Finding WEIRD Typosquatting Websites

jh.live/flare || You can track down shady sellers, hunt for cybercrime, or manage threat intelligence and your exposed attack surface with Flare! Try a free trial and see what info is out there: jh.live/flare
Free Cybersecurity Education and Ethical Hacking with John Hammond
📧JOIN MY NEWSLETTER ➡ jh.live/email
🙏SUPPORT THE CHANNEL ➡ jh.live/patreon
🤝 SPONSOR THE CHANNEL ➡ jh.live/sponsor
🌎FOLLOW ME EVERYWHERE ➡ jh.live/twitter ↔ jh.live/linkedin ↔ jh.live/discord ↔ jh.live/instagram ↔ jh.live/tiktok
💥 SEND ME MALWARE ➡ jh.live/malware
🔥KZread ALGORITHM ➡ Like, Comment, & Subscribe!
Music sourced from Artlist.io
Alon Ohana - Parallel Room
Stanley Gurvich - Sunny Days

Пікірлер: 282

  • @memesfromtheforsakenworlwi9218
    @memesfromtheforsakenworlwi9218Ай бұрын

    fun facts, most companies buy as much of those "typo domains" to make them redirect to the real site

  • @madloudnoises

    @madloudnoises

    Ай бұрын

    Ah, I was wondering why they kept redirecting to the real site. Cool!!

  • @Azuuraas

    @Azuuraas

    Ай бұрын

    yup, i know for sure google did that

  • @GOOFLEr

    @GOOFLEr

    Ай бұрын

    'Most'

  • @kuromiLayfe

    @kuromiLayfe

    Ай бұрын

    still check if you are on the real site.. as the scammers can spoof the address bar and status bar to show the official url (and of course also the titlebar and all links when using inspector). just takes 3ms to replace what is shown the moment the page or hover is activated.

  • @BillAnt

    @BillAnt

    Ай бұрын

    Cuz many type "goggle" when typing fast. lol

  • @kalicxingnjenga9657
    @kalicxingnjenga9657Ай бұрын

    Please do a video showing what’s inside that APK.

  • @TomJacobW

    @TomJacobW

    Ай бұрын

    hearted - neat! Looking forward to seeing that!

  • @infohazard

    @infohazard

    Ай бұрын

    I was really annoyed that he didn't do it xD

  • @IDontModWTFz

    @IDontModWTFz

    Ай бұрын

    Get APK tool and do it yourself, apks are really easy to re

  • @posifurg

    @posifurg

    Ай бұрын

    Im going to do a vid showing the APK - ill post it when i can

  • @DEZXD1

    @DEZXD1

    Ай бұрын

    The apk says failed to download something

  • @dinosaurgardening2401
    @dinosaurgardening2401Ай бұрын

    I know the guy who bought Google with 3 ooo's. He bought it in high-school because he was smart. He isn't a scammer.

  • @4rumani

    @4rumani

    Ай бұрын

    Yeah very smart lol. Obvious WIPO violation, no legitimate interest, bad faith typosquatting

  • @Linkman8912

    @Linkman8912

    Ай бұрын

    ​@@4rumanichill

  • @justarandomchannel1319

    @justarandomchannel1319

    Ай бұрын

    Bro could prolly sell that for alot tho

  • @ihatenerds4689

    @ihatenerds4689

    Ай бұрын

    ​@@4rumaniyou are a sad being

  • @Limelaz23

    @Limelaz23

    Ай бұрын

    ​@@4rumani y so salty

  • @kyokazuto
    @kyokazutoАй бұрын

    "I think that is the real google", he says looking at google from 10 years ago

  • @mordechajloooo

    @mordechajloooo

    20 күн бұрын

    interesting

  • @Yadobler

    @Yadobler

    18 күн бұрын

    I believe that some devices will result in the old version loading, probably for compatibility

  • @kyokazuto

    @kyokazuto

    18 күн бұрын

    @@Yadobler I highly doubt that

  • @rosenette11

    @rosenette11

    9 күн бұрын

    @@Yadobler You're right, my Vita loads exactly this ver of google

  • @aloedg3191

    @aloedg3191

    8 күн бұрын

    "I highly doubt that" -🤡​@@kyokazuto

  • @bdot02
    @bdot02Ай бұрын

    Personally like "guthib"

  • @szabolcstoth822

    @szabolcstoth822

    6 күн бұрын

    Yap, also my favorite.

