Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 206 | 205 | 472 | 0 | 0 | 2023-08-22 | 2023-08-22__93.115.28.104__android |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | ajrc3.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
1 | tier_1 | ww25.guide66.info | 1 | Key-Systems GmbH | ns1.rentondc.com | ['EdenMedia', 'REDACTED FOR PRIVACY'] |
2 | tier_1 | admin.erain.in | 1 | Key-Systems GmbH | ns1.rentondc.com | None |
3 | tier_1 | 3sfu.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
4 | tier_1 | qacm.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
5 | tier_1 | franchise-partner.vanato.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
6 | tier_1 | ljvplx.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
7 | tier_1 | lpc.lavarel.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
8 | tier_1 | 185.74.220.85.cdnet.tv | 1 | None | None | None |
9 | tier_1 | pensionirimini.it.italianosito.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
10 | tier_1 | m.wwyoutube.com | 1 | Sea Wasp, LLC | NS1.RENTONDC.COM | Jewella Privacy LLC Privacy ID# 1215983 |
11 | tier_1 | admin.simsconnection.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
12 | tier_1 | dckusd8.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
13 | tier_1 | 185.74.221.165.cdnet.tv | 1 | None | None | None |
14 | tier_1 | yd8b.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
15 | tier_1 | r3jtftba.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
16 | tier_1 | cheapcar-insurance.biz | 1 | Key-Systems GmbH | ns2.rentondc.com | None |
17 | tier_1 | mideayusa.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
18 | tier_1 | fupport.me | 1 | Key-Systems GmbH | None | None |
19 | tier_1 | hostmaster.185.74.221.127.cdnet.tv | 1 | None | None | None |
20 | tier_1 | rpyj8u.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
21 | tier_1 | jugar-objetos-perdidos.juegostin.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
22 | tier_1 | 9diu.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
23 | tier_1 | hostmaster.185.74.223.161.cdnet.tv | 1 | None | None | None |
24 | tier_1 | saloni.motori.it.italianosito.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
25 | tier_1 | ip70-148.dialup.xondemand.com | 1 | TUCOWS, INC. | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
26 | tier_1 | 723kk.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
27 | tier_1 | dgvfcy.airfre.com | 1 | GoDaddy.com, LLC | NS1.RENTONDC.COM | Domains By Proxy, LLC |
28 | tier_1 | zcl.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
29 | tier_1 | 185.74.220.252.cdnet.tv | 1 | None | None | None |
30 | tier_1 | admin.panasonicmobile.com | 1 | GoDaddy Online Services Cayman Islands Ltd. | NS1.RENTONDC.COM | Domains By Proxy, LLC |
31 | tier_1 | besthbuy.com | 1 | GoDaddy Online Services Cayman Islands Ltd. | NS1.RENTONDC.COM | Domains By Proxy, LLC |
32 | tier_1 | admin.cursoprogressao.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
33 | tier_1 | jxit.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
34 | tier_1 | hostmaster.185.74.221.64.cdnet.tv | 1 | None | None | None |
35 | tier_1 | sc.areacodegoldmine.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
36 | tier_1 | www.revrbnation.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
37 | tier_1 | juegos-de-hacer-autos-y-usarlos.juegostin.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | c/o whoisproxy.com |
38 | tier_1 | secure.18andnastygirls.com | 1 | Key-Systems GmbH | NS1.RENTONDC.COM | REDACTED FOR PRIVACY |
39 | tier_1 | ekyl8y.jotfom.com | 1 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
40 | tier_2 | myckdom.com | 23 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
41 | tier_2 | ww1.jotfom.com | 21 | ABOVE.COM PTY LTD. | NS1.RENTONDC.COM | None |
42 | tier_2 | dnavexch.com | 17 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dnavexch.com |
43 | tier_2 | p274639.myckdom.com | 17 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
44 | tier_2 | www.awin1.com | 11 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
45 | tier_2 | ww1.cdnet.tv | 10 | None | None | None |
46 | tier_2 | q1.quotes.com | 8 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
47 | tier_2 | track.flexlinkspro.com | 8 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
