Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 208 | 203 | 576 | 0 | 0 | 2023-09-11 | 2023-09-11__207.244.67.215__iphone |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | webdisk.adsinfinity.ph | 1 | None | None | None |
1 | tier_1 | main.apollosystems.com.ph | 1 | None | None | None |
2 | tier_1 | cpcalendars.lacozina.ph | 1 | None | None | None |
3 | tier_1 | quailrunlodge.com | 1 | EPAG DOMAINSERVICES GmbH | NS1.COMMONMX.COM | Not Disclosed |
4 | tier_1 | hostmaster.tramprecords.kudosrecords.co | 1 | Key-Systems GmbH | ns1.commonmx.com | EdenMedia |
5 | tier_1 | 9d4a.ozu78.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
6 | tier_1 | ffcknc.ph | 1 | None | None | None |
7 | tier_1 | admin.ahiestwithmarkiplier.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
8 | tier_1 | atyourside.asia | 1 | Key-Systems GmbH | ns1.commonmx.com | c/o whoisproxy.com |
9 | tier_1 | www.whiteknighttours.ph | 1 | None | None | None |
10 | tier_1 | ww25.webmail.prsfl8.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
11 | tier_1 | admin.gogogl.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
12 | tier_1 | webdisk.hotelgrimalnis.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
13 | tier_1 | hostmaster.propertyhub.ph | 1 | None | None | None |
14 | tier_1 | f9re.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
15 | tier_1 | mail.hotelzuldemayda.co | 1 | Key-Systems GmbH | ns1.commonmx.com | c/o whoisproxy.com |
16 | tier_1 | www.6r3d.ancpw.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
17 | tier_1 | www5b.vichargrave.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
18 | tier_1 | asiaonline.tv | 1 | None | None | None |
19 | tier_1 | gs-games.gta-ru.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
20 | tier_1 | cd2558b2-abf5-11eb-b8f2-8c683af5d5c2.dooaii.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
21 | tier_1 | www.jaderubber.com.ph | 1 | None | None | None |
22 | tier_1 | pzheindejaars.nl | 1 | Sombrero.de Gmbh | ns1.commonmx.com | None |
23 | tier_1 | taiyangchengyulewang88.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
24 | tier_1 | growth.ph | 1 | None | None | None |
25 | tier_1 | thinkbigevents.ph | 1 | None | None | None |
26 | tier_1 | www.linkarm.ph | 1 | None | None | None |
27 | tier_1 | prensame.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
28 | tier_1 | mail.livelifeforless.com.ph | 1 | None | None | None |
29 | tier_1 | www.z12e.ancpw.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
30 | tier_1 | hao.raraway.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
31 | tier_1 | youtube.labnul.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
32 | tier_1 | staging.123inc.nl | 1 | Sombrero.de Gmbh | ns1.commonmx.com | None |
33 | tier_1 | msdn.itechzero.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
34 | tier_1 | careers.ibedc-ng.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
35 | tier_1 | nevipdf.stepsforwardny.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
36 | tier_1 | ww25.dc-3e0109472b44.direct4ktv.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
37 | tier_1 | 189.11.2.azcom.ph | 1 | None | None | None |
38 | tier_1 | www.memorialsfestivaloftrees.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
39 | tier_1 | baomahuiyulechengbaijiale.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
40 | tier_2 | c.clickprotects.com | 61 | GoDaddy.com, LLC | NS63.DOMAINCONTROL.COM | Domains By Proxy, LLC |
41 | tier_2 | 11165151.addotnet.com | 61 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
42 | tier_2 | myckdom.com | 12 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
43 | tier_2 | ww1.afbtc.com | 10 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
44 | tier_2 | qvikar.com | 7 | Sea Wasp, LLC | NS2789.HOSTGATOR.COM | Jewella Privacy LLC Privacy ID# 1016679 |
45 | tier_2 | dnavexch.com | 7 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dnavexch.com |
46 | tier_2 | p274639.myckdom.com | 7 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
