Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 140 | 131 | 390 | 0 | 0 | 2023-09-29 | 2023-09-29__37.48.65.149__chrome |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | www1.cinecelebs.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
1 | tier_1 | removetheshoes.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
2 | tier_1 | www.idianlv.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
3 | tier_1 | admin.urbantouch.ph | 1 | None | None | None |
4 | tier_1 | ww25.xhs006.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
5 | tier_1 | ww38.deaivdo.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
6 | tier_1 | www.housingloan.ph | 1 | None | None | None |
7 | tier_1 | jinshaquanxunwang.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
8 | tier_1 | 70.87.28-109.opticaljungle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
9 | tier_1 | hostmaster.fmjclif.com.ph | 1 | None | None | None |
10 | tier_1 | customtruckaccess.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
11 | tier_1 | debitcard.ph | 1 | None | None | None |
12 | tier_1 | autodiscover.gopiko.ph | 1 | None | None | None |
13 | tier_1 | demo.grindingmill.ph | 1 | None | None | None |
14 | tier_1 | cpcontacts.indirimkapinda.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
15 | tier_1 | admin.brave.ph | 1 | None | None | None |
16 | tier_1 | primmero.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
17 | tier_1 | providentplans.com.ph | 1 | None | None | None |
18 | tier_1 | mx7.trulias.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
19 | tier_1 | www.biot.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
20 | tier_1 | webmail.hrrac.org.ph | 1 | None | None | None |
21 | tier_1 | www.vt.hthydraruzxpnew4af.onion.ph | 1 | None | None | None |
22 | tier_1 | hostmaster.hackers.com.ph | 1 | None | None | None |
23 | tier_1 | cpcontacts.nelsonhoney.com.ph | 1 | None | None | None |
24 | tier_1 | maven.flippingnightmares.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
25 | tier_1 | www.dornew2.gongzuo.ph | 1 | None | None | None |
26 | tier_1 | www.simplydemi.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
27 | tier_1 | skr-v-1-1-firmware-marlin-2.buz-food.info | 1 | Key-Systems GmbH | ns1.commonmx.com | c/o whoisproxy.com |
28 | tier_1 | onlinepds.bpinsicpvpo.com.ph | 1 | None | None | None |
29 | tier_1 | 6v96.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
30 | tier_1 | hostmaster.cruzcomm.ph | 1 | None | None | None |
31 | tier_1 | code.vietwebguide.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
32 | tier_1 | admin.zamara.ph | 1 | None | None | None |
33 | tier_1 | hostmaster.xiaobi58.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
34 | tier_1 | mp3limon.info | 1 | Key-Systems GmbH | ns1.commonmx.com | c/o whoisproxy.com |
35 | tier_1 | en.morpheblushes.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
36 | tier_1 | admin.damag.me | 1 | Key-Systems GmbH | None | None |
37 | tier_1 | filmy4xyz.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
38 | tier_1 | mail.swimhq.ph | 1 | None | None | None |
39 | tier_1 | webdisk.workout.ph | 1 | None | None | None |
40 | tier_2 | c.clickprotects.com | 32 | GoDaddy.com, LLC | NS63.DOMAINCONTROL.COM | Domains By Proxy, LLC |
41 | tier_2 | 11165151.addotnet.com | 32 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
42 | tier_2 | myckdom.com | 18 | NameCheap, Inc. | NS10.DIGICERTDNS.COM | None |
43 | tier_2 | dnavexch.com | 13 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dnavexch.com |
44 | tier_2 | qvikar.com | 12 | Sea Wasp, LLC | NS2789.HOSTGATOR.COM | Jewella Privacy LLC Privacy ID# 1016679 |
45 | tier_2 | p274639.myckdom.com | 12 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
46 | tier_2 | s.click.aliexpress.com | 8 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
47 | tier_2 | p185689.myckdom.com | 5 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
48 | tier_2 | q1.quotes.com | 5 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
49 | tier_2 | track.flexlinkspro.com | 4 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
50 | tier_2 | www.awin1.com | 4 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
