1 | DropJump.com, LLC | NS1.COMMONMX.COM | None |
29 | tier_1 | belbostik.com | 1 | The Domains LLC | NS1.COMMONMX.COM | None |
30 | tier_1 | awesomebizapps.com | 1 | Domain Source LLC | NS1.COMMONMX.COM | None |
31 | tier_1 | firechildeglassstuio.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
32 | tier_1 | tiktokaddicts.com | 1 | SNAPNAMES 89, LLC | NS1.COMMONMX.COM | None |
33 | tier_1 | adulttvlive.com | 1 | Godomaingo.com LLC | NS1.COMMONMX.COM | None |
34 | tier_1 | llanorivercamping.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
35 | tier_1 | siliconsystech.com | 1 | SNAPNAMES 11, LLC | NS1.COMMONMX.COM | None |
36 | tier_1 | napoli.us | 1 | CommuniGal Communication Ltd. | ns1.commonmx.com | None |
37 | tier_1 | maps-adelaide.com | 1 | GoServeYourDomain.com LLC | NS1.COMMONMX.COM | None |
38 | tier_1 | shibaworld.us | 1 | CommuniGal Communication Ltd. | ns1.commonmx.com | None |
39 | tier_1 | uptrackbot.com | 1 | Dynadot3 LLC | NS1.COMMONMX.COM | None |
40 | tier_2 | mybettermb.com | 72 | NameCheap, Inc. | NS10.DIGICERTDNS.COM | None |
41 | tier_2 | btpnative.com | 69 | 1API GmbH | NS1.DNSIMPLE.COM | REDACTED FOR PRIVACY |
42 | tier_2 | p274639.mybettermb.com | 22 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
43 | tier_2 | miupqssp.com | 18 | NAMECHEAP INC | NS-1132.AWSDNS-13.ORG | Privacy service provided by Withheld for Privacy ehf |
44 | tier_2 | redirects.tradedoubler.com | 18 | OVH, SAS | NS-1359.AWSDNS-41.ORG | TradeDoubler AB |
45 | tier_2 | groceries.morrisons.com | 18 | NOM-IQ Ltd dba Com Laude | NS0.DEMYSDNS.NET | Wm Morrison Supermarkets PLC |
46 | tier_2 | morrisons.queue-it.net | 18 | Instra Corporation Pty Ltd. | NS-1175.AWSDNS-18.ORG | REDACTED FOR PRIVACY |
47 | tier_2 | track.flexlinkspro.com | 15 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
48 | tier_2 | clk.tradedoubler.com | 13 | OVH, SAS | NS-1359.AWSDNS-41.ORG | TradeDoubler AB |
49 | tier_2 | 1496.ahlefind.com | 7 | GoDaddy Online Services Cayman Islands Ltd. | NS11.CONSTELLIX.COM | None |
50 | tier_2 | www.americanlisted.com | 7 | ilait AB | NS1.TELECOM3.NET | Integration 3 Group AB |
51 | tier_2 | qvikar.com | 6 | Sea Wasp, LLC | NS2789.HOSTGATOR.COM | Jewella Privacy LLC Privacy ID# 1016679 |
52 | tier_2 | nerve.eshkol.io | 6 | GoDaddy.com, LLC | ns11.constellix.com | None |
53 | tier_2 | p185689.mybettermb.com | 6 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
54 | tier_2 | vipestores.com | 5 | NAMECHEAP INC | EVAN.NS.CLOUDFLARE.COM | Privacy service provided by Withheld for Privacy ehf |
55 | tier_2 | clkuk.tradedoubler.com | 5 | OVH, SAS | NS-1359.AWSDNS-41.ORG | TradeDoubler AB |
56 | tier_2 | beta.mybettermb.com | 5 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
57 | tier_2 | click.appcast.io | 4 | https://www.101domain.com/ | ns-1093.awsdns-08.org | None |
58 | tier_2 | joblift.com | 4 | INWX GmbH | NS-CLOUD-E1.GOOGLEDOMAINS.COM | REDACTED FOR PRIVACY |
59 | tier_2 | dsp.prng.co | 2 | CSC Corporate Domains, Inc. | ns-1505.awsdns-60.org | TMP Worldwide Advertising Communications, LLC |
60 | tier_2 | www.indeed.com | 2 | MarkMonitor, Inc. | DNS1.P01.NSONE.NET | Indeed, Inc |
61 | tier_2 | us.conv.indeed.com | 2 | MarkMonitor Inc. | DNS1.P01.NSONE.NET | None |
62 | tier_2 | ww2.affinity.net | 2 | DOMAINPEOPLE, INC. | NS-1183.AWSDNS-19.ORG | WhoisProtector Inc. |
63 | tier_2 | q1.quotes.com | 2 | Internet Domain Service BS Corp | NS-CANADA.TOPDNS.COM | None |
64 | tier_2 | ww1.dicelo.com | 1 | NamePal.com #8025, LLC | NS1.COMMONMX.COM | None |
