Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 348 | 342 | 748 | 0 | 0 | 2023-08-07 | 2023-08-07__37.48.65.149__safari |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | 1852977.rc-welt.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
1 | tier_1 | fenix.wow3.info | 1 | Key-Systems GmbH | ns1.commonmx.com | c/o whoisproxy.com |
2 | tier_1 | webmail.wallor.co | 1 | Key-Systems GmbH | ns1.commonmx.com | EdenMedia |
3 | tier_1 | bitcoins.com.ph | 1 | None | None | None |
4 | tier_1 | mx.fincahotellaesperanza.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
5 | tier_1 | nold.blog.onion.ph | 1 | None | None | None |
6 | tier_1 | webdisk.scorindustries.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
7 | tier_1 | cre8dev.netkara.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
8 | tier_1 | boyingyulecheng.linked.name | 1 | None | None | None |
9 | tier_1 | zuqiupanwang.linked.name | 1 | None | None | None |
10 | tier_1 | kaixuanmenduchangyouxi.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
11 | tier_1 | hydrazruzxpnew4af.onion.ph | 1 | None | None | None |
12 | tier_1 | xianjinwangshizhendema.linked.name | 1 | None | None | None |
13 | tier_1 | www.magento.vtv4jacgf33n3zp6.onion.ph | 1 | None | None | None |
14 | tier_1 | hydraruzdoc4tipg.onion.ph | 1 | None | None | None |
15 | tier_1 | ssgm.it.url4it.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
16 | tier_1 | dsa-foren.de.siterankd.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
17 | tier_1 | www.magento.hydraruzxpnew.onion.ph | 1 | None | None | None |
18 | tier_1 | admin.t4tw.info | 1 | Key-Systems GmbH | ns1.commonmx.com | ['EdenMedia', 'REDACTED FOR PRIVACY'] |
19 | tier_1 | 67-15-98-114.opticaljungle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
20 | tier_1 | 67-15-253-189.opticaljungle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
21 | tier_1 | 209-62-37-249.opticaljungle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
22 | tier_1 | root.cowsex.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
23 | tier_1 | 67-15-254-113.opticaljungle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
24 | tier_1 | hanimee.tv | 1 | None | None | None |
25 | tier_1 | mail.realhugs.com.ph | 1 | None | None | None |
26 | tier_1 | kyshtym.mnezvonili.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
27 | tier_1 | ww25.cherifathmanpromotion.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
28 | tier_1 | dev.ydraru.onion.ph | 1 | None | None | None |
29 | tier_1 | 70.87.28-53.opticaljungle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
30 | tier_1 | www.mushroom.ph | 1 | None | None | None |
31 | tier_1 | m.hydrauzxpnew4af.onion.ph | 1 | None | None | None |
32 | tier_1 | famcor.arka.ph | 1 | None | None | None |
33 | tier_1 | progresstherapy.ph | 1 | None | None | None |
34 | tier_1 | www.msft.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
35 | tier_1 | wuxingguojizhenrendubo.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
36 | tier_1 | blogs.worldadultpages.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
37 | tier_1 | health.sabayagazine.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
38 | tier_1 | www.geoplan.motopawn.ph | 1 | None | None | None |
39 | tier_1 | ww25.d.yxixia.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
40 | tier_2 | ww1.opticaljungle.com | 19 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
41 | tier_2 | ww1.onion.ph | 18 | None | None | None |
42 | tier_2 | btxxxnav.com | 16 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of btxxxnav.com |
43 | tier_2 | juk.linkapplied.com | 16 | GoDaddy Online Services Cayman Islands Ltd. | NS1.DNS43.ORG | Domains By Proxy, LLC |
44 | tier_2 | ww1.linked.name | 15 | None | None | None |
