Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 285 | 287 | 922 | 0 | 0 | 2023-08-16 | 2023-08-16__37.48.65.149__iphone |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | ww25.877chicago.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
1 | tier_1 | alumnodigital.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
2 | tier_1 | navarro.alan.ph | 1 | None | None | None |
3 | tier_1 | j8qv.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
4 | tier_1 | 44kh.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
5 | tier_1 | g8x5.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
6 | tier_1 | platinoqsquien.com.siterankd.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
7 | tier_1 | gjvi.ph | 1 | None | None | None |
8 | tier_1 | www.demo.kpynyvym6xqi7wz2.onion.ph | 1 | None | None | None |
9 | tier_1 | primmero.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
10 | tier_1 | www.jobcenter.com.ph | 1 | None | None | None |
11 | tier_1 | ns1.sktsports.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
12 | tier_1 | de.drkarashik.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
13 | tier_1 | toutiao.chinaso.com.hrmtuq.ph | 1 | None | None | None |
14 | tier_1 | www.gomoviesonline.quickmovies.tv | 1 | None | None | None |
15 | tier_1 | webdisk.zazspot.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
16 | tier_1 | pois.lu6000.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
17 | tier_1 | fun.nissify.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
18 | tier_1 | dsa-foren.de.siterankd.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
19 | tier_1 | schleuder.rc-welt.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
20 | tier_1 | natureoasis.com.ph | 1 | None | None | None |
21 | tier_1 | gucc.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
22 | tier_1 | business.uma.ph | 1 | None | None | None |
23 | tier_1 | tamawanvillage.kullaaw.com.ph | 1 | None | None | None |
24 | tier_1 | webdisk.workout.ph | 1 | None | None | None |
25 | tier_1 | sitemaps.kulay.com.ph | 1 | None | None | None |
26 | tier_1 | providentplans.com.ph | 1 | None | None | None |
27 | tier_1 | cpanel.primecomponents.com.ph | 1 | None | None | None |
28 | tier_1 | 174-122-92-101.opticaljungle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
29 | tier_1 | smctreasury.com.ph | 1 | None | None | None |
30 | tier_1 | savings.ph | 1 | None | None | None |
31 | tier_1 | magento.gull.ph | 1 | None | None | None |
32 | tier_1 | 7szr.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
33 | tier_1 | www.samplepos.nvi.com.ph | 1 | None | None | None |
34 | tier_1 | www.carolynjeanmatthews.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
35 | tier_1 | dasanbaguojibaijialeyouxixiazai.jn.adhcz.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
36 | tier_1 | webmail.the30th.ph | 1 | None | None | None |
37 | tier_1 | ww7.millenniumssltd.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
38 | tier_1 | gymville.pxstat.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
39 | tier_1 | www.instalucros.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
40 | tier_2 | c.clickprotects.com | 89 | GoDaddy.com, LLC | NS63.DOMAINCONTROL.COM | Domains By Proxy, LLC |
41 | tier_2 | 11165151.addotnet.com | 89 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
