Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 67 | 54 | 157 | 0 | 0 | 2023-11-05 | 2023-11-05__37.48.65.149__chrome |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | cpanel.ncappliancerebate.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
1 | tier_1 | webdisk.autoinsurance.com.ph | 1 | None | None | None |
2 | tier_1 | mta-sts.happa.tv | 1 | None | None | None |
3 | tier_1 | toutiao.chinaso.com.hrmtuq.ph | 1 | None | None | None |
4 | tier_1 | plane.game.tingwen.me | 1 | Key-Systems GmbH | None | None |
5 | tier_1 | h3.satcom911.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
6 | tier_1 | lijiguojixinquanxunwang.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
7 | tier_1 | blog.nnseries.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
8 | tier_1 | www.vacationrentals.com.ph | 1 | None | None | None |
9 | tier_1 | ww.amrericanexpress.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
10 | tier_1 | cpcalendars.meridiancargo.com.ph | 1 | None | None | None |
11 | tier_1 | boang.ph | 1 | None | None | None |
12 | tier_1 | cre8dev.netkara.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
13 | tier_1 | news.hotelhorussalamanca.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
14 | tier_1 | 67-15-253-139.opticaljungle.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
15 | tier_1 | suoleierduchangyouxi.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
16 | tier_1 | yueliangchengguojitaiyangchengyouxi.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
17 | tier_1 | rikitikitawi.rc-welt.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
18 | tier_1 | vpn01.inet.ph | 1 | None | None | None |
19 | tier_1 | new.gaofen2.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
20 | tier_1 | jinshaquanxunwang.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
21 | tier_1 | mx.kradle.ph | 1 | None | None | None |
22 | tier_1 | vps1.inet.ph | 1 | None | None | None |
23 | tier_1 | schonee.bilgeturks.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
24 | tier_1 | cpanel.workingholidayforu.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
25 | tier_1 | shenhuixingdubo.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
26 | tier_1 | admin.zamara.ph | 1 | None | None | None |
27 | tier_1 | www.swarakalibata.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
28 | tier_1 | store.dinrrghzq2xixpts.onion.ph | 1 | None | None | None |
29 | tier_1 | cpanel.somosgnula.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
30 | tier_1 | www.ameiclubwear.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
31 | tier_1 | www.3g2upl4pq6kufc4m.onion.ph | 1 | None | None | None |
32 | tier_1 | nailgelsx.perfectdecorationsx.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
33 | tier_1 | autodiscover.gopiko.ph | 1 | None | None | None |
34 | tier_1 | hostmaster.scribol.io | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
35 | tier_1 | ww25.cherifathmanpromotion.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
36 | tier_1 | cpcalendars.munchbags.ph | 1 | None | None | None |
37 | tier_1 | mail.tresmariasevents.com.ph | 1 | None | None | None |
38 | tier_1 | wenku.kiwinb.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
39 | tier_1 | hostmaster.hostmaster.hostmaster.domainforum.info | 1 | Key-Systems GmbH | ns1.commonmx.com | c/o whoisproxy.com |
40 | tier_2 | 11165151.edgeconnectcdn.net | 5 | GoDaddy.com, LLC | NS01.DOMAINCONTROL.COM | Domains By Proxy, LLC |
41 | tier_2 | 11165151.trafficcertify.com | 3 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
42 | tier_2 | ramac-dnn.com | 2 | Amazon Registrar, Inc. | NS-1069.AWSDNS-05.ORG | Identity Protection Service |
43 | tier_2 | 11165151.pageprotect.net | 2 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
44 | tier_2 | a.cdn.searchiq.co | 2 | GoDaddy.com, LLC | nina.ns.cloudflare.com | Domains By Proxy, LLC |
45 | tier_2 | ww1.nnseries.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
46 | tier_2 | myckdom.com | 1 | NameCheap, Inc. | NS10.DIGICERTDNS.COM | None |
47 | tier_2 | www6.getsecurybrowseapp.com | 1 | NameCheap, Inc. | ALEXIS.NS.CLOUDFLARE.COM | None |
48 | tier_2 | google.com | 1 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
49 | tier_2 | q1.quotes.com | 1 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
50 | tier_2 | track.flexlinkspro.com | 1 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
51 | tier_2 | www.awin1.com | 1 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
52 | tier_2 | s.click.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
53 | tier_2 | campaign.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
54 | tier_2 | ww1.yptexas.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
55 | tier_2 | clickserve.dartsearch.net | 1 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
56 | tier_2 | ad.doubleclick.net | 1 | MarkMonitor Inc. | NS1.GOOGLE.COM | None |
57 | tier_2 | 11165151.awscdnet.com | 1 | GoDaddy.com, LLC | NS47.DOMAINCONTROL.COM | Domains By Proxy, LLC |
