Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ip | user_agent | |
---|---|---|---|---|---|---|---|---|
0 | 231 | 227 | 368 | 0 | 0 | 2023-01-12 | 37.48.65.149 | android |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | achetezpoloralphlauren.com | 1 | Riptide Domains, LLC | NS1.COMMONMX.COM | None |
1 | tier_1 | emornium.me | 1 | Dynadot, LLC | None | None |
2 | tier_1 | adigitalhomeblog.com | 1 | Tradewinds Names, LLC | NS1.COMMONMX.COM | None |
3 | tier_1 | burnhamkingofscouts.com | 1 | Compuglobalhypermega.com LLC | NS1.COMMONMX.COM | None |
4 | tier_1 | torrenkitty.tv | 1 | None | None | None |
5 | tier_1 | shadjamadhyam.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
6 | tier_1 | naviciti.com | 1 | Domainsoftheworld.net LLC | NS1.COMMONMX.COM | None |
7 | tier_1 | hunivision.com | 1 | GoDaddy.com, LLC | NS1.COMMONMX.COM | Domains By Proxy, LLC |
8 | tier_1 | pnb.mobi | 1 | Dynadot, LLC | ns1.commonmx.com | None |
9 | tier_1 | yump3.us | 1 | Dynadot LLC | ns1.commonmx.com | None |
10 | tier_1 | kobo.tv | 1 | None | None | None |
11 | tier_1 | chinaexport.info | 1 | Dynadot, LLC | ns1.commonmx.com | None |
12 | tier_1 | hotgir.com | 1 | Names On The Drop LLC | NS1.COMMONMX.COM | None |
13 | tier_1 | theflowerdonkeydiaries.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
14 | tier_1 | shopwademaid.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
15 | tier_1 | bankohijyen.com | 1 | Alboran Domains LLC | NS1.COMMONMX.COM | None |
16 | tier_1 | fpkijima.com | 1 | SNAPNAMES 38, LLC | NS1.COMMONMX.COM | None |
17 | tier_1 | treewood.us | 1 | CommuniGal Communication Ltd. | ns1.commonmx.com | None |
18 | tier_1 | orgias.mobi | 1 | Dynadot, LLC | ns1.commonmx.com | None |
19 | tier_1 | ranchosteakhouse.co.uk | 1 | Dynadot, LLC t/a Dynadot [Tag = DYNADOT] | n | None |
20 | tier_1 | wrightmn.us | 1 | CommuniGal Communication Ltd. | ns1.commonmx.com | None |
21 | tier_1 | fljxz.com | 1 | Cool River Names, LLC | NS1.COMMONMX.COM | None |
22 | tier_1 | aqaba.tv | 1 | None | None | None |
23 | tier_1 | miniaturmadinahalamien.com | 1 | GreenZoneDomains, LLC | NS1.COMMONMX.COM | None |
24 | tier_1 | menbiska.com | 1 | Domaincapitan.com LLC | NS1.COMMONMX.COM | None |
25 | tier_1 | advancedglasscoatings.com | 1 | GoDaddy.com, LLC | NS1.COMMONMX.COM | Domains By Proxy, LLC |
26 | tier_1 | koll911.com | 1 | Dropcatching Names LLC | NS1.COMMONMX.COM | None |
27 | tier_1 | pinoycontests.com | 1 | GoDaddy.com, LLC | NS1.COMMONMX.COM | Domains By Proxy, LLC |
28 | tier_1 | adult-anime-iscandal.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
29 | tier_1 | spiritfashionshow.com | 1 | DYNADOT, LLC | NS1.COMMONMX.COM | None |
30 | tier_1 | joyastioriko.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
31 | tier_1 | considering.me | 1 | Communigal Communications Ltd. | None | None |
32 | tier_1 | incel-tv.com | 1 | Allworldnames.com LLC | NS1.COMMONMX.COM | None |
33 | tier_1 | partyallnightdfw.com | 1 | GoDaddy.com, LLC | NS1.COMMONMX.COM | Domains By Proxy, LLC |
34 | tier_1 | tom475.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
35 | tier_1 | eretosuper.com | 1 | All Domains LLC | NS1.COMMONMX.COM | None |
36 | tier_1 | naphuco.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
