Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 223 | 212 | 574 | 0 | 0 | 2023-09-25 | 2023-09-25__37.48.65.149__iphone |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | ouguanzuixinsheshoubang.linked.name | 1 | None | None | None |
1 | tier_1 | 174-122-92-218.opticaljungle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
2 | tier_1 | cpanel.chasingtails.ph | 1 | None | None | None |
3 | tier_1 | hostmaster.av8x8x.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
4 | tier_1 | www.tokitoki.ph | 1 | None | None | None |
5 | tier_1 | xno2jf.11-news.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
6 | tier_1 | carlolopezkatigbak.com.ph | 1 | None | None | None |
7 | tier_1 | admin.rusconsulatemumbai.in | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
8 | tier_1 | wwwbjbhnetbocaiwang.linked.name | 1 | None | None | None |
9 | tier_1 | www.carolynjeanmatthews.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
10 | tier_1 | www.saka.com.ph | 1 | None | None | None |
11 | tier_1 | test.btirtsagar.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
12 | tier_1 | www.katoliko.ph | 1 | None | None | None |
13 | tier_1 | gabithu.me | 1 | Key-Systems GmbH | None | None |
14 | tier_1 | www.techforum.pcclinic.com.ph | 1 | None | None | None |
15 | tier_1 | mail.dermpharma.com.ph | 1 | None | None | None |
16 | tier_1 | www.sydneygrass.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
17 | tier_1 | quanqiuyulecheng.linked.name | 1 | None | None | None |
18 | tier_1 | mazda.auto--keys.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
19 | tier_1 | miads.ph | 1 | None | None | None |
20 | tier_1 | cpcontacts.antshop.ph | 1 | None | None | None |
21 | tier_1 | pixxieset.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
22 | tier_1 | www.takahashihitomi.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
23 | tier_1 | visas.com.ph | 1 | None | None | None |
24 | tier_1 | admin.riverview.com.ph | 1 | None | None | None |
25 | tier_1 | www.community.staging.tagani.ph | 1 | None | None | None |
26 | tier_1 | www2.blog.chaircover.novelty.ph | 1 | None | None | None |
27 | tier_1 | jindubaijiale.jn.adhcz.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
28 | tier_1 | as01-66152.reach.net.ph | 1 | None | None | None |
29 | tier_1 | 189f9r7o7147k2123.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
30 | tier_1 | admin.lolacorazon.com.ph | 1 | None | None | None |
31 | tier_1 | www.the-land-rover.com | 1 | EPAG DOMAINSERVICES GmbH | NS1.COMMONMX.COM | Not Disclosed |
32 | tier_1 | partswp.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
33 | tier_1 | boang.ph | 1 | None | None | None |
34 | tier_1 | shopjustbasics.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
35 | tier_1 | purposedriven.org.ph | 1 | None | None | None |
36 | tier_1 | cpanel.loancalculator.com.ph | 1 | None | None | None |
37 | tier_1 | merchant.zuuki.com.ph | 1 | None | None | None |
38 | tier_1 | www.m.www.google.onion.ph | 1 | None | None | None |
39 | tier_1 | i2xj.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
40 | tier_2 | c.clickprotects.com | 67 | GoDaddy.com, LLC | NS63.DOMAINCONTROL.COM | Domains By Proxy, LLC |
41 | tier_2 | 11165151.addotnet.com | 66 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
42 | tier_2 | ww1.opticaljungle.com | 12 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
43 | tier_2 | ww1.linked.name | 5 | None | None | None |
44 | tier_2 | ww1.onion.ph | 5 | None | None | None |
45 | tier_2 | ww1.adhcz.com | 4 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
46 | tier_2 | 11165151.searchiqnet.com | 3 | GoDaddy.com, LLC | NS57.DOMAINCONTROL.COM | Domains By Proxy, LLC |
47 | tier_2 | c.pageprotect.net | 2 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
