Our automated systems crawls large number of domains every day to discover URL redirections, malicious final landing sites, and malvertizing campaigns.
This report contains following information.
Content Warning: Some domain names and screenshots contain material that may be harmful or traumatizing to some audiences.
num_domain | num_links | num_full_url | num_safebrowsing_malicious | num_vt_malicious | date | ctx | |
---|---|---|---|---|---|---|---|
0 | 79 | 70 | 171 | 0 | 0 | 2023-11-20 | 2023-11-20__207.244.67.215__iphone |
tier | domain | count | registrar | name_servers | org | |
---|---|---|---|---|---|---|
0 | tier_1 | baijialewangshangzidongfenxiqi.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
1 | tier_1 | staging.123inc.nl | 1 | Sombrero.de Gmbh | ns1.commonmx.com | None |
2 | tier_1 | cpanel.grandhighwayresort.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
3 | tier_1 | huangshiyulechengdubowangzhan.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
4 | tier_1 | 7f1n4198g951.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
5 | tier_1 | mail.kmall.com.ph | 1 | None | None | None |
6 | tier_1 | y3ngaam.cyclegea.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
7 | tier_1 | www.appstore.com.ph | 1 | None | None | None |
8 | tier_1 | www.xoom.ph | 1 | None | None | None |
9 | tier_1 | mail.bubblesoccer.ph | 1 | None | None | None |
10 | tier_1 | cpcontacts.baicsenova.com.ph | 1 | None | None | None |
11 | tier_1 | www.garajesportonesyautomatismo.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
12 | tier_1 | news.raraway.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
13 | tier_1 | lasiweijiasibaijialezhenrenyouxixiazai.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
14 | tier_1 | integration.admin.test.lightproject.ph | 1 | None | None | None |
15 | tier_1 | www.anvilstar.detectnet.com.ph | 1 | None | None | None |
16 | tier_1 | mail.zobopages.com.ph | 1 | None | None | None |
17 | tier_1 | yidaizuqiu.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
18 | tier_1 | eyebutdirect.com | 1 | EPAG DOMAINSERVICES GmbH | NS1.COMMONMX.COM | Not Disclosed |
19 | tier_1 | atyourside.asia | 1 | Key-Systems GmbH | ns1.commonmx.com | c/o whoisproxy.com |
20 | tier_1 | www.9fzg.ancpw.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
21 | tier_1 | admin.hotstatr.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
22 | tier_1 | www.ke7d.ancpw.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
23 | tier_1 | i3hv.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
24 | tier_1 | dingjiaomenbaijialebocaigongsi.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
25 | tier_1 | mywebsite.com.ph | 1 | None | None | None |
26 | tier_1 | www.8hwc.ancpw.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
27 | tier_1 | ss.tingwen.me | 1 | Key-Systems GmbH | None | None |
28 | tier_1 | evoftd7.ancpw.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
29 | tier_1 | www.asiantvnow.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
30 | tier_1 | themomentgroup.ph | 1 | None | None | None |
31 | tier_1 | ireport.ph | 1 | None | None | None |
32 | tier_1 | zaur160402.rc-welt.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