65 | tier_2 | click.appcast.io_LOOP_1 | 1 | None | None | None |
66 | tier_2 | ww1.2ke3nt.info | 1 | Dynadot, LLC | ns1.commonmx.com | None |
67 | tier_2 | ww1.orangesexlive.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
68 | tier_2 | ww1.borro.co | 1 | NAMECHEAP INC | ns1.commonmx.com | Privacy service provided by Withheld for Privacy ehf |
69 | tier_2 | ww1.tradewindscostumes.us | 1 | Dynadot LLC | ns1.commonmx.com | None |
70 | tier_2 | ww1.missingcatsanglia.org.uk | 1 | Dynadot, LLC t/a Dynadot [Tag = DYNADOT] | n | None |
71 | tier_2 | ww1.caomc.com | 1 | SNAPNAMES 90, LLC | NS1.COMMONMX.COM | None |
72 | tier_2 | ww1.porncro.com | 1 | Ad Valorem Domains, LLC | NS1.COMMONMX.COM | None |
73 | tier_2 | lwqct.com | 1 | united domains AG | NS.UDAG.DE | None |
74 | tier_2 | open.app.jobrapido.com | 1 | Marcaria.com International, Inc. | NS-CLOUD-D1.GOOGLEDOMAINS.COM | GDPR Masked |
75 | tier_2 | us.jobrapido.com | 1 | Marcaria.com International, Inc. | NS-CLOUD-D1.GOOGLEDOMAINS.COM | GDPR Masked |
76 | tier_2 | open.app.jobrapido.com_LOOP_1 | 1 | None | None | None |
77 | tier_2 | ad.doubleclick.net | 1 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
78 | tier_2 | ww1.yangleni.com | 1 | SNAPNAMES 27, LLC | NS1.COMMONMX.COM | None |
79 | tier_2 | ww1.apuxa.com | 1 | SNAPNAMES 47, LLC | NS1.COMMONMX.COM | None |
80 | tier_3 | iyfbodn.com | 88 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
81 | tier_3 | von22.sayasdf.com | 46 | GoDaddy.com, LLC | NS37.DOMAINCONTROL.COM | Domains By Proxy, LLC |
82 | tier_3 | groceries.morrisons.com_LOOP_1 | 18 | None | None | None |
83 | tier_3 | www.hugedomains.com | 11 | GoDaddy.com, LLC | CHUCK.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
84 | tier_3 | www.clkmg.com | 6 | GoDaddy.com, LLC | NS1.SOFTLAYER.COM | Domains By Proxy, LLC |
85 | tier_3 | www.caliente.mx | 6 | SafeNames Ltd | leo.ns.cloudflare.com | None |
86 | tier_3 | track.vcdc.com | 2 | Key-Systems GmbH | GUY.NS.CLOUDFLARE.COM | c/o whoisproxy.com |
87 | tier_3 | www.indeed.com_LOOP_1 | 2 | None | None | None |
88 | tier_3 | arr007.network | 2 | None | None | None |
89 | tier_3 | links.flexoffers.com | 2 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
90 | tier_3 | www.google.com | 2 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
91 | tier_3 | www.careerbliss.com | 1 | GoDaddy.com, LLC | NS10.DNSMADEEASY.COM | Domains By Proxy, LLC |
92 | tier_3 | careers.promedica.org | 1 | GoDaddy.com, LLC | phsdns.promedica.org | Domains By Proxy, LLC |
93 | tier_3 | musicamplified.com | 1 | NAMECHEAP INC | GABE.NS.CLOUDFLARE.COM | Privacy service provided by Withheld for Privacy ehf |
94 | tier_3 | amiclubwear.com | 1 | GoDaddy.com, LLC | NS-1064.AWSDNS-05.ORG | Domains By Proxy, LLC |
95 | tier_3 | gur2.aipo55.top | 1 | Eranet International Limited | ns1.taoa.com | FeiZhongBo |
96 | tier_3 | umcdn.uc.cn | 1 | 阿里云计算有限公司(万网) | ns2.uc.cn | None |
97 | tier_3 | ww1.bionicspirit.com | 1 | GreenZoneDomains, LLC | NS1.COMMONMX.COM | None |
98 | tier_3 | jobs.pihhealth.org | 1 | GoDaddy.com, LLC | ns17.zoneedit.com | Domains By Proxy, LLC |
99 | tier_3 | www.macys.com | 1 | Network Solutions, LLC | A1-135.AKAM.NET | None |
100 | tier_3 | www.harryanddavid.com | 1 | CSC CORPORATE DOMAINS, INC. | DNS1.CSCDNS.NET | 1-800-FLOWERS.COM, INC. |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 17 | nan | nan |
1 | 37.48.65.153 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 16 | nan | nan |
2 | 81.171.22.4 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 15 | nan | nan |
