Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 180 | 176 | 418 | 0 | 0 | 2023-07-29 | 2023-07-29__37.48.65.149__iphone |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | csi1.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
1 | tier_1 | admin.huanfyans.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
2 | tier_1 | 8ix9hu.11-news.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
3 | tier_1 | mazda.auto--keys.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
4 | tier_1 | admin.carnivalagentsrewards.com | 1 | EPAG DOMAINSERVICES GmbH | NS1.COMMONMX.COM | Not Disclosed |
5 | tier_1 | swak.ph | 1 | None | None | None |
6 | tier_1 | demo.hefezopf.com | 1 | INWX GmbH | NS1.COMMONMX.COM | Blastmaker LLC |
7 | tier_1 | pd4c22.11-news.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
8 | tier_1 | www.simplydemi.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
9 | tier_1 | admin.dba.ph | 1 | None | None | None |
10 | tier_1 | autodiscover.pfibi.com.ph | 1 | None | None | None |
11 | tier_1 | baijialezenmakanluxian.jn.adhcz.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
12 | tier_1 | ww12.jcdash.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
13 | tier_1 | bitcoins.com.ph | 1 | None | None | None |
14 | tier_1 | hostmaster.cruzcomm.ph | 1 | None | None | None |
15 | tier_1 | dbsn.nl.siterankd.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
16 | tier_1 | providentplans.com.ph | 1 | None | None | None |
17 | tier_1 | fbrx.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
18 | tier_1 | theweatherchannle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
19 | tier_1 | 75.125.2-218.opticaljungle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
20 | tier_1 | vglip.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
21 | tier_1 | robotbg.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
22 | tier_1 | mail.today-news.co | 1 | Key-Systems GmbH | ns1.commonmx.com | c/o whoisproxy.com |
23 | tier_1 | letiantangyulechengdubo.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
24 | tier_1 | www.lovelyerediano.negosyou.ph | 1 | None | None | None |
25 | tier_1 | paypal.priasejati.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
26 | tier_1 | cpcalendars.munchbags.ph | 1 | None | None | None |
27 | tier_1 | www.hydraruzxnew4a.onion.ph | 1 | None | None | None |
28 | tier_1 | vteschecklist.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
29 | tier_1 | 7044hu.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
30 | tier_1 | webdisk.autoinsurance.com.ph | 1 | None | None | None |
31 | tier_1 | dev.ydraru.onion.ph | 1 | None | None | None |
32 | tier_1 | upload.mizbart.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
33 | tier_1 | fk6m.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
34 | tier_1 | 67-15-47-174.opticaljungle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
35 | tier_1 | www.pistangpelikulangpilipino.ph | 1 | None | None | None |
36 | tier_1 | www.avapingape.ph | 1 | None | None | None |
37 | tier_1 | www.mushroom.ph | 1 | None | None | None |
38 | tier_1 | 75.125.2-1.opticaljungle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
39 | tier_1 | shengdaguojizuqiu.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
40 | tier_2 | myckdom.com | 15 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
41 | tier_2 | dnavexch.com | 12 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dnavexch.com |
42 | tier_2 | p274639.myckdom.com | 12 | NameCheap, Inc. | NS10.DIGICERTDNS.COM | None |
43 | tier_2 | www.mysolutions123.com | 10 | GoDaddy.com, LLC | ELLE.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
44 | tier_2 | ww1.onion.ph | 7 | None | None | None |
45 | tier_2 | phanu-swc.com | 5 | Amazon Registrar, Inc. | NS-1511.AWSDNS-60.ORG | Identity Protection Service |
46 | tier_2 | ww1.opticaljungle.com | 5 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
47 | tier_2 | ww1.linked.name | 4 | None | None | None |
