Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ip | user_agent | |
---|---|---|---|---|---|---|---|---|
0 | 395 | 388 | 1317 | 0 | 0 | 2023-01-15 | 37.48.65.149 | iphone |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | nly.us | 1 | Communigal Communication Ltd | ns1.commonmx.com | None |
1 | tier_1 | e-khalti.com | 1 | Dynadot10 LLC | NS1.COMMONMX.COM | None |
2 | tier_1 | uberlandiablitz.com | 1 | FindUAName.com LLC | NS1.COMMONMX.COM | None |
3 | tier_1 | dadas.tv | 1 | None | None | None |
4 | tier_1 | trolleylife.info | 1 | GoDaddy.com, LLC | ns1.commonmx.com | Domains By Proxy, LLC |
5 | tier_1 | rsinfinitytravels.com | 1 | SNAPNAMES 78, LLC | NS1.COMMONMX.COM | None |
6 | tier_1 | ameriglass.us | 1 | Communigal Communication Ltd | ns1.commonmx.com | None |
7 | tier_1 | wpto.me | 1 | Dynadot, LLC | None | None |
8 | tier_1 | toyotacamarinessur.com | 1 | Dynadot12 LLC | NS1.COMMONMX.COM | None |
9 | tier_1 | roirep.com | 1 | WillametteNames.com LLC | NS1.COMMONMX.COM | None |
10 | tier_1 | mysbuxbe.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
11 | tier_1 | siraekabut.com | 1 | Jumpshot Domains LLC | NS1.COMMONMX.COM | None |
12 | tier_1 | ckettle.com | 1 | Nameemperor.com LLC | NS1.COMMONMX.COM | None |
13 | tier_1 | jorpetz.info | 1 | Dynadot, LLC | ns1.commonmx.com | None |
14 | tier_1 | fizyoterapikongresi.com | 1 | NamePal.com #8024, LLC | NS1.MILESMX.COM | None |
15 | tier_1 | fashionncode.com | 1 | TLDS L.L.C. d/b/a SRSPlus | NS1.COMMONMX.COM | None |
16 | tier_1 | affordabletreeservicecarolina.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
17 | tier_1 | loteriaapp.com | 1 | SQUIDSAILERDOMAINS.COM, LLC | NS1.COMMONMX.COM | None |
18 | tier_1 | antibotabe.com | 1 | SouthNames, LLC | NS1.COMMONMX.COM | None |
19 | tier_1 | windsorparkatuf.com | 1 | NamePal.com #8016, LLC | NS1.COMMONMX.COM | None |
20 | tier_1 | allindiaads.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
21 | tier_1 | woodenfur.com | 1 | GoDaddy.com, LLC | NS1.COMMONMX.COM | Domains By Proxy, LLC |
22 | tier_1 | myonlined.com | 1 | FindYouAName.com LLC | NS1.COMMONMX.COM | None |
23 | tier_1 | aqatarairways.com | 1 | TUCOWS, INC. | NS1.COMMONMX.COM | Contact Privacy Inc. Customer 0162478961 |
24 | tier_1 | vidig.biz | 1 | Communigal Communication Ltd | ns1.commonmx.com | None |
25 | tier_1 | lacdesvieillesforges.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
26 | tier_1 | togoto.us | 1 | Communigal Communication Ltd | ns1.commonmx.com | None |
27 | tier_1 | hamabistro.com | 1 | Win Names LLC | NS1.COMMONMX.COM | None |
28 | tier_1 | aron-store.com | 1 | Long Drive Domains LLC | NS1.COMMONMX.COM | None |
29 | tier_1 | wikipole.com | 1 | GoDaddy.com, LLC | NS1.COMMONMX.COM | Domains By Proxy, LLC |
30 | tier_1 | shenzhounong.com | 1 | Dynadot3 LLC | NS1.COMMONMX.COM | None |
31 | tier_1 | wernerwald.info | 1 | Key-Systems GmbH | ns1.commonmx.com | c/o whoisproxy.com |
32 | tier_1 | mugtumblersemarang.com | 1 | EmpireStateDomains, LLC | NS1.COMMONMX.COM | None |
33 | tier_1 | grandasriliahotel.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
34 | tier_1 | redeemcode.me | 1 | Communigal Communications Ltd. | None | None |