45 | tier_2 | 1496.bolipolk.xyz | 13 | Namecheap | NS11.CONSTELLIX.COM | Privacy service provided by Withheld for Privacy ehf |
46 | tier_2 | ww1.afbtc.com | 12 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
47 | tier_2 | ww1.adhcz.com | 10 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
48 | tier_2 | q1.quotes.com | 4 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
49 | tier_2 | ww1.rc-welt.com | 3 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
50 | tier_2 | track.flexlinkspro.com | 3 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
51 | tier_2 | www.awin1.com | 3 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
52 | tier_2 | s.click.aliexpress.com | 3 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
53 | tier_2 | campaign.aliexpress.com | 3 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
54 | tier_2 | 9489.bolipolk.xyz | 3 | NAMECHEAP INC | NS11.CONSTELLIX.COM | Privacy service provided by Withheld for Privacy ehf |
55 | tier_2 | 11165151.searchiqnet.com | 3 | GoDaddy.com, LLC | NS57.DOMAINCONTROL.COM | Domains By Proxy, LLC |
56 | tier_2 | ww1.arka.ph | 2 | None | None | None |
57 | tier_2 | ww1.chat957.com | 2 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
58 | tier_2 | ww1.solargard.com.ph | 2 | None | None | None |
59 | tier_2 | ww1.embol-sa.com | 2 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
60 | tier_2 | dnavexch.com | 2 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dnavexch.com |
61 | tier_2 | myckdom.com | 2 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
62 | tier_2 | p274639.myckdom.com | 2 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
63 | tier_2 | www.mysolutions123.com | 2 | GoDaddy.com, LLC | ELLE.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
64 | tier_2 | ww1.wow3.info | 1 | Key-Systems GmbH | ns1.commonmx.com | c/o whoisproxy.com |
65 | tier_2 | ww1.wallor.co | 1 | Key-Systems GmbH | ns1.commonmx.com | EdenMedia |
66 | tier_2 | ww1.bitcoins.com.ph | 1 | None | None | None |
67 | tier_2 | ww1.fincahotellaesperanza.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
68 | tier_2 | ww1.cowsex.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
69 | tier_2 | ww1.hanimee.tv | 1 | None | None | None |
70 | tier_2 | ww1.realhugs.com.ph | 1 | None | None | None |
71 | tier_2 | ww1.cherifathmanpromotion.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
72 | tier_2 | ww1.progresstherapy.ph | 1 | None | None | None |
73 | tier_2 | ww1.worldadultpages.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
74 | tier_2 | ww1.snmholdings.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
75 | tier_2 | ww1.justdandenow.com | 1 | EPAG DOMAINSERVICES GmbH | NS1.COMMONMX.COM | None |
76 | tier_2 | ww1.shopjustbasics.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
77 | tier_2 | ww1.xidveos.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
78 | tier_2 | ww1.magellan.com.ph | 1 | None | None | None |
79 | tier_2 | ww1.restogra.ph | 1 | None | None | None |
80 | tier_3 | iyfbodn.com | 177 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
81 | tier_3 | pbs.twimg.com | 15 | CSC CORPORATE DOMAINS, INC. | A.R06.TWTRDNS.NET | Twitter, Inc. |
82 | tier_3 | simcast.com | 4 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
83 | tier_3 | best.aliexpress.com | 2 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
84 | tier_3 | pointzio.com | 2 | Launchpad, Inc. (HostGator) | NS6467.HOSTGATOR.COM | Privacy Protect, LLC (PrivacyProtect.org) |
85 | tier_3 | couf.speedoffered.com | 1 | GoDaddy Online Services Cayman Islands Ltd. | NS1.DNS43.ORG | Domains By Proxy, LLC |
86 | tier_3 | ww2.affinity.net_LOOP_1 | 1 | None | None | None |
87 | tier_3 | www.volvocars.com | 1 | CSC CORPORATE DOMAINS, INC. | UDNS1.CSCDNS.NET | VolvoCarCorporation |
88 | tier_3 | www.skechers.com | 1 | MarkMonitor, Inc. | ALAN.NS.CLOUDFLARE.COM | Skechers USA |
