Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 100 | 79 | 229 | 0 | 0 | 2023-11-09 | 2023-11-09__37.48.65.149__android |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | ot6.eswahili.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
1 | tier_1 | 8341.jp.siterankd.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
2 | tier_1 | pay.163.com.efosja.ph | 1 | None | None | None |
3 | tier_1 | thestayathomescribe.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
4 | tier_1 | cpanel.gsi.ph | 1 | None | None | None |
5 | tier_1 | 140g268198g951e9123.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
6 | tier_1 | store.moviesgolds.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
7 | tier_1 | www.store.wire.ph | 1 | None | None | None |
8 | tier_1 | cpcalendars.dev.solargard.com.ph | 1 | None | None | None |
9 | tier_1 | www.www.mitengineeringplacements.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
10 | tier_1 | admin.bbbt123.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
11 | tier_1 | eminem-lyrics.wonderlyrics.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
12 | tier_1 | bithesh.com.siterankd.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
13 | tier_1 | www.michelandre.com.ph | 1 | None | None | None |
14 | tier_1 | consertinoentcorp.com.ph | 1 | None | None | None |
15 | tier_1 | mail.facultyjob.co.in | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
16 | tier_1 | webmail.wallor.co | 1 | Key-Systems GmbH | ns1.commonmx.com | EdenMedia |
17 | tier_1 | madtube.mobi | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
18 | tier_1 | www.project3.gongzuo.ph | 1 | None | None | None |
19 | tier_1 | 33.elmananarey.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
20 | tier_1 | t2ievf.11-news.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
21 | tier_1 | vpn01.inet.ph | 1 | None | None | None |
22 | tier_1 | admin.anker.us | 1 | GoDaddy.com, LLC | ns1.commonmx.com | None |
23 | tier_1 | rarganch.rc-welt.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
24 | tier_1 | www.store.m.onion.ph | 1 | None | None | None |
25 | tier_1 | gatchina.mnezvonili.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
26 | tier_1 | removetheshoes.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
27 | tier_1 | webmail.newcameranews.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
28 | tier_1 | prof.pinkelephantantiques.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
29 | tier_1 | hh41.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
30 | tier_1 | plane.game.tingwen.me | 1 | Key-Systems GmbH | None | None |
31 | tier_1 | hostmaster.hostmaster.hostmaster.domainforum.info | 1 | Key-Systems GmbH | ns1.commonmx.com | c/o whoisproxy.com |
32 | tier_1 | internetmarketing.ph | 1 | None | None | None |
33 | tier_1 | cpcontacts.futuresafe.ph | 1 | None | None | None |
34 | tier_1 | 52xiangjiao1.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
35 | tier_1 | mail.whiteloaded.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
36 | tier_1 | www.magento.hydraruzxpnew.onion.ph | 1 | None | None | None |
37 | tier_1 | frizigames.com.siterankd.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
38 | tier_1 | mail.acerd.ph | 1 | None | None | None |
39 | tier_1 | hostmaster.swish.com.ph | 1 | None | None | None |
40 | tier_2 | vibiu-dau.com | 8 | Amazon Registrar, Inc. | NS-1088.AWSDNS-08.ORG | Identity Protection Service |
41 | tier_2 | aff.sixianyou.online | 5 | GoDaddy.com, LLC | NS43.DOMAINCONTROL.COM | None |
42 | tier_2 | gb.keydomainmedia.com | 5 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
43 | tier_2 | trckr.publitrack20.com | 5 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
44 | tier_2 | r.srvtrck.com | 5 | GoDaddy.com, LLC | BEN.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
45 | tier_2 | clk.tradedoubler.com | 5 | OVH, SAS | NS-1359.AWSDNS-41.ORG | TradeDoubler AB |
