Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ip | user_agent | |
---|---|---|---|---|---|---|---|---|
0 | 321 | 321 | 547 | 0 | 0 | 2023-01-16 | 207.244.67.215 | android |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | mykumho.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
1 | tier_1 | jrafxo.com | 1 | GoServeYourDomain.com LLC | NS1.COMMONMX.COM | None |
2 | tier_1 | 333land.com | 1 | Klaatudomains.com LLC | NS1.COMMONMX.COM | None |
3 | tier_1 | puertoricosmallhotels.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
4 | tier_1 | bestpornohd.com | 1 | Domaincircle LLC | NS1.COMMONMX.COM | None |
5 | tier_1 | bursapaketinternet.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
6 | tier_1 | uttend.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
7 | tier_1 | barnoneokanagan.com | 1 | Lemon Shark Domains, LLC | NS1.COMMONMX.COM | None |
8 | tier_1 | betmatik610.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
9 | tier_1 | 871604.com | 1 | Domain International Services Limited | DM1.DNS.COM | None |
10 | tier_1 | sosmotorclub.com | 1 | Sliceofheaven Domains, LLC | NS1.COMMONMX.COM | None |
11 | tier_1 | jack-rabbit.me | 1 | Communigal Communications Ltd. | None | None |
12 | tier_1 | simmyreads.com | 1 | SNAPNAMES 53, LLC | NS1.COMMONMX.COM | None |
13 | tier_1 | crackmakes.com | 1 | Entrust Domains, LLC | NS1.COMMONMX.COM | None |
14 | tier_1 | scenicsrilanka.com | 1 | SNAPNAMES 30, LLC | NS1.COMMONMX.COM | None |
15 | tier_1 | leopub.com | 1 | Domains Etc LLC | NS1.COMMONMX.COM | None |
16 | tier_1 | geosuperlive.com | 1 | Free Dive Domains, LLC | NS1.COMMONMX.COM | None |
17 | tier_1 | kablo.info | 1 | Dynadot, LLC | ns1.commonmx.com | None |
18 | tier_1 | stopache.us | 1 | CommuniGal Communication Ltd. | ns1.commonmx.com | None |
19 | tier_1 | transcey.com | 1 | Domainsofcourse.com LLC | NS1.COMMONMX.COM | None |
20 | tier_1 | free-slots.us | 1 | Dynadot LLC | ns1.commonmx.com | None |
21 | tier_1 | ektainternational.biz | 1 | CommuniGal Communication Ltd. | ns1.commonmx.com | None |
22 | tier_1 | jdmpassword.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
23 | tier_1 | torredelviento.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
24 | tier_1 | webinvest.biz | 1 | CommuniGal Communication Ltd. | ns1.commonmx.com | None |
25 | tier_1 | harvestinnmotel.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
26 | tier_1 | livehandjob.com | 1 | GoDaddy.com, LLC | NS1.MYTRAFFICMANAGEMENT.COM | Domains By Proxy, LLC |
27 | tier_1 | nanofix.us | 1 | CommuniGal Communication Ltd. | ns1.commonmx.com | None |
28 | tier_1 | greenbabybargains.com | 1 | SouthNames, LLC | NS1.COMMONMX.COM | None |
29 | tier_1 | allnaturalslims.com | 1 | Jumpshot Domains LLC | NS1.COMMONMX.COM | None |
30 | tier_1 | rabattpromo.com | 1 | Whiteglove Domains, LLC | NS1.COMMONMX.COM | None |
31 | tier_1 | empcover.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
32 | tier_1 | jeri-ryan.com | 1 | SNAPNAMES 70, LLC | NS1.COMMONMX.COM | None |
33 | tier_1 | organaglow.com | 1 | Domain Original, LLC | NS1.COMMONMX.COM | None |
34 | tier_1 | unlockphone.me | 1 | Dynadot, LLC | None | None |
35 | tier_1 | laruchefineeuropeanfoods.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
36 | tier_1 | 5b3o9.com | 1 | Eranet International Limited | NOW1.DNS.COM | None |
37 | tier_1 | spymovs.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
