Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 186 | 169 | 378 | 0 | 0 | 2023-08-26 | 2023-08-26__37.48.65.149__android |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | www.demo.kpynyvym6xqi7wz2.onion.ph | 1 | None | None | None |
1 | tier_1 | www.shop.t4tw.info | 1 | Key-Systems GmbH | ns1.commonmx.com | ['EdenMedia', 'REDACTED FOR PRIVACY'] |
2 | tier_1 | cpcontacts.sunekaleisuregarden.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
3 | tier_1 | em5g.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
4 | tier_1 | www.karinalavoz.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
5 | tier_1 | hostmaster.par.eswahili.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
6 | tier_1 | funpdf.stepsforwardny.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
7 | tier_1 | fc-stahl.de.siterankd.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
8 | tier_1 | mg256.inet.ph | 1 | None | None | None |
9 | tier_1 | 9si76t.11-news.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
10 | tier_1 | www.geoplan.motopawn.ph | 1 | None | None | None |
11 | tier_1 | hostmaster.pgb.eswahili.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
12 | tier_1 | shop.fusafusaya.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
13 | tier_1 | mail.teamsuzuki.ph | 1 | None | None | None |
14 | tier_1 | admin.indenityguard.com | 1 | EPAG DOMAINSERVICES GmbH | NS1.COMMONMX.COM | None |
15 | tier_1 | shengdaguojizuqiu.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
16 | tier_1 | webmail.ycrl80.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
17 | tier_1 | pd4c22.11-news.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
18 | tier_1 | internetmarketing.ph | 1 | None | None | None |
19 | tier_1 | www.cav.ph | 1 | None | None | None |
20 | tier_1 | test.avnana.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
21 | tier_1 | bocaifangzhan.jn.adhcz.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
22 | tier_1 | 67-15-253-139.opticaljungle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
23 | tier_1 | www.boracaysunresorts.com.ph | 1 | None | None | None |
24 | tier_1 | 20p2.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
25 | tier_1 | yourcoeds.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
26 | tier_1 | admin.campseagull.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
27 | tier_1 | nailit.ph | 1 | None | None | None |
28 | tier_1 | vm0.hokeaca.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
29 | tier_1 | mescosteel.in | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
30 | tier_1 | 888zhenrendubo.linked.name | 1 | None | None | None |
31 | tier_1 | 77585.laohuji.ph | 1 | None | None | None |
32 | tier_1 | www.nakiusa.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
33 | tier_1 | suerogeneralhospital.beyondhorizons.com.ph | 1 | None | None | None |
34 | tier_1 | admin.limooblog.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
35 | tier_1 | tiqiuwangbifen.linked.name | 1 | None | None | None |
36 | tier_1 | admin.vcvv.me | 1 | Key-Systems GmbH | None | None |
37 | tier_1 | www.housingloan.ph | 1 | None | None | None |
38 | tier_1 | 140g268198g951e9123.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
39 | tier_1 | www.mamutmail.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
40 | tier_2 | myckdom.com | 10 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
41 | tier_2 | ww1.linked.name | 10 | None | None | None |
42 | tier_2 | dnavexch.com | 8 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dnavexch.com |
43 | tier_2 | p274639.myckdom.com | 8 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
44 | tier_2 | ww1.adhcz.com | 7 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
45 | tier_2 | ww1.onion.ph | 6 | None | None | None |
46 | tier_2 | anait-ypy.com | 5 | Amazon Registrar, Inc. | NS-1386.AWSDNS-45.ORG | Identity Protection Service |
47 | tier_2 | qvikar.com | 4 | Sea Wasp, LLC | NS2789.HOSTGATOR.COM | Jewella Privacy LLC Privacy ID# 1016679 |
48 | tier_2 | q1.quotes.com | 4 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
49 | tier_2 | ww1.opticaljungle.com | 4 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
