Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ip | user_agent | |
---|---|---|---|---|---|---|---|---|
0 | 282 | 276 | 479 | 0 | 0 | 2023-01-19 | 207.244.67.215 | android |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | getglowup.com | 1 | Your Domain Casa, LLC | NS1.MILESMX.COM | None |
1 | tier_1 | waternomics.us | 1 | None | None | None |
2 | tier_1 | notairepro.com | 1 | TurnCommerce, Inc. DBA NameBright.com | NSG1.NAMEBRIGHTDNS.COM | HugeDomains.com |
3 | tier_1 | dumoreinc.com | 1 | Domainshop LLC | NS1.MYTRAFFICMANAGEMENT.COM | None |
4 | tier_1 | thinkpad114.com | 1 | Fushi Tarazu, LLC | NS1.COMMONMX.COM | None |
5 | tier_1 | taxiservicegeorgia.us | 1 | None | None | None |
6 | tier_1 | ceatup.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
7 | tier_1 | homexchangevacation.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
8 | tier_1 | porndsih.com | 1 | TUCOWS, INC. | NS1.COMMONMX.COM | Contact Privacy Inc. Customer 0159840277 |
9 | tier_1 | siberarsiv.com | 1 | SantiamDomains.com LLC | NS1.COMMONMX.COM | None |
10 | tier_1 | howoldwas.info | 1 | Dynadot, LLC | ns1.commonmx.com | None |
11 | tier_1 | booklive.biz | 1 | None | None | None |
12 | tier_1 | valutazionicasabologna.com | 1 | Domainsoverboard.com LLC | NS1.MYTRAFFICMANAGEMENT.COM | None |
13 | tier_1 | myflrodia.com | 1 | DYNADOT, LLC | NS1.COMMONMX.COM | None |
14 | tier_1 | egyptianland.com | 1 | TurnCommerce, Inc. DBA NameBright.com | NSG1.NAMEBRIGHTDNS.COM | HugeDomains.com |
15 | tier_1 | hjbjy.us | 1 | None | None | None |
16 | tier_1 | wrestlinginc.co | 1 | None | None | None |
17 | tier_1 | fcargurus.com | 1 | Cool Breeze Domains, LLC | NS1.COMMONMX.COM | None |
18 | tier_1 | hungthientax.com | 1 | DevilDogDomains.com, LLC | NS1.COMMONMX.COM | None |
19 | tier_1 | erciyesiptv.us | 1 | None | None | None |
20 | tier_1 | intimateaffections.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
21 | tier_1 | watthapklo.com | 1 | Free Spirit Domains, LLC | NS1.MYTRAFFICMANAGEMENT.COM | None |
22 | tier_1 | fishtime.us | 1 | None | None | None |
23 | tier_1 | r9blox.com | 1 | Dynadot13 LLC | NS1.COMMONMX.COM | None |
24 | tier_1 | nomadian.co | 1 | None | None | None |
25 | tier_1 | puertoricosmallhotels.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
26 | tier_1 | prada-sunglasses.us | 1 | None | None | None |
27 | tier_1 | hp-reward.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
28 | tier_1 | wqy999.com | 1 | NamePal.com #8018, LLC | A.SHARE-DNS.COM | None |
29 | tier_1 | haiphongaz.com | 1 | TUCOWS, INC. | NS1.MILESMX.COM | Contact Privacy Inc. Customer 0163394272 |
30 | tier_1 | theglovethatfits.com | 1 | SNAPNAMES 32, LLC | NS1.MYTRAFFICMANAGEMENT.COM | None |
31 | tier_1 | shkollarrezor.com | 1 | GoDaddy.com, LLC | NS1.COMMONMX.COM | Domains By Proxy, LLC |
32 | tier_1 | estrela10.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
33 | tier_1 | unnivision.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
34 | tier_1 | dicelo.com | 1 | NamePal.com #8025, LLC | NS1.COMMONMX.COM | None |
35 | tier_1 | customoverland.com | 1 | SNAPNAMES 68, LLC | NS1.COMMONMX.COM | None |
36 | tier_1 | korn4d.com | 1 | Heavydomains.net LLC | NS1.MYTRAFFICMANAGEMENT.COM | None |
37 | tier_1 | iancestrytrail.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
38 | tier_1 | trumpybar.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