35 | tier_1 | joshlewis.us | 1 | Communigal Communication Ltd | ns1.commonmx.com | None |
36 | tier_1 | topmodelshub.com | 1 | Allearthdomains.com LLC | NS1.COMMONMX.COM | None |
37 | tier_1 | toymart.tv | 1 | None | None | None |
38 | tier_1 | yukselemlak07.com | 1 | SNAPNAMES 51, LLC | NS1.COMMONMX.COM | None |
39 | tier_1 | slltrucks.com | 1 | Mypreciousdomain.com LLC | NS1.MILESMX.COM | None |
40 | tier_2 | c.clickprotects.com | 175 | GoDaddy.com, LLC | NS63.DOMAINCONTROL.COM | Domains By Proxy, LLC |
41 | tier_2 | 11165151.addotnet.com | 175 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
42 | tier_2 | news.apple.com | 175 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
43 | tier_2 | mybettermb.com | 42 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
44 | tier_2 | p185689.mybettermb.com | 34 | NameCheap, Inc. | NS10.DIGICERTDNS.COM | None |
45 | tier_2 | my.toruftuiov.com | 33 | DANESCO TRADING LTD | NS1.TOPDNS.ME | REDACTED FOR PRIVACY |
46 | tier_2 | btpnative.com | 8 | 1API GmbH | NS1.DNSIMPLE.COM | REDACTED FOR PRIVACY |
47 | tier_2 | p274639.mybettermb.com | 8 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
48 | tier_2 | www.thebuxfiles.com | 3 | NameSilo, LLC | HUGH.NS.CLOUDFLARE.COM | See PrivacyGuardian.org |
49 | tier_2 | m.lepetitdiary.com | 3 | NameSilo, LLC | HUGH.NS.CLOUDFLARE.COM | See PrivacyGuardian.org |
50 | tier_2 | www.amazon.com | 3 | MarkMonitor, Inc. | NS1.P31.DYNECT.NET | Amazon Technologies, Inc. |
51 | tier_2 | ww2.affinity.net | 3 | DOMAINPEOPLE, INC. | NS-1183.AWSDNS-19.ORG | WhoisProtector Inc. |
52 | tier_2 | c.trafficcertify.com | 2 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
53 | tier_2 | 11165151.searchiqnet.com | 2 | GoDaddy.com, LLC | NS57.DOMAINCONTROL.COM | Domains By Proxy, LLC |
54 | tier_2 | clickserve.dartsearch.net | 2 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
55 | tier_2 | ad.doubleclick.net | 2 | MarkMonitor Inc. | NS1.GOOGLE.COM | None |
56 | tier_2 | dbc.pathroutes.com | 2 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
57 | tier_2 | miupqssp.com | 2 | NAMECHEAP INC | NS-1132.AWSDNS-13.ORG | Privacy service provided by Withheld for Privacy ehf |
58 | tier_2 | vipestores.com | 2 | NameCheap, Inc. | EVAN.NS.CLOUDFLARE.COM | None |
59 | tier_2 | clkuk.tradedoubler.com | 2 | OVH, SAS | NS-1359.AWSDNS-41.ORG | TradeDoubler AB |
60 | tier_2 | redirects.tradedoubler.com | 2 | OVH, SAS | NS-1359.AWSDNS-41.ORG | TradeDoubler AB |
61 | tier_2 | groceries.morrisons.com | 2 | NOM-IQ Ltd dba Com Laude | NS0.DEMYSDNS.NET | Wm Morrison Supermarkets PLC |
62 | tier_2 | morrisons.queue-it.net | 2 | Instra Corporation Pty Ltd. | NS-1175.AWSDNS-18.ORG | REDACTED FOR PRIVACY |
63 | tier_2 | ww1.nly.us | 1 | Communigal Communication Ltd | ns1.commonmx.com | None |
64 | tier_2 | ww1.toyotacamarinessur.com | 1 | Dynadot12 LLC | NS1.COMMONMX.COM | None |
65 | tier_2 | ww1.jorpetz.info | 1 | Dynadot, LLC | ns1.commonmx.com | None |
66 | tier_2 | ww1.fashionncode.com | 1 | TLDS L.L.C. d/b/a SRSPlus | NS1.COMMONMX.COM | None |
67 | tier_2 | ww2.siteplug.com | 1 | DOMAINPEOPLE, INC. | NS-1263.AWSDNS-29.ORG | REDACTED FOR PRIVACY |
68 | tier_2 | qrtracking.go2cloud.org | 1 | NAMECHEAP INC | ns-1511.awsdns-60.org | ['Seattle Technology', 'Redacted for Privacy Purposes'] |
