Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 239 | 245 | 543 | 0 | 0 | 2023-07-21 | 2023-07-21__93.115.28.104__android |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | qxzs.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
1 | tier_1 | mail.harner.us | 1 | Key-Systems GmbH | ns2.rentondc.com | None |
2 | tier_1 | admin.pimterest.com | 1 | GoDaddy Online Services Cayman Islands Ltd. | NS1.RENTONDC.COM | Domains By Proxy, LLC |
3 | tier_1 | sitemap.masterprdirectory.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
4 | tier_1 | hostmaster.185.74.220.179.cdnet.tv | 1 | None | None | None |
5 | tier_1 | kalendar.bulboard.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
6 | tier_1 | thecoffeeshopofportdover.vitrinecanada.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
7 | tier_1 | shop.geaapliances.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
8 | tier_1 | zj3jx.seeums.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
9 | tier_1 | spookylenses.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
10 | tier_1 | shop.2018.domsbita.co | 1 | Key-Systems GmbH | ns2.rentondc.com | c/o whoisproxy.com |
11 | tier_1 | 185.74.221.99.cdnet.tv | 1 | None | None | None |
12 | tier_1 | amatmotor.co | 1 | Key-Systems GmbH | ns2.rentondc.com | c/o whoisproxy.com |
13 | tier_1 | tzo.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
14 | tier_1 | admin.boersenkurs.com | 1 | Internet Domain Service BS Corp. | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
15 | tier_1 | aqqih25n.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
16 | tier_1 | src.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
17 | tier_1 | admin.khaleetimes.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
18 | tier_1 | staging.m.hornygirls.mobi | 1 | Key-Systems GmbH | ns1.rentondc.com | None |
19 | tier_1 | 185.74.222.33.cdnet.tv | 1 | None | None | None |
20 | tier_1 | hostmaster.185.74.220.166.cdnet.tv | 1 | None | None | None |
21 | tier_1 | 83h2a2.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
22 | tier_1 | www.htotels.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
23 | tier_1 | lic2.xondemand.com | 1 | TUCOWS, INC. | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
24 | tier_1 | admin.bowlingrv.com | 1 | Media Elite Holdings Limited | NS1.TAIPANDNS.COM | Fundacion Privacy Services LTD |
25 | tier_1 | 9jt3g.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
26 | tier_1 | sameowner.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
27 | tier_1 | pw7ep.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
28 | tier_1 | noksocial.biogspot.com | 1 | Media Elite Holdings Limited | NS1.TAIPANDNS.COM | Fundacion Privacy Services LTD |
29 | tier_1 | dressberryindia.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
30 | tier_1 | www.sbobetgroups.dooball24hrs.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
31 | tier_1 | hostmaster.185.74.223.172.cdnet.tv | 1 | None | None | None |
32 | tier_1 | admin.miamisequarium.com | 1 | Media Elite Holdings Limited | NS1.TAIPANDNS.COM | Fundacion Privacy Services LTD |
33 | tier_1 | jugar-cortar-frutas.juegostin.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
34 | tier_1 | 1atmbun.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
35 | tier_1 | hostmaster.ocheapair.com | 1 | TUCOWS, INC. | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
36 | tier_1 | itro.it.italianosito.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
37 | tier_1 | agenziegruppouno.it.italianosito.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
