Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 286 | 280 | 934 | 0 | 0 | 2023-07-17 | 2023-07-17__37.48.65.149__iphone |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | cpanel.thaicoon.com.ph | 1 | None | None | None |
1 | tier_1 | amazon.co.jp.ckhmkc.ph | 1 | None | None | None |
2 | tier_1 | cpcontacts.imageneschistosasweb.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
3 | tier_1 | xingqi8duchang.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
4 | tier_1 | www.nanrendv.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
5 | tier_1 | admin.sheraton.com.ph | 1 | None | None | None |
6 | tier_1 | nn.pandolah.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
7 | tier_1 | www.980b.ancpw.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
8 | tier_1 | ju.a2346.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
9 | tier_1 | www.pokewaveastoria.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
10 | tier_1 | webmail.workingholidayforu.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
11 | tier_1 | www.oishi-washoku.healthnstyle.ph | 1 | None | None | None |
12 | tier_1 | tisbooks.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
13 | tier_1 | www.the.focusnews.info | 1 | Key-Systems GmbH | ns1.commonmx.com | c/o whoisproxy.com |
14 | tier_1 | t88.ph | 1 | None | None | None |
15 | tier_1 | rgf-executive.com.ph | 1 | None | None | None |
16 | tier_1 | cpanel.street.ph | 1 | None | None | None |
17 | tier_1 | scrb-scol-com-cn.mceqim.ph | 1 | None | None | None |
18 | tier_1 | reyespark.marinduque.ph | 1 | None | None | None |
19 | tier_1 | cpcontacts.unionspace.ph | 1 | None | None | None |
20 | tier_1 | hostmaster.geoplancebu.ph | 1 | None | None | None |
21 | tier_1 | ww25.ww.10008t.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
22 | tier_1 | hostmaster.whatatop.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
23 | tier_1 | 189.8.6.azcom.ph | 1 | None | None | None |
24 | tier_1 | ee.firmfolder.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
25 | tier_1 | payperdownload.mine.ph | 1 | None | None | None |
26 | tier_1 | admin.vcash.ph | 1 | None | None | None |
27 | tier_1 | property.aalah.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
28 | tier_1 | www.cs123456.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
29 | tier_1 | test.halloweeencostumes.com | 1 | ABOVE.COM PTY LTD. | NS1.COMMONMX.COM | None |
30 | tier_1 | www.laurenhannah.ph | 1 | None | None | None |
31 | tier_1 | ugandi.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
32 | tier_1 | t3ving.11-news.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
33 | tier_1 | horrordrome.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
34 | tier_1 | cpanel.wiletransfer.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
35 | tier_1 | www.rockstar.infiniteideas.com.ph | 1 | None | None | None |
36 | tier_1 | vps.vintahan.ph | 1 | None | None | None |
37 | tier_1 | mail07.b01edm.ph | 1 | None | None | None |
38 | tier_1 | health.curbxy.ph | 1 | None | None | None |
39 | tier_1 | t5rmn4h.ancpw.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
40 | tier_2 | c.clickprotects.com | 97 | GoDaddy.com, LLC | NS63.DOMAINCONTROL.COM | Domains By Proxy, LLC |
41 | tier_2 | 11165151.addotnet.com | 96 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
42 | tier_2 | geo.itunes.apple.com | 84 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
43 | tier_2 | itunes.apple.com | 83 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
44 | tier_2 | myckdom.com | 20 | NameCheap, Inc. | NS10.DIGICERTDNS.COM | None |
45 | tier_2 | www.thebuxfiles.com | 12 | NameSilo, LLC | HUGH.NS.CLOUDFLARE.COM | See PrivacyGuardian.org |
46 | tier_2 | news.apple.com | 12 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
47 | tier_2 | p185689.myckdom.com | 12 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
48 | tier_2 | dnavexch.com | 8 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dnavexch.com |
49 | tier_2 | p274639.myckdom.com | 8 | NameCheap, Inc. | NS10.DIGICERTDNS.COM | None |