42 | tier_2 | geni.us | 89 | Tucows Domains Inc. | ns4.geniuslink.com | None |
43 | tier_2 | myckdom.com | 26 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
44 | tier_2 | dnavexch.com | 23 | 1API GmbH | NS1.DNSIMPLE.COM | None |
45 | tier_2 | p274639.myckdom.com | 23 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
46 | tier_2 | qvikar.com | 13 | Sea Wasp, LLC | NS2789.HOSTGATOR.COM | Jewella Privacy LLC Privacy ID# 1016679 |
47 | tier_2 | karafutem.com | 9 | NAMECHEAP INC | DNS1.REGISTRAR-SERVERS.COM | Privacy service provided by Withheld for Privacy ehf |
48 | tier_2 | phanu-swc.com | 9 | Amazon Registrar, Inc. | NS-1511.AWSDNS-60.ORG | Identity Protection Service |
49 | tier_2 | ww1.adhcz.com | 7 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
50 | tier_2 | 1yyhe.voluumtrk.com | 5 | DYNADOT LLC | NS-1310.AWSDNS-35.ORG | Super Privacy Service LTD c/o Dynadot |
51 | tier_2 | deffield-funuals.com | 5 | Amazon Registrar, Inc. | NS-1327.AWSDNS-37.ORG | Identity Protection Service |
52 | tier_2 | affiliate.iqbroker.com | 5 | https://www.101domain.com/ | NS-1084.AWSDNS-07.ORG | IQOPTION LTD. |
53 | tier_2 | monetoad.com | 4 | INWX GmbH | GERALD.NS.CLOUDFLARE.COM | REDACTED FOR PRIVACY |
54 | tier_2 | de.trck.one | 4 | INWX GmbH | pam.ns.cloudflare.com | ['admitad GmbH', 'REDACTED FOR PRIVACY'] |
55 | tier_2 | lookandfind.me | 4 | NameCheap, Inc. | None | None |
56 | tier_2 | q1.quotes.com | 4 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
57 | tier_2 | track.flexlinkspro.com | 4 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
58 | tier_2 | www.awin1.com | 4 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
59 | tier_2 | 11165151.searchiqnet.com | 3 | GoDaddy.com, LLC | NS57.DOMAINCONTROL.COM | Domains By Proxy, LLC |
60 | tier_2 | app.appsflyer.com | 3 | GoDaddy.com, LLC | NS-1429.AWSDNS-50.ORG | Domains By Proxy, LLC |
61 | tier_2 | ww1.linked.name | 3 | None | None | None |
62 | tier_2 | p185689.myckdom.com | 3 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
63 | tier_2 | api.yadore.com | 3 | RegistryGate GmbH | NS-1451.AWSDNS-53.ORG | REDACTED FOR PRIVACY |
64 | tier_2 | ww1.onion.ph | 2 | None | None | None |
65 | tier_2 | simcast.com | 2 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
66 | tier_2 | aegis.id-ward.com | 2 | Google LLC | NS-CLOUD-A1.GOOGLEDOMAINS.COM | Contact Privacy Inc. Customer 7151571251 |
67 | tier_2 | account.anonymised.io | 2 | NAMECHEAP INC | ns-cloud-d1.googledomains.com | None |
68 | tier_2 | c.pageprotect.net | 2 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
69 | tier_2 | clickserve.dartsearch.net | 2 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
70 | tier_2 | ad.doubleclick.net | 2 | MarkMonitor Inc. | NS1.GOOGLE.COM | None |
71 | tier_2 | dbc.pathroutes.com | 2 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | None |
72 | tier_2 | ww1.opticaljungle.com | 2 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
73 | tier_2 | shopbuttler.com | 2 | Key-Systems GmbH | CORY.NS.CLOUDFLARE.COM | REDACTED FOR PRIVACY |
74 | tier_2 | 905trk.com | 2 | GoDaddy.com, LLC | NS05.DOMAINCONTROL.COM | None |
75 | tier_2 | lg.provenpixel.com | 2 | IONOS SE | NS01.PROVENPIXEL.NET | 1&1 Internet Inc |
76 | tier_2 | ww1.rc-welt.com | 2 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
77 | tier_2 | rd.bizrate.com | 2 | MarkMonitor, Inc. | NS-1189.AWSDNS-20.ORG | Meredith Operations Corporation |
