Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 64 | 56 | 156 | 0 | 0 | 2023-10-19 | 2023-10-19__37.48.65.149__iphone |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | yongliyulechengbocai.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
1 | tier_1 | chuanqi185dubodeshuju.linked.name | 1 | None | None | None |
2 | tier_1 | cpanel.loancalculator.com.ph | 1 | None | None | None |
3 | tier_1 | muxingyulechengdubo.jn.adhcz.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
4 | tier_1 | www.chaseshappiremail.com | 1 | GoDaddy.com, LLC | NS1.COMMONMX.COM | Domains By Proxy, LLC |
5 | tier_1 | admin.indenityguard.com | 1 | EPAG DOMAINSERVICES GmbH | NS1.COMMONMX.COM | Not Disclosed |
6 | tier_1 | dan.wingcoupang.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
7 | tier_1 | dev.femedom.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
8 | tier_1 | precisionconstruction.com.ph | 1 | None | None | None |
9 | tier_1 | www.insidethebox.ph | 1 | None | None | None |
10 | tier_1 | www.shop.email-list-database.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
11 | tier_1 | data.flatx.com.ph | 1 | None | None | None |
12 | tier_1 | www.icc.ph | 1 | None | None | None |
13 | tier_1 | www.aies.rbm-web2017.ph | 1 | None | None | None |
14 | tier_1 | desotocountyjail.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
15 | tier_1 | wuxingguojizhenrendubo.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
16 | tier_1 | bagoshrimps.restogra.ph | 1 | None | None | None |
17 | tier_1 | relatosverdes.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
18 | tier_1 | podsvest.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
19 | tier_1 | cpcontacts.futuresafe.ph | 1 | None | None | None |
20 | tier_1 | www.boracaysunresorts.com.ph | 1 | None | None | None |
21 | tier_1 | eleboyulechengbocaigongsi.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
22 | tier_1 | webmail.hrrac.org.ph | 1 | None | None | None |
23 | tier_1 | hongshulinyulechengbaijiale.jn.adhcz.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
24 | tier_1 | wenku.kiwinb.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
25 | tier_1 | en.hydra2web.ph | 1 | None | None | None |
26 | tier_1 | cpcalendars.rps2construction.com.ph | 1 | None | None | None |
27 | tier_1 | player.opengg.me | 1 | Key-Systems GmbH | None | None |
28 | tier_1 | developer.truefranchisingworld.ph | 1 | None | None | None |
29 | tier_1 | samelcodos.com.ph | 1 | None | None | None |
30 | tier_1 | www.news.hamechikadeh.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
31 | tier_1 | blogs.worldadultpages.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
32 | tier_1 | hostmaster.samsuncard.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
33 | tier_1 | www.dydqw.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
34 | tier_1 | www.batanes.ph | 1 | None | None | None |
35 | tier_1 | webdisk.workout.ph | 1 | None | None | None |
36 | tier_1 | seller.blinli.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
37 | tier_1 | hostmaster.jigsimur.com | 1 | GoDaddy.com, LLC | NS1.COMMONMX.COM | Domains By Proxy, LLC |
38 | tier_1 | pzmbrf.ozu78.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
39 | tier_1 | carnesfinasdelpuerto.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
40 | tier_2 | vibiu-dau.com | 12 | Amazon Registrar, Inc. | NS-1088.AWSDNS-08.ORG | Identity Protection Service |
41 | tier_2 | 11165151.edgeconnectcdn.net | 3 | GoDaddy.com, LLC | NS01.DOMAINCONTROL.COM | Domains By Proxy, LLC |
42 | tier_2 | 11165151.trafficcertify.com | 2 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
43 | tier_2 | click-v4.expdirclk.com | 2 | NAMECHEAP INC | NS1.LINODE.COM | Privacy service provided by Withheld for Privacy ehf |
44 | tier_2 | weixiao7.online | 2 | GoDaddy.com, LLC | NS05.DOMAINCONTROL.COM | None |
45 | tier_2 | geotrkclknow.com | 1 | NAMECHEAP INC | EVAN.NS.CLOUDFLARE.COM | Privacy service provided by Withheld for Privacy ehf |
46 | tier_2 | uxwaovm.com | 1 | NAMECHEAP INC | NS-1327.AWSDNS-37.ORG | Privacy service provided by Withheld for Privacy ehf |
47 | tier_2 | ww2.affinity.net | 1 | DOMAINPEOPLE, INC. | NS-1183.AWSDNS-19.ORG | WhoisProtector Inc. |
48 | tier_2 | nexus.syndicmarketing.com | 1 | Name.com, Inc. | NS1.INMOTIONHOSTING.COM | Domain Protection Services, Inc. |
49 | tier_2 | q1.quotes.com | 1 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
50 | tier_2 | track.flexlinkspro.com | 1 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
51 | tier_2 | trk.ai-adsolutions.com | 1 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
52 | tier_2 | trk.mypublicads.com | 1 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
53 | tier_2 | as.ad4m.at | 1 | InterNetX GmbH ( https://nic.at/registrar/80 ) | None | advanced STORE GmbH |
54 | tier_2 | track.webgains.com | 1 | 123-Reg Limited | DOM.NS.CLOUDFLARE.COM | None |
55 | tier_2 | affordablemobiles.co.uk | 1 | 123-Reg Limited t/a 123-reg [Tag = 123-REG] | a | None |
56 | tier_2 | ww12.torrents9.ph | 1 | None | None | None |
