Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 351 | 373 | 1120 | 0 | 0 | 2023-07-17 | 2023-07-17__93.115.28.104__iphone |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | ernestotersigni.it.italianosito.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
1 | tier_1 | 17bv1zpl.seeums.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
2 | tier_1 | ty3t.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
3 | tier_1 | juegos-de-robar-casas-en-3d.juegostin.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
4 | tier_1 | corp.1024ax.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
5 | tier_1 | racconta.it.italianosito.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
6 | tier_1 | 185.74.220.105.cdnet.tv | 1 | None | None | None |
7 | tier_1 | lzb.seeums.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
8 | tier_1 | hostmaster.185.74.222.17.cdnet.tv | 1 | None | None | None |
9 | tier_1 | www.flowmp3.flowmp3.me | 1 | Key-Systems GmbH | None | None |
10 | tier_1 | abbonamentointegrato.it.italianosito.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
11 | tier_1 | 113tm.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
12 | tier_1 | publichandjobcumshots.seductiveblogs.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
13 | tier_1 | gg7ihui.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
14 | tier_1 | admin.cuevanna.com | 1 | TUCOWS, INC. | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
15 | tier_1 | kalendar.bulboard.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
16 | tier_1 | hostmaster.185.74.222.147.cdnet.tv | 1 | None | None | None |
17 | tier_1 | www.lindaclary.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
18 | tier_1 | rjxf1n.seeums.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
19 | tier_1 | l0d7g.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
20 | tier_1 | siriwutnasic.biogspot.com | 1 | Media Elite Holdings Limited | NS1.TAIPANDNS.COM | Fundacion Privacy Services LTD |
21 | tier_1 | www.dwimperl.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
22 | tier_1 | fox.ra.it.italianosito.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
23 | tier_1 | niscwebex.com | 1 | TUCOWS, INC. | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
24 | tier_1 | fpdjt.seeums.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
25 | tier_1 | test.firstleaks.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
26 | tier_1 | 185.74.222.204.cdnet.tv | 1 | None | None | None |
27 | tier_1 | stuchub.com | 1 | TUCOWS, INC. | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
28 | tier_1 | m7buj.668384.com | 1 | TUCOWS, INC. | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
29 | tier_1 | hostmaster.185.74.221.87.cdnet.tv | 1 | None | None | None |
30 | tier_1 | www.paknews.co | 1 | Key-Systems GmbH | ns2.rentondc.com | c/o whoisproxy.com |
31 | tier_1 | 87d.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
32 | tier_1 | mpk.gastromalabar.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
33 | tier_1 | shop.fairfieldmarriott.com | 1 | Media Elite Holdings Limited | NS1.RENTONDC.COM | Fundacion Privacy Services LTD |
34 | tier_1 | symposium.398jj.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
35 | tier_1 | www.hairy-pics.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
36 | tier_1 | sydney.thefreead.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
37 | tier_1 | skoqeamy.seeums.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
38 | tier_1 | hostmaster.185.74.221.174.cdnet.tv | 1 | None | None | None |
39 | tier_1 | mail5.truos.com | 1 | Internet Domain Service BS Corp. | NS1.RENTONDC.COM | Whois Privacy Corp. |
