Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 217 | 200 | 494 | 0 | 0 | 2023-09-23 | 2023-09-23__37.48.65.149__android |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | kf.artstaton.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
1 | tier_1 | bocaijiaoliudeluntannalihao.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
2 | tier_1 | toutiao.chinaso.com.hrmtuq.ph | 1 | None | None | None |
3 | tier_1 | www.homeplate.ph | 1 | None | None | None |
4 | tier_1 | cpanel.teamhyundai.ph | 1 | None | None | None |
5 | tier_1 | xueyuanyuandiyizuqiuwang.linked.name | 1 | None | None | None |
6 | tier_1 | en.ymbolab.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
7 | tier_1 | webdisk.nfurl.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
8 | tier_1 | mogilev-podolskiy.mnezvonili.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
9 | tier_1 | divinegovernmentofgod.com.ph | 1 | None | None | None |
10 | tier_1 | dermazole.ph | 1 | None | None | None |
11 | tier_1 | mvn.tenerife-canarie.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
12 | tier_1 | li3x.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
13 | tier_1 | webmail.djakhil.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
14 | tier_1 | cabrialesfloors.yptexas.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
15 | tier_1 | wuxingguojizhenrendubo.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
16 | tier_1 | businessshopeg.com.siterankd.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
17 | tier_1 | boyingyulecheng.linked.name | 1 | None | None | None |
18 | tier_1 | privateconnections.nl | 1 | Sombrero.de Gmbh | ns1.commonmx.com | None |
19 | tier_1 | admin.detroitnews.co | 1 | Key-Systems GmbH | ns1.commonmx.com | c/o whoisproxy.com |
20 | tier_1 | yuehui.163.com.ztvuhp.ph | 1 | None | None | None |
21 | tier_1 | mail.lawcenter.ph | 1 | None | None | None |
22 | tier_1 | hostmaster.visitmimaropa.ph | 1 | None | None | None |
23 | tier_1 | buzzerie.com.siterankd.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
24 | tier_1 | www.zaz.zazspot.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
25 | tier_1 | nyctuxedos.com.siterankd.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
26 | tier_1 | adrian.cortez.ph | 1 | None | None | None |
27 | tier_1 | cpcontacts.gobohol.ph | 1 | None | None | None |
28 | tier_1 | cpanel.grp.ph | 1 | None | None | None |
29 | tier_1 | www.jp-b2effe65305ae92645a0ee728925b7e657685d0f.ph | 1 | None | None | None |
30 | tier_1 | admin.indenityguard.com | 1 | EPAG DOMAINSERVICES GmbH | NS1.COMMONMX.COM | Not Disclosed |
31 | tier_1 | www.cem3374.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
32 | tier_1 | filipian.ph | 1 | None | None | None |
33 | tier_1 | www.kaleza.ph | 1 | None | None | None |
34 | tier_1 | galveston-tx.net.siterankd.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
35 | tier_1 | www.btc.promethea.com.ph | 1 | None | None | None |
36 | tier_1 | admin.t4tw.info | 1 | Key-Systems GmbH | ns1.commonmx.com | ['EdenMedia', 'REDACTED FOR PRIVACY'] |
37 | tier_1 | datartisan.com.siterankd.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
38 | tier_1 | ges.sm99.ph | 1 | None | None | None |
39 | tier_1 | www1.smashmoms.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
40 | tier_2 | myckdom.com | 14 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
41 | tier_2 | vibiu-dau.com | 11 | Amazon Registrar, Inc. | NS-1088.AWSDNS-08.ORG | Identity Protection Service |
42 | tier_2 | dnavexch.com | 10 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dnavexch.com |
43 | tier_2 | p274639.myckdom.com | 10 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
44 | tier_2 | uk.srchtopdeals.com | 7 | GoDaddy.com, LLC | NS51.DOMAINCONTROL.COM | Domains By Proxy, LLC |
45 | tier_2 | ww1.adhcz.com | 7 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
46 | tier_2 | popredirect.bestbspops2023.com | 6 | GoDaddy.com, LLC | NS07.DOMAINCONTROL.COM | Domains By Proxy, LLC |
47 | tier_2 | surveygett.com | 6 | URL SOLUTIONS INC. | NS-1425.AWSDNS-50.ORG | GLOBAL DOMAIN PRIVACY SERVICES INC |
48 | tier_2 | google.com | 6 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
49 | tier_2 | nerve.eshkol.io | 6 | GoDaddy.com, LLC | ns11.constellix.com | None |