38 | tier_1 | merkeziuydusistemleri.biz | 1 | CommuniGal Communication Ltd. | ns1.commonmx.com | None |
39 | tier_1 | 5grui.com | 1 | Annapurna Domains LLC | NS1.COMMONMX.COM | None |
40 | tier_2 | mybettermb.com | 18 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
41 | tier_2 | btpnative.com | 11 | 1API GmbH | NS1.DNSIMPLE.COM | REDACTED FOR PRIVACY |
42 | tier_2 | p274639.mybettermb.com | 11 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
43 | tier_2 | p185689.mybettermb.com | 7 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
44 | tier_2 | 11165151.searchiqnet.com | 7 | GoDaddy.com, LLC | NS57.DOMAINCONTROL.COM | Domains By Proxy, LLC |
45 | tier_2 | clickserve.dartsearch.net | 6 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
46 | tier_2 | ad.doubleclick.net | 6 | MarkMonitor Inc. | NS1.GOOGLE.COM | None |
47 | tier_2 | dbc.pathroutes.com | 6 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
48 | tier_2 | miupqssp.com | 5 | NAMECHEAP INC | NS-1132.AWSDNS-13.ORG | Privacy service provided by Withheld for Privacy ehf |
49 | tier_2 | redirects.tradedoubler.com | 5 | OVH, SAS | NS-1359.AWSDNS-41.ORG | TradeDoubler AB |
50 | tier_2 | groceries.morrisons.com | 5 | NOM-IQ Ltd dba Com Laude | NS0.DEMYSDNS.NET | Wm Morrison Supermarkets PLC |
51 | tier_2 | morrisons.queue-it.net | 5 | Instra Corporation Pty Ltd. | NS-1175.AWSDNS-18.ORG | REDACTED FOR PRIVACY |
52 | tier_2 | qvikar.com | 5 | Sea Wasp, LLC | NS2789.HOSTGATOR.COM | Jewella Privacy LLC Privacy ID# 1016679 |
53 | tier_2 | ww2.affinity.net | 5 | DOMAINPEOPLE, INC. | NS-1183.AWSDNS-19.ORG | WhoisProtector Inc. |
54 | tier_2 | vipestores.com | 3 | NameCheap, Inc. | EVAN.NS.CLOUDFLARE.COM | None |
55 | tier_2 | clkuk.tradedoubler.com | 3 | OVH, SAS | NS-1359.AWSDNS-41.ORG | TradeDoubler AB |
56 | tier_2 | c.adclickthru.net | 3 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
57 | tier_2 | r.srvtrck.com | 3 | GoDaddy.com, LLC | BEN.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
58 | tier_2 | 1496.aphition.com | 3 | GoDaddy Online Services Cayman Islands Ltd. | NS11.CONSTELLIX.COM | None |
59 | tier_2 | www.americanlisted.com | 3 | ilait AB | NS1.TELECOM3.NET | Integration 3 Group AB |
60 | tier_2 | www.thebuxfiles.com | 2 | NameSilo, LLC | HUGH.NS.CLOUDFLARE.COM | See PrivacyGuardian.org |
61 | tier_2 | m.lepetitdiary.com | 2 | NameSilo, LLC | HUGH.NS.CLOUDFLARE.COM | See PrivacyGuardian.org |
62 | tier_2 | r.bttn.io | 2 | GANDI SAS | ns-1305.awsdns-35.org | None |
63 | tier_2 | track.flexlinkspro.com | 2 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
64 | tier_2 | clk.tradedoubler.com | 2 | OVH, SAS | NS-1359.AWSDNS-41.ORG | TradeDoubler AB |
65 | tier_2 | c.trafficcertify.com | 2 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
66 | tier_2 | c.pageprotect.net | 2 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
67 | tier_2 | click.appcast.io | 2 | https://www.101domain.com/ | ns-1093.awsdns-08.org | None |
68 | tier_2 | rtbtracking.com | 2 | 1API GmbH | NS1.DNSIMPLE.COM | REDACTED FOR PRIVACY |
69 | tier_2 | www.awin1.com | 2 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
70 | tier_2 | cj.dotomi.com | 2 | GoDaddy.com, LLC | ASIA9.AKAM.NET | Domains By Proxy, LLC |
71 | tier_2 | www.emjcd.com | 2 | MarkMonitor, Inc. | ASIA9.AKAM.NET | Conversant, Inc. |
72 | tier_2 | poroshop.com | 2 | LWS dba Ligne Web Services | NS5.LWSDNS.COM | None |