  • @AKABeestYT
    @AKABeestYT28 күн бұрын

    I love the typos for regularly nsfw sites that redirect to sites that ask you to repent and fix your ways

  • @fruitynyanko7316

    @fruitynyanko7316

    3 күн бұрын

    How did you find out about such sites 🤨📸

  • @AKABeestYT

    @AKABeestYT

    3 күн бұрын

    @@fruitynyanko7316 twas simply a passing thought

  • @spimbles

    @spimbles

    3 күн бұрын

    ​@@fruitynyanko7316by being a normal human being and watching porn, if i had to take a total shot in the dark

  • @dubplater

    @dubplater

    2 күн бұрын

    @@spimblesthats not normal

  • @wombatpandaa9774
    @wombatpandaa9774Ай бұрын

    Near the beginning I jokingly thought this was going to be an ad segment for Nord VPN but to my pleasant surprise it's an actually really useful FOSS tool. Love to see it.

  • @Gamerappa
    @GamerappaАй бұрын

    14:34 google looks like this on certain user agents, it's their old design from 2011-2013

  • @kidnamedfingor
    @kidnamedfingorАй бұрын

    Just to let u know, when i went on the googie website, there was some illegal content, if i were you i would cut that part out. I went on that domain i wish i could unsee what i saw.

  • @jjprisma3d

    @jjprisma3d

    Ай бұрын

    It’s really traumatizing.

  • @kidnamedfingor

    @kidnamedfingor

    Ай бұрын

    @@jjprisma3d cant believe he actually let it slip into this video

  • @jjprisma3d

    @jjprisma3d

    Ай бұрын

    @@kidnamedfingor Atleast he blurred it.

  • @jjprisma3d

    @jjprisma3d

    Ай бұрын

    @@kidnamedfingor And also, whoever's chid was that. I feel bad for the parents. The person who did that shoud be ashamed.

  • @kidnamedfingor

    @kidnamedfingor

    Ай бұрын

    @@jjprisma3d I translated the Chinese and it said that it was the dad who did it

  • @adamn0
    @adamn0Ай бұрын

    please don’t go to the website at 19:40 i wish i wasn’t curious and went to it i think you should blur out that link or remove that part of the video it’s absolutely disgusting

  • @zixea3318

    @zixea3318

    Ай бұрын

    yeah there’s CP on there 🤢

  • @donaldud-deen7604

    @donaldud-deen7604

    19 күн бұрын

    Bro whats in there?

  • @dan_loeb

    @dan_loeb

    15 күн бұрын

    this is one of those things where it's best not to check at all. there is a really messed up image there.

  • @tankman5783

    @tankman5783

    15 күн бұрын

    ​@@dan_loebman just describe it i dont want the fbi knocking on my door

  • @dan_loeb

    @dan_loeb

    15 күн бұрын

    @@tankman5783 the site has c.s.a.m. material and should not have made it in to the video period. If you don't know what that means it's often called cp. if you don't know what that means, I'm not going to describe it, as it violates yt policy and should be reported and avoided.

  • @ExperiencersInternational
    @ExperiencersInternationalАй бұрын

    It was funny seeing Goole as one of the screenshots 😂 Had some fun with pronouncing it when driving past signs for that place on the motorway a few months ago

  • @Fluttergoat
    @FluttergoatАй бұрын

    Isn't a $32/Month virtual server absolutely overpriced and overkill for this? Maybe I just don't know enough about the program or droplets so I'd be curious if there was a genuine reason it had to be that expensive.

