Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 51 | 44 | 147 | 0 | 0 | 2023-11-01 | 2023-11-01__37.48.65.149__iphone |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | eleboyulechengbocaigongsi.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
1 | tier_1 | cpcalendars.meridiancargo.com.ph | 1 | None | None | None |
2 | tier_1 | www.rich.nailartistshowcase.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
3 | tier_1 | mail.4connect.ph | 1 | None | None | None |
4 | tier_1 | vdowatch.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
5 | tier_1 | store.dinrrghzq2xixpts.onion.ph | 1 | None | None | None |
6 | tier_1 | 67-15-246-229.opticaljungle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
7 | tier_1 | admin.easyclick.com.ph | 1 | None | None | None |
8 | tier_1 | mail.talesofrome.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
9 | tier_1 | 174-122-47-105.opticaljungle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
10 | tier_1 | root.banoitrokieumy.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
11 | tier_1 | www.liberateyourdemon.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
12 | tier_1 | wrxbioceuticals.com.ph | 1 | None | None | None |
13 | tier_1 | kia-carens.auto-coree.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
14 | tier_1 | root.cowsex.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
15 | tier_1 | openbadgefactory.com.siterankd.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
16 | tier_1 | motorolasolutons.com | 1 | EPAG DOMAINSERVICES GmbH | NS1.COMMONMX.COM | Not Disclosed |
17 | tier_1 | testing.staging.flatx.com.ph | 1 | None | None | None |
18 | tier_1 | wonderlandexpeditions.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
19 | tier_1 | m.homes.novelty.ph | 1 | None | None | None |
20 | tier_1 | iscfchurch.cruzcomm.ph | 1 | None | None | None |
21 | tier_1 | keepingcancerclassy.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
22 | tier_1 | webmail.lumina.ph | 1 | None | None | None |
23 | tier_1 | www.vacationrentals.com.ph | 1 | None | None | None |
24 | tier_1 | ww.amrericanexpress.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
25 | tier_1 | theweatherchannle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
26 | tier_1 | toutiao.chinaso.com.hrmtuq.ph | 1 | None | None | None |
27 | tier_1 | fbrx.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
28 | tier_1 | webdisk.nfurl.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
29 | tier_1 | admin.roystockdillgenealogy.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
30 | tier_1 | admin.anker.us | 1 | GoDaddy.com, LLC | ns1.commonmx.com | None |
31 | tier_1 | mta-sts.elmomento.com.ph | 1 | None | None | None |
32 | tier_1 | eazycrochetpatterns.info | 1 | Key-Systems GmbH | ns1.commonmx.com | c/o whoisproxy.com |
33 | tier_1 | cpcontacts.thewheelchairshop.ph | 1 | None | None | None |
34 | tier_1 | cvda.raraway.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
35 | tier_1 | atyourdoor.ph | 1 | None | None | None |
36 | tier_1 | qlsi.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
37 | tier_1 | k5xf.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
38 | tier_1 | richardjonesbooks.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
39 | tier_1 | www.online-shop.email-list-database.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
40 | tier_2 | dprtb.com | 3 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dprtb.com |
41 | tier_2 | q1.quotes.com | 3 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
42 | tier_2 | vibiu-dau.com | 3 | Amazon Registrar, Inc. | NS-1088.AWSDNS-08.ORG | Identity Protection Service |
43 | tier_2 | optimhu.com | 3 | ABOVE.COM PTY LTD. | NS1.TRELLIAN.COM | None |
44 | tier_2 | agent-de.com | 3 | Internet Domain Service BS Corp. | NS20.DIGICERTDNS.COM | Whois Privacy Corp. |
45 | tier_2 | ercicc.com | 3 | Internet Domain Service BS Corp. | NS20.DIGICERTDNS.COM | Whois Privacy Corp. |
46 | tier_2 | s.click.aliexpress.com | 3 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
47 | tier_2 | m.aliexpress.com | 3 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
48 | tier_2 | click-v4.junmediadirect1.com | 2 | NameCheap, Inc. | NS1.LINODE.COM | None |
49 | tier_2 | junzonghe.online | 2 | GoDaddy.com, LLC | NS27.DOMAINCONTROL.COM | None |
50 | tier_2 | track.flexlinkspro.com | 2 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
51 | tier_2 | 11165151.pageprotect.net | 1 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
52 | tier_2 | 11165151.edgeconnectcdn.net | 1 | GoDaddy.com, LLC | NS01.DOMAINCONTROL.COM | Domains By Proxy, LLC |