50 | tier_2 | ww1.adhcz.com | 6 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
51 | tier_2 | ww1.afbtc.com | 5 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
52 | tier_2 | karafutem.com | 4 | NameCheap, Inc. | DNS1.REGISTRAR-SERVERS.COM | None |
53 | tier_2 | lookandfind.me | 4 | NameCheap, Inc. | None | None |
54 | tier_2 | marti-cqh.com | 4 | Amazon Registrar, Inc. | NS-1061.AWSDNS-04.ORG | Identity Protection Service |
55 | tier_2 | trk.ai-adsolutions.com | 3 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
56 | tier_2 | ww1.onion.ph | 3 | None | None | None |
57 | tier_2 | q1.quotes.com | 3 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
58 | tier_2 | track.flexlinkspro.com | 3 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
59 | tier_2 | qvikar.com | 2 | Sea Wasp, LLC | NS2789.HOSTGATOR.COM | Jewella Privacy LLC Privacy ID# 1016679 |
60 | tier_2 | api.yadore.com | 2 | RegistryGate GmbH | NS-1451.AWSDNS-53.ORG | REDACTED FOR PRIVACY |
61 | tier_2 | r.secprf.com | 2 | Cloudflare, Inc. | BEN.NS.CLOUDFLARE.COM | DATA REDACTED |
62 | tier_2 | monetoad.com | 2 | INWX GmbH | GERALD.NS.CLOUDFLARE.COM | admitad GmbH |
63 | tier_2 | de.trck.one | 2 | INWX GmbH | pam.ns.cloudflare.com | admitad GmbH |
64 | tier_2 | www.awin1.com | 2 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
65 | tier_2 | ww1.nanrendv.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
66 | tier_2 | ww1.sheraton.com.ph | 1 | None | None | None |
67 | tier_2 | ww1.a2346.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
68 | tier_2 | ww1.pokewaveastoria.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
69 | tier_2 | ww1.workingholidayforu.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
70 | tier_2 | ww1.tisbooks.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
71 | tier_2 | ww1.cs123456.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
72 | tier_2 | ww2.affinity.net | 1 | DOMAINPEOPLE, INC. | NS-1183.AWSDNS-19.ORG | WhoisProtector Inc. |
73 | tier_2 | shareasale.com | 1 | GoDaddy.com, LLC | JONAH.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
74 | tier_2 | shareasale-analytics.com | 1 | GoDaddy.com, LLC | JONAH.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
75 | tier_2 | ww1.wiletransfer.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
76 | tier_2 | ww1.shivadevelopers.in | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
77 | tier_2 | veed.sjv.io | 1 | GANDI SAS | ns-284.awsdns-35.com | None |
78 | tier_2 | veed.io | 1 | NameCheap, Inc. | ns-cloud-c1.googledomains.com | None |
79 | tier_2 | click-v4.expdirclk.com | 1 | NameCheap, Inc. | NS1.LINODE.COM | None |
80 | tier_3 | music.apple.com | 83 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
81 | tier_3 | iyfbodn.com | 47 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
82 | tier_3 | m.lepetitdiary.com | 12 | NameSilo, LLC | HUGH.NS.CLOUDFLARE.COM | See PrivacyGuardian.org |
83 | tier_3 | www.apple.com | 12 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
84 | tier_3 | simcast.com | 3 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
85 | tier_3 | www.clkmg.com | 3 | GoDaddy.com, LLC | NS1.SOFTLAYER.COM | Domains By Proxy, LLC |
86 | tier_3 | links.flexoffers.com | 3 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
87 | tier_3 | mx-go.kelkoogroup.net | 2 | MarkMonitor, Inc. | NS1.MARKMONITOR.COM | Jamplant Limited |
88 | tier_3 | www.thebottleclub.com | 2 | 123-Reg Limited | NS15.DOMAINCONTROL.COM | MILLENIUM GROUP |
89 | tier_3 | findresultsonline.com | 1 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS111332.ZTOMY.COM | None |
90 | tier_3 | www.halloweencostumes.com | 1 | GoDaddy.com, LLC | NS1.HALLOWEENCOSTUMES.COM | Domains By Proxy, LLC |
91 | tier_3 | www.veed.io | 1 | NameCheap, Inc. | ns-cloud-c1.googledomains.com | None |
92 | tier_3 | geo.itunes.apple.com | 1 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
93 | tier_3 | teenfinder.online | 1 | GoDaddy.com, LLC | NS59.DOMAINCONTROL.COM | None |
94 | tier_3 | uk.srchtopdeals.com_LOOP_1 | 1 | None | None | None |