48 | tier_2 | s.click.aliexpress.com | 8 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
49 | tier_2 | campaign.aliexpress.com | 8 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
50 | tier_2 | best.aliexpress.com | 8 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
51 | tier_2 | karafutem.com | 8 | NAMECHEAP INC | DNS1.REGISTRAR-SERVERS.COM | Privacy service provided by Withheld for Privacy ehf |
52 | tier_2 | anait-ypy.com | 6 | Amazon Registrar, Inc. | NS-1386.AWSDNS-45.ORG | Identity Protection Service |
53 | tier_2 | p185689.myckdom.com | 6 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
54 | tier_2 | ad.doubleclick.net | 6 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
55 | tier_2 | nerve.eshkol.io | 5 | GoDaddy.com, LLC | ns11.constellix.com | None |
56 | tier_2 | globalconsumerwinner.com | 5 | GoDaddy.com, LLC | NS01.DOMAINCONTROL.COM | Domains By Proxy, LLC |
57 | tier_2 | 11165151.searchiqnet.com | 4 | GoDaddy.com, LLC | NS57.DOMAINCONTROL.COM | Domains By Proxy, LLC |
58 | tier_2 | hunbe-mdd.com | 3 | Amazon Registrar, Inc. | NS-1347.AWSDNS-40.ORG | Identity Protection Service |
59 | tier_2 | media-px.com | 3 | GoDaddy.com, LLC | BECKY.NS.CLOUDFLARE.COM | None |
60 | tier_2 | c.pageprotect.net | 3 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | None |
61 | tier_2 | clickserve.dartsearch.net | 3 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
62 | tier_2 | dbc.pathroutes.com | 3 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | None |
63 | tier_2 | lookandfind.me | 3 | NameCheap, Inc. | None | None |
64 | tier_2 | storehunter.co | 3 | NAMECHEAP INC | bart.ns.cloudflare.com | Privacy service provided by Withheld for Privacy ehf |
65 | tier_2 | click-v4.junmediadirect1.com | 2 | NAMECHEAP INC | NS1.LINODE.COM | Privacy service provided by Withheld for Privacy ehf |
66 | tier_2 | hisperlylitexts.com | 2 | Key-Systems GmbH | NS-1069.AWSDNS-05.ORG | c/o whoisproxy.com |
67 | tier_2 | theretailguides.com | 2 | GoDaddy.com, LLC | NS-1221.AWSDNS-24.ORG | None |
68 | tier_2 | wowtravel.io | 2 | GoDaddy.com, LLC | ns-1471.awsdns-55.org | None |
69 | tier_2 | blog.wowtravel.io | 2 | GoDaddy.com, LLC | ns-1471.awsdns-55.org | None |
70 | tier_2 | api.apptap.com | 2 | Amazon Registrar, Inc. | NS-1256.AWSDNS-29.ORG | Identity Protection Service |
71 | tier_2 | r.secprf.com | 2 | Cloudflare, Inc. | BEN.NS.CLOUDFLARE.COM | DATA REDACTED |
72 | tier_2 | assets.ikhnaie.link | 2 | Amazon Registrar, Inc. | ns-483.awsdns-60.com | Webgains Ltd |
73 | tier_2 | trackme.wdk18.com | 2 | Key-Systems GmbH | POPPY.NS.CLOUDFLARE.COM | c/o whoisproxy.com |
74 | tier_2 | monetoad.com | 2 | INWX GmbH | GERALD.NS.CLOUDFLARE.COM | REDACTED FOR PRIVACY |
75 | tier_2 | prf.hn | 2 | Gandi SAS | edns1.ultradns.com | None |
76 | tier_2 | nefer-xwt.com | 1 | Amazon Registrar, Inc. | NS-1520.AWSDNS-62.ORG | None |
77 | tier_2 | ww1.guide66.info | 1 | Key-Systems GmbH | ns1.rentondc.com | ['EdenMedia', 'REDACTED FOR PRIVACY'] |
78 | tier_2 | ww1.erain.in | 1 | Key-Systems GmbH | ns1.rentondc.com | None |
79 | tier_2 | ww1.wwyoutube.com | 1 | Sea Wasp, LLC | NS1.RENTONDC.COM | Jewella Privacy LLC Privacy ID# 1215983 |
80 | tier_3 | iyfbodn.com | 51 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
81 | tier_3 | mbest.aliexpress.com | 8 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
82 | tier_3 | r.secprf.com | 6 | Cloudflare, Inc. | BEN.NS.CLOUDFLARE.COM | DATA REDACTED |
83 | tier_3 | www.caliente.mx | 5 | SafeNames Ltd | leo.ns.cloudflare.com | None |
84 | tier_3 | www.globalconsumerwinner.com | 5 | GoDaddy.com, LLC | NS01.DOMAINCONTROL.COM | None |
85 | tier_3 | tri.hondadealers.com | 3 | Network Solutions, LLC | NS1.AMERHONDA.COM | None |
86 | tier_3 | www.clkmg.com | 3 | GoDaddy.com, LLC | NS1.SOFTLAYER.COM | None |
87 | tier_3 | www.etsy.com | 2 | MarkMonitor, Inc. | DNS1.P03.NSONE.NET | Etsy, Inc. |
88 | tier_3 | www.samsung.com | 2 | Whois Corp. | DNS-AWSKR1.SAMSUNG.COM | None |
89 | tier_3 | search.uk.etiquette.it | 2 | Algorithmedia S.r.l. | n | None |
90 | tier_3 | track.tychon.bid | 2 | None | None | None |
91 | tier_3 | amnotification.com | 1 | NameSilo, LLC | DAWN.NS.CLOUDFLARE.COM | PrivacyGuardian.org llc |
92 | tier_3 | tq.discoveryplugs-1.live | 1 | None | None | None |
93 | tier_3 | airdoctorpro.com | 1 | TurnCommerce, Inc. DBA NameBright.com | NS-127.AWSDNS-15.COM | None |
