Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 170 | 161 | 433 | 0 | 0 | 2023-08-21 | 2023-08-21__207.244.67.215__chrome |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | admin.pocketuniverses.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
1 | tier_1 | informatik.elwatani.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
2 | tier_1 | cpcalendars.coredent.com.ph | 1 | None | None | None |
3 | tier_1 | mail.pursuitofpassion.ph | 1 | None | None | None |
4 | tier_1 | groups.wan2a.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
5 | tier_1 | ww43.asciiconvert.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
6 | tier_1 | admin.vente-exclusief.com | 1 | EPAG DOMAINSERVICES GmbH | NS1.COMMONMX.COM | Not Disclosed |
7 | tier_1 | accordcapital.ph | 1 | None | None | None |
8 | tier_1 | 5n0h.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
9 | tier_1 | dw4l.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
10 | tier_1 | y3ngaam.cyclegea.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
11 | tier_1 | brilacoating.ph | 1 | None | None | None |
12 | tier_1 | ottertherapies.com | 1 | GoDaddy.com, LLC | NS1.COMMONMX.COM | None |
13 | tier_1 | webmail.sds72.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
14 | tier_1 | mail.peluchescory.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
15 | tier_1 | webdisk.boundarywaterscanoearea.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
16 | tier_1 | cpcontacts.welltechcorp.com.ph | 1 | None | None | None |
17 | tier_1 | search.orzx3.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
18 | tier_1 | huashengdunzuqiu.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
19 | tier_1 | hostmaster.callbox.ph | 1 | None | None | None |
20 | tier_1 | baijiabodubowangzhan.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
21 | tier_1 | f3ug.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
22 | tier_1 | eldwua.ph | 1 | None | None | None |
23 | tier_1 | yiyingzuqiu.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
24 | tier_1 | 188betshangbuliao.linked.name | 1 | None | None | None |
25 | tier_1 | yangguangyulecheng.linked.name | 1 | None | None | None |
26 | tier_1 | huangguanxianjinwangbocaitouzhuwangbaozhangma.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
27 | tier_1 | webmail.lagunalargamichoacan.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
28 | tier_1 | fenghuangzhenrendubo.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
29 | tier_1 | cpanel.textron.com.ph | 1 | None | None | None |
30 | tier_1 | nora-ys.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
31 | tier_1 | cpanel.distincttravel.ph | 1 | None | None | None |
32 | tier_1 | admin.ahiestwithmarkiplier.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
33 | tier_1 | admin.clickthecity.com.ph | 1 | None | None | None |
34 | tier_1 | webdisk.nuncamelohubieraimaginado.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
35 | tier_1 | webmail.greenphil.ph | 1 | None | None | None |
36 | tier_1 | cpanel.decagon.com.ph | 1 | None | None | None |
37 | tier_1 | qileguoji.linked.name | 1 | None | None | None |
38 | tier_1 | www.kimly.crode.ph | 1 | None | None | None |
39 | tier_1 | lifeinart.staging.ph | 1 | None | None | None |
40 | tier_2 | c.clickprotects.com | 23 | GoDaddy.com, LLC | NS63.DOMAINCONTROL.COM | Domains By Proxy, LLC |
41 | tier_2 | 11165151.addotnet.com | 23 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
42 | tier_2 | geni.us | 22 | Tucows Domains Inc. | ns4.geniuslink.com | None |
43 | tier_2 | myckdom.com | 13 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
44 | tier_2 | ww1.afbtc.com | 13 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
45 | tier_2 | dnavexch.com | 11 | 1API GmbH | NS1.DNSIMPLE.COM | None |
46 | tier_2 | p274639.myckdom.com | 11 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
47 | tier_2 | qvikar.com | 6 | Sea Wasp, LLC | NS2789.HOSTGATOR.COM | Jewella Privacy LLC Privacy ID# 1016679 |
48 | tier_2 | wsafeguardpush.com | 3 | NAMECHEAP INC | DNS1.REGISTRAR-SERVERS.COM | Privacy service provided by Withheld for Privacy ehf |
