Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 279 | 278 | 713 | 0 | 0 | 2023-08-17 | 2023-08-17__93.115.28.104__iphone |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | hostmaster.185.74.222.18.cdnet.tv | 1 | None | None | None |
1 | tier_1 | d8xg.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
2 | tier_1 | test.flightrising.co | 1 | Key-Systems GmbH | ns2.rentondc.com | c/o whoisproxy.com |
3 | tier_1 | admin.loutron.co | 1 | Key-Systems GmbH | ns2.rentondc.com | c/o whoisproxy.com |
4 | tier_1 | seaocec.seeums.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
5 | tier_1 | airnew.asia | 1 | Key-Systems GmbH | ns1.rentondc.com | ['EdenMedia', 'REDACTED FOR PRIVACY'] |
6 | tier_1 | host55.sansum.com | 1 | GoDaddy Online Services Cayman Islands Ltd. | NS1.RENTONDC.COM | Domains By Proxy, LLC |
7 | tier_1 | shop.gayboysstube.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
8 | tier_1 | www.jacksonhweitt.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
9 | tier_1 | 8g5.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
10 | tier_1 | ip67.rfpexpress.com | 1 | TUCOWS, INC. | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
11 | tier_1 | demo.goank.com | 1 | Internet Domain Service BS Corp. | NS1.RENTONDC.COM | Whois Privacy Corp. |
12 | tier_1 | admin.havilandmuseum.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
13 | tier_1 | www.easybid.inetsoftwares.com | 1 | Media Elite Holdings Limited | NS1.RENTONDC.COM | Fundacion Privacy Services LTD |
14 | tier_1 | dg3.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
15 | tier_1 | juegos-gratis-de-guaguas.juegostin.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
16 | tier_1 | admin.opusmusica.com | 1 | TUCOWS, INC. | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
17 | tier_1 | www.kissimmeeclearance.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
18 | tier_1 | admin.psxhaven.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
19 | tier_1 | admin.jackssmallenginerepair.com | 1 | TUCOWS, INC. | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
20 | tier_1 | angels56.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
21 | tier_1 | www.newbornmom.com | 1 | TUCOWS, INC. | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
22 | tier_1 | survey.seat.it.italianosito.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
23 | tier_1 | 5zvx9ljl.seeums.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
24 | tier_1 | mideayusa.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
25 | tier_1 | littleigloohvacinc.social-circle.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
26 | tier_1 | admin.causemall.com | 1 | TUCOWS, INC. | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
27 | tier_1 | rprxdsy.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
28 | tier_1 | m.187.cuntub.cc | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
29 | tier_1 | lulzshirts.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
30 | tier_1 | kmudnw8b.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
31 | tier_1 | index.helma.us | 1 | Key-Systems GmbH | ns2.rentondc.com | None |
32 | tier_1 | hostmaster.admin.bstmobile.com | 1 | Internet Domain Service BS Corp. | NS1.RENTONDC.COM | Whois Privacy Corp. |
33 | tier_1 | juego-de-patineta-sobre-hielo.juegostin.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
34 | tier_1 | staging.hdgcbank.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
35 | tier_1 | qwertyscans.bbforum.co | 1 | Key-Systems GmbH | ns2.rentondc.com | EdenMedia |
36 | tier_1 | m99.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
37 | tier_1 | pse.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
38 | tier_1 | lwbxp9.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
39 | tier_1 | www.oi7ft.thxbt.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
40 | tier_2 | c.clickprotects.com | 52 | GoDaddy.com, LLC | NS63.DOMAINCONTROL.COM | Domains By Proxy, LLC |
41 | tier_2 | 11165151.addotnet.com | 52 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
42 | tier_2 | geni.us | 52 | Tucows Domains Inc. | ns4.geniuslink.com | None |
43 | tier_2 | ww1.jotfom.com | 21 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
44 | tier_2 | myckdom.com | 18 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
45 | tier_2 | ww1.cdnet.tv | 15 | None | None | None |
46 | tier_2 | qvikar.com | 10 | Sea Wasp, LLC | NS2789.HOSTGATOR.COM | Jewella Privacy LLC Privacy ID# 1016679 |