39 | tier_1 | bankexamtutor.com | 1 | DropJump.com, LLC | NS1.COMMONMX.COM | None |
40 | tier_2 | mybettermb.com | 16 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
41 | tier_2 | btpnative.com | 11 | 1API GmbH | NS1.DNSIMPLE.COM | REDACTED FOR PRIVACY |
42 | tier_2 | p274639.mybettermb.com | 10 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
43 | tier_2 | qvikar.com | 6 | Sea Wasp, LLC | NS2789.HOSTGATOR.COM | Jewella Privacy LLC Privacy ID# 1016679 |
44 | tier_2 | p185689.mybettermb.com | 6 | NameCheap, Inc. | NS10.DIGICERTDNS.COM | None |
45 | tier_2 | miupqssp.com | 4 | NAMECHEAP INC | NS-1132.AWSDNS-13.ORG | Privacy service provided by Withheld for Privacy ehf |
46 | tier_2 | redirects.tradedoubler.com | 4 | OVH, SAS | NS-1359.AWSDNS-41.ORG | TradeDoubler AB |
47 | tier_2 | groceries.morrisons.com | 4 | NOM-IQ Ltd dba Com Laude | NS0.DEMYSDNS.NET | Wm Morrison Supermarkets PLC |
48 | tier_2 | morrisons.queue-it.net | 4 | Instra Corporation Pty Ltd. | NS-1175.AWSDNS-18.ORG | REDACTED FOR PRIVACY |
49 | tier_2 | track.flexlinkspro.com | 4 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
50 | tier_2 | www.awin1.com | 4 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
51 | tier_2 | c.pageprotect.net | 3 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
52 | tier_2 | 11165151.searchiqnet.com | 3 | GoDaddy.com, LLC | NS57.DOMAINCONTROL.COM | Domains By Proxy, LLC |
53 | tier_2 | www.couponcatfish.com | 3 | 123-Reg Limited | HAZEL.NS.CLOUDFLARE.COM | None |
54 | tier_2 | couponcatfish.com | 3 | 123-Reg Limited | HAZEL.NS.CLOUDFLARE.COM | None |
55 | tier_2 | r.brandreward.com | 3 | GoDaddy.com, LLC | NS3.BWE.IO | Domains By Proxy, LLC |
56 | tier_2 | uk-go.kelkoogroup.net | 3 | MarkMonitor, Inc. | NS1.MARKMONITOR.COM | Jamplant Limited |
57 | tier_2 | orest-vlv.com | 3 | Amazon Registrar, Inc. | NS-1227.AWSDNS-25.ORG | Identity Protection Service |
58 | tier_2 | vipestores.com | 2 | NAMECHEAP INC | EVAN.NS.CLOUDFLARE.COM | Privacy service provided by Withheld for Privacy ehf |
59 | tier_2 | clkuk.tradedoubler.com | 2 | OVH, SAS | NS-1359.AWSDNS-41.ORG | TradeDoubler AB |
60 | tier_2 | clk.tradedoubler.com | 2 | OVH, SAS | NS-1359.AWSDNS-41.ORG | TradeDoubler AB |
61 | tier_2 | beta.mybettermb.com | 2 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
62 | tier_2 | clickserve.dartsearch.net | 2 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
63 | tier_2 | ad.doubleclick.net | 2 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
64 | tier_2 | dbc.pathroutes.com | 2 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
65 | tier_2 | q1.quotes.com | 2 | Internet Domain Service BS Corp | NS-CANADA.TOPDNS.COM | None |
66 | tier_2 | ww2.affinity.net | 2 | DOMAINPEOPLE, INC. | NS-1183.AWSDNS-19.ORG | WhoisProtector Inc. |
67 | tier_2 | r.srvtrck.com | 2 | GoDaddy.com, LLC | BEN.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
68 | tier_2 | belia-glp.com | 2 | Amazon Registrar, Inc. | NS-1078.AWSDNS-06.ORG | Identity Protection Service |
69 | tier_2 | 7c8849ce61.smapp.work | 2 | None | None | None |
70 | tier_2 | ww1.waternomics.us | 1 | None | None | None |
71 | tier_2 | ww1.taxiservicegeorgia.us | 1 | None | None | None |
72 | tier_2 | www.thebuxfiles.com | 1 | NameSilo, LLC | HUGH.NS.CLOUDFLARE.COM | See PrivacyGuardian.org |
73 | tier_2 | m.lepetitdiary.com | 1 | NameSilo, LLC | HUGH.NS.CLOUDFLARE.COM | See PrivacyGuardian.org |