51 | tier_2 | campaign.aliexpress.com | 4 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
52 | tier_2 | agent-us.com | 4 | Internet Domain Service BS Corp. | NS20.DIGICERTDNS.COM | Whois Privacy Corp. |
53 | tier_2 | c.pageprotect.net | 2 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
54 | tier_2 | ww1.opticaljungle.com | 2 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
55 | tier_2 | vibiu-dau.com | 2 | Amazon Registrar, Inc. | NS-1088.AWSDNS-08.ORG | Identity Protection Service |
56 | tier_2 | google.com | 2 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
57 | tier_2 | click-v4.expdirclk.com | 2 | NAMECHEAP INC | NS1.LINODE.COM | Privacy service provided by Withheld for Privacy ehf |
58 | tier_2 | 11165151.searchiqnet.com | 1 | GoDaddy.com, LLC | NS57.DOMAINCONTROL.COM | Domains By Proxy, LLC |
59 | tier_2 | offer.5kfunds.com | 1 | NameCheap, Inc. | NS-137.AWSDNS-17.COM | None |
60 | tier_2 | deffield-funuals.com | 1 | Amazon Registrar, Inc. | NS-1327.AWSDNS-37.ORG | Identity Protection Service |
61 | tier_2 | affiliate.iqbroker.com | 1 | https://www.101domain.com/ | NS-1084.AWSDNS-07.ORG | IQOPTION LTD. |
62 | tier_2 | ww1.providentplans.com.ph | 1 | None | None | None |
63 | tier_2 | ww1.onion.ph | 1 | None | None | None |
64 | tier_2 | trackme.wdk18.com | 1 | Key-Systems GmbH | POPPY.NS.CLOUDFLARE.COM | c/o whoisproxy.com |
65 | tier_2 | ganda-ljo.com | 1 | Amazon Registrar, Inc. | NS-1097.AWSDNS-09.ORG | Identity Protection Service |
66 | tier_2 | statistic-data.com | 1 | NameCheap, Inc. | DNS1.REGISTRAR-SERVERS.COM | None |
67 | tier_2 | www4.getsecurybrowseapp.com | 1 | NameCheap, Inc. | ALEXIS.NS.CLOUDFLARE.COM | None |
68 | tier_2 | ww1.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
69 | tier_2 | 11165150.searchiqnet.com | 1 | GoDaddy.com, LLC | NS57.DOMAINCONTROL.COM | Domains By Proxy, LLC |
70 | tier_2 | clickserve.dartsearch.net | 1 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
71 | tier_2 | ad.doubleclick.net | 1 | MarkMonitor Inc. | NS1.GOOGLE.COM | None |
72 | tier_2 | awscdnet.com | 1 | GoDaddy.com, LLC | NS47.DOMAINCONTROL.COM | Domains By Proxy, LLC |
73 | tier_2 | ramac-dnn.com | 1 | Amazon Registrar, Inc. | NS-1069.AWSDNS-05.ORG | None |
74 | tier_2 | www.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
75 | tier_2 | www.aliexpress.us | 1 | CSC Corporate Domains, Inc. | ns1.alibabadns.com | None |
76 | tier_2 | login.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
77 | tier_2 | login.aliexpress.us | 1 | CSC Corporate Domains, Inc. | ns1.alibabadns.com | None |
78 | tier_2 | ww1.easyclick.com.ph | 1 | None | None | None |
79 | tier_2 | ww1.junstdancenow.com | 1 | EPAG DOMAINSERVICES GmbH | NS1.COMMONMX.COM | Not Disclosed |
80 | tier_3 | music.apple.com | 32 | NOM-IQ Ltd dba Com Laude | A.NS.APPLE.COM | Apple Inc. |
81 | tier_3 | www.clkmg.com | 13 | GoDaddy.com, LLC | NS1.SOFTLAYER.COM | Domains By Proxy, LLC |
82 | tier_3 | iyfbodn.com | 7 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | None |
83 | tier_3 | best.aliexpress.com | 5 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
84 | tier_3 | www.google.com | 2 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
85 | tier_3 | simcast.com | 2 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
86 | tier_3 | www.skechers.com | 1 | MarkMonitor Inc. | ALAN.NS.CLOUDFLARE.COM | None |
87 | tier_3 | www.5kfunds.com | 1 | NameCheap, Inc. | NS-137.AWSDNS-17.COM | None |
88 | tier_3 | iqbroker.com | 1 | https://www.101domain.com/ | NS-1084.AWSDNS-07.ORG | IQOPTION LTD. |
89 | tier_3 | ww1.customtruckaccess.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
90 | tier_3 | pes23.lituiop.com | 1 | GoDaddy.com, LLC | NS1.DIGITALOCEAN.COM | Domains By Proxy, LLC |
91 | tier_3 | ww1.morpheblushes.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
92 | tier_3 | nftmetrica.com | 1 | GoDaddy.com, LLC | ELMA.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
93 | tier_3 | torrent-protection.com | 1 | GoDaddy.com, LLC | NS23.DOMAINCONTROL.COM | Domains By Proxy, LLC |
94 | tier_3 | ww1.eswahili.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
95 | tier_3 | ww1.filefarsi.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