57 | tier_2 | 11165151.pageprotect.net | 1 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | None |
58 | tier_2 | ww1.adhcz.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
59 | tier_2 | clickserve.dartsearch.net | 1 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
60 | tier_2 | ad.doubleclick.net | 1 | MarkMonitor Inc. | NS1.GOOGLE.COM | None |
61 | tier_2 | adservice.google.com | 1 | MarkMonitor Inc. | NS1.GOOGLE.COM | None |
62 | tier_2 | 11165151.awscdnet.com | 1 | GoDaddy.com, LLC | NS47.DOMAINCONTROL.COM | None |
63 | tier_3 | search.uk.etiquette.it | 8 | Algorithmedia S.r.l. | n | None |
64 | tier_3 | track.tychon.bid | 4 | None | None | None |
65 | tier_3 | simcast.com | 4 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
66 | tier_3 | pes23.lituiop.com | 2 | GoDaddy.com, LLC | NS1.DIGITALOCEAN.COM | None |
67 | tier_3 | aff.kuaizihei.live | 2 | None | None | None |
68 | tier_3 | www.experian.com | 1 | Network Solutions, LLC | EXP1.EXPERIAN.COM | None |
69 | tier_3 | uk-go.kelkoogroup.net | 1 | MarkMonitor, Inc. | NS1.MARKMONITOR.COM | Jamplant Limited |
70 | tier_3 | www.kiwi.com | 1 | GoDaddy Online Services Cayman Islands Ltd. | FATTOUCHE.NS.CLOUDFLARE.COM | None |
71 | tier_3 | links.flexoffers.com | 1 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | None |
72 | tier_3 | www.affordablemobiles.co.uk | 1 | 123-Reg Limited t/a 123-reg [Tag = 123-REG] | a | None |
73 | tier_3 | www.skechers.com | 1 | MarkMonitor Inc. | ALAN.NS.CLOUDFLARE.COM | None |
74 | tier_3 | iyfbodn.com | 1 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
75 | tier_3 | www.nissanusa.com | 1 | MarkMonitor Inc. | EDNS2.ULTRADNS.BIZ | None |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 22 | nan | nan |
1 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 19 | nan | nan |
2 | 37.48.65.148 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 18 | nan | nan |
3 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 15 | nan | nan |
4 | 45.79.222.138 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_1 | 4 | apple.parklogic.com | nan |
5 | 185.107.56.200 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 3 | nan | nan |
6 | 185.107.56.198 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 2 | nan | nan |
7 | 185.107.56.199 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 2 | nan | nan |
8 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 1 | nan | nan |
9 | 172.93.103.99 | Piscataway | New Jersey | AS23470 ReliableSite.Net LLC | 08854 | United States | False | tier_1 | 1 | nan | nan |
10 | 18.232.14.192 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 8 | ec2-18-232-14-192.compute-1.amazonaws.com | nan |
11 | 209.132.243.15 | Simi Valley | California | AS7296 Alchemy Communications, Inc. | 93062 | United States | False | tier_2 | 7 | nan | nan |
12 | 34.205.42.136 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 4 | ec2-34-205-42-136.compute-1.amazonaws.com | nan |
13 | 198.134.116.17 | New York City | New York | AS27257 Webair Internet Development Company Inc. | 10013 | United States | False | tier_2 | 2 | nan | nan |
14 | 135.181.219.19 | Helsinki | Uusimaa | AS24940 Hetzner Online GmbH | 00100 | Finland | True | tier_2 | 2 | static.19.219.181.135.clients.your-server.de | nan |
15 | 104.21.82.176 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_2 | 1 | nan | True |
16 | 3.125.239.17 | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60306 | Germany | True | tier_2 | 1 | ec2-3-125-239-17.eu-central-1.compute.amazonaws.com | nan |
17 | 34.160.232.116 | Kansas City | Missouri | AS15169 Google LLC | 64106 | United States | False | tier_2 | 1 | 116.232.160.34.bc.googleusercontent.com | True |
18 | 192.145.236.104 | Los Angeles | California | AS22611 InMotion Hosting, Inc. | 90009 | United States | False | tier_2 | 1 | vps61555.inmotionhosting.com | nan |
19 | 5.79.68.236 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_2 | 1 | nan | nan |
20 | 54.75.30.235 | Dublin | Leinster | AS16509 Amazon.com, Inc. | D02 | Ireland | True | tier_3 | 8 | ec2-54-75-30-235.eu-west-1.compute.amazonaws.com | nan |
21 | 188.114.97.3 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 4 | nan | True |
22 | 45.79.244.12 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_3 | 4 | nb-45-79-244-12.an.nodebalancer.linode.com | nan |
23 | 45.55.100.83 | New York City | New York | AS14061 DigitalOcean, LLC | 10011 | United States | False | tier_3 | 2 | nan | nan |
24 | 108.178.23.115 | Chicago | Illinois | AS32475 SingleHop LLC | 60666 | United States | False | tier_3 | 2 | server04.com-2.mobi | nan |
25 | 45.60.124.189 | Redwood City | California | AS19551 Incapsula Inc | 94065 | United States | False | tier_3 | 1 | nan | True |
26 | 95.211.116.26 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_3 | 1 | dc1-ecs-pub-mx-vip.kelkoo.com | nan |
27 | 104.17.162.14 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
28 | 104.17.207.71 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
29 | 104.17.89.24 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
Zhouhan Chen, zc1245@nyu.edu, Personal Website