Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 117 | 86 | 145 | 0 | 0 | 2023-11-05 | 2023-11-05__185.107.56.59__android |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | webdisk.sacred-weeds.com | 1 | Long Drive Domains LLC | NS1.DNSNUTS.COM | None |
1 | tier_1 | www.91mhua.com | 1 | Namestop LLC | NS1.DNSNUTS.COM | None |
2 | tier_1 | cpcalendars.proveedordelmedico.com | 1 | FindYouAName.com LLC | NS1.DNSNUTS.COM | None |
3 | tier_1 | verautoisernia.it | 1 | Munpe Invest SL | n | None |
4 | tier_1 | www7a.wasillaflowerdelivery.info | 1 | Domainhysteria.com LLC | ns1.dnsnuts.com | None |
5 | tier_1 | ww5.antonia-kindergarten.com | 1 | Your Domain LLC | NS1.DNSNUTS.COM | None |
6 | tier_1 | cpcontacts.xverystream.com | 1 | EUNameFlood.com LLC | NS1.DNSNUTS.COM | None |
7 | tier_1 | akshatteringglass.com | 1 | Baronofdomains.com LLC | NS1.DNSNUTS.COM | None |
8 | tier_1 | mrandmrsmujtabaesports.com | 1 | Copper Domain Names LLC | NS1.DNSNUTS.COM | None |
9 | tier_1 | webdisk.guerrinioriginal.com | 1 | Top Pick Names LLC | NS1.DNSNUTS.COM | None |
10 | tier_1 | www7b.coloringpagesmania.com | 1 | Turbonames LLC | NS1.DNSNUTS.COM | None |
11 | tier_1 | _dmarc.ns2.bazarcriativo.com | 1 | Anessia, LLC | NS1.DNSNUTS.COM | None |
12 | tier_1 | magento.encarauction.com | 1 | Domain Grabber LLC | NS1.DNSNUTS.COM | None |
13 | tier_1 | santarem-city.xltuga.com | 1 | SNAPNAMES 46, LLC | NS1.DNSNUTS.COM | None |
14 | tier_1 | ladresse-extranet.com | 1 | EUNamesOregon.com LLC | NS1.DNSNUTS.COM | None |
15 | tier_1 | sacred-weeds.com | 1 | Long Drive Domains LLC | NS1.DNSNUTS.COM | None |
16 | tier_1 | haxi0-dev.com | 1 | Domainsinthebag.com LLC | NS1.DNSNUTS.COM | None |
17 | tier_1 | www.fairsweety.com | 1 | WillametteNames.com LLC | NS1.DNSNUTS.COM | None |
18 | tier_1 | www.net.flixaffinity.com | 1 | WillametteNames.com LLC | NS1.DNSNUTS.COM | None |
19 | tier_1 | www.iforums.us | 1 | UdomainName.com LLC | ns1.dnsnuts.com | None |
20 | tier_1 | up.gohiton.com | 1 | Fastball Domains LLC | NS1.DNSNUTS.COM | None |
21 | tier_1 | mig33.first-forum.com | 1 | Domainamania.com LLC | NS1.DNSNUTS.COM | None |
22 | tier_1 | new.coloringpagesmania.com | 1 | Turbonames LLC | NS1.DNSNUTS.COM | None |
23 | tier_1 | viana-do-castelo.xltuga.com | 1 | SNAPNAMES 46, LLC | NS1.DNSNUTS.COM | None |
24 | tier_1 | rootsweb.coloringpagesmania.com | 1 | Turbonames LLC | NS1.DNSNUTS.COM | None |
25 | tier_1 | blinkest.com | 1 | Domain Success LLC | NS1.DNSNUTS.COM | None |
26 | tier_1 | mychoiceworks.com.pollopay.com | 1 | NorthNames, LLC | NS1.DNSNUTS.COM | None |
27 | tier_1 | wsxmsolutions.com | 1 | NamePal.com #8015, LLC | NS1.DNSNUTS.COM | None |
28 | tier_1 | hostmaster.limousin-alternance.com | 1 | Your Domain LLC | NS1.DNSNUTS.COM | None |
29 | tier_1 | pop.bluechevrondta.com | 1 | Names Express LLC | NS1.DNSNUTS.COM | None |
30 | tier_1 | ww41.pypal.de | 1 | None | ns1.dnsnuts.com | None |
31 | tier_1 | www.elconfindencial.com | 1 | FrontStreetDomains.com LLC | NS1.DNSNUTS.COM | None |
32 | tier_1 | mail.mitsubishikankisen.com | 1 | Heavydomains.net LLC | NS1.DNSNUTS.COM | None |
33 | tier_1 | viseu-penedono.xltuga.com | 1 | SNAPNAMES 46, LLC | NS1.DNSNUTS.COM | None |
34 | tier_1 | smtp.sarkariresurt.com | 1 | NamesAlaCarte.com LLC | NS1.DNSNUTS.COM | None |