37 | tier_1 | remimart.com | 1 | TUCOWS, INC. | NS1.COMMONMX.COM | Contact Privacy Inc. Customer 0163851792 |
38 | tier_1 | aliexpressnepal.com | 1 | TUCOWS, INC. | NS1.COMMONMX.COM | Contact Privacy Inc. Customer 0162477503 |
39 | tier_1 | deltruenokennels.com | 1 | Freshbreweddomains.com LLC | NS1.COMMONMX.COM | None |
40 | tier_2 | 1496.aphition.com | 13 | GoDaddy Online Services Cayman Islands Ltd. | NS11.CONSTELLIX.COM | None |
41 | tier_2 | www.americanlisted.com | 13 | ilait AB | NS1.TELECOM3.NET | Integration 3 Group AB |
42 | tier_2 | mybettermb.com | 7 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
43 | tier_2 | click.appcast.io | 7 | https://www.101domain.com/ | ns-1093.awsdns-08.org | None |
44 | tier_2 | p185689.mybettermb.com | 4 | NameCheap, Inc. | NS10.DIGICERTDNS.COM | None |
45 | tier_2 | qvikar.com | 4 | Sea Wasp, LLC | NS2789.HOSTGATOR.COM | Jewella Privacy LLC Privacy ID# 1016679 |
46 | tier_2 | ww2.affinity.net | 4 | DOMAINPEOPLE, INC. | NS-1183.AWSDNS-19.ORG | WhoisProtector Inc. |
47 | tier_2 | btpnative.com | 3 | 1API GmbH | NS1.DNSIMPLE.COM | REDACTED FOR PRIVACY |
48 | tier_2 | p274639.mybettermb.com | 3 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
49 | tier_2 | click.appcast.io_LOOP_1 | 2 | None | None | None |
50 | tier_2 | r.srvtrck.com | 2 | GoDaddy.com, LLC | BEN.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
51 | tier_2 | directnavbt.com | 2 | 1API GmbH | NS1.DNSIMPLE.COM | REDACTED FOR PRIVACY |
52 | tier_2 | query.pureleads.com | 2 | New Frontier, Inc. | NS1.P05.DYNECT.NET | Domain Protection Services, Inc. |
53 | tier_2 | queryclick.pureleads.com | 2 | New Frontier, Inc. | NS1.P05.DYNECT.NET | Domain Protection Services, Inc. |
54 | tier_2 | www.couponcatfish.com | 1 | 123-Reg Limited | HAZEL.NS.CLOUDFLARE.COM | None |
55 | tier_2 | couponcatfish.com | 1 | 123-Reg Limited | HAZEL.NS.CLOUDFLARE.COM | None |
56 | tier_2 | r.brandreward.com | 1 | GoDaddy.com, LLC | NS3.BWE.IO | Domains By Proxy, LLC |
57 | tier_2 | uk-go.kelkoogroup.net | 1 | MarkMonitor, Inc. | NS1.MARKMONITOR.COM | Jamplant Limited |
58 | tier_2 | ww1.emornium.me | 1 | Dynadot, LLC | None | None |
59 | tier_2 | www.portlandjobsite.com | 1 | ENOM, INC. | DNS1.NAME-SERVICES.COM | REDACTED FOR PRIVACY |
60 | tier_2 | p.nexxt.com | 1 | Network Solutions, LLC | NS21.WORLDNIC.COM | None |
61 | tier_2 | ww1.burnhamkingofscouts.com | 1 | Compuglobalhypermega.com LLC | NS1.COMMONMX.COM | None |
62 | tier_2 | ww1.naviciti.com | 1 | Domainsoftheworld.net LLC | NS1.COMMONMX.COM | None |
63 | tier_2 | ww1.pnb.mobi | 1 | Dynadot, LLC | ns1.commonmx.com | None |
64 | tier_2 | joblift.com | 1 | INWX GmbH | NS-CLOUD-E1.GOOGLEDOMAINS.COM | REDACTED FOR PRIVACY |
65 | tier_2 | ww1.kobo.tv | 1 | None | None | None |
66 | tier_2 | ww1.chinaexport.info | 1 | Dynadot, LLC | ns1.commonmx.com | None |
67 | tier_2 | ww1.shopwademaid.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
68 | tier_2 | ww1.bankohijyen.com | 1 | Alboran Domains LLC | NS1.COMMONMX.COM | None |
69 | tier_2 | ww1.fpkijima.com | 1 | SNAPNAMES 38, LLC | NS1.COMMONMX.COM | None |
70 | tier_2 | ww1.treewood.us | 1 | CommuniGal Communication Ltd. | ns1.commonmx.com | None |
