Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 198 | 192 | 454 | 0 | 0 | 2023-08-06 | 2023-08-06__207.244.67.215__iphone |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | l80t.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
1 | tier_1 | santafetradingpost.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
2 | tier_1 | admin.sealefuneralhome.com | 1 | EPAG DOMAINSERVICES GmbH | NS1.COMMONMX.COM | Not Disclosed |
3 | tier_1 | autodiscover.rbsr.com.ph | 1 | None | None | None |
4 | tier_1 | www.firstbanks.co | 1 | Key-Systems GmbH | ns1.commonmx.com | c/o whoisproxy.com |
5 | tier_1 | kibana.goobox.io | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
6 | tier_1 | admin.navarra.ph | 1 | None | None | None |
7 | tier_1 | www.futuresafe.ph | 1 | None | None | None |
8 | tier_1 | www.whm.nutritech.ph | 1 | None | None | None |
9 | tier_1 | xinyazhoubocaiwang.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
10 | tier_1 | liaoyulechengbocai.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
11 | tier_1 | prensame.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
12 | tier_1 | p7ft.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
13 | tier_1 | wenku.snigfies.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
14 | tier_1 | huangshiyulechengdubowangzhan.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
15 | tier_1 | sinhra.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
16 | tier_1 | mail1.unstoken.mk-ads.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
17 | tier_1 | cpcalendars.epost.ph | 1 | None | None | None |
18 | tier_1 | www.juggsandjunk.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
19 | tier_1 | www.iifp.ancpw.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
20 | tier_1 | www.9fzg.ancpw.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
21 | tier_1 | www.52ej.ancpw.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
22 | tier_1 | discod.me | 1 | Key-Systems GmbH | None | None |
23 | tier_1 | cpcalendars.b-meg.ph | 1 | None | None | None |
24 | tier_1 | ve9jmzv.ancpw.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
25 | tier_1 | taiyangchengzhuwang.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
26 | tier_1 | pp.tenantlandlordratings.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
27 | tier_1 | www.unitedairlnes.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
28 | tier_1 | ww25.adloan.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
29 | tier_1 | mx7.atstro.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
30 | tier_1 | f9o0.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
31 | tier_1 | alruknmedicalcenter.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
32 | tier_1 | wxqdqh.qipai.ph | 1 | None | None | None |
33 | tier_1 | binhaiwanguojizhenren.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
34 | tier_1 | j657.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
35 | tier_1 | webmail.wvcoop.org.ph | 1 | None | None | None |
36 | tier_1 | dpl-ttycm25.cruznet.ph | 1 | None | None | None |
37 | tier_1 | www.scqt.ancpw.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
38 | tier_1 | 4mmm.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
39 | tier_1 | benchiyulechengbocaiwangzhan.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
40 | tier_2 | myckdom.com | 23 | NameCheap, Inc. | NS10.DIGICERTDNS.COM | None |
41 | tier_2 | phanu-swc.com | 20 | Amazon Registrar, Inc. | NS-1511.AWSDNS-60.ORG | Identity Protection Service |
42 | tier_2 | dnavexch.com | 17 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dnavexch.com |
43 | tier_2 | p274639.myckdom.com | 17 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
44 | tier_2 | ww1.afbtc.com | 9 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
45 | tier_2 | www.mysolutions123.com | 8 | GoDaddy.com, LLC | ELLE.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
46 | tier_2 | p185689.myckdom.com | 6 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
47 | tier_2 | karafutem.com | 5 | NAMECHEAP INC | DNS1.REGISTRAR-SERVERS.COM | Privacy service provided by Withheld for Privacy ehf |
48 | tier_2 | qvikar.com | 5 | Sea Wasp, LLC | NS2789.HOSTGATOR.COM | Jewella Privacy LLC Privacy ID# 1016679 |
49 | tier_2 | 1yyhe.voluumtrk.com | 3 | DYNADOT LLC | NS-1310.AWSDNS-35.ORG | Super Privacy Service LTD c/o Dynadot |