35 | tier_1 | admin.hawaiiaairlines.com | 1 | Sea Wasp, LLC | NS1.DNSNUTS.COM | Jewella Privacy LLC Privacy ID# 884392 |
36 | tier_1 | mail.bamocompany.com | 1 | Afterdark Domains, LLC | NS1.DNSNUTS.COM | None |
37 | tier_1 | leiria-caldas-da-rainha.xltuga.com | 1 | SNAPNAMES 46, LLC | NS1.DNSNUTS.COM | None |
38 | tier_1 | hostmaster.cem-audi.com | 1 | SNAPNAMES 89, LLC | NS1.DNSNUTS.COM | None |
39 | tier_1 | store.screamymoviepost.com | 1 | GateKeeperDomains.net LLC | NS1.DNSNUTS.COM | None |
40 | tier_2 | vibiu-dau.com | 8 | Amazon Registrar, Inc. | NS-1088.AWSDNS-08.ORG | Identity Protection Service |
41 | tier_2 | ww1.xltuga.com | 4 | SNAPNAMES 46, LLC | NS1.DNSNUTS.COM | None |
42 | tier_2 | 11165151.edgeconnectcdn.net | 2 | GoDaddy.com, LLC | NS01.DOMAINCONTROL.COM | Domains By Proxy, LLC |
43 | tier_2 | www.awin1.com | 2 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
44 | tier_2 | ww2.affinity.net | 2 | DOMAINPEOPLE, INC. | NS-1183.AWSDNS-19.ORG | WhoisProtector Inc. |
45 | tier_2 | ad.doubleclick.net | 2 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
46 | tier_2 | 11165151.pageprotect.net | 1 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
47 | tier_2 | gb.keydomainmedia.com | 1 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
48 | tier_2 | wdgt.mypublicads.com | 1 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
49 | tier_2 | as.ad4m.at | 1 | InterNetX GmbH ( https://nic.at/registrar/80 ) | None | advanced STORE GmbH |
50 | tier_2 | dprtb.com | 1 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dprtb.com |
51 | tier_2 | click-v4.junmediadirect1.com | 1 | NAMECHEAP INC | NS1.LINODE.COM | Privacy service provided by Withheld for Privacy ehf |
52 | tier_2 | junzonghe.online | 1 | GoDaddy.com, LLC | NS27.DOMAINCONTROL.COM | None |
53 | tier_2 | q1.quotes.com | 1 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
54 | tier_2 | track.flexlinkspro.com | 1 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
55 | tier_2 | s.click.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
56 | tier_2 | campaign.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
57 | tier_2 | best.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
58 | tier_2 | myckdom.com | 1 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
59 | tier_2 | p185689.myckdom.com | 1 | NameCheap, Inc. | NS10.DIGICERTDNS.COM | None |
60 | tier_2 | miupqssp.com | 1 | NameCheap, Inc. | NS-1132.AWSDNS-13.ORG | None |
61 | tier_2 | blinkist.o6eiov.net | 1 | Amazon Registrar, Inc. | NS-1185.AWSDNS-20.ORG | Impact |
62 | tier_2 | paypal.prf.hn | 1 | Gandi SAS | edns1.ultradns.com | None |
63 | tier_2 | 11165151.trafficcertify.com | 1 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
64 | tier_2 | clickserve.dartsearch.net | 1 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
65 | tier_2 | 11165151.awscdnet.com | 1 | GoDaddy.com, LLC | NS47.DOMAINCONTROL.COM | Domains By Proxy, LLC |
66 | tier_2 | www.kqzyfj.com | 1 | MarkMonitor Inc. | ASIA9.AKAM.NET | None |
67 | tier_2 | cj.dotomi.com | 1 | GoDaddy.com, LLC | ASIA9.AKAM.NET | None |
68 | tier_2 | www.emjcd.com | 1 | MarkMonitor Inc. | ASIA9.AKAM.NET | None |
69 | tier_2 | ww1.screamymoviepost.com | 1 | GateKeeperDomains.net LLC | NS1.DNSNUTS.COM | None |