46 | tier_2 | click-v4.junmediadirect1.com | 4 | NAMECHEAP INC | NS1.LINODE.COM | Privacy service provided by Withheld for Privacy ehf |
47 | tier_2 | junzonghe.online | 4 | GoDaddy.com, LLC | NS27.DOMAINCONTROL.COM | None |
48 | tier_2 | q1.quotes.com | 3 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
49 | tier_2 | track.flexlinkspro.com | 3 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
50 | tier_2 | dprtb.com | 3 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dprtb.com |
51 | tier_2 | simcast.com | 2 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
52 | tier_2 | account.anonymised.io | 2 | NameCheap, Inc. | ns-cloud-d1.googledomains.com | None |
53 | tier_2 | www.awin1.com | 2 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
54 | tier_2 | s.click.aliexpress.com | 2 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
55 | tier_2 | campaign.aliexpress.com | 2 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
56 | tier_2 | best.aliexpress.com | 2 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
57 | tier_2 | geotrkclknow.com | 2 | NAMECHEAP INC | EVAN.NS.CLOUDFLARE.COM | Privacy service provided by Withheld for Privacy ehf |
58 | tier_2 | ayqnoqp.com | 2 | NameCheap, Inc. | NS-1527.AWSDNS-62.ORG | None |
59 | tier_2 | api.kelkoogroup.net | 2 | MarkMonitor, Inc. | NS1.MARKMONITOR.COM | Jamplant Limited |
60 | tier_2 | uk-go.kelkoogroup.net | 2 | MarkMonitor Inc. | NS1.MARKMONITOR.COM | None |
61 | tier_2 | ww1.bbbt123.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
62 | tier_2 | 11165151.pageprotect.net | 1 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
63 | tier_2 | 11165151.edgeconnectcdn.net | 1 | GoDaddy.com, LLC | NS01.DOMAINCONTROL.COM | None |
64 | tier_2 | click-v4.expdirclk.com | 1 | NameCheap, Inc. | NS1.LINODE.COM | None |
65 | tier_2 | xporzonghe.online | 1 | Go Daddy, LLC | NS53.DOMAINCONTROL.COM | None |
66 | tier_2 | ww1.happa.tv | 1 | None | None | None |
67 | tier_2 | ww1.autoinsurance.com.ph | 1 | None | None | None |
68 | tier_2 | ww1.nnseries.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
69 | tier_3 | www.clubmed.co.uk | 5 | CSC Corporate Domains, Inc [Tag = CSC-CORP-DOMAINS] | n | None |
70 | tier_3 | iyfbodn.com | 4 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
71 | tier_3 | ww1.eswahili.com | 4 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
72 | tier_3 | financeshub.xyz | 3 | DNC Holdings, Inc | NS0.DIRECTNIC.COM | ['Jewella Privacy LLC', 'Jewella Privacy LLC Privacy ID# 14828080'] |
73 | tier_3 | simcast.com | 3 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
74 | tier_3 | simcast.com_LOOP_1 | 2 | None | None | None |
75 | tier_3 | ww1.wonderlyrics.com | 2 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
76 | tier_3 | mbest.aliexpress.com | 2 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
77 | tier_3 | www.emma-sleep.co.uk | 2 | Gandi [Tag = GANDI] | d | None |
78 | tier_3 | ww1.moviesgolds.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
79 | tier_3 | www.vividseats.com | 1 | GoDaddy.com, LLC | TIM.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
80 | tier_3 | www.pintothewall.info | 1 | NameCheap, Inc. | ns-669.awsdns-19.net | Privacy service provided by Withheld for Privacy ehf |
81 | tier_3 | ww1.pinkelephantantiques.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
82 | tier_3 | civilpup.com | 1 | NameCheap, Inc. | DNS1.REGISTRAR-SERVERS.COM | None |
83 | tier_3 | ww1.whiteloaded.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
84 | tier_3 | ww1.brandconnect.com.ph | 1 | None | None | None |
85 | tier_3 | ww1.filefarsi.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
86 | tier_3 | ww1.kiwinb.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
87 | tier_3 | ww1.satcom911.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
88 | tier_3 | ww1.shisit.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