96 | tier_3 | ww1.t4tw.info | 1 | Key-Systems GmbH | ns1.commonmx.com | ['EdenMedia', 'REDACTED FOR PRIVACY'] |
97 | tier_3 | www.samsung.com | 1 | Whois Corp. | DNS-AWSKR1.SAMSUNG.COM | Samsung Electronics CO., Ltd |
98 | tier_3 | www.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
99 | tier_3 | www.aliexpress.us_LOOP_1 | 1 | None | None | None |
100 | tier_3 | ww1.satcom911.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
101 | tier_3 | ww1.sunekaleisuregarden.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
102 | tier_3 | campaign.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 29 | nan | nan |
1 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 29 | nan | nan |
2 | 37.48.65.148 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 24 | nan | nan |
3 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 15 | nan | nan |
4 | 185.107.56.200 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 6 | nan | nan |
5 | 185.107.56.198 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 5 | nan | nan |
6 | 185.107.56.199 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 5 | nan | nan |
7 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 4 | nan | nan |
8 | 45.79.222.138 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_1 | 4 | apple.parklogic.com | nan |
9 | 172.93.103.99 | Piscataway | New Jersey | AS23470 ReliableSite.Net LLC | 08854 | United States | False | tier_1 | 1 | nan | nan |
10 | 209.132.243.249 | Los Angeles | California | AS7296 Alchemy Communications, Inc. | 90009 | United States | False | tier_2 | 64 | nan | nan |
11 | 52.117.247.211 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 35 | d3.f7.7534.ip4.static.sl-reverse.com | nan |
12 | 23.207.107.56 | Zwaanshoek | North Holland | AS16625 Akamai Technologies, Inc. | 2144 | Netherlands | True | tier_3 | 7 | a23-207-107-56.deploy.static.akamaitechnologies.com | nan |
13 | 192.99.158.241 | Beauharnois | Quebec | AS16276 OVH SAS | J6N | Canada | False | tier_2 | 13 | ip241.ip-192-99-158.net | nan |
14 | 192.254.234.214 | Provo | Utah | AS46606 Unified Layer | 84601 | United States | False | tier_2 | 12 | 192-254-234-214.unifiedlayer.com | nan |
15 | 199.59.243.224 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 7 | nan | True |
16 | 209.132.243.15 | Los Angeles | California | AS7296 Alchemy Communications, Inc. | 90009 | United States | False | tier_2 | 5 | nan | nan |
17 | 5.79.68.236 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_2 | 5 | nan | nan |
18 | 23.197.149.186 | Zwaanshoek | North Holland | AS16625 Akamai Technologies, Inc. | 2144 | Netherlands | True | tier_2 | 4 | a23-197-149-186.deploy.static.akamaitechnologies.com | nan |
19 | 159.223.137.120 | North Bergen | New Jersey | AS14061 DigitalOcean, LLC | 07047 | United States | False | tier_2 | 4 | nan | nan |
20 | 23.192.162.85 | Zwaanshoek | North Holland | AS16625 Akamai Technologies, Inc. | 2144 | Netherlands | True | tier_3 | 32 | a23-192-162-85.deploy.static.akamaitechnologies.com | nan |
21 | 50.97.212.250 | San Jose | California | AS36351 SoftLayer Technologies Inc. | 95103 | United States | False | tier_3 | 10 | fa.d4.6132.ip4.static.sl-reverse.com | nan |
22 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 7 | nan | nan |
23 | 64.190.63.136 | Munich | Bavaria | AS47846 SEDO GmbH | 80331 | Germany | True | tier_3 | 7 | nan | nan |
24 | 23.207.107.56 | Zwaanshoek | North Holland | AS16625 Akamai Technologies, Inc. | 2144 | Netherlands | True | tier_3 | 7 | a23-207-107-56.deploy.static.akamaitechnologies.com | nan |
25 | 50.97.244.203 | San Jose | California | AS36351 SoftLayer Technologies Inc. | 95103 | United States | False | tier_3 | 3 | clkmg.com | nan |
26 | 142.250.184.228 | Frankfurt am Main | Hesse | AS15169 Google LLC | 60306 | Germany | True | tier_3 | 2 | fra24s12-in-f4.1e100.net | nan |
27 | 45.79.244.12 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_3 | 2 | nb-45-79-244-12.an.nodebalancer.linode.com | nan |
28 | 104.16.188.137 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
29 | 52.26.194.149 | Boardman | Oregon | AS16509 Amazon.com, Inc. | 97818 | United States | False | tier_3 | 1 | ec2-52-26-194-149.us-west-2.compute.amazonaws.com | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website