49 | tier_2 | brko.admobe.com | 3 | GoDaddy.com, LLC | RAQUEL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
50 | tier_2 | simcast.com | 3 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
51 | tier_2 | aegis.id-ward.com | 3 | Google LLC | NS-CLOUD-A1.GOOGLEDOMAINS.COM | Contact Privacy Inc. Customer 7151571251 |
52 | tier_2 | account.anonymised.io | 3 | NAMECHEAP INC | ns-cloud-d1.googledomains.com | None |
53 | tier_2 | s.click.aliexpress.com | 3 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
54 | tier_2 | ww1.opticaljungle.com | 3 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
55 | tier_2 | ww1.linked.name | 2 | None | None | None |
56 | tier_2 | repairgreatlycurrentinfo-product.info | 2 | NameSilo, LLC | ns1.dnsowl.com | PrivacyGuardian.org llc |
57 | tier_2 | aikat-vim.com | 2 | Amazon Registrar, Inc. | NS-105.AWSDNS-13.COM | Identity Protection Service |
58 | tier_2 | q1.quotes.com | 2 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
59 | tier_2 | agent-us.com | 2 | Internet Domain Service BS Corp. | NS20.DIGICERTDNS.COM | Whois Privacy Corp. |
60 | tier_2 | www1.thissecurysearchapp.com | 1 | NAMECHEAP INC | ALEXIS.NS.CLOUDFLARE.COM | Privacy service provided by Withheld for Privacy ehf |
61 | tier_2 | google.com | 1 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
62 | tier_2 | ww2.affinity.net | 1 | DOMAINPEOPLE, INC. | NS-1183.AWSDNS-19.ORG | WhoisProtector Inc. |
63 | tier_2 | imp.i105279.net | 1 | Amazon Registrar, Inc. | NS-1111.AWSDNS-10.ORG | Impact |
64 | tier_2 | ww1.ottertherapies.com | 1 | GoDaddy.com, LLC | NS1.COMMONMX.COM | None |
65 | tier_2 | ww1.eldwua.ph | 1 | None | None | None |
66 | tier_2 | ww1.lagunalargamichoacan.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
67 | tier_2 | dprtb.com | 1 | 1API GmbH | NS1.DNSIMPLE.COM | None |
68 | tier_2 | click.expmediadirect1.com | 1 | NAMECHEAP INC | NS1.LINODE.COM | Privacy service provided by Withheld for Privacy ehf |
69 | tier_2 | go.proffering.xyz | 1 | NAMECHEAP INC | DNS1.REGISTRAR-SERVERS.COM | Privacy service provided by Withheld for Privacy ehf |
70 | tier_2 | go.gkrtmc.com | 1 | NAMECHEAP INC | DNS1.REGISTRAR-SERVERS.COM | Privacy service provided by Withheld for Privacy ehf |
71 | tier_2 | ww1.meulivro.mobi | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
72 | tier_2 | ww1.coworkingiezo.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
73 | tier_2 | ww1.mercy44ff.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
74 | tier_2 | ww1.insularbank.ph | 1 | None | None | None |
75 | tier_2 | ww1.modernpostnyc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
76 | tier_2 | ww1.jobbank.ph | 1 | None | None | None |
77 | tier_2 | p185689.myckdom.com | 1 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
78 | tier_2 | ww1.dermadepot.ph | 1 | None | None | None |
79 | tier_2 | track.flexlinkspro.com | 1 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
80 | tier_3 | iyfbodn.com | 40 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
81 | tier_3 | offers.applemusic.apple | 22 | None | None | None |
82 | tier_3 | www.clkmg.com | 6 | GoDaddy.com, LLC | NS1.SOFTLAYER.COM | Domains By Proxy, LLC |
83 | tier_3 | ww1.wan2a.com | 3 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
84 | tier_3 | simcast.com | 3 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
85 | tier_3 | torrent-protection.com | 3 | GoDaddy.com, LLC | NS23.DOMAINCONTROL.COM | Domains By Proxy, LLC |
86 | tier_3 | simcast.com_LOOP_1 | 3 | None | None | None |
87 | tier_3 | download-adblock-zen.com | 2 | Infomaniak Network SA | MARTHA.NS.CLOUDFLARE.COM | Domain Privacy Trustee SA |
88 | tier_3 | www.google.com | 1 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
89 | tier_3 | ww1.elwatani.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
90 | tier_3 | www.cyclegear.com | 1 | GoDaddy.com, LLC | CASH.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
91 | tier_3 | www.apple.com | 1 | CSC CORPORATE DOMAINS, INC. | A.NS.APPLE.COM | Apple Inc. |
92 | tier_3 | ww1.peluchescory.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
93 | tier_3 | flirtooy.com | 1 | NameCheap, Inc. | SERENITY.NS.CLOUDFLARE.COM | None |