48 | tier_2 | vibiu-dau.com | 2 | Amazon Registrar, Inc. | NS-1088.AWSDNS-08.ORG | Identity Protection Service |
49 | tier_2 | ifigent.com | 2 | ABOVE.COM PTY LTD. | NS1.TRELLIAN.COM | None |
50 | tier_2 | my.toruftuiov.com | 2 | Danesco Trading Ltd. | NS1.TOPDNS.ME | None |
51 | tier_2 | weixiao7.online | 2 | GoDaddy.com, LLC | NS05.DOMAINCONTROL.COM | None |
52 | tier_2 | ww1.rc-welt.com | 2 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
53 | tier_2 | ramac-dnn.com | 2 | Amazon Registrar, Inc. | NS-1069.AWSDNS-05.ORG | Identity Protection Service |
54 | tier_2 | arimabusiness3.com | 2 | Internet Domain Service BS Corp. | NS20.DIGICERTDNS.COM | Whois Privacy Corp. |
55 | tier_2 | ww1.carolynjeanmatthews.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
56 | tier_2 | trk.ai-adsolutions.com | 1 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
57 | tier_2 | widget.mypublicads.com | 1 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
58 | tier_2 | as.ad4m.at | 1 | InterNetX GmbH ( https://nic.at/registrar/80 ) | None | advanced STORE GmbH |
59 | tier_2 | track.webgains.com | 1 | 123-Reg Limited | DOM.NS.CLOUDFLARE.COM | Webgains Ltd |
60 | tier_2 | affordablemobiles.co.uk | 1 | 123-Reg Limited t/a 123-reg [Tag = 123-REG] | a | None |
61 | tier_2 | ww1.miads.ph | 1 | None | None | None |
62 | tier_2 | ww1.riverview.com.ph | 1 | None | None | None |
63 | tier_2 | ww1.novelty.ph | 1 | None | None | None |
64 | tier_2 | ww1.the-land-rover.com | 1 | EPAG DOMAINSERVICES GmbH | NS1.COMMONMX.COM | Not Disclosed |
65 | tier_2 | ww1.shopjustbasics.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
66 | tier_2 | click-v4.expdirclk.com | 1 | NameCheap, Inc. | NS1.LINODE.COM | None |
67 | tier_2 | ww1.btdao.me | 1 | Key-Systems GmbH | None | None |
68 | tier_2 | ww1.embol-sa.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
69 | tier_2 | ww1.extra.ph | 1 | None | None | None |
70 | tier_2 | ww1.rjtours.ph | 1 | None | None | None |
71 | tier_2 | ww1.relxpods.ph | 1 | None | None | None |
72 | tier_2 | ww1.promethea.com.ph | 1 | None | None | None |
73 | tier_2 | ww1.wolohostelrio.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
74 | tier_2 | ww1.cpdportal.ph | 1 | None | None | None |
75 | tier_2 | ww1.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
76 | tier_2 | ww1.hanimee.tv | 1 | None | None | None |
77 | tier_2 | q1.quotes.com | 1 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
78 | tier_2 | offer.5kfunds.com | 1 | NAMECHEAP INC | NS-137.AWSDNS-17.COM | Privacy service provided by Withheld for Privacy ehf |
79 | tier_2 | www.5kfunds.com | 1 | NAMECHEAP INC | NS-137.AWSDNS-17.COM | Privacy service provided by Withheld for Privacy ehf |
80 | tier_3 | music.apple.com | 66 | NOM-IQ Ltd dba Com Laude | A.NS.APPLE.COM | Apple Inc. |
81 | tier_3 | iyfbodn.com | 56 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
82 | tier_3 | simcast.com | 3 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
83 | tier_3 | www.skechers.com | 2 | MarkMonitor, Inc. | ALAN.NS.CLOUDFLARE.COM | Skechers USA |
84 | tier_3 | iosvpndefender.com | 2 | Danesco Trading Ltd. | DREW.NS.CLOUDFLARE.COM | None |
85 | tier_3 | aff.kuaizihei.live | 2 | None | None | None |
86 | tier_3 | astro-mantra.com | 2 | Internet Domain Service BS Corp. | NS20.DIGICERTDNS.COM | Whois Privacy Corp. |
87 | tier_3 | www.affordablemobiles.co.uk | 1 | 123-Reg Limited t/a 123-reg [Tag = 123-REG] | a | None |
88 | tier_3 | 11165151.addotnet.com | 1 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | None |
89 | tier_3 | www.connectingoffers.com | 1 | Amazon Registrar, Inc. | NS-1129.AWSDNS-13.ORG | Identity Protection Service |
90 | tier_3 | uk.srchtopdeals.com_LOOP_1 | 1 | None | None | None |