38 | tier_1 | admin.squarepsace.com | 1 | Media Elite Holdings Limited | NS1.TAIPANDNS.COM | Fundacion Privacy Services LTD |
39 | tier_1 | www.msatch.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
40 | tier_2 | myckdom.com | 25 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
41 | tier_2 | ww1.jotfom.com | 24 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
42 | tier_2 | www.awin1.com | 18 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
43 | tier_2 | dnavexch.com | 18 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dnavexch.com |
44 | tier_2 | p274639.myckdom.com | 17 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
45 | tier_2 | q1.quotes.com | 15 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
46 | tier_2 | track.flexlinkspro.com | 15 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
47 | tier_2 | ww1.cdnet.tv | 15 | None | None | None |
48 | tier_2 | s.click.aliexpress.com | 12 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
49 | tier_2 | best.aliexpress.com | 12 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
50 | tier_2 | karafutem.com | 7 | NAMECHEAP INC | DNS1.REGISTRAR-SERVERS.COM | Privacy service provided by Withheld for Privacy ehf |
51 | tier_2 | hespe-bmq.com | 6 | Amazon Registrar, Inc. | NS-1175.AWSDNS-18.ORG | Identity Protection Service |
52 | tier_2 | p185689.myckdom.com | 6 | NameCheap, Inc. | NS10.DIGICERTDNS.COM | None |
53 | tier_2 | qvikar.com | 6 | Sea Wasp, LLC | NS2789.HOSTGATOR.COM | Jewella Privacy LLC Privacy ID# 1016679 |
54 | tier_2 | ww2.affinity.net | 5 | DOMAINPEOPLE, INC. | NS-1183.AWSDNS-19.ORG | WhoisProtector Inc. |
55 | tier_2 | www.thebuxfiles.com | 4 | NameSilo, LLC | HUGH.NS.CLOUDFLARE.COM | See PrivacyGuardian.org |
56 | tier_2 | trk.ai-adsolutions.com | 3 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
57 | tier_2 | trk.mypublicads.com | 3 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
58 | tier_2 | trendshops.net | 3 | Key-Systems GmbH | CORY.NS.CLOUDFLARE.COM | REDACTED FOR PRIVACY |
59 | tier_2 | nerve.eshkol.io | 3 | GoDaddy.com, LLC | ns11.constellix.com | None |
60 | tier_2 | cj.dotomi.com | 3 | GoDaddy.com, LLC | ASIA9.AKAM.NET | Domains By Proxy, LLC |
61 | tier_2 | r.srvtrck.com | 2 | GoDaddy.com, LLC | BEN.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
62 | tier_2 | directnavbt.com | 2 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of directnavbt.com |
63 | tier_2 | query.pureleads.com | 2 | New Frontier, Inc. | NS1.P05.DYNECT.NET | Domain Protection Services, Inc. |
64 | tier_2 | queryclick.pureleads.com | 2 | New Frontier, Inc. | NS1.P05.DYNECT.NET | Domain Protection Services, Inc. |
65 | tier_2 | r.secprf.com | 2 | Cloudflare, Inc. | BEN.NS.CLOUDFLARE.COM | DATA REDACTED |
66 | tier_2 | lookandfind.me | 2 | NAMECHEAP INC | None | None |
67 | tier_2 | monetoad.com | 2 | INWX GmbH | GERALD.NS.CLOUDFLARE.COM | admitad GmbH |
68 | tier_2 | de.trck.one | 2 | INWX GmbH | pam.ns.cloudflare.com | admitad GmbH |
69 | tier_2 | click-v4.expdirclk.com | 2 | NAMECHEAP INC | NS1.LINODE.COM | Privacy service provided by Withheld for Privacy ehf |
70 | tier_2 | rtbtrail.com | 2 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of rtbtrail.com |
71 | tier_2 | www.dpbolvw.net | 2 | MarkMonitor, Inc. | ASIA9.AKAM.NET | Conversant, Inc. |
72 | tier_2 | walter-larence.com | 2 | Amazon Registrar, Inc. | NS-1045.AWSDNS-02.ORG | Identity Protection Service |
73 | tier_2 | prf.hn | 2 | Gandi SAS | edns1.ultradns.com | None |