95 | tier_3 | itunes.apple.com | 1 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
96 | tier_3 | www.myprotein.com | 1 | MarkMonitor, Inc. | DNS1.P05.NSONE.NET | Thehut.com Limited |
97 | tier_3 | ww1.fbautoliker.co | 1 | Key-Systems GmbH | ns1.commonmx.com | EdenMedia |
98 | tier_3 | www.volvocars.com | 1 | CSC CORPORATE DOMAINS, INC. | UDNS1.CSCDNS.NET | VolvoCarCorporation |
99 | tier_3 | www.ashley.date | 1 | Safenames Ltd | john.ns.cloudflare.com | Ruby Life Inc. |
100 | tier_3 | c.ga-net.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | DNS23.HICHINA.COM | None |
101 | tier_3 | block.myupdates.net | 1 | Cloudflare, Inc. | BART.NS.CLOUDFLARE.COM | DATA REDACTED |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 63 | nan | nan |
1 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 50 | nan | nan |
2 | 37.48.65.148 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 46 | nan | nan |
3 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 33 | nan | nan |
4 | 45.79.222.138 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_1 | 5 | apple.parklogic.com | nan |
5 | 185.107.56.200 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 5 | nan | nan |
6 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 3 | nan | nan |
7 | 185.107.56.199 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 3 | nan | nan |
8 | 172.93.103.102 | New York City | New York | AS23470 ReliableSite.Net LLC | 10001 | United States | False | tier_1 | 2 | nan | nan |
9 | 172.93.103.101 | New York City | New York | AS23470 ReliableSite.Net LLC | 10001 | United States | False | tier_1 | 1 | nan | nan |
10 | 209.132.243.15 | Simi Valley | California | AS7296 Alchemy Communications, Inc. | 93062 | United States | False | tier_2 | 197 | nan | nan |
11 | 23.215.22.23 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_2 | 84 | a23-215-22-23.deploy.static.akamaitechnologies.com | nan |
12 | 23.213.168.27 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 84 | a23-213-168-27.deploy.static.akamaitechnologies.com | nan |
13 | 199.59.243.224 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 47 | nan | True |
14 | 52.117.247.211 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 40 | d3.f7.7534.ip4.static.sl-reverse.com | nan |
15 | 17.138.128.4 | New York City | New York | AS714 Apple Inc. | 10001 | United States | False | tier_2 | 12 | nan | nan |
16 | 192.99.158.241 | Beauharnois | Quebec | AS16276 OVH SAS | J6N | Canada | False | tier_2 | 9 | ip241.ip-192-99-158.net | nan |
17 | 104.18.20.177 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_2 | 7 | nan | True |
18 | 104.18.21.177 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_2 | 5 | nan | True |
19 | 5.9.85.57 | Falkenstein | Saxony | AS24940 Hetzner Online GmbH | 08223 | Germany | True | tier_2 | 4 | static.57.85.9.5.clients.your-server.de | nan |
20 | 23.213.168.27 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 84 | a23-213-168-27.deploy.static.akamaitechnologies.com | nan |
21 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 47 | nan | nan |
22 | 184.154.10.250 | Chicago | Illinois | AS32475 SingleHop LLC | 60666 | United States | False | tier_3 | 12 | server04.com-2.mobi | nan |
23 | 69.192.160.210 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 12 | a69-192-160-210.deploy.static.akamaitechnologies.com | nan |
24 | 45.79.244.12 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_3 | 3 | nb-45-79-244-12.an.nodebalancer.linode.com | nan |
25 | 50.97.212.250 | Mountain View | California | AS36351 SoftLayer Technologies Inc. | 94035 | United States | False | tier_3 | 3 | fa.d4.6132.ip4.static.sl-reverse.com | nan |
26 | 95.211.116.26 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_3 | 2 | dc1-ecs-pub-mx-vip.kelkoo.com | nan |
27 | 104.18.7.3 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
28 | 104.17.71.53 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
29 | 199.191.50.32 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 1 | nan | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website