50 | tier_2 | ww1.linked.name | 6 | None | None | None |
51 | tier_2 | ww1.opticaljungle.com | 6 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
52 | tier_2 | ww1.afbtc.com | 4 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
53 | tier_2 | p185689.myckdom.com | 4 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
54 | tier_2 | 11165151.searchiqnet.com | 3 | GoDaddy.com, LLC | NS57.DOMAINCONTROL.COM | Domains By Proxy, LLC |
55 | tier_2 | api.adgurubox.com | 3 | GoDaddy.com, LLC | NS69.DOMAINCONTROL.COM | Domains By Proxy, LLC |
56 | tier_2 | www.awin1.com | 3 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
57 | tier_2 | api.adroll.app | 3 | GoDaddy.com, LLC | ns47.domaincontrol.com | Domains By Proxy, LLC |
58 | tier_2 | q1.quotes.com | 3 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
59 | tier_2 | track.flexlinkspro.com | 3 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
60 | tier_2 | trk.ai-adsolutions.com | 2 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
61 | tier_2 | r.srvtrck.com | 2 | GoDaddy.com, LLC | BEN.NS.CLOUDFLARE.COM | None |
62 | tier_2 | tracking.vcommission.com | 2 | PDR Ltd. d/b/a PublicDomainRegistry.com | MARK.NS.CLOUDFLARE.COM | vCommission Media Private Limited |
63 | tier_2 | r.bttn.io | 2 | GANDI SAS | ns-1305.awsdns-35.org | None |
64 | tier_2 | uk.find.srchmoney.com | 2 | GoDaddy.com, LLC | NS31.DOMAINCONTROL.COM | None |
65 | tier_2 | api.bloomit.online | 2 | Go Daddy, LLC | NS15.DOMAINCONTROL.COM | None |
66 | tier_2 | ww1.artstaton.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
67 | tier_2 | ww1.homeplate.ph | 1 | None | None | None |
68 | tier_2 | ww1.teamhyundai.ph | 1 | None | None | None |
69 | tier_2 | ww1.divinegovernmentofgod.com.ph | 1 | None | None | None |
70 | tier_2 | ww1.dermazole.ph | 1 | None | None | None |
71 | tier_2 | ww1.tenerife-canarie.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
72 | tier_2 | api.regiantraffic.com | 1 | GoDaddy.com, LLC | NS27.DOMAINCONTROL.COM | None |
73 | tier_2 | ww1.lawcenter.ph | 1 | None | None | None |
74 | tier_2 | c.adclickthru.net | 1 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | None |
75 | tier_2 | ww1.smashmoms.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
76 | tier_2 | c.safevisitors.net | 1 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | None |
77 | tier_2 | booking.com | 1 | MarkMonitor, Inc. | NS-1288.AWSDNS-33.ORG | Booking.com B.V. |
78 | tier_2 | ww1.scorindustries.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
79 | tier_2 | ww1.gjvi.ph | 1 | None | None | None |
80 | tier_3 | iyfbodn.com | 61 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | None |
81 | tier_3 | uk.srchtopdeals.com_LOOP_1 | 7 | None | None | None |
82 | tier_3 | www.google.com | 6 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
83 | tier_3 | www.caliente.mx | 6 | SafeNames Ltd | leo.ns.cloudflare.com | None |
84 | tier_3 | simcast.com | 3 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
85 | tier_3 | myfood.ltd | 2 | None | None | None |
86 | tier_3 | myprotein.bttn.io | 2 | GANDI SAS | ns-1305.awsdns-35.org | None |
87 | tier_3 | ww1.eswahili.com | 2 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
88 | tier_3 | links.flexoffers.com | 2 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | None |
89 | tier_3 | uk.find.srchmoney.com_LOOP_1 | 2 | None | None | None |
90 | tier_3 | ww1.ymbolab.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
91 | tier_3 | ww1.djakhil.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
92 | tier_3 | www.experian.com | 1 | Network Solutions, LLC | EXP1.EXPERIAN.COM | None |
93 | tier_3 | ww1.t4tw.info | 1 | Key-Systems GmbH | ns1.commonmx.com | ['EdenMedia', 'REDACTED FOR PRIVACY'] |
94 | tier_3 | www.booking.com | 1 | MarkMonitor, Inc. | NS-1288.AWSDNS-33.ORG | Booking.com B.V. |
95 | tier_3 | ww1.ismilestore.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
96 | tier_3 | ww1.fusafusaya.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
97 | tier_3 | ww1.nailit.ph | 1 | None | None | None |
98 | tier_3 | path2zillion.com | 1 | DNC Holdings, Inc | NS1.DIGITALOCEAN.COM | Jewella Privacy LLC Privacy ID# 14747296 |