78 | tier_2 | rd.connexity.net | 2 | MarkMonitor Inc. | NS-1190.AWSDNS-20.ORG | None |
79 | tier_2 | s.click.aliexpress.com | 2 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
80 | tier_3 | offers.applemusic.apple | 89 | None | None | None |
81 | tier_3 | iyfbodn.com | 31 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
82 | tier_3 | www.clkmg.com | 13 | GoDaddy.com, LLC | NS1.SOFTLAYER.COM | None |
83 | tier_3 | simcast.com_LOOP_1 | 2 | None | None | None |
84 | tier_3 | www.samsung.com | 2 | Whois Corp. | DNS-AWSKR1.SAMSUNG.COM | None |
85 | tier_3 | simcast.com | 2 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
86 | tier_3 | apps.apple.com | 2 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
87 | tier_3 | links.flexoffers.com | 2 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | None |
88 | tier_3 | von22.sayasdf.com | 2 | GoDaddy.com, LLC | NS37.DOMAINCONTROL.COM | None |
89 | tier_3 | mbest.aliexpress.com | 2 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
90 | tier_3 | app.appsflyer.com | 2 | GoDaddy.com, LLC | NS-1429.AWSDNS-50.ORG | None |
91 | tier_3 | rdtds.net | 2 | Registrar of domain names REG.RU LLC | NS1.REG.RU | None |
92 | tier_3 | mx.iherb.com | 1 | MarkMonitor, Inc. | DESI.NS.CLOUDFLARE.COM | iHerb, LLC |
93 | tier_3 | www.chegg.com | 1 | MarkMonitor Inc. | NS-1026.AWSDNS-00.ORG | None |
94 | tier_3 | www.elpalaciodehierro.com | 1 | Akky Online Solutions S.A. de C.V. | NS1.KIONETWORKS.NET | El Palacio de Hierro, S.A. de C.V. |
95 | tier_3 | findresultsonline.com | 1 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS111332.ZTOMY.COM | Privacy Protect, LLC (PrivacyProtect.org) |
96 | tier_3 | uk.srchfitness.com_LOOP_1 | 1 | None | None | None |
97 | tier_3 | gant.com | 1 | CSC CORPORATE DOMAINS, INC. | ASHLEY.NS.CLOUDFLARE.COM | Gant AB |
98 | tier_3 | www.mlbshop.com | 1 | GoDaddy Corporate Domains, LLC | A1-147.AKAM.NET | None |
99 | tier_3 | dnavexch.com_LOOP_1 | 1 | None | None | None |
100 | tier_3 | mx-go.kelkoogroup.net | 1 | MarkMonitor, Inc. | NS1.MARKMONITOR.COM | Jamplant Limited |
101 | tier_3 | www.kfzteile24.de | 1 | None | ns-1293.awsdns-33.org | None |
102 | tier_3 | latam.kaspersky.com | 1 | Regional Network Information Center, JSC dba RU-CENTER | NS1.KASPERSKYLABS.NET | Joint Stock Company Kaspersky Lab |
103 | tier_3 | hakudeals.com | 1 | DonDominio (SCIP) | NS7961.WEBEMPRESA.EU | HVF Services and Consulting SASU |
104 | tier_3 | myfood.ltd | 1 | None | None | None |
105 | tier_3 | www.midwayusa.com | 1 | GoDaddy.com, LLC | NS-1486.AWSDNS-57.ORG | None |
106 | tier_3 | www.parfumdreams.de | 1 | None | ns.udag.de | None |
107 | tier_3 | track.tychon.bid | 1 | None | None | None |
108 | tier_3 | www.experian.com | 1 | Network Solutions, LLC | EXP1.EXPERIAN.COM | None |
109 | tier_3 | mys.myservdir.com | 1 | OVH, SAS | DNS200.ANYCAST.ME | Jswebproduction |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 60 | nan | nan |
1 | 37.48.65.148 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 56 | nan | nan |
2 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 53 | nan | nan |
3 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 47 | nan | nan |
4 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 5 | nan | nan |
5 | 185.107.56.199 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 5 | nan | nan |