33 | tier_1 | webdisk.vitaplus.com.ph | 1 | None | None | None |
34 | tier_1 | quanxunwang5123.cq.afbtc.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
35 | tier_1 | pokewaveastoria.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | REDACTED FOR PRIVACY |
36 | tier_1 | faiu.fashion-for.us | 1 | Key-Systems GmbH | ns1.commonmx.com | None |
37 | tier_1 | autodiscover.cleanme.ph | 1 | None | None | None |
38 | tier_1 | ytx8fjc.ancpw.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
39 | tier_1 | root.ibizlist.com | 1 | Key-Systems GmbH | NS1.COMMONMX.COM | c/o whoisproxy.com |
40 | tier_2 | vibiu-dau.com | 7 | Amazon Registrar, Inc. | NS-1088.AWSDNS-08.ORG | Identity Protection Service |
41 | tier_2 | optimhu.com | 7 | ABOVE.COM PTY LTD. | NS1.TRELLIAN.COM | None |
42 | tier_2 | my.toruftuiov.com | 5 | Danesco Trading Ltd. | NS1.TOPDNS.ME | None |
43 | tier_2 | 11165151.edgeconnectcdn.net | 3 | GoDaddy.com, LLC | NS01.DOMAINCONTROL.COM | Domains By Proxy, LLC |
44 | tier_2 | geotrkclknow.com | 3 | NAMECHEAP INC | EVAN.NS.CLOUDFLARE.COM | Privacy service provided by Withheld for Privacy ehf |
45 | tier_2 | ayqnoqp.com | 3 | NAMECHEAP INC | NS-1527.AWSDNS-62.ORG | Privacy service provided by Withheld for Privacy ehf |
46 | tier_2 | api.kelkoogroup.net | 3 | MarkMonitor, Inc. | NS1.MARKMONITOR.COM | Jamplant Limited |
47 | tier_2 | 11165151.pageprotect.net | 2 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
48 | tier_2 | dprtb.com | 2 | 1API GmbH | NS1.DNSIMPLE.COM | Registrant of dprtb.com |
49 | tier_2 | click-v4.junmediadirect1.com | 2 | NAMECHEAP INC | NS1.LINODE.COM | Privacy service provided by Withheld for Privacy ehf |
50 | tier_2 | gb.keydomainmedia.com | 2 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
51 | tier_2 | trckr.publitrack20.com | 2 | DonDominio (SCIP) | NS1.DONDOMINIO.COM | Soluciones Corporativas IP, c/o Whois Proxy |
52 | tier_2 | r.secprf2.com | 2 | Cloudflare, Inc. | BEN.NS.CLOUDFLARE.COM | DATA REDACTED |
53 | tier_2 | america-la-pr.com | 2 | Internet Domain Service BS Corp. | NS10.DNSMADEEASY.COM | Whois Privacy Corp. |
54 | tier_2 | s.click.aliexpress.com | 2 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
55 | tier_2 | ww2.affinity.net | 1 | DOMAINPEOPLE, INC. | NS-1183.AWSDNS-19.ORG | WhoisProtector Inc. |
56 | tier_2 | imp.i105279.net | 1 | Amazon Registrar, Inc. | NS-1111.AWSDNS-10.ORG | Impact |
57 | tier_2 | impactserving.com | 1 | GoDaddy.com, LLC | AMY.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
58 | tier_2 | crmentjg.com | 1 | Eurodns S.A. | NS1.EURODNS.COM | Docler IP S.a r.l. |
59 | tier_2 | myckdom.com | 1 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
60 | tier_2 | p185689.myckdom.com | 1 | NAMECHEAP INC | NS10.DIGICERTDNS.COM | Privacy service provided by Withheld for Privacy ehf |
61 | tier_2 | 39.trackingms.com | 1 | NAMECHEAP INC | NS0.DNSMADEEASY.COM | Privacy service provided by Withheld for Privacy ehf |
62 | tier_2 | junzonghe.online | 1 | GoDaddy.com, LLC | NS27.DOMAINCONTROL.COM | None |
63 | tier_2 | clk.tradedoubler.com | 1 | OVH, SAS | NS-1359.AWSDNS-41.ORG | TradeDoubler AB |
64 | tier_2 | ww1.vitaplus.com.ph | 1 | None | None | None |