47 | tier_2 | dnavexch.com | 9 | 1API GmbH | NS1.DNSIMPLE.COM | None |
48 | tier_2 | p274639.myckdom.com | 9 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
49 | tier_2 | p185689.myckdom.com | 8 | NameCheap, Inc. | NS10.DIGICERTDNS.COM | None |
50 | tier_2 | s.click.aliexpress.com | 7 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
51 | tier_2 | phanu-swc.com | 7 | Amazon Registrar, Inc. | NS-1511.AWSDNS-60.ORG | Identity Protection Service |
52 | tier_2 | track.flexlinkspro.com | 7 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
53 | tier_2 | www.awin1.com | 7 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
54 | tier_2 | q1.quotes.com | 6 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
55 | tier_2 | trk.ai-adsolutions.com | 5 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
56 | tier_2 | campaign.aliexpress.com | 5 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
57 | tier_2 | best.aliexpress.com | 5 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
58 | tier_2 | click-v4.junmediadirect1.com | 4 | NAMECHEAP INC | NS1.LINODE.COM | Privacy service provided by Withheld for Privacy ehf |
59 | tier_2 | as.ad4m.at | 4 | InterNetX GmbH ( https://nic.at/registrar/80 ) | None | advanced STORE GmbH |
60 | tier_2 | track.webgains.com | 4 | 123-Reg Limited | DOM.NS.CLOUDFLARE.COM | Webgains Ltd |
61 | tier_2 | go.shopyourlikes.com | 3 | MarkMonitor, Inc. | NS-1340.AWSDNS-39.ORG | Connexity, Inc. |
62 | tier_2 | rd.bizrate.com | 3 | MarkMonitor Inc. | NS-1189.AWSDNS-20.ORG | None |
63 | tier_2 | geotrkclknow.com | 3 | NameCheap, Inc. | EVAN.NS.CLOUDFLARE.COM | None |
64 | tier_2 | ww2.affinity.net | 2 | DOMAINPEOPLE, INC. | NS-1183.AWSDNS-19.ORG | WhoisProtector Inc. |
65 | tier_2 | activerevenue.trckswrm.com | 2 | Amazon Registrar, Inc. | NS-120.AWSDNS-15.COM | Identity Protection Service |
66 | tier_2 | partnerbcgame.com | 2 | GANDI SAS | NADIA.NS.CLOUDFLARE.COM | None |
67 | tier_2 | bcgame.top | 2 | Gandi SAS | damian.ns.cloudflare.com | BlockDance |
68 | tier_2 | c.pageprotect.net | 2 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
69 | tier_2 | 11165151.searchiqnet.com | 2 | GoDaddy.com, LLC | NS57.DOMAINCONTROL.COM | Domains By Proxy, LLC |
70 | tier_2 | rd.connexity.net | 2 | MarkMonitor, Inc. | NS-1190.AWSDNS-20.ORG | Connexity, Inc. |
71 | tier_2 | r.secprf.com | 2 | Cloudflare, Inc. | BEN.NS.CLOUDFLARE.COM | DATA REDACTED |
72 | tier_2 | vipestores.com | 2 | NAMECHEAP INC | EVAN.NS.CLOUDFLARE.COM | Privacy service provided by Withheld for Privacy ehf |
73 | tier_2 | ww1.loutron.co | 1 | Key-Systems GmbH | ns2.rentondc.com | c/o whoisproxy.com |
74 | tier_2 | ww1.airnew.asia | 1 | Key-Systems GmbH | ns1.rentondc.com | ['EdenMedia', 'REDACTED FOR PRIVACY'] |
75 | tier_2 | ww1.sansum.com | 1 | GoDaddy Online Services Cayman Islands Ltd. | NS1.RENTONDC.COM | Domains By Proxy, LLC |
76 | tier_2 | ww1.gayboysstube.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
77 | tier_2 | ww1.havilandmuseum.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
78 | tier_2 | ww1.jackssmallenginerepair.com | 1 | TUCOWS, INC. | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
79 | tier_2 | ww1.angels56.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
80 | tier_3 | iyfbodn.com | 59 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
81 | tier_3 | offers.applemusic.apple | 52 | None | None | None |
82 | tier_3 | www.clkmg.com | 11 | GoDaddy.com, LLC | NS1.SOFTLAYER.COM | Domains By Proxy, LLC |
83 | tier_3 | track.tychon.bid | 5 | None | None | None |
84 | tier_3 | mbest.aliexpress.com | 5 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
85 | tier_3 | www.affordablemobiles.co.uk | 4 | 123-Reg Limited t/a 123-reg [Tag = 123-REG] | a | None |
86 | tier_3 | ld.bc.site | 2 | None | None | None |
87 | tier_3 | www.skechers.com | 2 | MarkMonitor, Inc. | ALAN.NS.CLOUDFLARE.COM | Skechers USA |
88 | tier_3 | findresultsonline.com | 1 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS111332.ZTOMY.COM | Privacy Protect, LLC (PrivacyProtect.org) |
89 | tier_3 | www.aliexpress.com_LOOP_1 | 1 | None | None | None |
90 | tier_3 | www.boostmobile.com | 1 | CSC CORPORATE DOMAINS, INC. | NS-13.AWSDNS-01.COM | DISH Network LLC |
91 | tier_3 | cruzeiro-safaris.com | 1 | TUCOWS, INC. | RS138.REGISTRAR-SERVERS.COM | REDACTED FOR PRIVACY |
92 | tier_3 | cricut.com_LOOP_1 | 1 | None | None | None |