50 | tier_2 | track.flexlinkspro.com | 3 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
51 | tier_2 | uk.find.srchmoney.com | 3 | GoDaddy.com, LLC | NS31.DOMAINCONTROL.COM | Domains By Proxy, LLC |
52 | tier_2 | nerve.eshkol.io | 3 | GoDaddy.com, LLC | ns11.constellix.com | None |
53 | tier_2 | p185689.myckdom.com | 2 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
54 | tier_2 | ww1.stepsforwardny.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
55 | tier_2 | ww1.motopawn.ph | 1 | None | None | None |
56 | tier_2 | ww1.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
57 | tier_2 | ww1.internetmarketing.ph | 1 | None | None | None |
58 | tier_2 | ww1.cav.ph | 1 | None | None | None |
59 | tier_2 | api.adroll.app | 1 | GoDaddy.com, LLC | ns47.domaincontrol.com | Domains By Proxy, LLC |
60 | tier_2 | ww1.boracaysunresorts.com.ph | 1 | None | None | None |
61 | tier_2 | trk.ai-adsolutions.com | 1 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
62 | tier_2 | as.ad4m.at | 1 | InterNetX GmbH ( https://nic.at/registrar/80 ) | None | advanced STORE GmbH |
63 | tier_2 | track.webgains.com | 1 | 123-Reg Limited | DOM.NS.CLOUDFLARE.COM | Webgains Ltd |
64 | tier_2 | ww1.hokeaca.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
65 | tier_2 | ww1.mescosteel.in | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
66 | tier_2 | ww1.beyondhorizons.com.ph | 1 | None | None | None |
67 | tier_2 | ww1.vcvv.me | 1 | Key-Systems GmbH | None | None |
68 | tier_2 | offer.5kfunds.com | 1 | NAMECHEAP INC | NS-137.AWSDNS-17.COM | Privacy service provided by Withheld for Privacy ehf |
69 | tier_2 | ww1.insidethebox.ph | 1 | None | None | None |
70 | tier_2 | 83101.click.validclick.net | 1 | Safenames Ltd | NS-1361.AWSDNS-42.ORG | None |
71 | tier_2 | trackme.wdk18.com | 1 | Key-Systems GmbH | POPPY.NS.CLOUDFLARE.COM | c/o whoisproxy.com |
72 | tier_2 | ww1.yptexas.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
73 | tier_2 | ww1.bestmobileapps.mobi | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
74 | tier_2 | ww1.bitcoins.com.ph | 1 | None | None | None |
75 | tier_2 | ww1.xn--h10b90b998c.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
76 | tier_2 | ww1.easyclick.com.ph | 1 | None | None | None |
77 | tier_2 | api.bloomit.online | 1 | GoDaddy.com, LLC | NS15.DOMAINCONTROL.COM | None |
78 | tier_2 | click-v4.expdirclk.com | 1 | NAMECHEAP INC | NS1.LINODE.COM | Privacy service provided by Withheld for Privacy ehf |
79 | tier_2 | go.proffering.xyz | 1 | NAMECHEAP INC | DNS1.REGISTRAR-SERVERS.COM | Privacy service provided by Withheld for Privacy ehf |
80 | tier_3 | iyfbodn.com | 56 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
81 | tier_3 | www.clkmg.com | 5 | GoDaddy.com, LLC | NS1.SOFTLAYER.COM | Domains By Proxy, LLC |
82 | tier_3 | ww1.eswahili.com | 4 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
83 | tier_3 | uk.find.srchmoney.com_LOOP_1 | 3 | None | None | None |
84 | tier_3 | simcast.com | 3 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
85 | tier_3 | www.caliente.mx | 3 | SafeNames Ltd | leo.ns.cloudflare.com | None |
86 | tier_3 | links.flexoffers.com | 2 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | None |
87 | tier_3 | ww1.t4tw.info | 1 | Key-Systems GmbH | ns1.commonmx.com | ['EdenMedia', 'REDACTED FOR PRIVACY'] |
88 | tier_3 | ww1.sunekaleisuregarden.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
89 | tier_3 | 2.ew-verlag-analytics.com | 1 | RegistryGate GmbH | NS5.KASSERVER.COM | REDACTED FOR PRIVACY |
90 | tier_3 | www.affordablemobiles.co.uk | 1 | 123-Reg Limited t/a 123-reg [Tag = 123-REG] | a | None |
91 | tier_3 | ww1.nailit.ph | 1 | None | None | None |
92 | tier_3 | www.5kfunds.com | 1 | NameCheap, Inc. | NS-137.AWSDNS-17.COM | None |
93 | tier_3 | ww1.iraqiairways.co | 1 | Key-Systems GmbH | ns1.commonmx.com | EdenMedia |
94 | tier_3 | ww1.customtruckaccess.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
95 | tier_3 | www.softsurroundings.com | 1 | Network Solutions, LLC | NS-1390.AWSDNS-45.ORG | None |
96 | tier_3 | ww1.imgaddict.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