70 | tier_2 | ww1.virginplasticfactory.com | 1 | ! #1 Host Japan, LLC | NS1.DNSNUTS.COM | None |
71 | tier_3 | search.uk.etiquette.it | 7 | Algorithmedia S.r.l. | n | None |
72 | tier_3 | iyfbodn.com | 6 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | None |
73 | tier_3 | ww1.coloringpagesmania.com | 3 | Turbonames LLC | NS1.DNSNUTS.COM | None |
74 | tier_3 | ww1.sacred-weeds.com | 2 | Long Drive Domains LLC | NS1.DNSNUTS.COM | None |
75 | tier_3 | ww1.91mhua.com | 1 | Namestop LLC | NS1.DNSNUTS.COM | None |
76 | tier_3 | ww1.proveedordelmedico.com | 1 | FindYouAName.com LLC | NS1.DNSNUTS.COM | None |
77 | tier_3 | ww1.verautoisernia.it | 1 | Munpe Invest SL | n | None |
78 | tier_3 | ww1.wasillaflowerdelivery.info | 1 | Domainhysteria.com LLC | ns1.dnsnuts.com | None |
79 | tier_3 | ww1.antonia-kindergarten.com | 1 | Your Domain LLC | NS1.DNSNUTS.COM | None |
80 | tier_3 | ww1.xverystream.com | 1 | EUNameFlood.com LLC | NS1.DNSNUTS.COM | None |
81 | tier_3 | ww1.akshatteringglass.com | 1 | Baronofdomains.com LLC | NS1.DNSNUTS.COM | None |
82 | tier_3 | ww1.guerrinioriginal.com | 1 | Top Pick Names LLC | NS1.DNSNUTS.COM | None |
83 | tier_3 | www.skechers.com | 1 | MarkMonitor, Inc. | ALAN.NS.CLOUDFLARE.COM | Skechers USA |
84 | tier_3 | www.footlocker.co.uk | 1 | Markmonitor Inc. [Tag = MARKMONITOR] | e | None |
85 | tier_3 | ww1.ladresse-extranet.com | 1 | EUNamesOregon.com LLC | NS1.DNSNUTS.COM | None |
86 | tier_3 | ww1.haxi0-dev.com | 1 | Domainsinthebag.com LLC | NS1.DNSNUTS.COM | None |
87 | tier_3 | ww1.flixaffinity.com | 1 | WillametteNames.com LLC | NS1.DNSNUTS.COM | None |
88 | tier_3 | aff.sixianyou.online | 1 | Go Daddy, LLC | NS43.DOMAINCONTROL.COM | None |
89 | tier_3 | ww1.gohiton.com | 1 | Fastball Domains LLC | NS1.DNSNUTS.COM | None |
90 | tier_3 | mbest.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
91 | tier_3 | app.adjust.com | 1 | Mesh Digital Limited | DNS1.P09.NSONE.NET | None |
92 | tier_3 | ww1.pollopay.com | 1 | NorthNames, LLC | NS1.DNSNUTS.COM | None |
93 | tier_3 | ww1.wsxmsolutions.com | 1 | NamePal.com #8015, LLC | NS1.DNSNUTS.COM | None |
94 | tier_3 | ww1.limousin-alternance.com | 1 | Your Domain LLC | NS1.DNSNUTS.COM | None |
95 | tier_3 | ww1.bluechevrondta.com | 1 | Names Express LLC | NS1.DNSNUTS.COM | None |
96 | tier_3 | www.paypal.com | 1 | MarkMonitor, Inc. | NS1.P57.DYNECT.NET | PayPal Inc. |
97 | tier_3 | ww1.elconfindencial.com | 1 | FrontStreetDomains.com LLC | NS1.DNSNUTS.COM | None |
98 | tier_3 | www.volvocars.com | 1 | CSC CORPORATE DOMAINS, INC. | UDNS1.CSCDNS.NET | VolvoCarCorporation |
99 | tier_3 | www.hawaiianairlines.com | 1 | Network Solutions, LLC | A1-80.AKAM.NET | None |
100 | tier_3 | ww1.bamocompany.com | 1 | Afterdark Domains, LLC | NS1.DNSNUTS.COM | None |
101 | tier_3 | ww1.cem-audi.com | 1 | SNAPNAMES 89, LLC | NS1.DNSNUTS.COM | None |
102 | tier_3 | ww1.harwellholsters.com | 1 | SNAPNAMES 67, LLC | NS1.DNSNUTS.COM | None |
103 | tier_3 | ww1.publilancer.com | 1 | DropFall.com, LLC | NS1.DNSNUTS.COM | None |
104 | tier_3 | ww1.hustlerintel.com | 1 | Rally Cry Domains, LLC | NS1.DNSNUTS.COM | None |
105 | tier_3 | ww1.lettering-school.com | 1 | SNAPNAMES 17, LLC | NS1.DNSNUTS.COM | None |
