Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 57 | 48 | 96 | 0 | 0 | 2023-11-20 | 2023-11-20__185.107.56.59__safari |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | mundopartesbmw.com | 1 | CloudNineDomain, LLC | NS1.DNSNUTS.COM | None |
1 | tier_1 | photopixi6.tivihi.com | 1 | Domain Source LLC | NS1.DNSNUTS.COM | None |
2 | tier_1 | forum.c4story.com | 1 | Domains Express LLC | NS15.ABOVEDOMAINS.COM | None |
3 | tier_1 | bride-ying-bing.gellyweemakeupstudio.com | 1 | Riptide Domains, LLC | NS1.DNSNUTS.COM | None |
4 | tier_1 | comune.adnet99.com | 1 | SNAPNAMES 56, LLC | NS1.DNSNUTS.COM | None |
5 | tier_1 | portalegre-campo-maior.xltuga.com | 1 | SNAPNAMES 46, LLC | NS1.DNSNUTS.COM | None |
6 | tier_1 | www.paypakl.com | 1 | Thirdroundnames LLC | NS1.DNSNUTS.COM | None |
7 | tier_1 | pop3.protinmail.com | 1 | Aconcagua Domains LLC | NS1.DNSNUTS.COM | None |
8 | tier_1 | peron2.com | 1 | Chipshot Domains LLC | NS1.DNSNUTS.COM | None |
9 | tier_1 | smtp.quiddity.cc | 1 | Blue Angel Domains LLC | NS1.DNSNUTS.COM | None |
10 | tier_1 | www.outdoors.tivihi.com | 1 | Domain Source LLC | NS1.DNSNUTS.COM | None |
11 | tier_1 | admin.shanghaidumplingking.com | 1 | Best Drop Names LLC | NS1.DNSNUTS.COM | None |
12 | tier_1 | www7a.wasillaflowerdelivery.info | 1 | Domainhysteria.com LLC | ns1.dnsnuts.com | None |
13 | tier_1 | www.madrina-shop.com | 1 | Slow Putt Domains LLC | NS1.DNSNUTS.COM | None |
14 | tier_1 | santarem-city.xltuga.com | 1 | SNAPNAMES 46, LLC | NS1.DNSNUTS.COM | None |
15 | tier_1 | ssoserver.com | 1 | DropCatch.com 1439 LLC | NS15.ABOVEDOMAINS.COM | NameBrightPrivacy.com |
16 | tier_1 | braganca-city.xltuga.com | 1 | SNAPNAMES 46, LLC | NS1.DNSNUTS.COM | None |
17 | tier_1 | faro-lagoa.xltuga.com | 1 | SNAPNAMES 46, LLC | NS1.DNSNUTS.COM | None |
18 | tier_1 | nawalelzoghbi.first-forum.com | 1 | Domainamania.com LLC | NS1.DNSNUTS.COM | None |
19 | tier_1 | usanewsflash.com | 1 | SNAPNAMES 19, LLC | NS1.DNSNUTS.COM | None |
20 | tier_1 | mx5.customsims3.com | 1 | YouDamain.com LLC | NS1.DNSNUTS.COM | None |
21 | tier_1 | argentinatravelgirls.com | 1 | DropCatch.com 662 LLC | NS1.BODIS.COM | Domain Science Ltd |
22 | tier_1 | csfi.asdbuccinovolcei.it | 1 | Register S.p.a. | b | None |
23 | tier_1 | taozidh.com | 1 | SNAPNAMES 82, LLC | NS1.DNSNUTS.COM | None |
24 | tier_2 | q1.quotes.com | 5 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
25 | tier_2 | track.flexlinkspro.com | 5 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
26 | tier_2 | www.awin1.com | 5 | Amazon Registrar, Inc. | NS-122.AWSDNS-15.COM | Identity Protection Service |
27 | tier_2 | s.click.aliexpress.com | 5 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
28 | tier_2 | campaign.aliexpress.com | 5 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
29 | tier_2 | ww1.xltuga.com | 4 | SNAPNAMES 46, LLC | NS1.DNSNUTS.COM | None |
30 | tier_2 | 11165151.edgeconnectcdn.net | 3 | GoDaddy.com, LLC | NS01.DOMAINCONTROL.COM | Domains By Proxy, LLC |
31 | tier_2 | ad.doubleclick.net | 2 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
32 | tier_2 | 11165151.pageprotect.net | 2 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
33 | tier_2 | 11165151.trafficcertify.com | 1 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
34 | tier_2 | clickserve.dartsearch.net | 1 | MarkMonitor Inc. | NS1.GOOGLE.COM | None |
35 | tier_2 | 11165151.awscdnet.com | 1 | GoDaddy.com, LLC | NS47.DOMAINCONTROL.COM | Domains By Proxy, LLC |
36 | tier_2 | ww25.forum.c4story.com | 1 | Domains Express LLC | NS15.ABOVEDOMAINS.COM | None |
37 | tier_2 | ww2.affinity.net | 1 | DOMAINPEOPLE, INC. | NS-1183.AWSDNS-19.ORG | WhoisProtector Inc. |
38 | tier_2 | paypal.prf.hn | 1 | Gandi SAS | edns1.ultradns.com | None |
39 | tier_2 | ww1.shanghaidumplingking.com | 1 | Best Drop Names LLC | NS1.DNSNUTS.COM | None |
40 | tier_2 | ww1.wasillaflowerdelivery.info | 1 | Domainhysteria.com LLC | ns1.dnsnuts.com | None |
41 | tier_2 | ww25.ssoserver.com | 1 | DropCatch.com 1439 LLC | NS15.ABOVEDOMAINS.COM | NameBrightPrivacy.com |
42 | tier_2 | csfi.domina-saarbruecken.de | 1 | None | bella.ns.cloudflare.com | None |
43 | tier_2 | domina-saarbruecken.de | 1 | None | bella.ns.cloudflare.com | None |
44 | tier_2 | vcpkp.mirfakpersei.top | 1 | NameSilo, LLC | adaline.ns.cloudflare.com | PrivacyGuardian.org llc |
