Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 63 | 56 | 145 | 0 | 0 | 2023-10-26 | 2023-10-26__207.244.67.215__iphone |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | 1840436.rc-welt.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
1 | tier_1 | portal.cirelliskinclinic.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
2 | tier_1 | domainforum.info | 1 | Key-Systems GmbH | ns1.commonmx.com | c/o whoisproxy.com |
3 | tier_1 | manager.mwmuseum.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
4 | tier_1 | barred.lu6000.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
5 | tier_1 | brajarajnagar.bandelal.comsrinagar.bandelal.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
6 | tier_1 | hostmaster.kabayan.com.ph | 1 | None | None | None |
7 | tier_1 | www.l004.ancpw.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
8 | tier_1 | staging.fummyordie.com | 1 | EPAG DOMAINSERVICES GmbH | NS1.COMMONMX.COM | Not Disclosed |
9 | tier_1 | www.olsens.com.ph | 1 | None | None | None |
10 | tier_1 | ww35.libertynationalinsurance.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
11 | tier_1 | store.test.email-list-database.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
12 | tier_1 | test.ww.bestmobileapps.mobi | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
13 | tier_1 | autodiscover.posiepatchbridalsuperstores.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
14 | tier_1 | koodak4000.limooblog.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
15 | tier_1 | webdisk.infinity.vow.ph | 1 | None | None | None |
16 | tier_1 | www.kayu.ph | 1 | None | None | None |
17 | tier_1 | hostmaster.supervapors.ph | 1 | None | None | None |
18 | tier_1 | continue.shoofgoal.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
19 | tier_1 | cpanel.textron.com.ph | 1 | None | None | None |
20 | tier_1 | www.garajesportonesyautomatismo.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
21 | tier_1 | www.license.buildsmart.com.ph | 1 | None | None | None |
22 | tier_1 | admin.directon.tv | 1 | None | None | None |
23 | tier_1 | ww25.feedback.palplus.me | 1 | Key-Systems GmbH | None | None |
24 | tier_1 | cpcontacts.kapataganldn.com.ph | 1 | None | None | None |
25 | tier_1 | 241b8jj43v3z144215.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
26 | tier_1 | corecvitamin.skinsolutions.com.ph | 1 | None | None | None |
27 | tier_1 | new.xbk008.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
28 | tier_1 | mosiguojiyulecheng.xs8xs.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
29 | tier_1 | flash.peoplelinkbenefits.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
30 | tier_1 | themomentgroup.ph | 1 | None | None | None |
31 | tier_1 | qa-staging-api.juanride.ph | 1 | None | None | None |
32 | tier_1 | admin.boutiquetutu.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
33 | tier_1 | acconts.autudesk.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
34 | tier_1 | mup789.ph | 1 | None | None | None |
35 | tier_1 | hostmaster.mx7.tubekittt.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
36 | tier_1 | shop.hydra2web.ph | 1 | None | None | None |
37 | tier_1 | sba.ph | 1 | None | None | None |
38 | tier_1 | wetter.rc-welt.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
39 | tier_1 | pzheindejaars.nl | 1 | Sombrero.de Gmbh | ns1.commonmx.com | None |
40 | tier_2 | vibiu-dau.com | 14 | Amazon Registrar, Inc. | NS-1088.AWSDNS-08.ORG | Identity Protection Service |
41 | tier_2 | q1.quotes.com | 3 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
42 | tier_2 | track.flexlinkspro.com | 3 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
43 | tier_2 | 11165151.trafficcertify.com | 2 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
44 | tier_2 | 11165151.edgeconnectcdn.net | 2 | GoDaddy.com, LLC | NS01.DOMAINCONTROL.COM | Domains By Proxy, LLC |
45 | tier_2 | www.awin1.com | 1 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
46 | tier_2 | s.click.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
47 | tier_2 | campaign.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
48 | tier_2 | best.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
49 | tier_2 | clickserve.dartsearch.net | 1 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
50 | tier_2 | ad.doubleclick.net | 1 | MarkMonitor Inc. | NS1.GOOGLE.COM | None |
51 | tier_2 | adservice.google.com | 1 | MarkMonitor Inc. | NS1.GOOGLE.COM | None |
52 | tier_2 | 11165151.awscdnet.com | 1 | GoDaddy.com, LLC | NS47.DOMAINCONTROL.COM | Domains By Proxy, LLC |
53 | tier_2 | a.cdn.searchiq.co | 1 | GoDaddy.com, LLC | nina.ns.cloudflare.com | Domains By Proxy, LLC |
54 | tier_2 | ww2.affinity.net | 1 | DOMAINPEOPLE, INC. | NS-1183.AWSDNS-19.ORG | WhoisProtector Inc. |
55 | tier_2 | www.kqzyfj.com | 1 | MarkMonitor, Inc. | ASIA9.AKAM.NET | Conversant, Inc. |
56 | tier_2 | cj.dotomi.com | 1 | GoDaddy.com, LLC | ASIA9.AKAM.NET | Domains By Proxy, LLC |
57 | tier_2 | www.emjcd.com | 1 | MarkMonitor Inc. | ASIA9.AKAM.NET | None |
58 | tier_2 | ww1.autudesk.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
