Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ip | user_agent | |
---|---|---|---|---|---|---|---|---|
0 | 198 | 192 | 482 | 0 | 0 | 2023-01-19 | 93.115.28.104 | iphone |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | geektechsquads.us | 1 | CommuniGal Communication Ltd. | ns2.rentondc.com | None |
1 | tier_1 | lhola.com | 1 | TurnCommerce, Inc. DBA NameBright.com | NSG1.NAMEBRIGHTDNS.COM | HugeDomains.com |
2 | tier_1 | jml-direct.com | 1 | TurnCommerce, Inc. DBA NameBright.com | NSG1.NAMEBRIGHTDNS.COM | HugeDomains.com |
3 | tier_1 | joing.me | 1 | GoDaddy.com, LLC | None | None |
4 | tier_1 | activitygoogle.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
5 | tier_1 | goddaddysites.com | 1 | Media Elite Holdings Limited | NS1.RENTONDC.COM | Fundacion Privacy Services LTD |
6 | tier_1 | clevelsnd.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
7 | tier_1 | commcercebank.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
8 | tier_1 | pearsonhigherred.com | 1 | TUCOWS, INC. | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
9 | tier_1 | lenovo-laptops.com | 1 | TUCOWS, INC. | NS1.RENTONDC.COM | Contact Privacy Inc. Customer 0154364853 |
10 | tier_1 | west-models.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
11 | tier_1 | craigskist.com | 1 | Media Elite Holdings Limited | NS1.RENTONDC.COM | Fundacion Privacy Services LTD |
12 | tier_1 | irishfoodshop.com | 1 | TurnCommerce, Inc. DBA NameBright.com | NSG1.NAMEBRIGHTDNS.COM | HugeDomains.com |
13 | tier_1 | googyle.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
14 | tier_1 | bluefogpress.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
15 | tier_1 | antarvasnaa.com | 1 | DropCatch.com 765 LLC | NSG1.NAMEBRIGHTDNS.COM | HugeDomains.com |
16 | tier_1 | awarepress.com | 1 | TurnCommerce, Inc. DBA NameBright.com | NSG1.NAMEBRIGHTDNS.COM | None |
17 | tier_1 | bluetakes.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
18 | tier_1 | rechercher.me | 1 | Key-Systems GmbH | None | None |
19 | tier_1 | glamh.com | 1 | TurnCommerce, Inc. DBA NameBright.com | NSG1.NAMEBRIGHTDNS.COM | None |
20 | tier_1 | qeveicinsze.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
21 | tier_1 | goldfingeronline.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
22 | tier_1 | anticlothes.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
23 | tier_1 | hotbewhiphop.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
24 | tier_1 | kleertjrs.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
25 | tier_1 | ubited.com | 1 | Sea Wasp, LLC | NS1.RENTONDC.COM | Jewella Privacy LLC Privacy ID# 1090487 |
26 | tier_1 | kaspersky.pro | 1 | DYNADOT LLC | ns1.rentondc.com | None |
27 | tier_1 | solvepaper.com | 1 | TurnCommerce, Inc. DBA NameBright.com | NSG1.NAMEBRIGHTDNS.COM | None |
28 | tier_1 | baniwtmo.com | 1 | Internet Domain Service BS Corp | NS1.RENTONDC.COM | None |
29 | tier_1 | wwwsamsun.com | 1 | TUCOWS, INC. | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
30 | tier_1 | txvpn.com | 1 | TurnCommerce, Inc. DBA NameBright.com | NSG1.NAMEBRIGHTDNS.COM | None |
31 | tier_1 | leonsautoparts.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
32 | tier_1 | pacecommunication.com | 1 | TurnCommerce, Inc. DBA NameBright.com | NSG1.NAMEBRIGHTDNS.COM | None |
33 | tier_1 | wiqnhf5.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
34 | tier_1 | porlhub.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
35 | tier_1 | katmoviehd.cc | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
36 | tier_1 | baoguette.com | 1 | TUCOWS, INC. | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
