Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 47 | 41 | 142 | 0 | 0 | 2023-10-30 | 2023-10-30__37.48.65.149__iphone |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | quanxunwangyouqingkeji.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
1 | tier_1 | dajiawangzhenrenbocai.jn.adhcz.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
2 | tier_1 | admin.easyclick.com.ph | 1 | None | None | None |
3 | tier_1 | cpcontacts.signity.com.ph | 1 | None | None | None |
4 | tier_1 | webdisk.bestcar.ph | 1 | None | None | None |
5 | tier_1 | mail.doctorforloves.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
6 | tier_1 | boang.ph | 1 | None | None | None |
7 | tier_1 | pcpo.ph | 1 | None | None | None |
8 | tier_1 | vdowatch.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
9 | tier_1 | edu-cnwest-com.nciktq.ph | 1 | None | None | None |
10 | tier_1 | shop.store.onion.ph | 1 | None | None | None |
11 | tier_1 | secure.rumiko-kawamura.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
12 | tier_1 | 67-15-47-45.opticaljungle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
13 | tier_1 | www.rich.nailartistshowcase.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
14 | tier_1 | bananmovies.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
15 | tier_1 | jenkins.shotang.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
16 | tier_1 | dns.mjamsmusic.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
17 | tier_1 | magento.draruzxpnew4af.onion.ph | 1 | None | None | None |
18 | tier_1 | cpanel.donfosterrealty.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
19 | tier_1 | 199-1.opticaljungle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
20 | tier_1 | webdisk.adfoundation.ph | 1 | None | None | None |
21 | tier_1 | foodblog.ph | 1 | None | None | None |
22 | tier_1 | salesenablement.ph | 1 | None | None | None |
23 | tier_1 | www.payment.kudos.com.ph | 1 | None | None | None |
24 | tier_1 | www.028jzxjj.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
25 | tier_1 | www.funatthegrove.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
26 | tier_1 | p9rr9f.fufeitv.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
27 | tier_1 | bbcnewsv2vjtpsuy.onion.ph | 1 | None | None | None |
28 | tier_1 | shop.internazionale.it.url4it.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
29 | tier_1 | webmail.brandup.com.ph | 1 | None | None | None |
30 | tier_1 | mail.pakandform.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
31 | tier_1 | 67-15-254-137.opticaljungle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
32 | tier_1 | aero.siterankd.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
33 | tier_1 | hydrazruzxpnew4af.onion.ph | 1 | None | None | None |
34 | tier_1 | jfnzvf.fufeitv.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
35 | tier_1 | huaxiaquanxunwang.jn.adhcz.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
36 | tier_1 | mail.mbaplc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
37 | tier_1 | kia-carens.auto-coree.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
38 | tier_1 | www.upshare.wsotrading.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
39 | tier_1 | avilyne.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
40 | tier_2 | q1.quotes.com | 4 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
41 | tier_2 | track.flexlinkspro.com | 4 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
42 | tier_2 | vibiu-dau.com | 4 | Amazon Registrar, Inc. | NS-1088.AWSDNS-08.ORG | Identity Protection Service |
43 | tier_2 | www.awin1.com | 2 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
44 | tier_2 | s.click.aliexpress.com | 2 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
45 | tier_2 | campaign.aliexpress.com | 2 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
46 | tier_2 | best.aliexpress.com | 2 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
47 | tier_2 | track.joyful-u.vip | 2 | None | None | None |
48 | tier_2 | bfpartners.click | 2 | None | None | None |
49 | tier_2 | www.betfred.com | 2 | Safenames Ltd | NS0.DNSMADEEASY.COM | None |
50 | tier_2 | gb.keydomainmedia.com | 2 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
51 | tier_2 | trckr.publitrack20.com | 2 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
52 | tier_2 | r.srvtrck.com | 2 | GoDaddy.com, LLC | BEN.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
53 | tier_2 | clk.tradedoubler.com | 2 | OVH, SAS | NS-1359.AWSDNS-41.ORG | TradeDoubler AB |
54 | tier_2 | 11165151.pageprotect.net | 1 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