50 | tier_2 | deffield-funuals.com | 3 | Amazon Registrar, Inc. | NS-1327.AWSDNS-37.ORG | Identity Protection Service |
51 | tier_2 | affiliate.iqbroker.com | 3 | 101domain GRS Limited | NS-1084.AWSDNS-07.ORG | None |
52 | tier_2 | r.bttn.io | 3 | GANDI SAS | ns-1305.awsdns-35.org | None |
53 | tier_2 | q1.quotes.com | 3 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
54 | tier_2 | lookandfind.me | 3 | NAMECHEAP INC | None | None |
55 | tier_2 | api.yadore.com | 3 | RegistryGate GmbH | NS-1451.AWSDNS-53.ORG | REDACTED FOR PRIVACY |
56 | tier_2 | api.kelkoogroup.net | 3 | MarkMonitor, Inc. | NS1.MARKMONITOR.COM | Jamplant Limited |
57 | tier_2 | ww1.linked.name | 3 | None | None | None |
58 | tier_2 | app.appsflyer.com | 2 | GoDaddy.com, LLC | NS-1429.AWSDNS-50.ORG | Domains By Proxy, LLC |
59 | tier_2 | searchwings.org | 2 | Key-Systems GmbH | cory.ns.cloudflare.com | Smart Influence GmbH |
60 | tier_2 | trk.ai-adsolutions.com | 2 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
61 | tier_2 | r.srvtrck.com | 2 | GoDaddy.com, LLC | BEN.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
62 | tier_2 | tracking.vcommission.com | 2 | PDR Ltd. d/b/a PublicDomainRegistry.com | MARK.NS.CLOUDFLARE.COM | vCommission Media Private Limited |
63 | tier_2 | www.awin1.com | 2 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
64 | tier_2 | myprotein.bttn.io | 2 | GANDI SAS | ns-1305.awsdns-35.org | None |
65 | tier_2 | ifigent.com | 2 | ABOVE.COM PTY LTD. | NS1.TRELLIAN.COM | None |
66 | tier_2 | my.toruftuiov.com | 2 | Danesco Trading Ltd. | NS1.TOPDNS.ME | None |
67 | tier_2 | ww2.affinity.net | 2 | DOMAINPEOPLE, INC. | NS-1183.AWSDNS-19.ORG | WhoisProtector Inc. |
68 | tier_2 | www.kqzyfj.com | 2 | MarkMonitor, Inc. | ASIA9.AKAM.NET | Conversant, Inc. |
69 | tier_2 | cj.dotomi.com | 2 | GoDaddy.com, LLC | ASIA9.AKAM.NET | Domains By Proxy, LLC |
70 | tier_2 | www.emjcd.com | 2 | MarkMonitor Inc. | ASIA9.AKAM.NET | None |
71 | tier_2 | track.flexlinkspro.com | 2 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
72 | tier_2 | ww1.snigfies.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
73 | tier_2 | prf.hn | 1 | Gandi SAS | edns1.ultradns.com | None |
74 | tier_2 | expedia.bttn.io | 1 | GANDI SAS | ns-1305.awsdns-35.org | None |
75 | tier_2 | offer.5kfunds.com | 1 | NAMECHEAP INC | NS-137.AWSDNS-17.COM | Privacy service provided by Withheld for Privacy ehf |
76 | tier_2 | ww1.alruknmedicalcenter.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
77 | tier_2 | api.apientry.com | 1 | GoDaddy.com, LLC | ELMA.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
78 | tier_2 | uuid-a.akamaihd.net | 1 | MarkMonitor, Inc. | AX0.AKAMAISTREAM.NET | Akamai Technologies, Inc. |
79 | tier_2 | betterbatchbrands.com | 1 | NAMECHEAP INC | NS-1336.AWSDNS-39.ORG | Privacy service provided by Withheld for Privacy ehf |
80 | tier_3 | iyfbodn.com | 34 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
81 | tier_3 | pointzio.com | 8 | Launchpad, Inc. (HostGator) | NS6467.HOSTGATOR.COM | Privacy Protect, LLC (PrivacyProtect.org) |
82 | tier_3 | de.srchprices.com | 6 | GoDaddy.com, LLC | NS59.DOMAINCONTROL.COM | None |
83 | tier_3 | www.clkmg.com | 6 | GoDaddy.com, LLC | NS1.SOFTLAYER.COM | None |
84 | tier_3 | rpa23.sayasdf.com | 4 | GoDaddy.com, LLC | NS37.DOMAINCONTROL.COM | None |
85 | tier_3 | movietime-unlimited.com | 3 | Amazon Registrar, Inc. | NORM.NS.CLOUDFLARE.COM | Identity Protection Service |
86 | tier_3 | mx-go.kelkoogroup.net | 3 | MarkMonitor, Inc. | NS1.MARKMONITOR.COM | Jamplant Limited |
87 | tier_3 | apps.apple.com | 2 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
88 | tier_3 | www.myprotein.com | 2 | MarkMonitor Inc. | DNS1.P05.NSONE.NET | None |
89 | tier_3 | von22.sayasdf.com | 2 | GoDaddy.com, LLC | NS37.DOMAINCONTROL.COM | None |
90 | tier_3 | simcast.com | 2 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
91 | tier_3 | bef23.sayasdf.com | 2 | GoDaddy.com, LLC | NS37.DOMAINCONTROL.COM | None |
92 | tier_3 | iosvpndefender.com | 2 | Danesco Trading Ltd. | DREW.NS.CLOUDFLARE.COM | None |
93 | tier_3 | links.flexoffers.com | 2 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | None |
94 | tier_3 | land.bttn.io | 1 | GANDI SAS | ns-1305.awsdns-35.org | None |
95 | tier_3 | www.5kfunds.com | 1 | NAMECHEAP INC | NS-137.AWSDNS-17.COM | Privacy service provided by Withheld for Privacy ehf |