71 | tier_2 | rtbtracking.com | 1 | 1API GmbH | NS1.DNSIMPLE.COM | REDACTED FOR PRIVACY |
72 | tier_2 | ww1.ranchosteakhouse.co.uk | 1 | Dynadot, LLC t/a Dynadot [Tag = DYNADOT] | n | None |
73 | tier_2 | ww1.wrightmn.us | 1 | CommuniGal Communication Ltd. | ns1.commonmx.com | None |
74 | tier_2 | ww1.fljxz.com | 1 | Cool River Names, LLC | NS1.COMMONMX.COM | None |
75 | tier_2 | ww1.aqaba.tv | 1 | None | None | None |
76 | tier_2 | ww1.miniaturmadinahalamien.com | 1 | GreenZoneDomains, LLC | NS1.COMMONMX.COM | None |
77 | tier_2 | ww1.menbiska.com | 1 | Domaincapitan.com LLC | NS1.COMMONMX.COM | None |
78 | tier_2 | ww1.advancedglasscoatings.com | 1 | GoDaddy.com, LLC | NS1.COMMONMX.COM | Domains By Proxy, LLC |
79 | tier_2 | ww1.koll911.com | 1 | Dropcatching Names LLC | NS1.COMMONMX.COM | None |
80 | tier_3 | iyfbodn.com | 73 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
81 | tier_3 | www.google.com | 6 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
82 | tier_3 | www.collegerecruiter.com | 4 | Amazon Registrar, Inc. | NS-105.AWSDNS-13.COM | Identity Protection Service |
83 | tier_3 | www.clkmg.com | 4 | GoDaddy.com, LLC | NS1.SOFTLAYER.COM | Domains By Proxy, LLC |
84 | tier_3 | www.awin1.com | 1 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Whois Privacy Service |
85 | tier_3 | www.careerbuilder.com | 1 | CSC CORPORATE DOMAINS, INC. | BROCK.CBJOBS.NET | CareerBuilder, LLC |
86 | tier_3 | www.glassdoor.com | 1 | MarkMonitor, Inc. | JILL.NS.CLOUDFLARE.COM | Glassdoor, Inc. |
87 | tier_3 | www.careerbliss.com | 1 | GoDaddy.com, LLC | NS10.DNSMADEEASY.COM | Domains By Proxy, LLC |
88 | tier_3 | www.camwith.com | 1 | Sea Wasp, LLC | MYNS1.FABULOUS.COM | Jewella Privacy LLC Privacy ID# 784964 |
89 | tier_3 | www.icasque.com | 1 | Network Solutions, LLC | HANK.NS.CLOUDFLARE.COM | None |
90 | tier_3 | mbest.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
91 | tier_3 | www.humblebundle.com | 1 | CSC CORPORATE DOMAINS, INC. | MARY.NS.CLOUDFLARE.COM | Humble Bundle, Inc. |
92 | tier_3 | knees.co.uk | 1 | Fasthosts Internet Ltd [Tag = LIVEDOMAINS] | n | None |
93 | tier_3 | invol.co | 1 | GoDaddy.com, LLC | brit.ns.cloudflare.com | Domains By Proxy, LLC |
94 | tier_3 | www.amazon.com | 1 | MarkMonitor, Inc. | NS1.P31.DYNECT.NET | Amazon Technologies, Inc. |
95 | tier_3 | www.experian.com | 1 | Network Solutions, LLC | EXP1.EXPERIAN.COM | None |
96 | tier_3 | www.paypal.com | 1 | MarkMonitor Inc. | NS1.P57.DYNECT.NET | None |
97 | tier_3 | www.ziprecruiter.com | 1 | MarkMonitor, Inc. | CAROL.NS.CLOUDFLARE.COM | ZipRecruiter, Inc. |
ip | city | region | org | postal | country_name | isEU | tier | count | anycast | hostname | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 15 | nan | nan |
1 | 37.48.65.155 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 10 | nan | nan |
2 | 37.48.65.152 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 9 | nan | nan |
3 | 37.48.65.153 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 8 | nan | nan |
4 | 37.48.65.154 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 8 | nan | nan |
5 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 7 | nan | nan |
6 | 81.171.22.6 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 7 | nan | nan |