74 | tier_2 | ad.doubleclick.net | 2 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
75 | tier_2 | www.emjcd.com | 2 | MarkMonitor Inc. | ASIA9.AKAM.NET | None |
76 | tier_2 | ww1.harner.us | 1 | Key-Systems GmbH | ns2.rentondc.com | None |
77 | tier_2 | ww1.pimterest.com | 1 | GoDaddy Online Services Cayman Islands Ltd. | NS1.RENTONDC.COM | Domains By Proxy, LLC |
78 | tier_2 | ww1.vitrinecanada.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
79 | tier_2 | amzn.to | 1 | None | None | None |
80 | tier_3 | iyfbodn.com | 64 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
81 | tier_3 | mbest.aliexpress.com | 12 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
82 | tier_3 | www.clkmg.com | 7 | GoDaddy.com, LLC | NS1.SOFTLAYER.COM | Domains By Proxy, LLC |
83 | tier_3 | m.lepetitdiary.com | 4 | NameSilo, LLC | HUGH.NS.CLOUDFLARE.COM | See PrivacyGuardian.org |
84 | tier_3 | www.caliente.mx | 3 | SafeNames Ltd | leo.ns.cloudflare.com | None |
85 | tier_3 | links.flexoffers.com | 3 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | None |
86 | tier_3 | www.gousto.co.uk | 2 | 123-Reg Limited t/a 123-reg [Tag = 123-REG] | n | None |
87 | tier_3 | search.uk.etiquette.it | 2 | Algorithmedia S.r.l. | n | None |
88 | tier_3 | www.theyseemerollin.net | 2 | Amazon Registrar, Inc. | NS-1512.AWSDNS-61.ORG | Identity Protection Service |
89 | tier_3 | www.amazon.com | 1 | MarkMonitor, Inc. | NS1.AMZNDNS.CO.UK | Amazon Technologies, Inc. |
90 | tier_3 | www.marksandspencer.com | 1 | IP Twins SAS | A1-211.AKAM.NET | REDACTED FOR PRIVACY |
91 | tier_3 | www.thomann.de | 1 | None | dns1.netzmarkt.de | None |
92 | tier_3 | www.cheapoair.com | 1 | GoDaddy.com, LLC | A1-58.AKAM.NET | None |
93 | tier_3 | www.safestore.co.uk | 1 | CSC Corporate Domains, Inc [Tag = CSC-CORP-DOMAINS] | n | None |
94 | tier_3 | www.squarespace.com | 1 | MarkMonitor Inc. | DNS1.P03.NSONE.NET | None |
95 | tier_3 | uk.match.com | 1 | MarkMonitor Inc. | DNS1.P01.NSONE.NET | None |
96 | tier_3 | www.leovegas.com | 1 | PortsGroup AB | NS-CLOUD-D1.GOOGLEDOMAINS.COM | LeoVegas Gaming Ltd |
97 | tier_3 | www.skechers.com | 1 | MarkMonitor, Inc. | ALAN.NS.CLOUDFLARE.COM | Skechers USA |
98 | tier_3 | www.edinburghairport.com | 1 | Cloudflare, Inc. | MARIA.NS.CLOUDFLARE.COM | DATA REDACTED |
99 | tier_3 | www.marriott.com | 1 | CSC CORPORATE DOMAINS, INC. | EUR1.AKAM.NET | Marriott International, Inc. |
100 | tier_3 | www.theproteinworks.com | 1 | GoDaddy.com, LLC | CONNIE.NS.CLOUDFLARE.COM | None |
101 | tier_3 | pages.bitdefender.com | 1 | Register.com, Inc. | PDNS210.ULTRADNS.BIZ | None |
102 | tier_3 | bforldonate.com | 1 | NAMECHEAP INC | DNS1.REGISTRAR-SERVERS.COM | Privacy service provided by Withheld for Privacy ehf |
103 | tier_3 | poshmark.com | 1 | GoDaddy.com, LLC | NS-1517.AWSDNS-61.ORG | None |
104 | tier_3 | rpa23.sayasdf.com | 1 | GoDaddy.com, LLC | NS37.DOMAINCONTROL.COM | None |
105 | tier_3 | www.vapedinnerlady.com | 1 | 123-Reg Limited | DILBERT.NS.CLOUDFLARE.COM | None |
106 | tier_3 | www.fragrancex.com | 1 | GoDaddy.com, LLC | IGOR.NS.CLOUDFLARE.COM | None |
107 | tier_3 | rdtds.net | 1 | Registrar of domain names REG.RU LLC | NS1.REG.RU | None |
108 | tier_3 | quickbooks.intuit.com | 1 | MarkMonitor, Inc. | A1-182.AKAM.NET | Intuit Inc. |
109 | tier_3 | www.farfetch.com | 1 | LEXSYNERGY LIMITED | NS0.DNSMADEEASY.COM | None |
ip | city | region | org | postal | country_name | isEU | tier | count | anycast | hostname | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 93.115.28.104 | Vilnius | Vilnius | AS16125 UAB Cherry Servers | 01001 | Lithuania | True | tier_1 | 110 | nan | nan |