97 | tier_3 | ww1.souljaboyxl.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
98 | tier_3 | ww1.wingcoupang.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
99 | tier_3 | ww1.shisit.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
100 | tier_3 | teenfinder.online | 1 | Go Daddy, LLC | NS59.DOMAINCONTROL.COM | None |
101 | tier_3 | ww1.taxinstitute.ph | 1 | None | None | None |
102 | tier_3 | www.worten.pt | 1 | None | zita.ns.cloudflare.com | None |
103 | tier_3 | ww1.doga44.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
104 | tier_3 | ww1.zkyong1123.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
105 | tier_3 | mbest.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
106 | tier_3 | ww1.itbdofficial.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
107 | tier_3 | ww1.primmero.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 36 | nan | nan |
1 | 37.48.65.148 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 34 | nan | nan |
2 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 34 | nan | nan |
3 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 26 | nan | nan |
4 | 185.107.56.199 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 6 | nan | nan |
5 | 185.107.56.198 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 6 | nan | nan |
6 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 5 | nan | nan |
7 | 45.79.222.138 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_1 | 4 | apple.parklogic.com | nan |
8 | 185.107.56.200 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 4 | nan | nan |
9 | 172.93.103.101 | Piscataway | New Jersey | AS23470 ReliableSite.Net LLC | 08854 | United States | False | tier_1 | 1 | nan | nan |
10 | 199.59.243.224 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 56 | nan | True |
11 | 52.117.247.211 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 20 | d3.f7.7534.ip4.static.sl-reverse.com | nan |
12 | 192.99.158.241 | Beauharnois | Quebec | AS16276 OVH SAS | J6N | Canada | False | tier_2 | 8 | ip241.ip-192-99-158.net | nan |
13 | 192.254.234.214 | Provo | Utah | AS46606 Unified Layer | 84601 | United States | False | tier_2 | 4 | 192-254-234-214.unifiedlayer.com | nan |
14 | 5.79.68.236 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_2 | 4 | nan | nan |
15 | 104.17.164.92 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_2 | 3 | nan | True |
16 | 34.193.71.220 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 3 | ec2-34-193-71-220.compute-1.amazonaws.com | nan |
17 | 52.6.215.177 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 3 | ec2-52-6-215-177.compute-1.amazonaws.com | nan |
18 | 34.107.252.138 | Kansas City | Missouri | AS396982 Google LLC | 64106 | United States | False | tier_2 | 3 | 138.252.107.34.bc.googleusercontent.com | True |
19 | 44.207.163.6 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 2 | ec2-44-207-163-6.compute-1.amazonaws.com | nan |
20 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 56 | nan | nan |
21 | 64.190.63.136 | Munich | Bavaria | AS47846 SEDO GmbH | 80331 | Germany | True | tier_3 | 18 | nan | nan |
22 | 50.97.212.250 | San Jose | California | AS36351 SoftLayer Technologies Inc. | 95103 | United States | False | tier_3 | 3 | fa.d4.6132.ip4.static.sl-reverse.com | nan |
23 | 178.162.228.7 | Frankfurt am Main | Hesse | AS28753 Leaseweb Deutschland GmbH | 60306 | Germany | True | tier_3 | 3 | hosted-by.leaseweb.com | nan |
24 | 45.79.244.12 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_3 | 3 | nb-45-79-244-12.an.nodebalancer.linode.com | nan |
25 | 104.17.71.53 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
26 | 50.97.244.203 | San Jose | California | AS36351 SoftLayer Technologies Inc. | 95103 | United States | False | tier_3 | 2 | clkmg.com | nan |
27 | 104.18.24.194 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
28 | 85.13.154.109 | Dresden | Saxony | AS34788 Neue Medien Muennich GmbH | 01067 | Germany | True | tier_3 | 1 | dd37834.kasserver.com | nan |
29 | 104.17.90.24 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
Zhouhan Chen, zc1245@nyu.edu, Personal Website