7 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 6 | nan | nan |
8 | 81.171.22.5 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 5 | nan | nan |
9 | 81.171.22.7 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 5 | nan | nan |
10 | 199.59.243.222 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 73 | True | nan |
11 | 52.116.53.155 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75244 | United States | False | tier_2 | 14 | nan | 9b.35.7434.ip4.static.sl-reverse.com |
12 | 31.42.177.10 | Amsterdam | North Holland | AS43641 SOLLUTIUM EU Sp z.o.o. | 1012 | Netherlands | True | tier_2 | 13 | nan | dedicated.sollutium.com |
13 | 35.209.61.240 | Council Bluffs | Iowa | AS15169 Google LLC | 51502 | United States | False | tier_2 | 13 | nan | 240.61.209.35.bc.googleusercontent.com |
14 | 192.99.158.241 | Montréal | Quebec | AS16276 OVH SAS | H3H | Canada | False | tier_2 | 7 | nan | ip241.ip-192-99-158.net |
15 | 2.19.126.209 | Frankfurt am Main | Hesse | AS20940 Akamai International B.V. | 60326 | Germany | True | tier_2 | 6 | nan | a2-19-126-209.deploy.static.akamaitechnologies.com |
16 | 192.254.234.214 | Provo | Utah | AS46606 Unified Layer | 84601 | United States | False | tier_2 | 4 | nan | 192-254-234-214.unifiedlayer.com |
17 | 216.139.248.127 | Austin | Texas | AS32400 Hostway Services, Inc. | 78701 | United States | False | tier_2 | 4 | nan | 216-139-248-127.aus.us.siteprotect.com |
18 | 89.207.16.75 | Amsterdam | North Holland | AS41041 Conversant LLC | 1109 | Netherlands | True | tier_2 | 3 | nan | nan |
19 | 167.235.15.78 | Falkenstein | Saxony | AS24940 Hetzner Online GmbH | 08223 | Germany | True | tier_2 | 2 | nan | srv-hfsn.inspinn.co.uk |
20 | 208.91.196.46 | Austin | Texas | AS40034 Confluence Networks Inc | 78701 | United States | False | tier_3 | 73 | nan | nan |
21 | 50.97.212.250 | San Jose | California | AS36351 SoftLayer Technologies Inc. | 95103 | United States | False | tier_3 | 4 | nan | fa.d4.6132.ip4.static.sl-reverse.com |
22 | 142.250.185.132 | Mountain View | California | AS15169 Google LLC | 94043 | United States | False | tier_3 | 4 | nan | fra16s50-in-f4.1e100.net |
23 | 108.138.17.114 | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60306 | Germany | True | tier_3 | 3 | nan | server-108-138-17-114.fra56.r.cloudfront.net |
24 | 142.250.186.100 | Mörfelden-Walldorf | Hesse | AS15169 Google LLC | 64546 | Germany | True | tier_3 | 2 | nan | fra24s06-in-f4.1e100.net |
25 | 96.16.147.165 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60326 | Germany | True | tier_3 | 1 | nan | a96-16-147-165.deploy.static.akamaitechnologies.com |
26 | 18.66.122.34 | Mörfelden-Walldorf | Hesse | AS16509 Amazon.com, Inc. | 64546 | Germany | True | tier_3 | 1 | nan | server-18-66-122-34.fra60.r.cloudfront.net |
27 | 104.17.91.51 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | True | nan |
28 | 207.38.44.116 | Santa Ana | California | AS5693 Latisys-Irvine, LLC | 92712 | United States | False | tier_3 | 1 | nan | cbsmtp1.careerbliss.com |
29 | 108.138.17.125 | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60306 | Germany | True | tier_3 | 1 | nan | server-108-138-17-125.fra56.r.cloudfront.net |
Zhouhan Chen, zc1245@nyu.edu, Personal Website