94 | tier_3 | best.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
95 | tier_3 | ww1.teamhonda.ph | 1 | None | None | None |
96 | tier_3 | www.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
97 | tier_3 | myfood.ltd | 1 | None | None | None |
98 | tier_3 | nl.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
99 | tier_3 | www.connectingoffers.com | 1 | Amazon Registrar, Inc. | NS-1129.AWSDNS-13.ORG | Identity Protection Service |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 45 | nan | nan |
1 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 30 | nan | nan |
2 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 27 | nan | nan |
3 | 37.48.65.148 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 22 | nan | nan |
4 | 185.107.56.199 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 7 | nan | nan |
5 | 45.79.222.138 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_1 | 7 | apple.parklogic.com | nan |
6 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 5 | nan | nan |
7 | 185.107.56.198 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 1 | nan | nan |
8 | 172.93.103.101 | Piscataway | New Jersey | AS23470 ReliableSite.Net LLC | 08854 | United States | False | tier_1 | 1 | nan | nan |
9 | 69.16.231.59 | Lansing | Michigan | AS32244 Liquid Web, L.L.C | 48901 | United States | False | tier_1 | 1 | lb04.parklogic.com | nan |
10 | 209.132.243.15 | Los Angeles | California | AS7296 Alchemy Communications, Inc. | 90009 | United States | False | tier_2 | 46 | nan | nan |
11 | 199.59.243.224 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 40 | nan | True |
12 | 52.117.247.211 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 25 | d3.f7.7534.ip4.static.sl-reverse.com | nan |
13 | 172.105.69.103 | Frankfurt am Main | Hesse | AS63949 Akamai Connected Cloud | 60306 | Germany | True | tier_2 | 20 | 172-105-69-103.ip.linodeusercontent.com | nan |
14 | 192.99.158.241 | Beauharnois | Quebec | AS16276 OVH SAS | J6N | Canada | False | tier_2 | 12 | ip241.ip-192-99-158.net | nan |
15 | 192.254.234.214 | Provo | Utah | AS46606 Unified Layer | 84601 | United States | False | tier_2 | 6 | 192-254-234-214.unifiedlayer.com | nan |
16 | 34.107.217.107 | Kansas City | Missouri | AS396982 Google LLC | 64106 | United States | False | tier_2 | 6 | 107.217.107.34.bc.googleusercontent.com | True |
17 | 104.102.42.226 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_2 | 4 | a104-102-42-226.deploy.static.akamaitechnologies.com | nan |
18 | 3.93.251.206 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 3 | ec2-3-93-251-206.compute-1.amazonaws.com | nan |
19 | 107.20.106.95 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 3 | ec2-107-20-106-95.compute-1.amazonaws.com | nan |
20 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 40 | nan | nan |
21 | 17.253.105.202 | Amsterdam | North Holland | AS6185 Apple Inc. | 1012 | Netherlands | True | tier_3 | 7 | nlsrk1-vip-bx-002.aaplimg.com | nan |
22 | 64.190.63.136 | Munich | Bavaria | AS47846 SEDO GmbH | 80331 | Germany | True | tier_3 | 6 | nan | nan |
23 | 50.97.212.250 | San Jose | California | AS36351 SoftLayer Technologies Inc. | 95103 | United States | False | tier_3 | 6 | fa.d4.6132.ip4.static.sl-reverse.com | nan |
24 | 17.253.53.203 | Amsterdam | North Holland | AS6185 Apple Inc. | 1012 | Netherlands | True | tier_3 | 4 | nlams2-vip-bx-003.aaplimg.com | nan |
25 | 17.253.53.207 | Amsterdam | North Holland | AS6185 Apple Inc. | 1012 | Netherlands | True | tier_3 | 3 | nlams2-vip-bx-007.aaplimg.com | nan |
26 | 45.79.244.12 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_3 | 3 | nb-45-79-244-12.an.nodebalancer.linode.com | nan |
27 | 167.99.123.14 | Clifton | New Jersey | AS14061 DigitalOcean, LLC | 07014 | United States | False | tier_3 | 3 | torrent-protection.com | nan |
28 | 178.162.228.7 | Frankfurt am Main | Hesse | AS28753 Leaseweb Deutschland GmbH | 60306 | Germany | True | tier_3 | 3 | hosted-by.leaseweb.com | nan |
29 | 17.253.53.208 | Amsterdam | North Holland | AS6185 Apple Inc. | 1012 | Netherlands | True | tier_3 | 3 | nlams2-vip-bx-008.aaplimg.com | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website