65 | tier_2 | q1.quotes.com | 1 | Internet Domain Service BS Corp. | NS-CANADA.TOPDNS.COM | Whois Privacy Corp. |
66 | tier_2 | track.flexlinkspro.com | 1 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | Domains By Proxy, LLC |
67 | tier_2 | assets.ikhnaie.link | 1 | Amazon Registrar, Inc. | ns-483.awsdns-60.com | Webgains Ltd |
68 | tier_2 | best.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
69 | tier_2 | www.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
70 | tier_2 | m.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
71 | tier_2 | 11165151.trafficcertify.com | 1 | GoDaddy.com, LLC | NS75.DOMAINCONTROL.COM | Domains By Proxy, LLC |
72 | tier_2 | clickserve.dartsearch.net | 1 | MarkMonitor, Inc. | NS1.GOOGLE.COM | Google LLC |
73 | tier_2 | ad.doubleclick.net | 1 | MarkMonitor Inc. | NS1.GOOGLE.COM | None |
74 | tier_2 | 11165151.awscdnet.com | 1 | GoDaddy.com, LLC | NS47.DOMAINCONTROL.COM | None |
75 | tier_3 | simcast.com | 5 | DYNADOT LLC | NS1.DYNA-NS.NET | Super Privacy Service LTD c/o Dynadot |
76 | tier_3 | iosvpndefender.com | 5 | Danesco Trading Ltd. | DREW.NS.CLOUDFLARE.COM | None |
77 | tier_3 | uk-go.kelkoogroup.net | 3 | MarkMonitor, Inc. | NS1.MARKMONITOR.COM | Jamplant Limited |
78 | tier_3 | www.skechers.com | 2 | MarkMonitor Inc. | ALAN.NS.CLOUDFLARE.COM | None |
79 | tier_3 | pes23.lituiop.com | 2 | GoDaddy.com, LLC | NS1.DIGITALOCEAN.COM | None |
80 | tier_3 | www.cyclegear.com | 1 | GoDaddy.com, LLC | CASH.NS.CLOUDFLARE.COM | None |
81 | tier_3 | crmpt.livejasmin.com | 1 | Eurodns S.A. | NS1.DDITSERVICES.COM | Docler IP S.a r.l. |
82 | tier_3 | www.rakuten.com | 1 | MarkMonitor Inc. | A1-60.AKAM.NET | None |
83 | tier_3 | aff.kejiyuan.online | 1 | Go Daddy, LLC | NS55.DOMAINCONTROL.COM | None |
84 | tier_3 | bladeandrose.co.uk | 1 | GoDaddy.com, LLC. [Tag = GODADDY] | j | None |
85 | tier_3 | findresultsonline.com | 1 | PDR Ltd. d/b/a PublicDomainRegistry.com | NS111332.ZTOMY.COM | Privacy Protect, LLC (PrivacyProtect.org) |
86 | tier_3 | links.flexoffers.com | 1 | GoDaddy.com, LLC | DARL.NS.CLOUDFLARE.COM | None |
87 | tier_3 | www.cadburygiftsdirect.co.uk | 1 | CSC Corporate Domains, Inc [Tag = CSC-CORP-DOMAINS] | d | None |
88 | tier_3 | mbest.aliexpress.com | 1 | Alibaba Cloud Computing (Beijing) Co., Ltd. | NS1.ALIBABADNS.COM | None |
89 | tier_3 | www.aliexpress.com_LOOP_1 | 1 | None | None | None |
90 | tier_3 | www.nissanusa.com | 1 | MarkMonitor, Inc. | EDNS2.ULTRADNS.BIZ | Nissan North America, Inc |
ip | city | region | org | postal | country_name | isEU | tier | count | hostname | anycast | |
---|---|---|---|---|---|---|---|---|---|---|---|
0 | 37.48.65.150 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 20 | nan | nan |
1 | 37.48.65.148 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 18 | nan | nan |
2 | 37.48.65.149 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 11 | nan | nan |
3 | 37.48.65.151 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_1 | 9 | nan | nan |
4 | 45.79.222.138 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_1 | 6 | apple.parklogic.com | nan |
5 | 185.107.56.197 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 3 | nan | nan |
6 | 185.107.56.198 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 2 | nan | nan |