55 | tier_2 | 11165151.edgeconnectcdn.net | 1 | GoDaddy.com, LLC | NS01.DOMAINCONTROL.COM | Domains By Proxy, LLC |
56 | tier_2 | ww1.pinkelephantantiques.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
57 | tier_2 | ww1.msft.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
58 | tier_2 | www.clubmed.co.uk | 1 | CSC Corporate Domains, Inc [Tag = CSC-CORP-DOMAINS] | n | None |
59 | tier_2 | clk.tradedoubler.com_LOOP_1 | 1 | None | None | None |
60 | tier_2 | ww1.frenchkissmaryse.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
61 | tier_3 | simcast.com | 7 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
62 | tier_3 | mbest.aliexpress.com | 2 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
63 | tier_3 | promotions.betfred.com | 2 | Safenames Ltd | NS0.DNSMADEEASY.COM | None |
64 | tier_3 | links.flexoffers.com | 2 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
65 | tier_3 | www.vividseats.com | 1 | GoDaddy.com, LLC | TIM.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
66 | tier_3 | findresultsonline.com | 1 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS111332.ZTOMY.COM | None |
67 | tier_3 | track.tychon.bid | 1 | None | None | None |
68 | tier_3 | www.clubmed.co.uk_LOOP_1 | 1 | None | None | None |
69 | tier_3 | www.clubmed.co.uk | 1 | CSC Corporate Domains, Inc [Tag = CSC-CORP-DOMAINS] | n | None |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 185.107.56.199 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 17 | nan | nan |
1 | 185.107.56.200 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 10 | nan | nan |
2 | 37.48.65.148 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 10 | nan | nan |
3 | 185.107.56.198 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 10 | nan | nan |
4 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 9 | nan | nan |
5 | 45.79.222.138 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_1 | 9 | apple.parklogic.com | nan |
6 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 7 | nan | nan |
7 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 7 | nan | nan |
8 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 3 | nan | nan |
9 | 207.244.67.215 | Manassas | Virginia | AS30633 Leaseweb USA, Inc. | 20109 | United States | False | tier_1 | 1 | nan | nan |
10 | 104.102.42.226 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 2 | a104-102-42-226.deploy.static.akamaitechnologies.com | nan |
11 | 5.79.68.236 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_2 | 4 | nan | nan |
12 | 35.171.236.221 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 3 | ec2-35-171-236-221.compute-1.amazonaws.com | nan |
13 | 104.17.163.92 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_2 | 2 | nan | True |
14 | 104.102.45.165 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_2 | 2 | a104-102-45-165.deploy.static.akamaitechnologies.com | nan |
15 | 209.132.243.15 | Simi Valley | California | AS7296 Alchemy Communications, Inc. | 93062 | United States | False | tier_2 | 2 | nan | nan |
16 | 18.195.128.171 | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60306 | Germany | True | tier_2 | 2 | ec2-18-195-128-171.eu-central-1.compute.amazonaws.com | nan |
17 | 3.10.229.236 | London | England | AS16509 Amazon.com, Inc. | E1W | United Kingdom | False | tier_2 | 2 | ec2-3-10-229-236.eu-west-2.compute.amazonaws.com | nan |
18 | 45.60.124.248 | Redwood City | California | AS19551 Incapsula Inc | 94065 | United States | False | tier_3 | 2 | nan | True |
19 | 104.17.164.92 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_2 | 2 | nan | True |
20 | 45.79.244.12 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_3 | 7 | nb-45-79-244-12.an.nodebalancer.linode.com | nan |
21 | 104.102.42.226 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 2 | a104-102-42-226.deploy.static.akamaitechnologies.com | nan |
22 | 45.60.124.248 | Redwood City | California | AS19551 Incapsula Inc | 94065 | United States | False | tier_3 | 2 | nan | True |
23 | 104.17.207.71 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
24 | 23.201.253.186 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 1 | a23-201-253-186.deploy.static.akamaitechnologies.com | nan |
25 | 199.191.50.32 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 1 | nan | nan |
26 | 188.114.97.3 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
27 | 178.162.228.7 | Frankfurt am Main | Hesse | AS28753 Leaseweb Deutschland GmbH | 60306 | Germany | True | tier_3 | 1 | hosted-by.leaseweb.com | nan |
28 | 23.201.243.112 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 1 | a23-201-243-112.deploy.static.akamaitechnologies.com | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website