89 | tier_3 | www.nissanusa.com | 1 | MarkMonitor Inc. | EDNS2.ULTRADNS.BIZ | None |
90 | tier_3 | mbest.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
91 | tier_3 | www.5kfunds.com | 1 | NAMECHEAP INC | NS-137.AWSDNS-17.COM | Privacy service provided by Withheld for Privacy ehf |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 71 | nan | nan |
1 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 62 | nan | nan |
2 | 37.48.65.148 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 45 | nan | nan |
3 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 36 | nan | nan |
4 | 185.107.56.198 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 14 | nan | nan |
5 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 13 | nan | nan |
6 | 185.107.56.200 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 11 | nan | nan |
7 | 185.107.56.199 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 9 | nan | nan |
8 | 45.79.222.138 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_1 | 5 | apple.parklogic.com | nan |
9 | 172.93.103.102 | Piscataway | New Jersey | AS23470 ReliableSite.Net LLC | 08854 | United States | False | tier_1 | 3 | nan | nan |
10 | 199.59.243.224 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 177 | nan | True |
11 | 192.99.158.241 | Beauharnois | Quebec | AS16276 OVH SAS | J6N | Canada | False | tier_2 | 18 | ip241.ip-192-99-158.net | nan |
12 | 66.195.197.27 | Wichita | Kansas | AS11402 Charlotte Colocation Center, LLc | 67201 | United States | False | tier_3 | 1 | nan | nan |
13 | 104.206.252.90 | New York City | New York | AS62904 Eonix Corporation | 10038 | United States | False | tier_2 | 16 | 90-252-206-104.staticrdns.eonix.net | nan |
14 | 23.210.122.250 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 3 | a23-210-122-250.deploy.static.akamaitechnologies.com | nan |
15 | 209.132.243.15 | Los Angeles | California | AS7296 Alchemy Communications, Inc. | 90009 | United States | False | tier_2 | 7 | nan | nan |
16 | 5.79.68.236 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_2 | 4 | nan | nan |
17 | 52.117.247.211 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 4 | d3.f7.7534.ip4.static.sl-reverse.com | nan |
18 | 92.123.148.9 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_2 | 3 | a92-123-148-9.deploy.static.akamaitechnologies.com | nan |
19 | 104.17.164.92 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_2 | 2 | nan | True |
20 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 177 | nan | nan |
21 | 93.184.220.70 | Dźwirzyno | West Pomerania | AS15133 Edgecast Inc. | 78-100 | Poland | True | tier_3 | 7 | nan | True |
22 | 146.75.120.159 | Frankfurt am Main | Hesse | AS54113 Fastly, Inc. | 60306 | Germany | True | tier_3 | 5 | nan | nan |
23 | 45.79.244.12 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_3 | 4 | nb-45-79-244-12.an.nodebalancer.linode.com | nan |
24 | 192.229.233.50 | Culver City | California | AS15133 Edgecast Inc. | 90094 | United States | False | tier_3 | 3 | nan | nan |
25 | 23.210.122.250 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 3 | a23-210-122-250.deploy.static.akamaitechnologies.com | nan |
26 | 192.254.234.106 | Provo | Utah | AS46606 Unified Layer | 84601 | United States | False | tier_3 | 2 | newlifehardware.com | nan |
27 | 66.195.197.27 | Wichita | Kansas | AS11402 Charlotte Colocation Center, LLc | 67201 | United States | False | tier_3 | 1 | nan | nan |
28 | 178.162.228.7 | Frankfurt am Main | Hesse | AS28753 Leaseweb Deutschland GmbH | 60306 | Germany | True | tier_3 | 1 | hosted-by.leaseweb.com | nan |
29 | 23.37.58.248 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 1 | a23-37-58-248.deploy.static.akamaitechnologies.com | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website