40 | tier_2 | c.clickprotects.com | 56 | GoDaddy.com, LLC | NS63.DOMAINCONTROL.COM | Domains By Proxy, LLC |
41 | tier_2 | myckdom.com | 55 | NameCheap, Inc. | NS10.DIGICERTDNS.COM | None |
42 | tier_2 | 11165151.addotnet.com | 55 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
43 | tier_2 | geo.itunes.apple.com | 44 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
44 | tier_2 | itunes.apple.com | 44 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
45 | tier_2 | p185689.myckdom.com | 33 | NameCheap, Inc. | NS10.DIGICERTDNS.COM | None |
46 | tier_2 | www.awin1.com | 27 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
47 | tier_2 | ww1.jotfom.com | 22 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
48 | tier_2 | dnavexch.com | 22 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dnavexch.com |
49 | tier_2 | p274639.myckdom.com | 22 | NameCheap, Inc. | NS10.DIGICERTDNS.COM | None |
50 | tier_2 | q1.quotes.com | 17 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
51 | tier_2 | track.flexlinkspro.com | 17 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
52 | tier_2 | karafutem.com | 17 | NameCheap, Inc. | DNS1.REGISTRAR-SERVERS.COM | None |
53 | tier_2 | s.click.aliexpress.com | 15 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
54 | tier_2 | campaign.aliexpress.com | 15 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
55 | tier_2 | best.aliexpress.com | 15 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
56 | tier_2 | www.thebuxfiles.com | 14 | NameSilo, LLC | HUGH.NS.CLOUDFLARE.COM | See PrivacyGuardian.org |
57 | tier_2 | ww1.cdnet.tv | 12 | None | None | None |
58 | tier_2 | news.apple.com | 12 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
59 | tier_2 | qvikar.com | 10 | Sea Wasp, LLC | NS2789.HOSTGATOR.COM | Jewella Privacy LLC Privacy ID# 1016679 |
60 | tier_2 | marti-cqh.com | 8 | Amazon Registrar, Inc. | NS-1061.AWSDNS-04.ORG | Identity Protection Service |
61 | tier_2 | trk.ai-adsolutions.com | 8 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
62 | tier_2 | r.secprf.com | 8 | Cloudflare, Inc. | BEN.NS.CLOUDFLARE.COM | DATA REDACTED |
63 | tier_2 | monetoad.com | 8 | INWX GmbH | GERALD.NS.CLOUDFLARE.COM | admitad GmbH |
64 | tier_2 | de.trck.one | 8 | INWX GmbH | pam.ns.cloudflare.com | admitad GmbH |
65 | tier_2 | geotrkclknow.com | 7 | NameCheap, Inc. | EVAN.NS.CLOUDFLARE.COM | None |
66 | tier_2 | click.linksynergy.com | 6 | CSC CORPORATE DOMAINS, INC. | DNS1.P09.NSONE.NET | Rakuten Marketing |
67 | tier_2 | api.kelkoogroup.net | 5 | MarkMonitor, Inc. | NS1.MARKMONITOR.COM | Jamplant Limited |
68 | tier_2 | buybutwhere.com | 5 | Key-Systems GmbH | CORY.NS.CLOUDFLARE.COM | REDACTED FOR PRIVACY |
69 | tier_2 | trk.mypublicads.com | 4 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
70 | tier_2 | r.srvtrck.com | 4 | GoDaddy.com, LLC | BEN.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
71 | tier_2 | doqxysy.com | 4 | NameCheap, Inc. | NS-1167.AWSDNS-17.ORG | None |
72 | tier_2 | api.yadore.com | 4 | RegistryGate GmbH | NS-1451.AWSDNS-53.ORG | REDACTED FOR PRIVACY |
73 | tier_2 | www.searchfor.org | 4 | Key-Systems GmbH | dane.ns.cloudflare.com | Squared UG (haftungsbeschraenkt) |
74 | tier_2 | lookandfind.me | 4 | NameCheap, Inc. | None | None |
75 | tier_2 | ayqnoqp.com | 3 | NameCheap, Inc. | NS-1527.AWSDNS-62.ORG | None |
76 | tier_2 | storesearch.net | 3 | NameCheap, Inc. | EVAN.NS.CLOUDFLARE.COM | None |
77 | tier_2 | clickcanv.com | 3 | NameCheap, Inc. | EVAN.NS.CLOUDFLARE.COM | None |
78 | tier_2 | tracking.s24.com | 3 | GANDI SAS | BEN.NS.CLOUDFLARE.COM | shopping 24 Gesellschaft für multimediale Anwendungen mbH |