  • @T1C

    @T1C

    Ай бұрын

    Probably could get by on a $5 vps

  • @tbuk8350

    @tbuk8350

    Ай бұрын

    he could've probably done the same thing on oracle always free compute

  • @cybercub4367
    @cybercub4367Ай бұрын

    Please do reverse engineer that APK, we're bound to find something juicy there 😂

  • @unchained_jb
    @unchained_jbАй бұрын

    With adult sites it's even crazier

  • @dingusbrule5756

    @dingusbrule5756

    Ай бұрын

    Lmfao

  • @Nodsaibot

    @Nodsaibot

    Ай бұрын

    zvideos

  • @oz_jones

    @oz_jones

    Ай бұрын

    Stop watching corn.

  • @LeReubzRic

    @LeReubzRic

    Ай бұрын

    ​@@oz_joneswhat about carrots

  • @kab43

    @kab43

    Ай бұрын

    ​@@LeReubzRicno. only peas and cilantro/coriander

  • @U20E0
    @U20E0Ай бұрын

    KZread actually owns the domain youtobe, apparently

  • @81gamer81

    @81gamer81

    Ай бұрын

    you to be, is actually how its meant to bee. Monkey see monkey do. They decide what you see, and what you do

  • @FnafAcc-bg9vn

    @FnafAcc-bg9vn

    5 күн бұрын

    Oneshot

  • @greenockscatman
    @greenockscatmanАй бұрын

    I like the raw realism of the Linux experience at 17:30

  • @kiwipomegranate
    @kiwipomegranateАй бұрын

    Please make a part two I wanna see more about that "live (ph)fishing game" and the Amazon typosquat hijinks

  • @ricestrange
    @ricestrangeАй бұрын

    The true video begins somewhere at 13:00

  • @ThisIsJustADrillBit
    @ThisIsJustADrillBitАй бұрын

    Its such a fun rabbit hole watching malicious domains as they are registered. Weird how many of them sre hosted behind cloud flare these days... 🤔

  • @chigga5years173

    @chigga5years173

    Ай бұрын

    Why does cloudflare even support them?.. I recently got an sms scam of gettimg rich easily and upon scanning and tryim7to find vulnerabilities of those scammers.. I didn't get anything

  • @PazLeBon

    @PazLeBon

    Ай бұрын

    cos cheap hosting is slow :)

  • @chrissametrinequartz9389

    @chrissametrinequartz9389

    Ай бұрын

    or it could also be (for whatever reason) that, thats what they are using to manage their domains or smth

  • @circuitgamer7759
    @circuitgamer7759Ай бұрын

    I would love to see you doing this more, it's just really fun to watch you have fun with it :) Also looking forward to you looking through those files :)

  • @AtlasBit
    @AtlasBitАй бұрын

    I love your videos. Thank you for your efforts to raise awareness.

  • @WebDesignerAmy
    @WebDesignerAmyАй бұрын

    This was a great utility to learn about John! Def found some permutations of some domains I own and those for another creator that came up. ty!

  • @papei.taisii
    @papei.taisii8 күн бұрын

    I have fallen for Agor,io. I wasn't scammed, but traumatised (TW: loud sound + flashing Jeff the Killer image)

  • @Scootakip
    @Scootakip9 күн бұрын

    This video really is the meme of "Linux users trying to install a web browser"

  • @pitche
    @pitcheАй бұрын

    14:33 It's an old Google UI :) Thx for the likes 😆

  • @purplepeak8575
    @purplepeak8575Ай бұрын

    Trying this back on Windows 95-Windows XP days is a guaranteed PC destroyer.

  • @WALLE1D1W

    @WALLE1D1W

    15 күн бұрын

    Funnily enough, today it's probably safe to do this on the MS-DOS based Windows 9x versions of Windows, as they're too old to be a worthwhile target for malware. All the viruses that you might encounter naturally expect XP and later. At least, according to MattKC's video on the subject.