96 | tier_3 | www.guns.com | 1 | Network Solutions, LLC | A1-67.AKAM.NET | None |
97 | tier_3 | track.tychon.bid | 1 | None | None | None |
98 | tier_3 | authorityanswers.com | 1 | DropCatch.com 926 LLC | NS-1508.AWSDNS-60.ORG | None |
99 | tier_3 | streamtv.directv.com | 1 | CSC CORPORATE DOMAINS, INC. | NS5.ATTDNS.NET | DIRECTV, Inc. |
100 | tier_3 | app.appsflyer.com | 1 | GoDaddy.com, LLC | NS-1429.AWSDNS-50.ORG | None |
101 | tier_3 | www.kay.com | 1 | CSC CORPORATE DOMAINS, INC. | A1-183.AKAM.NET | Sterling Jewelers, Inc. |
102 | tier_3 | www.credy.com.mx | 1 | GoDaddy.com | ns1.nss.ee | None |
103 | tier_3 | myfood.ltd | 1 | None | None | None |
104 | tier_3 | simcast.com_LOOP_1 | 1 | None | None | None |
105 | tier_3 | www.samsung.com | 1 | Whois Corp. | DNS-AWSKR1.SAMSUNG.COM | None |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.148 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 54 | nan | nan |
1 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 31 | nan | nan |
2 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 25 | nan | nan |
3 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 21 | nan | nan |
4 | 45.79.222.138 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_1 | 5 | apple.parklogic.com | nan |
5 | 185.107.56.198 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 4 | nan | nan |
6 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 3 | nan | nan |
7 | 172.93.103.102 | Piscataway | New Jersey | AS23470 ReliableSite.Net LLC | 08854 | United States | False | tier_1 | 1 | nan | nan |
8 | 207.244.67.214 | Washington | Washington, D.C. | AS30633 Leaseweb USA, Inc. | 20004 | United States | False | tier_1 | 1 | nan | nan |
9 | 185.107.56.200 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 1 | nan | nan |
10 | 52.117.247.211 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 46 | d3.f7.7534.ip4.static.sl-reverse.com | nan |
11 | 199.59.243.224 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 34 | nan | True |
12 | 192.99.158.241 | Beauharnois | Quebec | AS16276 OVH SAS | J6N | Canada | False | tier_2 | 17 | ip241.ip-192-99-158.net | nan |
13 | 3.220.163.124 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 11 | ec2-3-220-163-124.compute-1.amazonaws.com | nan |
14 | 50.19.239.22 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 9 | ec2-50-19-239-22.compute-1.amazonaws.com | nan |
15 | 3.70.16.242 | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60306 | Germany | True | tier_2 | 8 | ec2-3-70-16-242.eu-central-1.compute.amazonaws.com | nan |
16 | 89.207.16.75 | Amsterdam | North Holland | AS41041 Conversant LLC | 1109 | Netherlands | True | tier_2 | 6 | nan | nan |
17 | 5.9.85.57 | Falkenstein | Saxony | AS24940 Hetzner Online GmbH | 08223 | Germany | True | tier_2 | 5 | static.57.85.9.5.clients.your-server.de | nan |
18 | 192.254.234.214 | Provo | Utah | AS46606 Unified Layer | 84601 | United States | False | tier_2 | 5 | 192-254-234-214.unifiedlayer.com | nan |
19 | 18.192.108.151 | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60306 | Germany | True | tier_2 | 3 | ec2-18-192-108-151.eu-central-1.compute.amazonaws.com | nan |
20 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 34 | nan | nan |
21 | 192.254.234.106 | Provo | Utah | AS46606 Unified Layer | 84601 | United States | False | tier_3 | 8 | newlifehardware.com | nan |
22 | 162.243.10.151 | New York City | New York | AS14061 DigitalOcean, LLC | 10011 | United States | False | tier_3 | 8 | nan | nan |
23 | 52.6.215.177 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_3 | 6 | ec2-52-6-215-177.compute-1.amazonaws.com | nan |
24 | 50.97.212.250 | Mountain View | California | AS36351 SoftLayer Technologies Inc. | 94035 | United States | False | tier_3 | 3 | fa.d4.6132.ip4.static.sl-reverse.com | nan |
25 | 50.97.244.203 | Mountain View | California | AS36351 SoftLayer Technologies Inc. | 94035 | United States | False | tier_3 | 3 | clkmg.com | nan |
26 | 95.211.116.26 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_3 | 3 | dc1-ecs-pub-mx-vip.kelkoo.com | nan |
27 | 72.246.168.25 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 2 | a72-246-168-25.deploy.static.akamaitechnologies.com | nan |
28 | 188.114.97.3 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
29 | 188.114.96.3 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
Zhouhan Chen, zc1245@nyu.edu, Personal Website