47 | tier_2 | phraa-lby.com | 6 | Amazon Registrar, Inc. | NS-1176.AWSDNS-19.ORG | Identity Protection Service |
48 | tier_2 | p185689.myckdom.com | 5 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
49 | tier_2 | drust-gnf.com | 4 | Amazon Registrar, Inc. | NS-1096.AWSDNS-09.ORG | Identity Protection Service |
50 | tier_2 | affmoneyus.com | 4 | Internet Domain Service BS Corp. | NS20.DIGICERTDNS.COM | Whois Privacy Corp. |
51 | tier_2 | www.awin1.com | 3 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
52 | tier_2 | 1yyhe.voluumtrk.com | 3 | DYNADOT LLC | NS-1310.AWSDNS-35.ORG | Super Privacy Service LTD c/o Dynadot |
53 | tier_2 | deffield-funuals.com | 3 | Amazon Registrar, Inc. | NS-1327.AWSDNS-37.ORG | Identity Protection Service |
54 | tier_2 | affiliate.iqbroker.com | 3 | https://www.101domain.com/ | NS-1084.AWSDNS-07.ORG | IQOPTION LTD. |
55 | tier_2 | ifigent.com | 3 | ABOVE.COM PTY LTD. | NS1.TRELLIAN.COM | None |
56 | tier_2 | ww1.linked.name | 2 | None | None | None |
57 | tier_2 | trk.ai-adsolutions.com | 2 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
58 | tier_2 | r.srvtrck.com | 2 | GoDaddy.com, LLC | BEN.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
59 | tier_2 | tracking.vcommission.com | 2 | PDR Ltd. d/b/a PublicDomainRegistry.com | MARK.NS.CLOUDFLARE.COM | vCommission Media Private Limited |
60 | tier_2 | r.bttn.io | 2 | GANDI SAS | ns-1305.awsdns-35.org | None |
61 | tier_2 | myprotein.bttn.io | 2 | GANDI SAS | ns-1305.awsdns-35.org | None |
62 | tier_2 | trackme.wdk18.com | 2 | Key-Systems GmbH | POPPY.NS.CLOUDFLARE.COM | c/o whoisproxy.com |
63 | tier_2 | my.toruftuiov.com | 2 | Danesco Trading Ltd. | NS1.TOPDNS.ME | None |
64 | tier_2 | app.appsflyer.com | 2 | GoDaddy.com, LLC | NS-1429.AWSDNS-50.ORG | Domains By Proxy, LLC |
65 | tier_2 | q1.quotes.com | 2 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
66 | tier_2 | track.flexlinkspro.com | 2 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
67 | tier_2 | ww1.hotelgrimalnis.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
68 | tier_2 | ww1.stepsforwardny.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
69 | tier_2 | ww1.direct4ktv.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
70 | tier_2 | ww1.depedbinancity.com.ph | 1 | None | None | None |
71 | tier_2 | ww1.rabaispromo.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
72 | tier_2 | ww1.jobbank.ph | 1 | None | None | None |
73 | tier_2 | 2.ew-verlag-analytics.com | 1 | RegistryGate GmbH | NS5.KASSERVER.COM | REDACTED FOR PRIVACY |
74 | tier_2 | r.v2i8b.com | 1 | Amazon Registrar, Inc. | NS-1517.AWSDNS-61.ORG | None |
75 | tier_2 | discounthero.org | 1 | IONOS SE | ns1020.ui-dns.org | noctemque UG haftungsbeschraenkt |
76 | tier_2 | link.shoplooks.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | VIP3.ALIDNS.COM | None |
77 | tier_2 | click.linksynergy.com | 1 | CSC CORPORATE DOMAINS, INC. | DNS1.P09.NSONE.NET | Rakuten Marketing |
78 | tier_2 | ww1.myhometherapist.ph | 1 | None | None | None |
79 | tier_2 | ww1.libertynationalinsurance.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
80 | tier_3 | music.apple.com | 61 | NOM-IQ Ltd dba Com Laude | A.NS.APPLE.COM | Apple Inc. |
81 | tier_3 | iyfbodn.com | 30 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
82 | tier_3 | simcast.com | 10 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
83 | tier_3 | www.clkmg.com | 9 | GoDaddy.com, LLC | NS1.SOFTLAYER.COM | Domains By Proxy, LLC |
84 | tier_3 | astro-mantra.com | 4 | Internet Domain Service BS Corp. | NS20.DIGICERTDNS.COM | Whois Privacy Corp. |
85 | tier_3 | iosvpndefender.com | 2 | Danesco Trading Ltd. | DREW.NS.CLOUDFLARE.COM | None |
86 | tier_3 | apps.apple.com | 2 | NOM-IQ Ltd dba Com Laude | A.NS.APPLE.COM | Apple Inc. |
87 | tier_3 | search.uk.etiquette.it | 2 | Algorithmedia S.r.l. | n | None |
88 | tier_3 | links.flexoffers.com | 2 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | None |
89 | tier_3 | www.superdry.com | 1 | NOM-IQ Ltd dba Com Laude | NS-1329.AWSDNS-38.ORG | SuperGroup Internet Limited |