89 | tier_3 | ww1.djakhil.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
90 | tier_3 | ww1.dlpconstrucciones.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
91 | tier_3 | pes23.lituiop.com | 1 | GoDaddy.com, LLC | NS1.DIGITALOCEAN.COM | Domains By Proxy, LLC |
92 | tier_3 | ww1.taxinstitute.ph | 1 | None | None | None |
93 | tier_3 | ww1.ismilestore.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
94 | tier_3 | ww1.alchosting.ph | 1 | None | None | None |
95 | tier_3 | links.flexoffers.com | 1 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 24 | nan | nan |
1 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 21 | nan | nan |
2 | 37.48.65.148 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 18 | nan | nan |
3 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 17 | nan | nan |
4 | 45.79.222.138 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_1 | 7 | apple.parklogic.com | nan |
5 | 185.107.56.199 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 6 | nan | nan |
6 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 5 | nan | nan |
7 | 185.107.56.200 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 4 | nan | nan |
8 | 185.107.56.198 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 3 | nan | nan |
9 | 172.93.103.99 | Piscataway | New Jersey | AS23470 ReliableSite.Net LLC | 08854 | United States | False | tier_1 | 1 | nan | nan |
10 | 92.122.105.52 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 2 | a92-122-105-52.deploy.static.akamaitechnologies.com | nan |
11 | 198.134.116.17 | New York City | New York | AS27257 Webair Internet Development Company Inc. | 10013 | United States | False | tier_2 | 5 | nan | nan |
12 | 138.201.80.119 | Falkenstein | Saxony | AS24940 Hetzner Online GmbH | 08223 | Germany | True | tier_2 | 5 | static.119.80.201.138.clients.your-server.de | nan |
13 | 67.212.184.147 | River Grove | Illinois | AS32475 SingleHop LLC | 60171 | United States | False | tier_2 | 5 | server04.com-2.mobi | nan |
14 | 199.59.243.225 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 4 | nan | True |
15 | 44.205.146.92 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 4 | ec2-44-205-146-92.compute-1.amazonaws.com | nan |
16 | 35.171.236.221 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 4 | ec2-35-171-236-221.compute-1.amazonaws.com | nan |
17 | 104.17.89.74 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_2 | 3 | nan | True |
18 | 35.157.153.133 | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60306 | Germany | True | tier_2 | 3 | ec2-35-157-153-133.eu-central-1.compute.amazonaws.com | nan |
19 | 5.79.68.236 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_2 | 3 | nan | nan |
20 | 64.190.63.136 | Munich | Bavaria | AS47846 SEDO GmbH | 80331 | Germany | True | tier_3 | 19 | nan | nan |
21 | 23.36.238.17 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 5 | a23-36-238-17.deploy.static.akamaitechnologies.com | nan |
22 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 4 | nan | nan |
23 | 178.128.101.154 | Singapore | Singapore | AS14061 DigitalOcean, LLC | 627753 | Singapore | False | tier_3 | 3 | nan | nan |
24 | 45.79.244.12 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_3 | 3 | nb-45-79-244-12.an.nodebalancer.linode.com | nan |
25 | 178.162.228.7 | Frankfurt am Main | Hesse | AS28753 Leaseweb Deutschland GmbH | 60306 | Germany | True | tier_3 | 2 | hosted-by.leaseweb.com | nan |
26 | 92.122.105.52 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 2 | a92-122-105-52.deploy.static.akamaitechnologies.com | nan |
27 | 104.18.36.122 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
28 | 23.201.253.186 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 1 | a23-201-253-186.deploy.static.akamaitechnologies.com | nan |
29 | 51.68.82.147 | Strasbourg | Grand Est | AS16276 OVH SAS | 67000 | France | True | tier_3 | 1 | nan | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website