91 | tier_3 | www.kiwi.com | 1 | GoDaddy Online Services Cayman Islands Ltd. | FATTOUCHE.NS.CLOUDFLARE.COM | None |
92 | tier_3 | apps.apple.com | 1 | NOM-IQ Ltd dba Com Laude | A.NS.APPLE.COM | Apple Inc. |
93 | tier_3 | www.volvocars.com | 1 | CSC CORPORATE DOMAINS, INC. | UDNS1.CSCDNS.NET | VolvoCarCorporation |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 51 | nan | nan |
1 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 48 | nan | nan |
2 | 37.48.65.148 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 40 | nan | nan |
3 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 33 | nan | nan |
4 | 185.107.56.199 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 11 | nan | nan |
5 | 185.107.56.198 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 5 | nan | nan |
6 | 45.79.222.138 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_1 | 3 | apple.parklogic.com | nan |
7 | 185.107.56.200 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 3 | nan | nan |
8 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 3 | nan | nan |
9 | 207.244.67.218 | Washington | Washington, D.C. | AS30633 Leaseweb USA, Inc. | 20004 | United States | False | tier_1 | 2 | nan | nan |
10 | 209.132.243.249 | Los Angeles | California | AS7296 Alchemy Communications, Inc. | 90009 | United States | False | tier_3 | 1 | nan | nan |
11 | 199.59.243.224 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 56 | nan | True |
12 | 209.132.243.15 | Los Angeles | California | AS7296 Alchemy Communications, Inc. | 90009 | United States | False | tier_2 | 7 | nan | nan |
13 | 18.232.14.192 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 2 | ec2-18-232-14-192.compute-1.amazonaws.com | nan |
14 | 103.224.182.206 | San Diego | California | AS133618 Trellian Pty. Limited | 92101 | United States | False | tier_2 | 2 | bidr.trellian.com | nan |
15 | 18.158.88.249 | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60306 | Germany | True | tier_2 | 2 | ec2-18-158-88-249.eu-central-1.compute.amazonaws.com | nan |
16 | 135.181.219.19 | Vaala | Kainuu | AS24940 Hetzner Online GmbH | 91710 | Finland | True | tier_2 | 2 | static.19.219.181.135.clients.your-server.de | nan |
17 | 192.99.158.241 | Beauharnois | Quebec | AS16276 OVH SAS | J6N | Canada | False | tier_2 | 2 | ip241.ip-192-99-158.net | nan |
18 | 52.117.247.211 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 2 | d3.f7.7534.ip4.static.sl-reverse.com | nan |
19 | 54.173.140.51 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 2 | ec2-54-173-140-51.compute-1.amazonaws.com | nan |
20 | 23.35.236.24 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 67 | a23-35-236-24.deploy.static.akamaitechnologies.com | nan |
21 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 56 | nan | nan |
22 | 45.79.244.12 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_3 | 3 | nb-45-79-244-12.an.nodebalancer.linode.com | nan |
23 | 104.16.188.137 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
24 | 172.67.134.215 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
25 | 108.178.23.115 | Chicago | Illinois | AS32475 SingleHop LLC | 60666 | United States | False | tier_3 | 2 | server04.com-2.mobi | nan |
26 | 159.223.137.120 | North Bergen | New Jersey | AS14061 DigitalOcean, LLC | 07047 | United States | False | tier_3 | 2 | nan | nan |
27 | 104.17.89.24 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
28 | 209.132.243.249 | Los Angeles | California | AS7296 Alchemy Communications, Inc. | 90009 | United States | False | tier_3 | 1 | nan | nan |
29 | 54.186.131.183 | Boardman | Oregon | AS16509 Amazon.com, Inc. | 97818 | United States | False | tier_3 | 1 | ec2-54-186-131-183.us-west-2.compute.amazonaws.com | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website