79 | tier_2 | vam.trkn1.com | 3 | Safenames Ltd | JOAN.NS.CLOUDFLARE.COM | None |
80 | tier_3 | iyfbodn.com | 56 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | None |
81 | tier_3 | music.apple.com | 44 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
82 | tier_3 | mbest.aliexpress.com | 15 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
83 | tier_3 | m.lepetitdiary.com | 14 | NameSilo, LLC | HUGH.NS.CLOUDFLARE.COM | See PrivacyGuardian.org |
84 | tier_3 | www.apple.com | 12 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
85 | tier_3 | www.clkmg.com | 12 | GoDaddy.com, LLC | NS1.SOFTLAYER.COM | Domains By Proxy, LLC |
86 | tier_3 | www.gousto.co.uk | 4 | 123-Reg Limited t/a 123-reg [Tag = 123-REG] | n | None |
87 | tier_3 | uk-go.kelkoogroup.net | 4 | MarkMonitor, Inc. | NS1.MARKMONITOR.COM | Jamplant Limited |
88 | tier_3 | www.thebottleclub.com | 4 | 123-Reg Limited | NS15.DOMAINCONTROL.COM | MILLENIUM GROUP |
89 | tier_3 | www.superdry.com | 3 | NOM-IQ Ltd dba Com Laude | NS-1329.AWSDNS-38.ORG | SuperGroup Internet Limited |
90 | tier_3 | www.ashley.date | 3 | Safenames Ltd | john.ns.cloudflare.com | Ruby Life Inc. |
91 | tier_3 | www.google.com | 3 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
92 | tier_3 | www.spacenk.com | 2 | TUCOWS, INC. | NS0.CLARA.NET | REDACTED FOR PRIVACY |
93 | tier_3 | findresultsonline.com | 2 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS111332.ZTOMY.COM | Privacy Protect, LLC (PrivacyProtect.org) |
94 | tier_3 | despensa.bodegaaurrera.com.mx | 2 | MarkMonitor | pdnswm3.ultradns.org | None |
95 | tier_3 | www.stubhub.com | 1 | MarkMonitor, Inc. | A1-173.AKAM.NET | Stubhub, Inc. |
96 | tier_3 | www.booking.com | 1 | MarkMonitor Inc. | NS-1288.AWSDNS-33.ORG | None |
97 | tier_3 | www.marriott.com | 1 | CSC CORPORATE DOMAINS, INC. | EUR1.AKAM.NET | Marriott International, Inc. |
98 | tier_3 | www.debenhams.com | 1 | Safenames Ltd | DNS1.P02.NSONE.NET | None |
99 | tier_3 | surfshark.com | 1 | TurnCommerce, Inc. DBA NameBright.com | DALE.NS.CLOUDFLARE.COM | NameBrightPrivacy.com |
100 | tier_3 | www.cashback.co.uk | 1 | 123-Reg Limited t/a 123-reg [Tag = 123-REG] | n | None |
101 | tier_3 | zsllondonzoo.seetickets.com | 1 | TUCOWS, INC. | NS1.STSTAT.COM | REDACTED FOR PRIVACY |
102 | tier_3 | www.fragrancex.com | 1 | GoDaddy.com, LLC | IGOR.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
103 | tier_3 | uk.hismileteeth.com | 1 | Dreamscape Networks International Pte Ltd | DION.NS.CLOUDFLARE.COM | PRIVATE REGISTRY AUTHORITY |
104 | tier_3 | dusk.com | 1 | Key-Systems GmbH | AUSTIN.NS.CLOUDFLARE.COM | REDACTED FOR PRIVACY |
105 | tier_3 | links.flexoffers.com | 1 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
106 | tier_3 | quickbooks.intuit.com | 1 | MarkMonitor, Inc. | A1-182.AKAM.NET | Intuit Inc. |
107 | tier_3 | www.samsung.com | 1 | Whois Corp. | DNS-AWSKR1.SAMSUNG.COM | None |
108 | tier_3 | valentte.com | 1 | GoDaddy.com, LLC | DINA.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
109 | tier_3 | www.bannerbuzz.co.uk | 1 | GoDaddy.com, LLC. [Tag = GODADDY] | n | None |
110 | tier_3 | m.vueling.com | 1 | Eurodns S.A. | A1-17.AKAM.NET | VUELING AIRLINES, S.A |
111 | tier_3 | static.olymptrade.com | 1 | Eurodns S.A. | NS-1291.AWSDNS-33.ORG | Whois Privacy (enumDNS dba) |
112 | tier_3 | www.theoutnet.com | 1 | NOM-IQ Ltd dba Com Laude | NS1-2.AKAM.NET | THE NET-A-PORTER GROUP LIMITED |
113 | tier_3 | super.walmart.com.mx | 1 | CSC Corporate Domains, Inc | ns10.wal-mart.com | None |