69 | tier_2 | ww1.lacdesvieillesforges.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
70 | tier_2 | ww1.wikipole.com | 1 | GoDaddy.com, LLC | NS1.COMMONMX.COM | Domains By Proxy, LLC |
71 | tier_2 | ww1.shenzhounong.com | 1 | Dynadot3 LLC | NS1.COMMONMX.COM | None |
72 | tier_2 | ww1.wernerwald.info | 1 | Key-Systems GmbH | ns1.commonmx.com | c/o whoisproxy.com |
73 | tier_2 | ww1.slltrucks.com | 1 | Mypreciousdomain.com LLC | NS1.MILESMX.COM | None |
74 | tier_2 | ww1.goodmorningcoin.com | 1 | DropExtra.com, LLC | NS1.COMMONMX.COM | None |
75 | tier_2 | ww1.cochesexin.com | 1 | Dynadot8 LLC | NS1.COMMONMX.COM | None |
76 | tier_2 | ww1.breckenridgehomesinc.com | 1 | Domaincapitan.com LLC | NS1.COMMONMX.COM | None |
77 | tier_2 | ww1.sinomedphys.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
78 | tier_2 | mondial-deals.com | 1 | Ligne Web Services SARL dba LWS | NS17.LWSDNS.COM | None |
79 | tier_2 | r.srvtrck.com | 1 | GoDaddy.com, LLC | BEN.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
80 | tier_3 | www.apple.com | 175 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
81 | tier_3 | iyfbodn.com | 52 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
82 | tier_3 | iosprotector.com | 33 | DANESCO TRADING LTD | DREW.NS.CLOUDFLARE.COM | None |
83 | tier_3 | www.amazon.ca | 3 | MarkMonitor International Canada Ltd. | ns1.p31.dynect.net | None |
84 | tier_3 | www.nissanusa.com | 2 | MarkMonitor, Inc. | EDNS2.ULTRADNS.BIZ | Nissan North America, Inc |
85 | tier_3 | groceries.morrisons.com_LOOP_1 | 2 | None | None | None |
86 | tier_3 | www.qatarairways.com | 1 | GoDaddy.com, LLC | A1-157.AKAM.NET | Domains By Proxy, LLC |
87 | tier_3 | christydawn.com | 1 | GoDaddy.com, LLC | NS25.DOMAINCONTROL.COM | Domains By Proxy, LLC |
88 | tier_3 | www.clkmg.com | 1 | GoDaddy.com, LLC | NS1.SOFTLAYER.COM | Domains By Proxy, LLC |
89 | tier_3 | www.walmartmoneycard.com | 1 | MarkMonitor, Inc. | ALIZA.NS.CLOUDFLARE.COM | Wal-Mart Stores, Inc. |
90 | tier_3 | us.besttrends.shop | 1 | GoDaddy.com LLC | INES.NS.CLOUDFLARE.COM | None |
91 | tier_3 | invol.co | 1 | GoDaddy.com, LLC | brit.ns.cloudflare.com | Domains By Proxy, LLC |
92 | tier_3 | www.camwith.com | 1 | Sea Wasp, LLC | MYNS1.FABULOUS.COM | Jewella Privacy LLC Privacy ID# 784964 |
93 | tier_3 | www.samsung.com | 1 | Whois Corp. | DNS-AWSKR1.SAMSUNG.COM | None |
94 | tier_3 | www.ziprecruiter.com | 1 | MarkMonitor, Inc. | CAROL.NS.CLOUDFLARE.COM | ZipRecruiter, Inc. |
95 | tier_3 | www.waterstones.com | 1 | CSC CORPORATE DOMAINS, INC. | NS1.NETNAMES.NET | Waterstones Booksellers Limited |
96 | tier_3 | www.avenue.com | 1 | CSC CORPORATE DOMAINS, INC. | PDNS81.ULTRADNS.BIZ | Avenue Online LLC |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 41 | nan | nan |
1 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 37 | nan | nan |
2 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 30 | nan | nan |
3 | 81.171.22.6 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 21 | nan | nan |
4 | 37.48.65.154 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 20 | nan | nan |
5 | 37.48.65.153 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 19 | nan | nan |