99 | tier_3 | ww1.filefarsi.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
100 | tier_3 | ww1.satcom911.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
101 | tier_3 | ww1.iraqiairways.co | 1 | Key-Systems GmbH | ns1.commonmx.com | EdenMedia |
102 | tier_3 | ww1.zhainanmao.cc | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
103 | tier_3 | mbest.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
104 | tier_3 | ww1.podsvest.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
105 | tier_3 | ww1.cmi.com.ph | 1 | None | None | None |
106 | tier_3 | ww1.alchosting.ph | 1 | None | None | None |
107 | tier_3 | www.skechers.com | 1 | MarkMonitor, Inc. | ALAN.NS.CLOUDFLARE.COM | Skechers USA |
108 | tier_3 | ww1.morpheblushes.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.148 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 65 | nan | nan |
1 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 39 | nan | nan |
2 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 33 | nan | nan |
3 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 32 | nan | nan |
4 | 185.107.56.199 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 6 | nan | nan |
5 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 6 | nan | nan |
6 | 45.79.222.138 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_1 | 4 | apple.parklogic.com | nan |
7 | 185.107.56.198 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 4 | nan | nan |
8 | 185.107.56.200 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 4 | nan | nan |
9 | 207.244.67.215 | Washington | Washington, D.C. | AS30633 Leaseweb USA, Inc. | 20004 | United States | False | tier_1 | 2 | nan | nan |
10 | 199.59.243.224 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 61 | nan | True |
11 | 52.117.247.211 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 28 | d3.f7.7534.ip4.static.sl-reverse.com | nan |
12 | 192.99.158.241 | Beauharnois | Quebec | AS16276 OVH SAS | J6N | Canada | False | tier_2 | 11 | ip241.ip-192-99-158.net | nan |
13 | 52.6.215.177 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 9 | ec2-52-6-215-177.compute-1.amazonaws.com | nan |
14 | 18.232.14.192 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 7 | ec2-18-232-14-192.compute-1.amazonaws.com | nan |
15 | 139.45.196.64 | Amsterdam | North Holland | AS9002 RETN Limited | 1012 | Netherlands | True | tier_2 | 6 | nan | nan |
16 | 172.217.18.14 | Frankfurt am Main | Hesse | AS15169 Google LLC | 60306 | Germany | True | tier_2 | 6 | fra02s19-in-f14.1e100.net | nan |
17 | 34.107.252.138 | Kansas City | Missouri | AS396982 Google LLC | 64106 | United States | False | tier_2 | 6 | 138.252.107.34.bc.googleusercontent.com | True |
18 | 209.132.243.15 | Los Angeles | California | AS7296 Alchemy Communications, Inc. | 90009 | United States | False | tier_2 | 6 | nan | nan |
19 | 34.205.42.136 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 4 | ec2-34-205-42-136.compute-1.amazonaws.com | nan |
20 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 61 | nan | nan |
21 | 64.190.63.136 | Munich | Bavaria | AS47846 SEDO GmbH | 80331 | Germany | True | tier_3 | 16 | nan | nan |
22 | 178.162.228.7 | Frankfurt am Main | Hesse | AS28753 Leaseweb Deutschland GmbH | 60306 | Germany | True | tier_3 | 9 | hosted-by.leaseweb.com | nan |
23 | 142.250.186.36 | Frankfurt am Main | Hesse | AS15169 Google LLC | 60306 | Germany | True | tier_3 | 4 | fra24s04-in-f4.1e100.net | nan |
24 | 172.64.144.16 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 4 | nan | True |
25 | 45.79.244.12 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_3 | 3 | nb-45-79-244-12.an.nodebalancer.linode.com | nan |
26 | 151.139.128.10 | Dallas | Texas | AS20446 StackPath, LLC. | 75207 | United States | False | tier_3 | 2 | map3.hwcdn.net | True |
27 | 3.129.79.161 | Hilliard | Ohio | AS16509 Amazon.com, Inc. | 43026 | United States | False | tier_3 | 2 | ec2-3-129-79-161.us-east-2.compute.amazonaws.com | nan |
28 | 104.17.207.71 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
29 | 142.250.184.228 | Frankfurt am Main | Hesse | AS15169 Google LLC | 60306 | Germany | True | tier_3 | 2 | fra24s12-in-f4.1e100.net | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website