7 | 185.107.56.199 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 2 | nan | nan |
8 | 207.244.67.215 | Manassas | Virginia | AS30633 Leaseweb USA, Inc. | 20109 | United States | False | tier_1 | 2 | nan | nan |
9 | 185.107.56.200 | Amsterdam | North Holland | AS43350 NForce Entertainment B.V. | 1012 | Netherlands | True | tier_1 | 1 | nan | nan |
10 | 209.132.243.15 | Los Angeles | California | AS7296 Alchemy Communications, Inc. | 90009 | United States | False | tier_2 | 7 | nan | nan |
11 | 103.224.182.206 | San Diego | California | AS133618 Trellian Pty. Limited | 92101 | United States | False | tier_2 | 7 | bidr.trellian.com | nan |
12 | 18.158.88.249 | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60306 | Germany | True | tier_2 | 5 | ec2-18-158-88-249.eu-central-1.compute.amazonaws.com | nan |
13 | 92.122.105.52 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_2 | 5 | a92-122-105-52.deploy.static.akamaitechnologies.com | nan |
14 | 3.229.234.10 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 4 | ec2-3-229-234-10.compute-1.amazonaws.com | nan |
15 | 3.126.48.135 | Frankfurt am Main | Hesse | AS16509 Amazon.com, Inc. | 60306 | Germany | True | tier_2 | 3 | ec2-3-126-48-135.eu-central-1.compute.amazonaws.com | nan |
16 | 34.233.46.203 | Ashburn | Virginia | AS14618 Amazon.com, Inc. | 20147 | United States | False | tier_2 | 3 | ec2-34-233-46-203.compute-1.amazonaws.com | nan |
17 | 192.99.158.241 | Beauharnois | Quebec | AS16276 OVH SAS | J6N | Canada | False | tier_2 | 2 | ip241.ip-192-99-158.net | nan |
18 | 198.134.116.17 | New York City | New York | AS27257 Webair Internet Development Company Inc. | 10013 | United States | False | tier_2 | 2 | nan | nan |
19 | 52.117.247.211 | Dallas | Texas | AS36351 SoftLayer Technologies Inc. | 75201 | United States | False | tier_2 | 2 | d3.f7.7534.ip4.static.sl-reverse.com | nan |
20 | 45.79.244.12 | Atlanta | Georgia | AS63949 Akamai Connected Cloud | 30302 | United States | False | tier_3 | 5 | nb-45-79-244-12.an.nodebalancer.linode.com | nan |
21 | 104.21.6.123 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 3 | nan | True |
22 | 95.211.116.26 | Amsterdam | North Holland | AS60781 LeaseWeb Netherlands B.V. | 1012 | Netherlands | True | tier_3 | 3 | dc1-ecs-pub-mx-vip.kelkoo.com | nan |
23 | 172.67.134.215 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 2 | nan | True |
24 | 45.55.100.83 | New York City | New York | AS14061 DigitalOcean, LLC | 10011 | United States | False | tier_3 | 2 | nan | nan |
25 | 104.18.235.24 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
26 | 104.16.188.137 | San Francisco | California | AS13335 Cloudflare, Inc. | 94107 | United States | False | tier_3 | 1 | nan | True |
27 | 93.93.51.191 | Luxembourg | Luxembourg | AS34655 JWE S.a r.l. | L-1111 | Luxembourg | True | tier_3 | 1 | nan | True |
28 | 23.37.33.232 | Frankfurt am Main | Hesse | AS16625 Akamai Technologies, Inc. | 60306 | Germany | True | tier_3 | 1 | a23-37-33-232.deploy.static.akamaitechnologies.com | nan |
29 | 65.60.9.236 | Chicago | Illinois | AS32475 SingleHop LLC | 60666 | United States | False | tier_3 | 1 | server04.com-2.mobi | nan |
Zhouhan Chen, zc1245@nyu.edu, Personal Website