58 | tier_2 | click-v4.expdirclk.com | 1 | NAMECHEAP INC | NS1.LINODE.COM | Privacy service provided by Withheld for Privacy ehf |
59 | tier_2 | dprtb.com | 1 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dprtb.com |
60 | tier_2 | click-v4.junmediadirect1.com | 1 | NameCheap, Inc. | NS1.LINODE.COM | None |
61 | tier_2 | impactserving.com | 1 | GoDaddy.com, LLC | AMY.NS.CLOUDFLARE.COM | None |
62 | tier_2 | crmentjg.com | 1 | Eurodns S.A. | NS1.EURODNS.COM | Docler IP S.a r.l. |
63 | tier_2 | ww1.nichii.com.ph | 1 | None | None | None |
64 | tier_3 | simcast.com | 8 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
65 | tier_3 | iyfbodn.com | 3 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
66 | tier_3 | www.nissanusa.com | 3 | MarkMonitor, Inc. | EDNS2.ULTRADNS.BIZ | Nissan North America, Inc |
67 | tier_3 | download-portal-now.com | 2 | Infomaniak Network SA | MARTHA.NS.CLOUDFLARE.COM | Domain Privacy Trustee SA |
68 | tier_3 | www.skechers.com | 2 | MarkMonitor Inc. | ALAN.NS.CLOUDFLARE.COM | None |
69 | tier_3 | ww1.satcom911.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
70 | tier_3 | www.google.com | 1 | MarkMonitor Inc. | NS1.GOOGLE.COM | None |
71 | tier_3 | track.tychon.bid | 1 | None | None | None |
72 | tier_3 | ww1.kiwinb.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
73 | tier_3 | best.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
74 | tier_3 | ww1.doga44.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
75 | tier_3 | ww1.sifer.ph | 1 | None | None | None |
76 | tier_3 | ww1.wonderlyrics.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
77 | tier_3 | torrent-protection.com | 1 | GoDaddy.com, LLC | NS23.DOMAINCONTROL.COM | None |
78 | tier_3 | crmpt.livejasmin.com | 1 | Eurodns S.A. | NS1.DDITSERVICES.COM | Docler IP S.a r.l. |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 22 | nan | nan |
1 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 17 | nan | nan |
2 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 14 | nan | nan |
3 | 45.79.222.138 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_1 | 13 | apple.parklogic.com | nan |
4 | 37.48.65.148 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 12 | nan | nan |
5 | 185.107.56.200 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 4 | nan | nan |
6 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 4 | nan | nan |
7 | 185.107.56.198 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 3 | nan | nan |
8 | 172.93.103.101 | Piscataway | New Jersey | AS23470 ReliableSite.Net LLC | 08854 | United States | False | tier_1 | 1 | nan | nan |
9 | 207.244.67.215 | Manassas | Virginia | AS30633 Leaseweb USA, Inc. | 20109 | United States | False | tier_1 | 1 | nan | nan |
10 | 209.132.243.15 | Los Angeles | California | AS7296 Alchemy Communications, Inc. | 90009 | United States | False | tier_2 | 11 | nan | nan |
11 | 199.59.243.225 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 3 | nan | True |
12 | 152.195.34.201 | Culver City | California | AS15133 Edgecast Inc. | 90094 | United States | False | tier_2 | 2 | nan | True |
13 | 198.134.116.17 | New York City | New York | AS27257 Webair Internet Development Company Inc. | 10013 | United States | False | tier_2 | 2 | nan | nan |
14 | 3.220.105.91 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 1 | ec2-3-220-105-91.compute-1.amazonaws.com | nan |
15 | 44.208.206.232 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 1 | ec2-44-208-206-232.compute-1.amazonaws.com | nan |
16 | 52.117.247.211 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 1 | d3.f7.7534.ip4.static.sl-reverse.com | nan |
17 | 104.21.95.120 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_2 | 1 | nan | True |
18 | 142.250.185.174 | Frankfurt am Main | Hesse | AS15169 Google LLC | 60306 | Germany | True | tier_2 | 1 | fra16s51-in-f14.1e100.net | nan |
19 | 5.79.68.236 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_2 | 1 | nan | nan |
20 | 45.79.244.12 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_3 | 8 | nb-45-79-244-12.an.nodebalancer.linode.com | nan |
21 | 64.190.63.136 | Munich | Bavaria | AS47846 SEDO GmbH | 80331 | Germany | True | tier_3 | 5 | nan | nan |
22 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 3 | nan | nan |
23 | 184.30.133.150 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 3 | a184-30-133-150.deploy.static.akamaitechnologies.com | nan |
24 | 104.16.188.137 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
25 | 104.21.4.96 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
26 | 172.67.153.247 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
27 | 216.58.206.36 | Frankfurt am Main | Hesse | AS15169 Google LLC | 60306 | Germany | True | tier_3 | 1 | lcfraa-aa-in-f4.1e100.net | nan |
28 | 188.114.97.3 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
29 | 23.207.107.56 | Zwaanshoek | North Holland | AS16625 Akamai Technologies, Inc. | 2144 | Netherlands | True | tier_3 | 1 | a23-207-107-56.deploy.static.akamaitechnologies.com | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website