73 | tier_2 | ww1.jrafxo.com | 1 | GoServeYourDomain.com LLC | NS1.COMMONMX.COM | None |
74 | tier_2 | ww1.333land.com | 1 | Klaatudomains.com LLC | NS1.COMMONMX.COM | None |
75 | tier_2 | t.triptravelnow.com | 1 | NameCheap, Inc. | ATHENA.NS.CLOUDFLARE.COM | None |
76 | tier_2 | www.stay22.com | 1 | Cloudflare, Inc. | SID.NS.CLOUDFLARE.COM | DATA REDACTED |
77 | tier_2 | prf.hn | 1 | Gandi SAS | ns1.p24.dynect.net | None |
78 | tier_2 | hotels.bttn.io | 1 | GANDI SAS | ns-1305.awsdns-35.org | None |
79 | tier_2 | ww1.bestpornohd.com | 1 | Domaincircle LLC | NS1.COMMONMX.COM | None |
80 | tier_3 | iyfbodn.com | 89 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
81 | tier_3 | www.hugedomains.com | 6 | GoDaddy.com, LLC | CHUCK.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
82 | tier_3 | groceries.morrisons.com_LOOP_1 | 5 | None | None | None |
83 | tier_3 | www.clkmg.com | 5 | GoDaddy.com, LLC | NS1.SOFTLAYER.COM | Domains By Proxy, LLC |
84 | tier_3 | www.google.com | 3 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
85 | tier_3 | www.volvocars.com | 3 | CSC CORPORATE DOMAINS, INC. | UDNS1.CSCDNS.NET | VolvoCarCorporation |
86 | tier_3 | www.samsung.com | 3 | Whois Corp. | DNS-AWSKR1.SAMSUNG.COM | Samsung Electronics CO., Ltd |
87 | tier_3 | www.glassdoor.com | 2 | MarkMonitor, Inc. | JILL.NS.CLOUDFLARE.COM | Glassdoor, Inc. |
88 | tier_3 | www.camwith.com | 2 | Sea Wasp, LLC | MYNS1.FABULOUS.COM | Jewella Privacy LLC Privacy ID# 784964 |
89 | tier_3 | www.hotels.com | 1 | CSC CORPORATE DOMAINS, INC. | DNS1.P09.NSONE.NET | Hotels.com, LP |
90 | tier_3 | www.nissanusa.com | 1 | MarkMonitor, Inc. | EDNS2.ULTRADNS.BIZ | Nissan North America, Inc |
91 | tier_3 | do5.aipo62.top | 1 | Eranet International Limited | ns1.taoa.com | FeiZhongBo |
92 | tier_3 | www.onestopplus.com | 1 | CSC CORPORATE DOMAINS, INC. | PDNS1.ULTRADNS.NET | FullBeauty Brands Operations, LLC |
93 | tier_3 | us.sercanto.com | 1 | OVH, SAS | NS11.CONSTELLIX.COM | Wickedin s.r.l. |
94 | tier_3 | www.transunion.com | 1 | CSC CORPORATE DOMAINS, INC. | PDNS1.CSCDNS.NET | Trans Union LLC |
95 | tier_3 | www.caliente.mx | 1 | SafeNames Ltd | leo.ns.cloudflare.com | None |
96 | tier_3 | vonsmarket-uma.bttn.io | 1 | GANDI SAS | ns-1305.awsdns-35.org | None |
97 | tier_3 | www.bodybuilding.com | 1 | MarkMonitor, Inc. | NS1.BODYBUILDING.COM | Vitalize, LLC |
98 | tier_3 | www.dickies.com | 1 | MarkMonitor Inc. | DNS1.VFC.COM | None |
99 | tier_3 | www.myheritage.com | 1 | GoDaddy.com, LLC | DNS1.P07.NSONE.NET | Domains By Proxy, LLC |
100 | tier_3 | sk2.ytvw1.top | 1 | Eranet International Limited | ns1.taoa.com | qu ming qian |
101 | tier_3 | amerisleep.com | 1 | GoDaddy.com, LLC | ERIN.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
102 | tier_3 | www.linkconnector.com | 1 | Network Solutions, LLC | EDNA.NS.CLOUDFLARE.COM | None |
103 | tier_3 | www.amazon.com | 1 | MarkMonitor, Inc. | NS1.P31.DYNECT.NET | Amazon Technologies, Inc. |
104 | tier_3 | amiclubwear.com | 1 | GoDaddy.com, LLC | NS-1064.AWSDNS-05.ORG | Domains By Proxy, LLC |
ip | city | region | org | postal | country_name | isEU | tier | count | anycast | hostname | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 19 | nan | nan |
1 | 37.48.65.155 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 13 | nan | nan |
2 | 37.48.65.154 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 13 | nan | nan |