74 | tier_2 | ww1.siberarsiv.com | 1 | SantiamDomains.com LLC | NS1.COMMONMX.COM | None |
75 | tier_2 | ww1.howoldwas.info | 1 | Dynadot, LLC | ns1.commonmx.com | None |
76 | tier_2 | ww1.myflrodia.com | 1 | DYNADOT, LLC | NS1.COMMONMX.COM | None |
77 | tier_2 | ww1.hjbjy.us | 1 | None | None | None |
78 | tier_2 | ww1.wrestlinginc.co | 1 | None | None | None |
79 | tier_2 | ww1.hungthientax.com | 1 | DevilDogDomains.com, LLC | NS1.COMMONMX.COM | None |
80 | tier_3 | iyfbodn.com | 77 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
81 | tier_3 | www.hugedomains.com | 6 | GoDaddy.com, LLC | CHUCK.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
82 | tier_3 | www.clkmg.com | 6 | GoDaddy.com, LLC | NS1.SOFTLAYER.COM | Domains By Proxy, LLC |
83 | tier_3 | groceries.morrisons.com_LOOP_1 | 4 | None | None | None |
84 | tier_3 | ced22.sayasdf.com | 2 | GoDaddy.com, LLC | NS37.DOMAINCONTROL.COM | Domains By Proxy, LLC |
85 | tier_3 | youfindadate.top | 2 | URL Solutions Inc. | crystal.ns.cloudflare.com | GLOBAL DOMAIN PRIVACY SERVICES INC |
86 | tier_3 | www.google.com | 1 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
87 | tier_3 | de.hotels.com | 1 | CSC CORPORATE DOMAINS, INC. | DNS1.P09.NSONE.NET | Hotels.com, LP |
88 | tier_3 | www.smartbuyglasses.com | 1 | GoDaddy.com, LLC | NS-1322.AWSDNS-37.ORG | Domains By Proxy, LLC |
89 | tier_3 | links.flexoffers.com | 1 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | None |
90 | tier_3 | js.dysgenio.com | 1 | Gname.com Pte. Ltd. | NS1.DNS.COM | Redacted for privacy |
91 | tier_3 | www.caliente.mx | 1 | SafeNames Ltd | leo.ns.cloudflare.com | None |
92 | tier_3 | www.awin1.com | 1 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
93 | tier_3 | api.apientry.com | 1 | GoDaddy.com, LLC | ELMA.NS.CLOUDFLARE.COM | None |
94 | tier_3 | www.myheritage.com | 1 | GoDaddy.com, LLC | DNS1.P07.NSONE.NET | None |
95 | tier_3 | track.vcdc.com | 1 | Key-Systems GmbH | GUY.NS.CLOUDFLARE.COM | c/o whoisproxy.com |
96 | tier_3 | www.mpix.com_LOOP_1 | 1 | None | None | None |
97 | tier_3 | www.camwith.com | 1 | Sea Wasp, LLC | MYNS1.FABULOUS.COM | Jewella Privacy LLC Privacy ID# 784964 |
98 | tier_3 | www.ellos.us | 1 | None | None | None |
99 | tier_3 | www.samsung.com | 1 | Whois Corp. | DNS-AWSKR1.SAMSUNG.COM | Samsung Electronics CO., Ltd |
100 | tier_3 | www.easy-tecs.de | 1 | None | nsa8.schlundtech.de | None |
101 | tier_3 | www.vudu.com | 1 | MarkMonitor, Inc. | A1-149.AKAM.NET | Fandango Media, LLC |
102 | tier_3 | www.trade-point.co.uk | 1 | Nom-IQ Limited t/a Com Laude [Tag = NOMIQ] | n | None |
103 | tier_3 | mbest.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
104 | tier_3 | direct-tv-dot.com | 1 | REALTIME REGISTER B.V. | A.SHARE-DNS.COM | REDACTED FOR PRIVACY |
105 | tier_3 | www.samsclub.com | 1 | CSC CORPORATE DOMAINS, INC. | ASIA1.AKAM.NET | Not Disclosed |
106 | tier_3 | www.kloriscbd.com | 1 | Google LLC | NS-CLOUD-E1.GOOGLEDOMAINS.COM | Contact Privacy Inc. Customer 7151571251 |
107 | tier_3 | www.liveinnermost.com | 1 | GoDaddy.com, LLC | NS55.DOMAINCONTROL.COM | Domains By Proxy, LLC |
ip | hostname | city | region | org | postal | country_name | isEU | tier | count | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 45.79.47.151 | li1146-151.members.linode.com | Richardson | Texas | AS63949 Akamai Technologies, Inc. | 75080 | United States | False | tier_1 | 16 | nan |
1 | 37.48.65.151 | nan | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 13 | nan |