  • @bokrayoomjdeed
    @bokrayoomjdeedАй бұрын

    loved this thanks JOHN ;)

  • @Noctuu
    @NoctuuАй бұрын

    Loved this video, u should do more “unserious” funny videos, either here or on a secondary channel

  • @uuu12343
    @uuu12343Ай бұрын

    This is genuinely amazing for Typosquat monitoring and intelligence gathering

  • @skelkankaos
    @skelkankaosАй бұрын

    Really enjoyed this video because it's a topic that's interesting and you let it be interesting on its own merits instead of overly sensationalizing it

  • @februalist4686
    @februalist4686Ай бұрын

    WE NEED a continue of this series

  • @zixea3318
    @zixea3318Ай бұрын

    Linux users typing the entirety of their computer’s code into the command line just to make a new folder: 🤬🤬🤬

  • @thesoftone

    @thesoftone

    Ай бұрын

    ^ this user knows nothing about computers

  • @spaghetti5914

    @spaghetti5914

    17 күн бұрын

    ​@@thesoftoneSalty linux user ^

  • @thesoftone

    @thesoftone

    17 күн бұрын

    @@spaghetti5914 ^ GIGA cope

  • @spaghetti5914

    @spaghetti5914

    16 күн бұрын

    @@thesoftone This user doesn't know I'm a linux user as well ^

  • @Shoegaze-

    @Shoegaze-

    15 күн бұрын

    Lain pfp hating on Linux… Get off TikTok lol

  • @nrhowe84
    @nrhowe84Ай бұрын

    That is such a cool tool, would love to see a video on what is inside that apk file. Great video keep up the great work that you do.

  • @oz_jones
    @oz_jonesАй бұрын

    Youtubs - for all your Jacuzzi needs!

  • @k1ngslay3r41
    @k1ngslay3r41Ай бұрын

    lol I never noticed you owned a whole island of dinosaurs that's AWESOME!

  • @dannydetonator
    @dannydetonatorАй бұрын

    As someone not well versed in IT, coding and html, i just learned a bunch of new words here. Typosquatting just made me think of my poor-ass unaccomodated seasonal-worker (initially) eurotrip.

  • @lordvgames
    @lordvgamesАй бұрын

    should do more dnstwist shenanigans, really fun to see what you find

  • @user-cd4bx6uq1y
    @user-cd4bx6uq1yАй бұрын

    16:59 that's master Rama isn't it? The cult Edit: 19:41 amazing reaction

  • @monkepog3236

    @monkepog3236

    Ай бұрын

    theres even illegal content on it, jail for at least 30 years for hosting it

  • @blakeeey27
    @blakeeey27Ай бұрын

    i love the term typosquatting sm

  • @cormarcormar

    @cormarcormar

    23 күн бұрын

    the phishers are just squattin on that typo

  • @rocket01666
    @rocket01666Ай бұрын

    Crack open that APK next PLEASE!

  • @EVENCOOLERTHANJOHN

    @EVENCOOLERTHANJOHN

    Ай бұрын

    F I S H I N G L I V E G A M E . A P K ( 2 0 )

  • @milentiusgaming
    @milentiusgamingАй бұрын

    looking forward to THE video of the breakdown of the APK, maybe there was more to the "nothing" in the empty text file....

  • @bokrayoomjdeed
    @bokrayoomjdeedАй бұрын

    Hilarious maaan daamn! nice video bro really thanks.

  • @CainXVII
    @CainXVIIАй бұрын

    This was great. Would have loved to see some other websites too. And what was actually in that fish file....

  • @aidi4886
    @aidi4886Ай бұрын

    I choose you John. Make me smart!!!

  • @ownmicelio
    @ownmicelioАй бұрын

    Please do a part 2

  • @iBridgee
    @iBridgeeАй бұрын

    Who knew typosquatting could be so bizarre? 😅

  • @BrimmFate
    @BrimmFateАй бұрын

    Adversaries is a funny way of describing scammer. Like calling them enemies

  • @Lo-Sir
    @Lo-SirАй бұрын

    thirteen whole minutes of bullshitting to get to the real video

  • @maskstorm2881

    @maskstorm2881

    Ай бұрын

    Ikr

  • @abdoudicko5352
    @abdoudicko5352Ай бұрын

    You are the best

  • @oussemabenayech2345
    @oussemabenayech2345Ай бұрын

    every jhon hammond should get into a fight and see who will earn the name

  • @PazLeBon

    @PazLeBon

    Ай бұрын

    not a fight, even a dummy can win a fight

  • @half-faust
    @half-faustАй бұрын

    Ah, the eternal internet nemesis: people with the same full name as you.