37 | tier_1 | btkittyba.co | 1 | Key-Systems GmbH | ns2.rentondc.com | c/o whoisproxy.com |
38 | tier_1 | moremp3hits.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
39 | tier_1 | out6look.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
40 | tier_2 | c.clickprotects.com | 56 | GoDaddy.com, LLC | NS63.DOMAINCONTROL.COM | Domains By Proxy, LLC |
41 | tier_2 | 11165151.addotnet.com | 56 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
42 | tier_2 | geo.itunes.apple.com | 8 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
43 | tier_2 | mybettermb.com | 7 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
44 | tier_2 | btpnative.com | 6 | 1API GmbH | NS1.DNSIMPLE.COM | REDACTED FOR PRIVACY |
45 | tier_2 | p274639.mybettermb.com | 6 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
46 | tier_2 | ww2.affinity.net | 6 | DOMAINPEOPLE, INC. | NS-1183.AWSDNS-19.ORG | WhoisProtector Inc. |
47 | tier_2 | 11165151.searchiqnet.com | 6 | GoDaddy.com, LLC | NS57.DOMAINCONTROL.COM | Domains By Proxy, LLC |
48 | tier_2 | ad.doubleclick.net | 6 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
49 | tier_2 | news.apple.com | 5 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
50 | tier_2 | clickserve.dartsearch.net | 5 | MarkMonitor Inc. | NS1.GOOGLE.COM | None |
51 | tier_2 | dbc.pathroutes.com | 5 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
52 | tier_2 | cj.dotomi.com | 4 | GoDaddy.com, LLC | ASIA9.AKAM.NET | Domains By Proxy, LLC |
53 | tier_2 | www.emjcd.com | 4 | MarkMonitor, Inc. | ASIA9.AKAM.NET | Conversant, Inc. |
54 | tier_2 | q1.quotes.com | 4 | Internet Domain Service BS Corp | NS-CANADA.TOPDNS.COM | None |
55 | tier_2 | track.flexlinkspro.com | 4 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
56 | tier_2 | c.pageprotect.net | 3 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
57 | tier_2 | adservice.google.com | 3 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
58 | tier_2 | itunes.apple.com | 3 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
59 | tier_2 | qvikar.com | 3 | Sea Wasp, LLC | NS2789.HOSTGATOR.COM | Jewella Privacy LLC Privacy ID# 1016679 |
60 | tier_2 | my.toruftuiov.com | 2 | DANESCO TRADING LTD | NS1.TOPDNS.ME | REDACTED FOR PRIVACY |
61 | tier_2 | lenovo.evyy.net | 2 | Alibaba Cloud Computing (Beijing) Co., Ltd. | DNS1.G01.NS1GLOBAL.ORG | None |
62 | tier_2 | lenovo.vzew.net | 2 | Amazon Registrar, Inc. | NS-1349.AWSDNS-40.ORG | Impact |
63 | tier_2 | c.adclickthru.net | 2 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
64 | tier_2 | ww1.joing.me | 1 | GoDaddy.com, LLC | None | None |
65 | tier_2 | www.dpbolvw.net | 1 | MarkMonitor, Inc. | ASIA9.AKAM.NET | Conversant, Inc. |
66 | tier_2 | click.godaddy.com | 1 | GoDaddy.com, LLC | A1-245.AKAM.NET | Domains By Proxy, LLC |
67 | tier_2 | www.awin1.com | 1 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
68 | tier_2 | s.click.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
69 | tier_2 | cryptopunks.sbs | 1 | None | None | None |
70 | tier_2 | afflat3b2.com | 1 | DNC Holdings, Inc | NS1.PEER1.NET | Jewella Privacy LLC Privacy ID# 14674518 |
71 | tier_2 | kaspersky.go2cloud.org | 1 | NAMECHEAP INC | ns-1511.awsdns-60.org | ['Seattle Technology', 'Redacted for Privacy Purposes'] |
72 | tier_2 | click-v4.celxkpdir.com | 1 | NAMECHEAP INC | NS1.LINODE.COM | Privacy service provided by Withheld for Privacy ehf |
73 | tier_2 | live.pushub.net | 1 | Automattic Inc. | NS1.WORDPRESS.COM | Knock Knock WHOIS Not There, LLC |