2 | 37.48.65.150 | nan | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 12 | nan |
3 | 81.171.22.7 | nan | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 11 | nan |
4 | 37.48.65.153 | nan | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 11 | nan |
5 | 37.48.65.152 | nan | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 10 | nan |
6 | 81.171.22.6 | nan | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 10 | nan |
7 | 81.171.22.4 | nan | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 8 | nan |
8 | 37.48.65.155 | nan | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 7 | nan |
9 | 81.171.22.5 | nan | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 6 | nan |
10 | 199.59.243.222 | nan | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 77 | True |
11 | 52.116.53.155 | 9b.35.7434.ip4.static.sl-reverse.com | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 34 | nan |
12 | 192.99.158.241 | ip241.ip-192-99-158.net | Montréal | Quebec | AS16276 OVH SAS | H3H | Canada | False | tier_2 | 12 | nan |
13 | 209.132.243.15 | nan | Irvine | California | AS7296 Alchemy Communications, Inc. | 92612 | United States | False | tier_2 | 10 | nan |
14 | 192.254.234.214 | 192-254-234-214.unifiedlayer.com | Provo | Utah | AS46606 Unified Layer | 84601 | United States | False | tier_2 | 6 | nan |
15 | 167.235.15.78 | srv-hfsn.inspinn.co.uk | Falkenstein | Saxony | AS24940 Hetzner Online GmbH | 08223 | Germany | True | tier_2 | 6 | nan |
16 | 3.125.239.17 | ec2-3-125-239-17.eu-central-1.compute.amazonaws.com | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60326 | Germany | True | tier_2 | 4 | nan |
17 | 35.186.231.97 | 97.231.186.35.bc.googleusercontent.com | Kansas City | Missouri | AS15169 Google LLC | 64106 | United States | False | tier_2 | 4 | True |
18 | 107.162.136.11 | nan | Seattle | Washington | AS55002 Defense.Net, Inc | 98104 | United States | False | tier_2 | 4 | True |
19 | 23.23.100.235 | ec2-23-23-100-235.compute-1.amazonaws.com | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 4 | nan |
20 | 208.91.196.46 | nan | Austin | Texas | AS40034 Confluence Networks Inc | 78701 | United States | False | tier_3 | 77 | nan |
21 | 178.162.228.7 | hosted-by.leaseweb.com | Frankfurt am Main | Hesse | AS28753 Leaseweb Deutschland GmbH | 60306 | Germany | True | tier_3 | 5 | nan |
22 | 50.97.212.250 | fa.d4.6132.ip4.static.sl-reverse.com | San Jose | California | AS36351 SoftLayer Technologies Inc. | 95103 | United States | False | tier_3 | 4 | nan |
23 | 104.26.6.37 | nan | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 3 | True |
24 | 172.67.70.191 | nan | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | True |
25 | 50.97.244.203 | clkmg.com | San Jose | California | AS36351 SoftLayer Technologies Inc. | 95103 | United States | False | tier_3 | 2 | nan |
26 | 162.243.10.151 | nan | New York City | New York | AS14061 DigitalOcean, LLC | 10011 | United States | False | tier_3 | 2 | nan |
27 | 188.114.96.14 | nan | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | True |
28 | 23.227.38.74 | nan | Ottawa | Ontario | AS13335 Cloudflare, Inc. | K2P | Canada | False | tier_3 | 2 | True |
29 | 142.250.186.100 | fra24s06-in-f4.1e100.net | Mörfelden-Walldorf | Hesse | AS15169 Google LLC | 64546 | Germany | True | tier_3 | 1 | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website