53 | tier_2 | click.expmediadirect1.com | 1 | NameCheap, Inc. | NS1.LINODE.COM | None |
54 | tier_2 | xporzonghe.online | 1 | GoDaddy.com, LLC | NS53.DOMAINCONTROL.COM | None |
55 | tier_2 | ww2.affinity.net | 1 | DOMAINPEOPLE, INC. | NS-1183.AWSDNS-19.ORG | WhoisProtector Inc. |
56 | tier_2 | anker.pxf.io | 1 | GANDI SAS | ns-273.awsdns-34.com | None |
57 | tier_2 | offer.5kfunds.com | 1 | NAMECHEAP INC | NS-137.AWSDNS-17.COM | Privacy service provided by Withheld for Privacy ehf |
58 | tier_3 | simcast.com | 5 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
59 | tier_3 | track.tychon.bid | 5 | None | None | None |
60 | tier_3 | aff.sixianyou.online | 3 | Go Daddy, LLC | NS43.DOMAINCONTROL.COM | None |
61 | tier_3 | pes23.lituiop.com | 3 | GoDaddy.com, LLC | NS1.DIGITALOCEAN.COM | None |
62 | tier_3 | www.aliexpress.com | 3 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
63 | tier_3 | links.flexoffers.com | 2 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | None |
64 | tier_3 | www.vividseats.com | 1 | GoDaddy.com, LLC | TIM.NS.CLOUDFLARE.COM | None |
65 | tier_3 | www.anker.com | 1 | GoDaddy.com, LLC | PDNS03.DOMAINCONTROL.COM | None |
66 | tier_3 | www.5kfunds.com | 1 | NameCheap, Inc. | NS-137.AWSDNS-17.COM | None |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 25 | nan | nan |
1 | 37.48.65.148 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 23 | nan | nan |
2 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 19 | nan | nan |
3 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 9 | nan | nan |
4 | 45.79.222.138 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_1 | 6 | apple.parklogic.com | nan |
5 | 185.107.56.200 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 2 | nan | nan |
6 | 185.107.56.198 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 1 | nan | nan |
7 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 1 | nan | nan |
8 | 195.201.108.83 | Falkenstein | Saxony | AS24940 Hetzner Online GmbH | 08223 | Germany | True | tier_2 | 6 | static.83.108.201.195.clients.your-server.de | nan |
9 | 104.102.42.226 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 3 | a104-102-42-226.deploy.static.akamaitechnologies.com | nan |
10 | 192.99.158.241 | Beauharnois | Quebec | AS16276 OVH SAS | J6N | Canada | False | tier_2 | 3 | ip241.ip-192-99-158.net | nan |
11 | 138.201.80.119 | Falkenstein | Saxony | AS24940 Hetzner Online GmbH | 08223 | Germany | True | tier_2 | 3 | static.119.80.201.138.clients.your-server.de | nan |
12 | 5.79.68.236 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_2 | 3 | nan | nan |
13 | 34.195.96.189 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 3 | ec2-34-195-96-189.compute-1.amazonaws.com | nan |
14 | 103.224.182.206 | San Diego | California | AS133618 Trellian Pty. Limited | 92101 | United States | False | tier_2 | 3 | bidr.trellian.com | nan |
15 | 198.134.116.17 | New York City | New York | AS27257 Webair Internet Development Company Inc. | 10013 | United States | False | tier_2 | 2 | nan | nan |
16 | 209.132.243.15 | Simi Valley | California | AS7296 Alchemy Communications, Inc. | 93062 | United States | False | tier_2 | 2 | nan | nan |
17 | 104.17.163.92 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_2 | 2 | nan | True |
18 | 45.79.244.12 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_3 | 5 | nb-45-79-244-12.an.nodebalancer.linode.com | nan |
19 | 67.212.184.147 | River Grove | Illinois | AS32475 SingleHop LLC | 60171 | United States | False | tier_3 | 3 | server04.com-2.mobi | nan |
20 | 188.114.96.12 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 3 | nan | True |
21 | 45.55.100.83 | New York City | New York | AS14061 DigitalOcean, LLC | 10011 | United States | False | tier_3 | 3 | nan | nan |
22 | 104.102.42.226 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 3 | a104-102-42-226.deploy.static.akamaitechnologies.com | nan |
23 | 188.114.97.12 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
24 | 23.201.253.186 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 1 | a23-201-253-186.deploy.static.akamaitechnologies.com | nan |
25 | 104.17.207.71 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
26 | 3.78.41.232 | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60306 | Germany | True | tier_3 | 1 | ec2-3-78-41-232.eu-central-1.compute.amazonaws.com | nan |
27 | 52.25.89.16 | Boardman | Oregon | AS16509 Amazon.com, Inc. | 97818 | United States | False | tier_3 | 1 | ec2-52-25-89-16.us-west-2.compute.amazonaws.com | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website