74 | tier_2 | xml-v4.pushub.net | 1 | Automattic Inc. | NS1.WORDPRESS.COM | Knock Knock WHOIS Not There, LLC |
75 | tier_2 | entions-cusage.icu | 1 | Key-Systems GmbH | NS-1400.AWSDNS-47.ORG | c/o whoisproxy.com |
76 | tier_2 | finpronance.com | 1 | GoDaddy.com, LLC | DEB.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
77 | tier_2 | ww1.intutmarket.com | 1 | Media Elite Holdings Limited | NS1.RENTONDC.COM | Fundacion Privacy Services LTD |
78 | tier_2 | www.jdoqocy.com | 1 | MarkMonitor, Inc. | ASIA9.AKAM.NET | Conversant, Inc. |
79 | tier_2 | ww1.fupport.me | 1 | Key-Systems GmbH | None | None |
80 | tier_3 | tv.apple.com | 43 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
81 | tier_3 | www.hugedomains.com | 34 | GoDaddy.com, LLC | CHUCK.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
82 | tier_3 | www.apple.com | 5 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
83 | tier_3 | itunes.apple.com | 5 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
84 | tier_3 | iyfbodn.com | 4 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
85 | tier_3 | links.flexoffers.com | 3 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
86 | tier_3 | music.apple.com | 3 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
87 | tier_3 | www.clkmg.com | 3 | GoDaddy.com, LLC | NS1.SOFTLAYER.COM | None |
88 | tier_3 | iosprotector.com | 2 | DANESCO TRADING LTD | DREW.NS.CLOUDFLARE.COM | None |
89 | tier_3 | www.lenovo.com | 2 | MarkMonitor, Inc. | A1-79.AKAM.NET | Lenovo Beijing Limited |
90 | tier_3 | www.samsung.com | 2 | Whois Corp. | DNS-AWSKR1.SAMSUNG.COM | None |
91 | tier_3 | www.godaddy.com | 1 | GoDaddy.com, LLC | A1-245.AKAM.NET | None |
92 | tier_3 | mbest.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
93 | tier_3 | 127.0.0.1 | 1 | None | None | None |
94 | tier_3 | www.kaspersky.co.uk | 1 | Key-Systems GmbH [Tag = KEY-SYSTEMS-DE] | n | None |
95 | tier_3 | www.volvocars.com | 1 | CSC CORPORATE DOMAINS, INC. | UDNS1.CSCDNS.NET | VolvoCarCorporation |
96 | tier_3 | www.finpronance.com | 1 | GoDaddy.com, LLC | DEB.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
97 | tier_3 | track.vcdc.com | 1 | Key-Systems GmbH | GUY.NS.CLOUDFLARE.COM | c/o whoisproxy.com |
98 | tier_3 | quickbooks.intuit.com | 1 | MarkMonitor, Inc. | A1-182.AKAM.NET | Intuit Inc. |
99 | tier_3 | ts-commissary-2511.myshopify.com | 1 | None | None | None |
100 | tier_3 | domain-registrar.storage.googleapis.com | 1 | None | None | None |
101 | tier_3 | www.amazon.ca | 1 | MarkMonitor International Canada Ltd. | ns1.p31.dynect.net | None |
102 | tier_3 | www.nerdwallet.com | 1 | Amazon Registrar, Inc. | NS-1081.AWSDNS-07.ORG | Identity Protection Service |
103 | tier_3 | www.xfinity.com | 1 | CSC CORPORATE DOMAINS, INC. | DNS101.COMCAST.NET | Comcast Corporation |
104 | tier_3 | www.transunion.com | 1 | CSC CORPORATE DOMAINS, INC. | PDNS1.CSCDNS.NET | Trans Union LLC |
105 | tier_3 | m.justfly.com | 1 | GoDaddy.com, LLC | NS0.REFLECTED.NET | None |
106 | tier_3 | www.merrell.com | 1 | CSC CORPORATE DOMAINS, INC. | NS-1101.AWSDNS-09.ORG | Wolverine World Wide, Inc. |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 93.115.28.104 | Vilnius | Vilnius | AS16125 UAB Cherry Servers | 01001 | Lithuania | True | tier_1 | 84 | nan | nan |
1 | 3.19.116.195 | Hilliard | Ohio | AS16509 Amazon.com, Inc. | 43026 | United States | False | tier_1 | 5 | ec2-3-19-116-195.us-east-2.compute.amazonaws.com | nan |
2 | 3.18.7.81 | Hilliard | Ohio | AS16509 Amazon.com, Inc. | 43026 | United States | False | tier_1 | 4 | ec2-3-18-7-81.us-east-2.compute.amazonaws.com | nan |