106 | tier_3 | ww1.3dnudeladies.com | 1 | SNAPNAMES 76, LLC | NS1.DNSNUTS.COM | None |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 185.107.56.57 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 17 | nan | nan |
1 | 185.107.56.60 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 14 | nan | nan |
2 | 185.107.56.59 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 9 | nan | nan |
3 | 185.107.56.58 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 9 | nan | nan |
4 | 64.32.8.69 | Los Angeles | California | AS46844 Sharktech | 90009 | United States | False | tier_1 | 1 | customer.sharktech.net | nan |
5 | 199.59.243.225 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 6 | nan | True |
6 | 35.175.91.36 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 5 | ec2-35-175-91-36.compute-1.amazonaws.com | nan |
7 | 209.132.243.15 | Los Angeles | California | AS7296 Alchemy Communications, Inc. | 90009 | United States | False | tier_2 | 5 | nan | nan |
8 | 44.205.146.92 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 3 | ec2-44-205-146-92.compute-1.amazonaws.com | nan |
9 | 89.207.16.75 | Amsterdam | North Holland | AS41041 Conversant LLC | 1109 | Netherlands | True | tier_2 | 3 | nan | nan |
10 | 23.210.125.176 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_2 | 2 | a23-210-125-176.deploy.static.akamaitechnologies.com | nan |
11 | 23.207.107.56 | Zwaanshoek | North Holland | AS16625 Akamai Technologies, Inc. | 2144 | Netherlands | True | tier_3 | 1 | a23-207-107-56.deploy.static.akamaitechnologies.com | nan |
12 | 52.117.247.211 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 2 | d3.f7.7534.ip4.static.sl-reverse.com | nan |
13 | 34.160.232.116 | Kansas City | Missouri | AS15169 Google LLC | 64106 | United States | False | tier_2 | 2 | 116.232.160.34.bc.googleusercontent.com | True |
14 | 142.250.185.166 | Frankfurt am Main | Hesse | AS15169 Google LLC | 60306 | Germany | True | tier_2 | 2 | fra16s51-in-f6.1e100.net | nan |
15 | 64.190.63.136 | Munich | Bavaria | AS47846 SEDO GmbH | 80331 | Germany | True | tier_3 | 29 | nan | nan |
16 | 54.75.30.235 | Dublin | Leinster | AS16509 Amazon.com, Inc. | D02 | Ireland | True | tier_3 | 7 | ec2-54-75-30-235.eu-west-1.compute.amazonaws.com | nan |
17 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 6 | nan | nan |
18 | 104.16.188.137 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
19 | 146.75.122.132 | Frankfurt am Main | Hesse | AS54113 Fastly, Inc. | 60306 | Germany | True | tier_3 | 1 | nan | nan |
20 | 67.212.184.147 | River Grove | Illinois | AS32475 SingleHop LLC | 60171 | United States | False | tier_3 | 1 | server04.com-2.mobi | nan |
21 | 23.207.107.56 | Zwaanshoek | North Holland | AS16625 Akamai Technologies, Inc. | 2144 | Netherlands | True | tier_3 | 1 | a23-207-107-56.deploy.static.akamaitechnologies.com | nan |
22 | 185.151.204.6 | Amsterdam | North Holland | AS61273 Adjust GmbH | 1012 | Netherlands | True | tier_3 | 1 | nan | nan |
23 | 146.75.121.21 | Frankfurt am Main | Hesse | AS54113 Fastly, Inc. | 60306 | Germany | True | tier_3 | 1 | nan | nan |
24 | 23.37.58.248 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 1 | a23-37-58-248.deploy.static.akamaitechnologies.com | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website