3 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 11 | nan | nan |
4 | 37.48.65.152 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 10 | nan | nan |
5 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 10 | nan | nan |
6 | 81.171.22.4 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 9 | nan | nan |
7 | 81.171.22.6 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 8 | nan | nan |
8 | 81.171.22.5 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 7 | nan | nan |
9 | 37.48.65.153 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 7 | nan | nan |
10 | 199.59.243.222 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 91 | True | nan |
11 | 52.116.53.155 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 36 | nan | 9b.35.7434.ip4.static.sl-reverse.com |
12 | 209.132.243.15 | Irvine | California | AS7296 Alchemy Communications, Inc. | 92612 | United States | False | tier_2 | 22 | nan | nan |
13 | 192.99.158.241 | Montréal | Quebec | AS16276 OVH SAS | H3H | Canada | False | tier_2 | 15 | nan | ip241.ip-192-99-158.net |
14 | 89.207.16.75 | Amsterdam | North Holland | AS41041 Conversant LLC | 1109 | Netherlands | True | tier_2 | 6 | nan | nan |
15 | 35.186.231.97 | Kansas City | Missouri | AS15169 Google LLC | 64106 | United States | False | tier_2 | 5 | True | 97.231.186.35.bc.googleusercontent.com |
16 | 107.162.136.11 | Seattle | Washington | AS55002 Defense.Net, Inc | 98104 | United States | False | tier_2 | 5 | True | nan |
17 | 192.254.234.214 | Provo | Utah | AS46606 Unified Layer | 84601 | United States | False | tier_2 | 5 | nan | 192-254-234-214.unifiedlayer.com |
18 | 216.139.248.127 | Austin | Texas | AS32400 Hostway Services, Inc. | 78701 | United States | False | tier_2 | 5 | nan | 216-139-248-127.aus.us.siteprotect.com |
19 | 52.31.91.108 | Dublin | Leinster | AS16509 Amazon.com, Inc. | D02 | Ireland | True | tier_2 | 4 | nan | ec2-52-31-91-108.eu-west-1.compute.amazonaws.com |
20 | 208.91.196.46 | Austin | Texas | AS40034 Confluence Networks Inc | 78701 | United States | False | tier_3 | 89 | nan | nan |
21 | 178.162.228.7 | Frankfurt am Main | Hesse | AS28753 Leaseweb Deutschland GmbH | 60306 | Germany | True | tier_3 | 5 | nan | hosted-by.leaseweb.com |
22 | 50.97.212.250 | San Jose | California | AS36351 SoftLayer Technologies Inc. | 95103 | United States | False | tier_3 | 4 | nan | fa.d4.6132.ip4.static.sl-reverse.com |
23 | 96.16.142.242 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60326 | Germany | True | tier_3 | 3 | nan | a96-16-142-242.deploy.static.akamaitechnologies.com |
24 | 69.192.160.55 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60326 | Germany | True | tier_3 | 3 | nan | a69-192-160-55.deploy.static.akamaitechnologies.com |
25 | 104.26.7.37 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 3 | True | nan |
26 | 142.250.186.100 | Mörfelden-Walldorf | Hesse | AS15169 Google LLC | 64546 | Germany | True | tier_3 | 2 | nan | fra24s06-in-f4.1e100.net |
27 | 104.26.6.37 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | True | nan |
28 | 104.16.44.196 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | True | nan |
29 | 96.16.149.141 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60326 | Germany | True | tier_3 | 1 | nan | a96-16-149-141.deploy.static.akamaitechnologies.com |
Zhouhan Chen, zc1245@nyu.edu, Personal Website