94 | tier_3 | myprotein.bttn.io | 1 | GANDI SAS | ns-1305.awsdns-35.org | None |
95 | tier_3 | brocarfinance.com_LOOP_1 | 1 | None | None | None |
96 | tier_3 | www.glasses.com | 1 | CSC CORPORATE DOMAINS, INC. | NS-1245.AWSDNS-27.ORG | Luxottica Group S.p.A. |
97 | tier_3 | brocarfinance.com | 1 | GoDaddy.com, LLC | NS65.DOMAINCONTROL.COM | Domains By Proxy, LLC |
98 | tier_3 | digital.acrpoker.eu | 1 | Safenames Ltd | n | None |
99 | tier_3 | warnmessage.com | 1 | NAMECHEAP INC | DNS1.REGISTRAR-SERVERS.COM | Privacy service provided by Withheld for Privacy ehf |
100 | tier_3 | www.oakneepainrelief.com | 1 | GoDaddy.com, LLC | DALE.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
101 | tier_3 | ww1.ssoccernet.com | 1 | Media Elite Holdings Limited | NS1.TORRESDNS.COM | Fundacion Privacy Services LTD |
102 | tier_3 | www.atgtickets.com | 1 | Cloudflare, Inc. | GRACE.NS.CLOUDFLARE.COM | DATA REDACTED |
103 | tier_3 | www.nissanusa.com | 1 | MarkMonitor, Inc. | EDNS2.ULTRADNS.BIZ | Nissan North America, Inc |
104 | tier_3 | www.avantitravelinsurance.co.uk | 1 | Gandi [Tag = GANDI] | e | None |
ip | city | region | org | postal | country_name | isEU | tier | count | anycast | hostname | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 93.115.28.104 | Šiauliai | Siauliai | AS16125 UAB Cherry Servers | 76001 | Lithuania | True | tier_1 | 97 | nan | nan |
1 | 172.98.192.35 | Atlanta | Georgia | AS31863 Centrilogic, Inc. | 30302 | United States | False | tier_1 | 3 | nan | nan |
2 | 172.98.192.37 | Atlanta | Georgia | AS31863 Centrilogic, Inc. | 30302 | United States | False | tier_1 | 3 | nan | nan |
3 | 199.59.243.224 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 51 | True | nan |
4 | 52.117.247.211 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 46 | nan | d3.f7.7534.ip4.static.sl-reverse.com |
5 | 23.197.147.37 | Zwaanshoek | North Holland | AS16625 Akamai Technologies, Inc. | 2144 | Netherlands | True | tier_3 | 8 | nan | a23-197-147-37.deploy.static.akamaitechnologies.com |
6 | 192.99.158.241 | Beauharnois | Quebec | AS16276 OVH SAS | J6N | Canada | False | tier_2 | 17 | nan | ip241.ip-192-99-158.net |
7 | 209.132.243.15 | Los Angeles | California | AS7296 Alchemy Communications, Inc. | 90009 | United States | False | tier_2 | 11 | nan | nan |
8 | 23.197.149.186 | Zwaanshoek | North Holland | AS16625 Akamai Technologies, Inc. | 2144 | Netherlands | True | tier_2 | 10 | nan | a23-197-149-186.deploy.static.akamaitechnologies.com |
9 | 5.79.68.236 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_2 | 8 | nan | nan |
10 | 5.9.85.57 | Falkenstein | Saxony | AS24940 Hetzner Online GmbH | 08223 | Germany | True | tier_2 | 8 | nan | static.57.85.9.5.clients.your-server.de |
11 | 44.207.163.6 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 5 | nan | ec2-44-207-163-6.compute-1.amazonaws.com |
12 | 34.107.252.138 | Kansas City | Missouri | AS396982 Google LLC | 64106 | United States | False | tier_2 | 5 | True | 138.252.107.34.bc.googleusercontent.com |
13 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 51 | nan | nan |
14 | 23.197.147.37 | Zwaanshoek | North Holland | AS16625 Akamai Technologies, Inc. | 2144 | Netherlands | True | tier_3 | 8 | nan | a23-197-147-37.deploy.static.akamaitechnologies.com |
15 | 137.74.65.7 | Roubaix | Hauts-de-France | AS16276 OVH SAS | 59051 CEDEX 1 | France | True | tier_3 | 5 | nan | ip7.ip-137-74-65.eu |
16 | 104.18.34.51 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 4 | True | nan |
17 | 104.18.24.194 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 3 | True | nan |
18 | 23.197.131.163 | Frankfurt am Main | Hesse | AS20940 Akamai International B.V. | 60306 | Germany | True | tier_3 | 3 | nan | a23-197-131-163.deploy.static.akamaitechnologies.com |
19 | 188.114.96.3 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | True | nan |
20 | 23.35.228.22 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 2 | nan | a23-35-228-22.deploy.static.akamaitechnologies.com |
21 | 172.64.153.205 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | True | nan |
22 | 69.192.160.55 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 2 | nan | a69-192-160-55.deploy.static.akamaitechnologies.com |
Zhouhan Chen, zc1245@nyu.edu, Personal Website