114 | tier_3 | dnavexch.com | 1 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dnavexch.com |
115 | tier_3 | mx-go.kelkoogroup.net | 1 | MarkMonitor, Inc. | NS1.MARKMONITOR.COM | Jamplant Limited |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 93.115.28.104 | Vilnius | Vilnius | AS16125 UAB Cherry Servers | 01001 | Lithuania | True | tier_1 | 190 | nan | nan |
1 | 172.98.192.36 | Atlanta | Georgia | AS31863 Centrilogic, Inc. | 30302 | United States | False | tier_1 | 4 | nan | nan |
2 | 95.211.75.25 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 2 | nan | nan |
3 | 172.98.192.35 | Atlanta | Georgia | AS31863 Centrilogic, Inc. | 30302 | United States | False | tier_1 | 2 | nan | nan |
4 | 95.211.189.138 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 1 | nan | nan |
5 | 95.211.75.26 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 1 | nan | nan |
6 | 95.211.75.10 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 1 | nan | nan |
7 | 209.132.243.15 | Simi Valley | California | AS7296 Alchemy Communications, Inc. | 93062 | United States | False | tier_2 | 115 | nan | nan |
8 | 52.117.247.211 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 110 | d3.f7.7534.ip4.static.sl-reverse.com | nan |
9 | 199.59.243.224 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 56 | nan | True |
10 | 104.102.42.226 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 15 | a104-102-42-226.deploy.static.akamaitechnologies.com | nan |
11 | 23.215.22.23 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_2 | 44 | a23-215-22-23.deploy.static.akamaitechnologies.com | nan |
12 | 23.213.168.27 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 44 | a23-213-168-27.deploy.static.akamaitechnologies.com | nan |
13 | 104.102.45.165 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_2 | 27 | a104-102-45-165.deploy.static.akamaitechnologies.com | nan |
14 | 192.99.158.241 | Beauharnois | Quebec | AS16276 OVH SAS | J6N | Canada | False | tier_2 | 24 | ip241.ip-192-99-158.net | nan |
15 | 5.79.68.236 | Zwijndrecht | South Holland | AS60781 LeaseWeb Netherlands B.V. | 3331 | Netherlands | True | tier_2 | 17 | nan | nan |
16 | 5.9.85.57 | Falkenstein | Saxony | AS24940 Hetzner Online GmbH | 08223 | Germany | True | tier_2 | 17 | static.57.85.9.5.clients.your-server.de | nan |
17 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 56 | nan | nan |
18 | 23.213.168.27 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 44 | a23-213-168-27.deploy.static.akamaitechnologies.com | nan |
19 | 104.102.42.226 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 15 | a104-102-42-226.deploy.static.akamaitechnologies.com | nan |
20 | 184.154.10.250 | Chicago | Illinois | AS32475 SingleHop LLC | 60666 | United States | False | tier_3 | 14 | server04.com-2.mobi | nan |
21 | 69.192.160.210 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 12 | a69-192-160-210.deploy.static.akamaitechnologies.com | nan |
22 | 50.97.212.250 | Mountain View | California | AS36351 SoftLayer Technologies Inc. | 94035 | United States | False | tier_3 | 7 | fa.d4.6132.ip4.static.sl-reverse.com | nan |
23 | 95.211.116.26 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_3 | 5 | dc1-ecs-pub-mx-vip.kelkoo.com | nan |
24 | 50.97.244.203 | Mountain View | California | AS36351 SoftLayer Technologies Inc. | 94035 | United States | False | tier_3 | 5 | clkmg.com | nan |
25 | 104.18.7.3 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 3 | nan | True |
26 | 142.250.186.36 | Mörfelden-Walldorf | Hesse | AS15169 Google LLC | 64546 | Germany | True | tier_3 | 3 | fra24s04-in-f4.1e100.net | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website