48 | tier_2 | p185689.myckdom.com | 3 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
49 | tier_2 | qvikar.com | 3 | Sea Wasp, LLC | NS2789.HOSTGATOR.COM | Jewella Privacy LLC Privacy ID# 1016679 |
50 | tier_2 | ww1.adhcz.com | 3 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
51 | tier_2 | trackme.wdk18.com | 2 | Key-Systems GmbH | POPPY.NS.CLOUDFLARE.COM | c/o whoisproxy.com |
52 | tier_2 | q1.quotes.com | 2 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
53 | tier_2 | track.flexlinkspro.com | 2 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
54 | tier_2 | clickserve.dartsearch.net | 2 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
55 | tier_2 | ad.doubleclick.net | 2 | MarkMonitor Inc. | NS1.GOOGLE.COM | None |
56 | tier_2 | adservice.google.com | 2 | MarkMonitor Inc. | NS1.GOOGLE.COM | None |
57 | tier_2 | dbc.pathroutes.com | 2 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
58 | tier_2 | ww1.afbtc.com | 2 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
59 | tier_2 | 11165151.searchiqnet.com | 2 | GoDaddy.com, LLC | NS57.DOMAINCONTROL.COM | Domains By Proxy, LLC |
60 | tier_2 | ww1.rc-welt.com | 2 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
61 | tier_2 | ww2.affinity.net | 2 | DomainPeople, Inc. | NS-1183.AWSDNS-19.ORG | None |
62 | tier_2 | ww1.auto--keys.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
63 | tier_2 | ww1.pfibi.com.ph | 1 | None | None | None |
64 | tier_2 | ww1.bitcoins.com.ph | 1 | None | None | None |
65 | tier_2 | trk.ai-adsolutions.com | 1 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
66 | tier_2 | trk.mypublicads.com | 1 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
67 | tier_2 | www.linkhaitao.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | VIP3.ALIDNS.COM | None |
68 | tier_2 | track.webgains.com | 1 | 123-Reg Limited | DOM.NS.CLOUDFLARE.COM | Webgains Ltd |
69 | tier_2 | ww1.providentplans.com.ph | 1 | None | None | None |
70 | tier_2 | ww1.vglip.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
71 | tier_2 | btprmnav.com | 1 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of btprmnav.com |
72 | tier_2 | c.adclickthru.net | 1 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
73 | tier_2 | 11165399.searchiqnet.com | 1 | GoDaddy.com, LLC | NS57.DOMAINCONTROL.COM | None |
74 | tier_2 | ww1.avapingape.ph | 1 | None | None | None |
75 | tier_2 | ww1.dermazole.ph | 1 | None | None | None |
76 | tier_2 | ww1.hrmtuq.ph | 1 | None | None | None |
77 | tier_2 | ww1.vogele.at | 1 | EPAG Domainservices GmbH ( https://nic.at/registrar/372 ) | None | None |
78 | tier_2 | ww1.tenerife-canarie.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
79 | tier_2 | ww1.homeplate.ph | 1 | None | None | None |
80 | tier_3 | iyfbodn.com | 58 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | None |
81 | tier_3 | pointzio.com | 10 | Launchpad.com Inc. | NS6467.HOSTGATOR.COM | None |
82 | tier_3 | www.clkmg.com | 5 | GoDaddy.com, LLC | NS1.SOFTLAYER.COM | None |
83 | tier_3 | rpa23.sayasdf.com | 2 | GoDaddy.com, LLC | NS37.DOMAINCONTROL.COM | None |
84 | tier_3 | links.flexoffers.com | 2 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | None |
85 | tier_3 | www.vapedinnerlady.com | 1 | 123-Reg Limited | DILBERT.NS.CLOUDFLARE.COM | None |
86 | tier_3 | www.volvocars.com | 1 | CSC CORPORATE DOMAINS, INC. | UDNS1.CSCDNS.NET | VolvoCarCorporation |
87 | tier_3 | mbest.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
88 | tier_3 | www.etsy.com | 1 | MarkMonitor, Inc. | DNS1.P03.NSONE.NET | Etsy, Inc. |
89 | tier_3 | www.vividseats.com | 1 | GoDaddy.com, LLC | TIM.NS.CLOUDFLARE.COM | None |
90 | tier_3 | movietime-unlimited.com | 1 | Amazon Registrar, Inc. | NORM.NS.CLOUDFLARE.COM | Identity Protection Service |
91 | tier_3 | simcast.com | 1 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
92 | tier_3 | shopping-deals-today.com | 1 | GoDaddy.com, LLC | NS-1211.AWSDNS-23.ORG | None |