93 | tier_3 | www.godaddy.com | 1 | GoDaddy.com, LLC | A1-245.AKAM.NET | Domains By Proxy, LLC |
94 | tier_3 | nexters.g2afse.com | 1 | GoDaddy.com, LLC | NS-1393.AWSDNS-46.ORG | Domains By Proxy, LLC |
95 | tier_3 | www.etsy.com | 1 | MarkMonitor, Inc. | DNS1.P03.NSONE.NET | Etsy, Inc. |
96 | tier_3 | links.flexoffers.com | 1 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | None |
97 | tier_3 | campaign.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
98 | tier_3 | www.guns.com | 1 | Network Solutions, LLC | A1-67.AKAM.NET | None |
99 | tier_3 | bforldonate.com | 1 | NAMECHEAP INC | DNS1.REGISTRAR-SERVERS.COM | Privacy service provided by Withheld for Privacy ehf |
100 | tier_3 | uk-go.kelkoogroup.net | 1 | MarkMonitor, Inc. | NS1.MARKMONITOR.COM | Jamplant Limited |
101 | tier_3 | uk.find.srchmoney.com_LOOP_1 | 1 | None | None | None |
102 | tier_3 | www.fanatics.com | 1 | MarkMonitor Inc. | A1-147.AKAM.NET | None |
103 | tier_3 | www.roamans.com | 1 | CSC CORPORATE DOMAINS, INC. | PDNS1.ULTRADNS.NET | FullBeauty Brands Operations, LLC |
ip | city | region | org | postal | country_name | isEU | tier | count | anycast | hostname | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 93.115.28.104 | Šiauliai | Siauliai | AS16125 UAB Cherry Servers | 76001 | Lithuania | True | tier_1 | 151 | nan | nan |
1 | 172.98.192.36 | Atlanta | Georgia | AS31863 Centrilogic, Inc. | 30302 | United States | False | tier_1 | 2 | nan | nan |
2 | 172.98.192.35 | Atlanta | Georgia | AS31863 Centrilogic, Inc. | 30302 | United States | False | tier_1 | 2 | nan | nan |
3 | 172.98.192.37 | Atlanta | Georgia | AS31863 Centrilogic, Inc. | 30302 | United States | False | tier_1 | 1 | nan | nan |
4 | 209.132.243.15 | Los Angeles | California | AS7296 Alchemy Communications, Inc. | 90009 | United States | False | tier_2 | 108 | nan | nan |
5 | 199.59.243.224 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 60 | True | nan |
6 | 83.136.253.58 | London | England | AS202053 UpCloud Ltd | W1H | United Kingdom | False | tier_2 | 35 | nan | 83-136-253-58.uk-lon1.upcloud.host |
7 | 52.117.247.211 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 35 | nan | d3.f7.7534.ip4.static.sl-reverse.com |
8 | 104.102.42.226 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 6 | nan | a104-102-42-226.deploy.static.akamaitechnologies.com |
9 | 172.105.69.103 | Frankfurt am Main | Hesse | AS63949 Akamai Connected Cloud | 60306 | Germany | True | tier_2 | 17 | nan | 172-105-69-103.ip.linodeusercontent.com |
10 | 192.254.234.214 | Provo | Utah | AS46606 Unified Layer | 84601 | United States | False | tier_2 | 10 | nan | 192-254-234-214.unifiedlayer.com |
11 | 192.99.158.241 | Beauharnois | Quebec | AS16276 OVH SAS | J6N | Canada | False | tier_2 | 9 | nan | ip241.ip-192-99-158.net |
12 | 104.102.45.165 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_2 | 7 | nan | a104-102-45-165.deploy.static.akamaitechnologies.com |
13 | 5.79.68.236 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_2 | 6 | nan | nan |
14 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 59 | nan | nan |
15 | 17.253.105.202 | Amsterdam | North Holland | AS6185 Apple Inc. | 1012 | Netherlands | True | tier_3 | 13 | nan | nlsrk1-vip-bx-002.aaplimg.com |
16 | 17.253.53.204 | Amsterdam | North Holland | AS6185 Apple Inc. | 1012 | Netherlands | True | tier_3 | 8 | nan | nlams2-vip-bx-004.aaplimg.com |
17 | 17.253.53.207 | Amsterdam | North Holland | AS6185 Apple Inc. | 1012 | Netherlands | True | tier_3 | 7 | nan | nlams2-vip-bx-007.aaplimg.com |
18 | 50.97.212.250 | Mountain View | California | AS36351 SoftLayer Technologies Inc. | 94035 | United States | False | tier_3 | 6 | nan | fa.d4.6132.ip4.static.sl-reverse.com |
19 | 104.102.42.226 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 6 | nan | a104-102-42-226.deploy.static.akamaitechnologies.com |
20 | 17.253.53.206 | Amsterdam | North Holland | AS6185 Apple Inc. | 1012 | Netherlands | True | tier_3 | 6 | nan | nlams2-vip-bx-006.aaplimg.com |
21 | 17.253.53.202 | Amsterdam | North Holland | AS6185 Apple Inc. | 1012 | Netherlands | True | tier_3 | 5 | nan | nlams2-vip-bx-002.aaplimg.com |
22 | 17.253.53.203 | Amsterdam | North Holland | AS6185 Apple Inc. | 1012 | Netherlands | True | tier_3 | 5 | nan | nlams2-vip-bx-003.aaplimg.com |
23 | 50.97.244.203 | San Jose | California | AS36351 SoftLayer Technologies Inc. | 95103 | United States | False | tier_3 | 5 | nan | clkmg.com |
Zhouhan Chen, zc1245@nyu.edu, Personal Website