6 | 81.171.22.4 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 16 | nan | nan |
7 | 37.48.65.155 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 16 | nan | nan |
8 | 81.171.22.5 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 16 | nan | nan |
9 | 81.171.22.7 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 14 | nan | nan |
10 | 209.132.243.15 | Irvine | California | AS7296 Alchemy Communications, Inc. | 92612 | United States | False | tier_2 | 356 | nan | nan |
11 | 17.56.48.13 | New York City | New York | AS714 Apple Inc. | 10004 | United States | False | tier_2 | 175 | foundationdb.com | nan |
12 | 52.116.53.155 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 84 | 9b.35.7434.ip4.static.sl-reverse.com | nan |
13 | 199.59.243.222 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 52 | nan | True |
14 | 18.158.88.249 | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60326 | Germany | True | tier_2 | 33 | ec2-18-158-88-249.eu-central-1.compute.amazonaws.com | nan |
15 | 192.99.158.241 | Montréal | Quebec | AS16276 OVH SAS | H3H | Canada | False | tier_2 | 10 | ip241.ip-192-99-158.net | nan |
16 | 216.139.248.127 | Austin | Texas | AS32400 Hostway Services, Inc. | 78701 | United States | False | tier_2 | 4 | 216-139-248-127.aus.us.siteprotect.com | nan |
17 | 184.154.10.250 | Chicago | Illinois | AS32475 SingleHop LLC | 60666 | United States | False | tier_2 | 3 | server04.com-2.mobi | nan |
18 | 89.207.16.75 | Amsterdam | North Holland | AS41041 Conversant LLC | 1109 | Netherlands | True | tier_2 | 3 | nan | nan |
19 | 108.138.10.130 | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60306 | Germany | True | tier_2 | 2 | server-108-138-10-130.fra56.r.cloudfront.net | nan |
20 | 72.246.168.211 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60326 | Germany | True | tier_3 | 175 | a72-246-168-211.deploy.static.akamaitechnologies.com | nan |
21 | 208.91.196.46 | Austin | Texas | AS40034 Confluence Networks Inc | 78701 | United States | False | tier_3 | 52 | nan | nan |
22 | 188.114.96.3 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 17 | nan | True |
23 | 188.114.97.3 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 16 | nan | True |
24 | 2.17.191.229 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60326 | Germany | True | tier_3 | 2 | a2-17-191-229.deploy.static.akamaitechnologies.com | nan |
25 | 162.219.226.231 | San Francisco | California | AS54113 Fastly, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
26 | 178.162.228.7 | Frankfurt am Main | Hesse | AS28753 Leaseweb Deutschland GmbH | 60306 | Germany | True | tier_3 | 2 | hosted-by.leaseweb.com | nan |
27 | 23.75.164.252 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60326 | Germany | True | tier_3 | 1 | a23-75-164-252.deploy.static.akamaitechnologies.com | nan |
28 | 23.227.38.65 | Ottawa | Ontario | AS13335 Cloudflare, Inc. | K2P | Canada | False | tier_3 | 1 | myshopify.com | True |
29 | 50.97.212.250 | San Jose | California | AS36351 SoftLayer Technologies Inc. | 95103 | United States | False | tier_3 | 1 | fa.d4.6132.ip4.static.sl-reverse.com | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website