93 | tier_3 | www.nissanusa.com | 1 | MarkMonitor, Inc. | EDNS2.ULTRADNS.BIZ | Nissan North America, Inc |
94 | tier_3 | dnavexch.com | 1 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dnavexch.com |
95 | tier_3 | www.kiwi.com | 1 | GoDaddy Online Services Cayman Islands Ltd. | FATTOUCHE.NS.CLOUDFLARE.COM | None |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.148 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 47 | nan | nan |
1 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 45 | nan | nan |
2 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 39 | nan | nan |
3 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 26 | nan | nan |
4 | 185.107.56.199 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 5 | nan | nan |
5 | 185.107.56.198 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 3 | nan | nan |
6 | 185.107.56.200 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 3 | nan | nan |
7 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 2 | nan | nan |
8 | 45.79.222.138 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_1 | 1 | apple.parklogic.com | nan |
9 | 207.244.67.216 | Washington | Washington, D.C. | AS30633 Leaseweb USA, Inc. | 20004 | United States | False | tier_1 | 1 | nan | nan |
10 | 199.59.243.224 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 58 | nan | True |
11 | 52.117.247.211 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 30 | d3.f7.7534.ip4.static.sl-reverse.com | nan |
12 | 192.99.158.241 | Beauharnois | Quebec | AS16276 OVH SAS | J6N | Canada | False | tier_2 | 13 | ip241.ip-192-99-158.net | nan |
13 | 3.70.16.242 | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60306 | Germany | True | tier_2 | 10 | ec2-3-70-16-242.eu-central-1.compute.amazonaws.com | nan |
14 | 209.132.243.15 | Los Angeles | California | AS7296 Alchemy Communications, Inc. | 90009 | United States | False | tier_2 | 8 | nan | nan |
15 | 192.254.234.214 | Provo | Utah | AS46606 Unified Layer | 84601 | United States | False | tier_2 | 3 | 192-254-234-214.unifiedlayer.com | nan |
16 | 50.19.239.22 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 3 | ec2-50-19-239-22.compute-1.amazonaws.com | nan |
17 | 104.21.58.228 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_2 | 2 | nan | True |
18 | 3.220.163.124 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 2 | ec2-3-220-163-124.compute-1.amazonaws.com | nan |
19 | 52.57.75.87 | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60306 | Germany | True | tier_2 | 2 | ec2-52-57-75-87.eu-central-1.compute.amazonaws.com | nan |
20 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 58 | nan | nan |
21 | 192.254.234.106 | Provo | Utah | AS46606 Unified Layer | 84601 | United States | False | tier_3 | 10 | newlifehardware.com | nan |
22 | 50.97.212.250 | Mountain View | California | AS36351 SoftLayer Technologies Inc. | 94035 | United States | False | tier_3 | 3 | fa.d4.6132.ip4.static.sl-reverse.com | nan |
23 | 50.97.244.203 | Mountain View | California | AS36351 SoftLayer Technologies Inc. | 94035 | United States | False | tier_3 | 2 | clkmg.com | nan |
24 | 162.243.10.151 | New York City | New York | AS14061 DigitalOcean, LLC | 10011 | United States | False | tier_3 | 2 | nan | nan |
25 | 104.17.207.71 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
26 | 23.227.38.74 | Ottawa | Ontario | AS13335 Cloudflare, Inc. | K2P | Canada | False | tier_3 | 1 | shops.myshopify.com | True |
27 | 23.9.252.107 | Mumbai | Maharashtra | AS16625 Akamai Technologies, Inc. | 400076 | India | False | tier_3 | 1 | a23-9-252-107.deploy.static.akamaitechnologies.com | nan |
28 | 184.30.210.6 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 1 | a184-30-210-6.deploy.static.akamaitechnologies.com | nan |
29 | 23.35.228.22 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 1 | a23-35-228-22.deploy.static.akamaitechnologies.com | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website