  • @DerMarkus1982
    @DerMarkus1982Ай бұрын

    Let's see if Jason will feature John Hammond in a clip compilation soon 😁

  • @lancemarchetti8673
    @lancemarchetti8673Ай бұрын

    Brilliant

  • @thesoftone
    @thesoftoneАй бұрын

    kinda makes me want to try live booting Kali maybe, cool vid

  • @JohnDoe-bd1qe
    @JohnDoe-bd1qeАй бұрын

    Now I see the true meaning of the minor spelling mistake meme.

  • @pollywops9242
    @pollywops9242Ай бұрын

    Super useful tool

  • @scykol
    @scykol21 күн бұрын

    domain expansion: typo

  • @Jarkabob
    @Jarkabob3 күн бұрын

    I tried that one time and got a virus 😭

  • @ErichSchulz
    @ErichSchulzАй бұрын

    It seems to have a domain name size limit when using the web interface.

  • @cherno6592
    @cherno6592Ай бұрын

    that fishing live game is advertising as that one gambling game or application, it on Indonesian language

  • @sucra0710
    @sucra0710Ай бұрын

    Dnstwist it, bop it, pull it

  • @joebambanchannel
    @joebambanchannelАй бұрын

    The best,👍

  • @YTInnovativeSolution
    @YTInnovativeSolutionАй бұрын

    Daily Dose of Internet is one of the best channels ever made. Thanks for your daily dose Mr. H.

  • @mattnaylor29
    @mattnaylor29Ай бұрын

    There is a bank in the uk called first direct. My 80+ year old family went to fist direct, it was a fisting porn site.

  • @yewo.m
    @yewo.m20 күн бұрын

    This gave me "hacking in movies" vibes

  • @mattsadventureswithart5764
    @mattsadventureswithart5764Ай бұрын

    Based on the one guy I met with that first name, its pronounced "Mar cheen" with the "mar" being the same as "mark" without the k, and "cheen" being the same as "cheese", with an n instead of the z sound.

  • @v.adithya1768
    @v.adithya1768Ай бұрын

    Hi, When i run the --phash command, I get this error even though selenium is already present in /usr/lib/python3/dist-packages dnstwist: error: missing Selenium Webdriver

  • @Ilikeflowers22
    @Ilikeflowers22Ай бұрын

    Unrelated, but i really like your hair :)

  • @iwasneverjoebiden
    @iwasneverjoebiden9 сағат бұрын

    good video

  • @stefanjohansson2373
    @stefanjohansson2373Ай бұрын

    16:50 Never seen this?!

  • @Ramonatho
    @RamonathoАй бұрын

    Wait. Hang on. I noticed something about that slots game with the automatic download. On the section that says "The New One" it mentions Bob Slots, a youtube channel I watch, who has never promoted this app. That means they're scraping ultra specific small slots youtubers and saying they're promoting their game. Bob isn't a big channel. This is truly weird stuff.

  • @abdelhay.
    @abdelhay.Ай бұрын

    WE WANT MOOORE OF MALWARE ANALYSIS VIDEOS PLEASE.

  • @MFoster392
    @MFoster392Ай бұрын

    Very Cool :)

  • @The_hot_blue_fire_guy
    @The_hot_blue_fire_guyАй бұрын

    Is there a program like that website detecting thing for people who use normal operating system like windows or Mac OS and not those hacker OSs like Linux. You know, normal software for normal people that actually exist in the real world.

  • @Karman7
    @Karman720 күн бұрын

    I actually made a typosquatting website that i obviously took down but i was trying to cause drama with other kids at my school at the time. I was copying a website at my school and i talked about the real website talking bad about it saying it was the fake. Then i blamed it on a innocent kid not in the drama... Lets name him Dave. Then i told the Actual creators of the real website saying that Dave stole your website. And thats when they confronted Dave and i was just laughing the whole time... Now i know it is very evil... So then i just decided to take down the website because thats when i realized that i was evil...