59 | tier_2 | dprtb.com | 1 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dprtb.com |
60 | tier_2 | click-v4.junmediadirect1.com | 1 | NAMECHEAP INC | NS1.LINODE.COM | Privacy service provided by Withheld for Privacy ehf |
61 | tier_2 | impactserving.com | 1 | GoDaddy.com, LLC | AMY.NS.CLOUDFLARE.COM | None |
62 | tier_2 | crmentjg.com | 1 | Eurodns S.A. | NS1.EURODNS.COM | Docler IP S.a r.l. |
63 | tier_2 | geotrkclknow.com | 1 | NAMECHEAP INC | EVAN.NS.CLOUDFLARE.COM | Privacy service provided by Withheld for Privacy ehf |
64 | tier_2 | uxwaovm.com | 1 | NAMECHEAP INC | NS-1327.AWSDNS-37.ORG | Privacy service provided by Withheld for Privacy ehf |
65 | tier_2 | ww1.ireport.ph | 1 | None | None | None |
66 | tier_3 | search.uk.etiquette.it | 8 | Algorithmedia S.r.l. | n | None |
67 | tier_3 | app.linqto.com | 4 | Network Solutions, LLC | NS11.WORLDNIC.COM | None |
68 | tier_3 | www.nissanusa.com | 2 | MarkMonitor, Inc. | EDNS2.ULTRADNS.BIZ | Nissan North America, Inc |
69 | tier_3 | links.flexoffers.com | 2 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | None |
70 | tier_3 | simcast.com | 2 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
71 | tier_3 | mbest.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
72 | tier_3 | pes23.lituiop.com | 1 | GoDaddy.com, LLC | NS1.DIGITALOCEAN.COM | None |
73 | tier_3 | www.kay.com | 1 | CSC CORPORATE DOMAINS, INC. | A1-183.AKAM.NET | Sterling Jewelers, Inc. |
74 | tier_3 | iyfbodn.com | 1 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
75 | tier_3 | crmpt.livejasmin.com | 1 | Eurodns S.A. | NS1.DDITSERVICES.COM | Docler IP S.a r.l. |
76 | tier_3 | track.tychon.bid | 1 | None | None | None |
77 | tier_3 | uk-go.kelkoogroup.net | 1 | MarkMonitor, Inc. | NS1.MARKMONITOR.COM | Jamplant Limited |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 19 | nan | nan |
1 | 37.48.65.148 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 19 | nan | nan |
2 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 14 | nan | nan |
3 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 12 | nan | nan |
4 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 3 | nan | nan |
5 | 45.79.222.138 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_1 | 3 | apple.parklogic.com | nan |
6 | 185.107.56.200 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 2 | nan | nan |
7 | 185.107.56.199 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 2 | nan | nan |
8 | 72.52.178.23 | Lansing | Michigan | AS32244 Liquid Web, L.L.C | 48901 | United States | False | tier_1 | 1 | lb01.parklogic.com | nan |
9 | 35.171.236.221 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 8 | ec2-35-171-236-221.compute-1.amazonaws.com | nan |
10 | 54.225.145.166 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 6 | ec2-54-225-145-166.compute-1.amazonaws.com | nan |
11 | 209.132.243.15 | Simi Valley | California | AS7296 Alchemy Communications, Inc. | 93062 | United States | False | tier_2 | 5 | nan | nan |
12 | 5.79.68.236 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_2 | 3 | nan | nan |
13 | 104.102.42.226 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 1 | a104-102-42-226.deploy.static.akamaitechnologies.com | nan |
14 | 89.207.16.75 | Amsterdam | North Holland | AS41041 Conversant LLC | 1109 | Netherlands | True | tier_2 | 3 | nan | nan |
15 | 104.17.164.92 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_2 | 2 | nan | True |
16 | 104.102.45.165 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_2 | 1 | a104-102-45-165.deploy.static.akamaitechnologies.com | nan |
17 | 142.250.185.206 | Frankfurt am Main | Hesse | AS15169 Google LLC | 60306 | Germany | True | tier_2 | 1 | fra16s52-in-f14.1e100.net | nan |
18 | 216.58.206.38 | Frankfurt am Main | Hesse | AS15169 Google LLC | 60306 | Germany | True | tier_2 | 1 | lcfraa-aa-in-f6.1e100.net | nan |
19 | 54.75.30.235 | Dublin | Leinster | AS16509 Amazon.com, Inc. | D02 | Ireland | True | tier_3 | 8 | ec2-54-75-30-235.eu-west-1.compute.amazonaws.com | nan |
20 | 34.218.25.134 | Boardman | Oregon | AS16509 Amazon.com, Inc. | 97818 | United States | False | tier_3 | 4 | ec2-34-218-25-134.us-west-2.compute.amazonaws.com | nan |
21 | 23.215.21.68 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 2 | a23-215-21-68.deploy.static.akamaitechnologies.com | nan |
22 | 45.79.244.12 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_3 | 2 | nb-45-79-244-12.an.nodebalancer.linode.com | nan |
23 | 104.102.42.226 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 1 | a104-102-42-226.deploy.static.akamaitechnologies.com | nan |
24 | 45.55.100.83 | New York City | New York | AS14061 DigitalOcean, LLC | 10011 | United States | False | tier_3 | 1 | nan | nan |
25 | 104.102.18.222 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 1 | a104-102-18-222.deploy.static.akamaitechnologies.com | nan |
26 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 1 | nan | nan |
27 | 104.17.207.71 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
28 | 93.93.51.191 | Luxembourg | Luxembourg | AS34655 JWE S.a r.l. | L-1111 | Luxembourg | True | tier_3 | 1 | nan | True |
Zhouhan Chen, zc1245@nyu.edu, Personal Website