45 | tier_3 | iyfbodn.com | 5 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS1.NSRESOLUTION.COM | Privacy Protect, LLC (PrivacyProtect.org) |
46 | tier_3 | best.aliexpress.com | 5 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
47 | tier_3 | track.tychon.bid | 4 | None | None | None |
48 | tier_3 | www.godaddy.com | 2 | GoDaddy.com, LLC | A1-245.AKAM.NET | Domains By Proxy, LLC |
49 | tier_3 | www.volvocars.com | 1 | CSC CORPORATE DOMAINS, INC. | UDNS1.CSCDNS.NET | VolvoCarCorporation |
50 | tier_3 | www.beautycounter.com | 1 | GoDaddy.com, LLC | JAMES.NS.CLOUDFLARE.COM | None |
51 | tier_3 | www.paypal.com | 1 | MarkMonitor, Inc. | NS1.P57.DYNECT.NET | PayPal Inc. |
52 | tier_3 | findresultsonline.com | 1 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS111332.ZTOMY.COM | Privacy Protect, LLC (PrivacyProtect.org) |
53 | tier_3 | www.skechers.com | 1 | MarkMonitor Inc. | ALAN.NS.CLOUDFLARE.COM | None |
54 | tier_3 | dan.com | 1 | TUCOWS, INC. | A1-245.AKAM.NET | REDACTED FOR PRIVACY |
55 | tier_3 | vcpkp.magmaartisan.top | 1 | NameSilo, LLC | jillian.ns.cloudflare.com | PrivacyGuardian.org llc |
56 | tier_3 | ww1.taozidh.com | 1 | SNAPNAMES 82, LLC | NS1.DNSNUTS.COM | None |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 185.107.56.60 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 11 | nan | nan |
1 | 185.107.56.57 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 5 | nan | nan |
2 | 103.224.212.211 | San Diego | California | AS133618 Trellian Pty. Limited | 92101 | United States | False | tier_1 | 2 | lb-212-211.above.com | nan |
3 | 185.107.56.59 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 2 | nan | nan |
4 | 162.210.196.172 | Rockville | Maryland | AS30633 Leaseweb USA, Inc. | 20850 | United States | False | tier_1 | 1 | nan | nan |
5 | 185.107.56.58 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 1 | nan | nan |
6 | 199.59.243.225 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 7 | nan | True |
7 | 188.114.97.3 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
8 | 92.122.105.52 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 5 | a92-122-105-52.deploy.static.akamaitechnologies.com | nan |
9 | 209.132.243.15 | Los Angeles | California | AS7296 Alchemy Communications, Inc. | 90009 | United States | False | tier_2 | 7 | nan | nan |
10 | 199.59.243.225 | Tampa | Florida | AS16509 Amazon.com, Inc. | 33609 | United States | False | tier_2 | 7 | nan | True |
11 | 5.79.68.236 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_2 | 5 | nan | nan |
12 | 92.123.148.9 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_2 | 5 | a92-123-148-9.deploy.static.akamaitechnologies.com | nan |
13 | 104.17.163.92 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_2 | 4 | nan | True |
14 | 142.250.184.198 | Frankfurt am Main | Hesse | AS15169 Google LLC | 60306 | Germany | True | tier_2 | 2 | fra24s11-in-f6.1e100.net | nan |
15 | 188.114.97.3 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
16 | 142.250.185.238 | Frankfurt am Main | Hesse | AS15169 Google LLC | 60306 | Germany | True | tier_2 | 1 | fra16s53-in-f14.1e100.net | nan |
17 | 34.160.232.116 | Kansas City | Missouri | AS15169 Google LLC | 64106 | United States | False | tier_2 | 1 | 116.232.160.34.bc.googleusercontent.com | True |
18 | 208.91.196.46 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 5 | nan | nan |
19 | 92.122.105.52 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 5 | a92-122-105-52.deploy.static.akamaitechnologies.com | nan |
20 | 188.114.96.12 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
21 | 23.37.52.70 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 2 | a23-37-52-70.deploy.static.akamaitechnologies.com | nan |
22 | 23.37.58.248 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 1 | a23-37-58-248.deploy.static.akamaitechnologies.com | nan |
23 | 143.204.98.95 | Mörfelden-Walldorf | Hesse | AS16509 Amazon.com, Inc. | 64546 | Germany | True | tier_3 | 1 | server-143-204-98-95.fra50.r.cloudfront.net | nan |
24 | 188.114.97.12 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
25 | 146.75.117.21 | Frankfurt am Main | Hesse | AS54113 Fastly, Inc. | 60306 | Germany | True | tier_3 | 1 | nan | nan |
26 | 188.114.97.3 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
27 | 199.191.50.32 | Secaucus | New Jersey | AS40034 Confluence Networks Inc | 07094 | United States | False | tier_3 | 1 | nan | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website