  • @UltimatePerfection
    @UltimatePerfectionАй бұрын

    Marcin is (roughly) pronounced as Martzin.

  • @gurukuappannadora8982
    @gurukuappannadora8982Ай бұрын

    Excellent stuff but we are missing actually what you are explaining kindly explain your experience in slow motion I feel it something like something that computation is going here

  • @scrungles7853
    @scrungles7853Ай бұрын

    I have no idea what you're talking about, nice!

  • @maskstorm2881

    @maskstorm2881

    Ай бұрын

    Same here

  • @iwasneverjoebiden

    @iwasneverjoebiden

    9 сағат бұрын

    Same here but I love it

  • @AmCanTech
    @AmCanTechАй бұрын

    The site that redirects to aliexpress is likely a 3rd party that outputs their affiliate kink so they earn a commission... even if you dint shop via that link directly, a refer cookie is likely stored such that if you end up shopping within X amount of time they get credit for the sale.

  • @malka1762
    @malka176221 күн бұрын

    gotta hand it to the fishing "devs", they're kinda transparent when you think abt it 😂

  • @deimantasle4881
    @deimantasle4881Ай бұрын

    actual content of the video starts at 13:00

  • @Breecheesegeez
    @BreecheesegeezАй бұрын

    i've seen roblox typosquatting websites before

  • @attilazimler1614
    @attilazimler1614Ай бұрын

    Looks like from the gy start for youtube that it is having a base assumption that the keyboard layout is English.

  • @torrtoise
    @torrtoiseАй бұрын

    alternative title: linux working as intended

  • @Steve60638
    @Steve6063828 күн бұрын

    1jt+ means 1 million plus.

  • @harrylumsdon6773
    @harrylumsdon6773Ай бұрын

    Chrome and edge has the safe search option??

  • @STLPhil
    @STLPhilАй бұрын

    Shameless Plug for John's side Real Estate business

  • @purplesam2609
    @purplesam2609Ай бұрын

    I wanted to go to the SpongeBob website as an 8 year old kid on my grandma's laptop and I found a site with a photo of some random man with a typo

  • @rob-890
    @rob-890Ай бұрын

    He's doing the thing where he repeats synonyms over and over again 😂😂😂😂

  • @theappealtoheaven
    @theappealtoheavenАй бұрын

    Please more of this, also please install the apk. 😂

  • @Nitroband
    @NitrobandАй бұрын

    I hope you were running a VPN, your IP Address got dropped by one of those pages.

  • @wombatpandaa9774

    @wombatpandaa9774

    Ай бұрын

    I'm pretty sure that was the digital ocean ip and not his host

  • @Nitroband

    @Nitroband

    Ай бұрын

    @wombatpandaa9774 Okay, that's good then!

  • @gamernikan
    @gamernikanАй бұрын

    cool (there is not your ip at 15:48)

  • @SilentOnion
    @SilentOnionАй бұрын

    14:33 is not really "strange" google its just the old design from like the late 2000s.

  • @PegasusEpsilon
    @PegasusEpsilon14 күн бұрын

    "sudo" is short for "do as superuser" - "sue due", not "sue dough" - sudo is not a martial art.

  • @Nooner301
    @Nooner3014 күн бұрын

    a little help, the live fishing page is in Indonesian, prolly trying to steal info or malware due to how many people use gambling / slot sites and apps here. 1jt is 1 million, reffering to downloads

  • @aryaroxanne3225
    @aryaroxanne3225Ай бұрын

    wow that apk. funny stuff

  • @methical__
    @methical__Ай бұрын

    Interesting you don't know plesk, is this a europe hosting thing?

  • @RandomGeometryDashStuff
    @RandomGeometryDashStuffАй бұрын

    12:43 why didn't it understand --screenshots -t as save screenshots in directory named -t

  • @Qw3rtyLly
    @Qw3rtyLly2 күн бұрын

    Goop gle dev is a jokester lol

  • @dytra_io
    @dytra_ioАй бұрын

    that apk is a betting app