3 | 52.71.57.184 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_1 | 4 | ec2-52-71-57-184.compute-1.amazonaws.com | nan |
4 | 34.205.242.146 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_1 | 4 | ec2-34-205-242-146.compute-1.amazonaws.com | nan |
5 | 18.119.154.66 | Hilliard | Ohio | AS16509 Amazon.com, Inc. | 43026 | United States | False | tier_1 | 3 | ec2-18-119-154-66.us-east-2.compute.amazonaws.com | nan |
6 | 54.161.222.85 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_1 | 3 | ec2-54-161-222-85.compute-1.amazonaws.com | nan |
7 | 52.86.6.113 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_1 | 3 | ec2-52-86-6-113.compute-1.amazonaws.com | nan |
8 | 3.94.41.167 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_1 | 2 | ec2-3-94-41-167.compute-1.amazonaws.com | nan |
9 | 3.130.253.23 | Hilliard | Ohio | AS16509 Amazon.com, Inc. | 43026 | United States | False | tier_1 | 2 | ec2-3-130-253-23.us-east-2.compute.amazonaws.com | nan |
10 | 209.132.243.15 | Irvine | California | AS7296 Alchemy Communications, Inc. | 92612 | United States | False | tier_2 | 129 | nan | nan |
11 | 52.116.53.155 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 14 | 9b.35.7434.ip4.static.sl-reverse.com | nan |
12 | 89.207.16.75 | Amsterdam | North Holland | AS41041 Conversant LLC | 1109 | Netherlands | True | tier_2 | 12 | nan | nan |
13 | 23.37.59.205 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60326 | Germany | True | tier_2 | 8 | a23-37-59-205.deploy.static.akamaitechnologies.com | nan |
14 | 192.99.158.241 | Montréal | Quebec | AS16276 OVH SAS | H3H | Canada | False | tier_2 | 6 | ip241.ip-192-99-158.net | nan |
15 | 216.139.248.127 | Austin | Texas | AS32400 Hostway Services, Inc. | 78701 | United States | False | tier_2 | 6 | 216-139-248-127.aus.us.siteprotect.com | nan |
16 | 142.250.186.102 | Mörfelden-Walldorf | Hesse | AS15169 Google LLC | 64546 | Germany | True | tier_2 | 6 | fra24s06-in-f6.1e100.net | nan |
17 | 199.59.243.222 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 5 | nan | True |
18 | 17.56.48.13 | New York City | New York | AS714 Apple Inc. | 10004 | United States | False | tier_2 | 5 | foundationdb.com | nan |
19 | 142.250.186.78 | Mörfelden-Walldorf | Hesse | AS15169 Google LLC | 64546 | Germany | True | tier_2 | 5 | fra24s05-in-f14.1e100.net | nan |
20 | 72.246.168.25 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60326 | Germany | True | tier_3 | 51 | a72-246-168-25.deploy.static.akamaitechnologies.com | nan |
21 | 104.26.6.37 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 14 | nan | True |
22 | 172.67.70.191 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 13 | nan | True |
23 | 104.26.7.37 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 7 | nan | True |
24 | 72.246.168.211 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60326 | Germany | True | tier_3 | 5 | a72-246-168-211.deploy.static.akamaitechnologies.com | nan |
25 | 208.91.196.46 | Austin | Texas | AS40034 Confluence Networks Inc | 78701 | United States | False | tier_3 | 4 | nan | nan |
26 | 104.17.71.53 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 3 | nan | True |
27 | 23.37.37.122 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60326 | Germany | True | tier_3 | 2 | a23-37-37-122.deploy.static.akamaitechnologies.com | nan |
28 | 72.246.168.51 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60326 | Germany | True | tier_3 | 2 | a72-246-168-51.deploy.static.akamaitechnologies.com | nan |
29 | 188.114.97.3 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
Zhouhan Chen, zc1245@nyu.edu, Personal Website