90 | tier_3 | www.myprotein.com | 1 | MarkMonitor, Inc. | DNS1.P05.NSONE.NET | Thehut.com Limited |
91 | tier_3 | land.bttn.io | 1 | GANDI SAS | ns-1305.awsdns-35.org | None |
92 | tier_3 | sedo.com | 1 | World4You Internet Services GmbH | EMILY.NS.CLOUDFLARE.COM | None |
93 | tier_3 | app.appsflyer.com | 1 | GoDaddy.com, LLC | NS-1429.AWSDNS-50.ORG | None |
94 | tier_3 | www.aliexpress.com_LOOP_1 | 1 | None | None | None |
95 | tier_3 | www.etsy.com | 1 | MarkMonitor, Inc. | DNS1.P03.NSONE.NET | Etsy, Inc. |
96 | tier_3 | aff.kuaizihei.live | 1 | None | None | None |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 38 | nan | nan |
1 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 36 | nan | nan |
2 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 32 | nan | nan |
3 | 37.48.65.148 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 30 | nan | nan |
4 | 185.107.56.199 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 13 | nan | nan |
5 | 185.107.56.198 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 12 | nan | nan |
6 | 45.79.222.138 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_1 | 10 | apple.parklogic.com | nan |
7 | 185.107.56.200 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 8 | nan | nan |
8 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 8 | nan | nan |
9 | 172.93.103.100 | Piscataway | New Jersey | AS23470 ReliableSite.Net LLC | 08854 | United States | False | tier_1 | 1 | nan | nan |
10 | 209.132.243.249 | Los Angeles | California | AS7296 Alchemy Communications, Inc. | 90009 | United States | False | tier_2 | 122 | nan | nan |
11 | 199.59.243.224 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 31 | nan | True |
12 | 52.117.247.211 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 24 | d3.f7.7534.ip4.static.sl-reverse.com | nan |
13 | 192.99.158.241 | Beauharnois | Quebec | AS16276 OVH SAS | J6N | Canada | False | tier_2 | 8 | ip241.ip-192-99-158.net | nan |
14 | 192.254.234.214 | Provo | Utah | AS46606 Unified Layer | 84601 | United States | False | tier_2 | 7 | 192-254-234-214.unifiedlayer.com | nan |
15 | 159.223.137.120 | North Bergen | New Jersey | AS14061 DigitalOcean, LLC | 07047 | United States | False | tier_3 | 4 | nan | nan |
16 | 3.228.195.94 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 4 | ec2-3-228-195-94.compute-1.amazonaws.com | nan |
17 | 23.56.205.163 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_2 | 3 | a23-56-205-163.deploy.static.akamaitechnologies.com | nan |
18 | 18.192.108.151 | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60306 | Germany | True | tier_2 | 3 | ec2-18-192-108-151.eu-central-1.compute.amazonaws.com | nan |
19 | 185.117.134.136 | Amsterdam | North Holland | AS204006 IQOPTION EUROPE LTD | 1012 | Netherlands | True | tier_2 | 3 | nan | nan |
20 | 23.35.236.24 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 63 | a23-35-236-24.deploy.static.akamaitechnologies.com | nan |
21 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 30 | nan | nan |
22 | 45.79.244.12 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_3 | 10 | nb-45-79-244-12.an.nodebalancer.linode.com | nan |
23 | 50.97.212.250 | San Jose | California | AS36351 SoftLayer Technologies Inc. | 95103 | United States | False | tier_3 | 5 | fa.d4.6132.ip4.static.sl-reverse.com | nan |
24 | 50.97.244.203 | San Jose | California | AS36351 SoftLayer Technologies Inc. | 95103 | United States | False | tier_3 | 4 | clkmg.com | nan |
25 | 159.223.137.120 | North Bergen | New Jersey | AS14061 DigitalOcean, LLC | 07047 | United States | False | tier_3 | 4 | nan | nan |
26 | 104.21.6.123 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
27 | 34.245.98.228 | Dublin | Leinster | AS16509 Amazon.com, Inc. | D02 | Ireland | True | tier_3 | 2 | ec2-34-245-98-228.eu-west-1.compute.amazonaws.com | nan |
28 | 104.17.207.71 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
29 | 99.86.4.23 | Mörfelden-Walldorf | Hesse | AS16509 Amazon.com, Inc. | 64546 | Germany | True | tier_3 | 1 | server-99-86-4-23.fra6.r.cloudfront.net | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website