6 | 45.79.222.138 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_1 | 4 | apple.parklogic.com | nan |
7 | 185.107.56.198 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 3 | nan | nan |
8 | 207.244.67.218 | Washington | Washington, D.C. | AS30633 Leaseweb USA, Inc. | 20004 | United States | False | tier_1 | 2 | nan | nan |
9 | 172.93.103.102 | New York City | New York | AS23470 ReliableSite.Net LLC | 10001 | United States | False | tier_1 | 2 | nan | nan |
10 | 209.132.243.15 | Los Angeles | California | AS7296 Alchemy Communications, Inc. | 90009 | United States | False | tier_2 | 186 | nan | nan |
11 | 52.117.247.211 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 52 | d3.f7.7534.ip4.static.sl-reverse.com | nan |
12 | 172.105.69.103 | Frankfurt am Main | Hesse | AS63949 Akamai Connected Cloud | 60306 | Germany | True | tier_2 | 51 | 172-105-69-103.ip.linodeusercontent.com | nan |
13 | 83.136.253.58 | London | England | AS202053 UpCloud Ltd | W1H | United Kingdom | False | tier_2 | 38 | 83-136-253-58.uk-lon1.upcloud.host | nan |
14 | 199.59.243.224 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 31 | nan | True |
15 | 192.99.158.241 | Beauharnois | Quebec | AS16276 OVH SAS | J6N | Canada | False | tier_2 | 23 | ip241.ip-192-99-158.net | nan |
16 | 192.254.234.214 | Provo | Utah | AS46606 Unified Layer | 84601 | United States | False | tier_2 | 13 | 192-254-234-214.unifiedlayer.com | nan |
17 | 5.9.85.57 | Falkenstein | Saxony | AS24940 Hetzner Online GmbH | 08223 | Germany | True | tier_2 | 9 | static.57.85.9.5.clients.your-server.de | nan |
18 | 44.207.163.6 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 6 | ec2-44-207-163-6.compute-1.amazonaws.com | nan |
19 | 18.192.108.151 | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60306 | Germany | True | tier_2 | 5 | ec2-18-192-108-151.eu-central-1.compute.amazonaws.com | nan |
20 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 31 | nan | nan |
21 | 17.253.105.202 | Amsterdam | North Holland | AS6185 Apple Inc. | 1012 | Netherlands | True | tier_3 | 31 | nlsrk1-vip-bx-002.aaplimg.com | nan |
22 | 17.253.53.207 | Amsterdam | North Holland | AS6185 Apple Inc. | 1012 | Netherlands | True | tier_3 | 12 | nlams2-vip-bx-007.aaplimg.com | nan |
23 | 17.253.53.202 | Amsterdam | North Holland | AS6185 Apple Inc. | 1012 | Netherlands | True | tier_3 | 11 | nlams2-vip-bx-002.aaplimg.com | nan |
24 | 50.97.244.203 | San Jose | California | AS36351 SoftLayer Technologies Inc. | 95103 | United States | False | tier_3 | 8 | clkmg.com | nan |
25 | 17.253.53.203 | Amsterdam | North Holland | AS6185 Apple Inc. | 1012 | Netherlands | True | tier_3 | 8 | nlams2-vip-bx-003.aaplimg.com | nan |
26 | 17.253.53.205 | Amsterdam | North Holland | AS6185 Apple Inc. | 1012 | Netherlands | True | tier_3 | 7 | nlams2-vip-bx-005.aaplimg.com | nan |
27 | 17.253.53.204 | Amsterdam | North Holland | AS6185 Apple Inc. | 1012 | Netherlands | True | tier_3 | 6 | nlams2-vip-bx-004.aaplimg.com | nan |
28 | 50.97.212.250 | Mountain View | California | AS36351 SoftLayer Technologies Inc. | 94035 | United States | False | tier_3 | 5 | fa.d4.6132.ip4.static.sl-reverse.com | nan |
29 | 17.253.53.208 | Amsterdam | North Holland | AS6185 Apple Inc. | 1012 | Netherlands | True | tier_3 | 5 | nlams2-vip-bx-008.aaplimg.com | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website