3 | 37.48.65.155 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 14 | nan | nan |
4 | 81.171.22.6 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 13 | nan | nan |
5 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 13 | nan | nan |
6 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 12 | nan | nan |
7 | 37.48.65.152 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 12 | nan | nan |
8 | 37.48.65.154 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 12 | nan | nan |
9 | 81.171.22.7 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 11 | nan | nan |
10 | 52.116.53.155 | Dearing | Kansas | AS36351 SoftLayer Technologies Inc. | 67340 | United States | False | tier_2 | 106 | 9b.35.7434.ip4.static.sl-reverse.com | nan |
11 | 199.59.243.222 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 88 | nan | True |
12 | 192.99.158.241 | Montréal | Quebec | AS16276 OVH SAS | H3H | Canada | False | tier_2 | 69 | ip241.ip-192-99-158.net | nan |
13 | 35.186.231.97 | Kansas City | Missouri | AS15169 Google LLC | 64106 | United States | False | tier_2 | 18 | 97.231.186.35.bc.googleusercontent.com | True |
14 | 107.162.136.11 | Seattle | Washington | AS55002 Defense.Net, Inc | 98104 | United States | False | tier_2 | 18 | nan | True |
15 | 3.125.239.17 | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60326 | Germany | True | tier_2 | 12 | ec2-3-125-239-17.eu-central-1.compute.amazonaws.com | nan |
16 | 52.16.126.29 | Dublin | Leinster | AS16509 Amazon.com, Inc. | D02 | Ireland | True | tier_2 | 10 | ec2-52-16-126-29.eu-west-1.compute.amazonaws.com | nan |
17 | 104.17.163.92 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_2 | 8 | nan | True |
18 | 52.31.251.10 | Dublin | Leinster | AS16509 Amazon.com, Inc. | D02 | Ireland | True | tier_2 | 8 | ec2-52-31-251-10.eu-west-1.compute.amazonaws.com | nan |
19 | 31.42.177.10 | Amsterdam | North Holland | AS43641 SOLLUTIUM EU Sp z.o.o. | 1012 | Netherlands | True | tier_2 | 7 | dedicated.sollutium.com | nan |
20 | 208.91.196.46 | Austin | Texas | AS40034 Confluence Networks Inc | 78701 | United States | False | tier_3 | 88 | nan | nan |
21 | 162.243.10.151 | New York City | New York | AS14061 DigitalOcean, LLC | 10011 | United States | False | tier_3 | 46 | nan | nan |
22 | 178.162.228.7 | Frankfurt am Main | Hesse | AS28753 Leaseweb Deutschland GmbH | 60306 | Germany | True | tier_3 | 20 | hosted-by.leaseweb.com | nan |
23 | 172.67.70.191 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 5 | nan | True |
24 | 104.26.6.37 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 5 | nan | True |
25 | 50.97.212.250 | San Jose | California | AS36351 SoftLayer Technologies Inc. | 95103 | United States | False | tier_3 | 4 | fa.d4.6132.ip4.static.sl-reverse.com | nan |
26 | 92.122.215.32 | Frankfurt am Main | Hesse | AS20940 Akamai International B.V. | 60326 | Germany | True | tier_3 | 4 | a92-122-215-32.deploy.static.akamaitechnologies.com | nan |
27 | 167.233.8.197 | Gunzenhausen | Bavaria | AS24940 Hetzner Online GmbH | 91710 | Germany | True | tier_3 | 2 | static.197.8.233.167.clients.your-server.de | nan |
28 | 52.175.36.102 | Hong Kong | Central and Western | AS8075 Microsoft Corporation | nan | Hong Kong | False | tier_3 | 2 | nan | nan |
29 | 92.122.215.8 | Frankfurt am Main | Hesse | AS20940 Akamai International B.V. | 60326 | Germany | True | tier_3 | 2 | a92-122-215-8.deploy.static.akamaitechnologies.com | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website