1 | 172.98.192.36 | Atlanta | Georgia | AS31863 Centrilogic, Inc. | 30302 | United States | False | tier_1 | 2 | nan | nan |
2 | 95.211.75.10 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 2 | nan | nan |
3 | 162.210.195.111 | Washington | Washington, D.C. | AS30633 Leaseweb USA, Inc. | 20004 | United States | False | tier_1 | 2 | nan | nan |
4 | 95.211.75.25 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 1 | nan | nan |
5 | 172.98.192.35 | Atlanta | Georgia | AS31863 Centrilogic, Inc. | 30302 | United States | False | tier_1 | 1 | nan | nan |
6 | 95.211.189.152 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 1 | nan | nan |
7 | 95.211.75.26 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 1 | nan | nan |
8 | 199.59.243.224 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 64 | True | nan |
9 | 52.117.247.211 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 49 | nan | d3.f7.7534.ip4.static.sl-reverse.com |
10 | 69.192.67.191 | Amsterdam | North Holland | AS16625 Akamai Technologies, Inc. | 1072 | Netherlands | True | tier_3 | 12 | nan | a69-192-67-191.deploy.static.akamaitechnologies.com |
11 | 192.99.158.241 | Beauharnois | Quebec | AS16276 OVH SAS | J6N | Canada | False | tier_2 | 22 | nan | ip241.ip-192-99-158.net |
12 | 5.79.68.236 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_2 | 15 | nan | nan |
13 | 69.192.70.102 | Amsterdam | North Holland | AS16625 Akamai Technologies, Inc. | 1072 | Netherlands | True | tier_2 | 14 | nan | a69-192-70-102.deploy.static.akamaitechnologies.com |
14 | 104.17.163.92 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_2 | 9 | True | nan |
15 | 89.207.16.75 | Amsterdam | North Holland | AS41041 Conversant LLC | 1109 | Netherlands | True | tier_2 | 9 | nan | nan |
16 | 5.9.85.57 | Falkenstein | Saxony | AS24940 Hetzner Online GmbH | 08223 | Germany | True | tier_2 | 7 | nan | static.57.85.9.5.clients.your-server.de |
17 | 104.17.164.92 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_2 | 6 | True | nan |
18 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 64 | nan | nan |
19 | 69.192.67.191 | Amsterdam | North Holland | AS16625 Akamai Technologies, Inc. | 1072 | Netherlands | True | tier_3 | 12 | nan | a69-192-67-191.deploy.static.akamaitechnologies.com |
20 | 50.97.244.203 | Mountain View | California | AS36351 SoftLayer Technologies Inc. | 94035 | United States | False | tier_3 | 4 | nan | clkmg.com |
21 | 184.154.10.250 | Chicago | Illinois | AS32475 SingleHop LLC | 60666 | United States | False | tier_3 | 4 | nan | server04.com-2.mobi |
22 | 50.97.212.250 | Mountain View | California | AS36351 SoftLayer Technologies Inc. | 94035 | United States | False | tier_3 | 3 | nan | fa.d4.6132.ip4.static.sl-reverse.com |
23 | 34.245.98.228 | Dublin | Leinster | AS16509 Amazon.com, Inc. | D16 | Ireland | True | tier_3 | 2 | nan | ec2-34-245-98-228.eu-west-1.compute.amazonaws.com |
24 | 104.18.25.194 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | True | nan |
25 | 34.149.124.125 | Kansas City | Missouri | AS396982 Google LLC | 64106 | United States | False | tier_3 | 2 | True | 125.124.149.34.bc.googleusercontent.com |
26 | 104.17.71.53 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | True | nan |
27 | 13.224.103.99 | Zürich | Zurich | AS16509 Amazon.com, Inc. | 8000 | Switzerland | False | tier_3 | 1 | nan | server-13-224-103-99.zrh50.r.cloudfront.net |
Zhouhan Chen, zc1245@nyu.edu, Personal Website