2018's Suspicious Top-Level Domains | Integracon (2024)

30

Sep

2018

Suspicious Top-Level Domains: What You Should Know

What is a Domain?

Domain names are identification strings that define a realm of administrative autonomy, authority, or control within the Internet — they either represent an Internet Protocol (IP) resource (i.e. a personal computer accessing the Internet), a server hosting a website, the website itself, or other services that communicate through the Internet. Domain names are organized in a hierarchy of subdomains in something called the DNS root domain and include top-level domains (TLDs), second-level domains, and third-level domains.

What is a Top-Level Domain?

While the second and third-level domains are typically open to being reserved by end users connecting with local area networks, run websites, or create publicly accessible internet resources, top-level domains — such as .com, .net, .edu, and .org — are the prominent domains that you are likely most familiar with. Top-level domains, including generic top-level domains (gTLDs) and country code top-level domains (ccTLDs), are considered the highest-level domain names of the Internet and the Domain Name System.

In 2009, there were 21 generic top-level domains and 250 two-letter country code TLDs. By 2016, there were 1000 live gTLDs. Today, there are more than 1,500 TLDs.

You can find an annotated list of TLDs in the DNS root zone database via the Internet Assigned Numbers Authority (IANA).

Suspicious Top-Level Domains

While domain names are an important way to establish a unique identity, easily recognize and memorize names to numerically addressed Internet resources, and to make network moves possible (globally or locally via an intranet), they’re also susceptible to abuse —they’re often the targets of scammers and hackers seeking to “game the system” by creating malicious sites, spammy emails, and malvertising that lead to phishing attacks and malware downloads.

Most new TLDs have been created in recent years in response to a higher demand from advertisers and domain speculators; however, their availability and low prices make them extremely popular among spammers and scammers. In fact, many of the cheapest, top-ten “bad” TLDs sell for $6 and $14.50 per domain, while some go for as low as 48 cents and a dollar each.

“…security experts warned that an onslaught of new, far cheaper TLDs would be a boon mainly to spammers and scammers.” (Krebs on Security)

Currently, the worst TLD is .men with Spamhaus saying 55% of the 65,570 registered .men TLDs are “bad.” Now, you may be thinking you’ll never intentionally visit a .men site, one of the other shady TLDs from the following lists, or click a spammy .party domain in an email — but you may still be fooled! That’s because the bad TLDs are often loaded only after a user clicks on a disguised and malicious link that originally doesn’t look so phishy — such as a .com or .org link.

2018's Suspicious Top-Level Domains | Integracon (1)
Source: “The Most Abused TLDs” by Spamhaus.

Every year, Symantec publishes their top 20 list for shady TLDs, most recently 2018’s Top 20 Shady TDLs, in the hopes of shedding some light on the problem — by making TLD registries and independent users aware of the problem. Their lists are fluid (rankings of suspicious TLDs can vary from quarter to quarter).

2018's Suspicious Top-Level Domains | Integracon (2)
Source: “The Top 20: Shady Top-Level Domains” by Symantec.

Protect Your Business From Bad TLDs

Company-wide IT policies that follow IT best practices go a long way in ensuring your company isn’t affected by bad TLDs. Support from IT professionals, however, help you go the extra mile by implementing procedures that correctly block TLDs, educate your staff, and protect your valuable and often irreplaceable data.

2018's Suspicious Top-Level Domains | Integracon (2024)

FAQs

What is the most credible top-level domain? ›

A study shows, for example, that .com and . org are among the most trustworthy TLDs to use for your website. If users perceive your TLD to be more legitimate, they may be more likely to click on your site in search results.

Is .top a safe domain? ›

The safety of a domain, including one with a . top extension, depends more on the practices of the company or registrar that owns the domain rather than the domain extension itself. The . top domain is a generic top-level domain (gTLD), and its use is not inherently indicative of safety or security.

How to block .top domain? ›

In order to deny the top domain right away without notifying user, select "Deny" on the action field. 3. In order to deny the top domain and also to notify the user about it, right click on action field and select Set > New > Notify user.

How many gTLD are there? ›

Before the opening of the 2012 application process for the New gTLD Program, there were 22 gTLDs. As of August 2021, 1239 gTLDs have been delegated the root zone of the Internet. GTLDS can be categorized as: generic (.com, .

Is .gov or .edu more reliable? ›

Generally, . edu and . gov websites are credible, but beware of sites that use these suffixes in an attempt to mislead. Nonprofit websites may also contain reliable information, but take some time to consider the organization's purpose and agenda to determine if it could be biased.

What is the least credible website domain? ›

Answer and Explanation:

A .com domain is commercial, so many of these sites have different procedures than government or educational sites.

Who runs top level domains? ›

The Internet Corporation for Assigned Names and Numbers (ICANN) has authority over all TLDs used on the Internet, and it delegates the responsibility of these TLDs to various organizations.

Who owns top domain? ›

The domain name extension . top is managed and operated by the . top registry (registry backend ZDNS) which belongs to Jiangsu Bangning Science & Technology Co., Ltd.

Who owns .com top level domain? ›

The domain was originally administered by the United States Department of Defense, but is today operated by Verisign, and remains under ultimate jurisdiction of U.S. law.

How to get free top-level domain? ›

How to Get a Domain Name for Free? To get a free domain name, you just need to purchase one of our Premium or Business shared hosting, WordPress hosting, or Cloud hosting plans. Free domain registration is available for the first year.

Is it possible to make your own top-level domain? ›

Any established public or private organization anywhere in the world can apply to create and operate a new generic Top-Level Domain (gTLD) registry. Applicants will need to demonstrate the operational, technical and financial capability to run a registry and comply with additional specific requirements.

What are blocked domains? ›

Domain blocking is slightly different than registering a domain, as it will not resolve to a site, but instead will simply block anyone else from registering it, thereby protecting against its fraudulent use Simply registering these domains themselves was also not considered ideal, because many companies really did not ...

Is .gov a gTLD? ›

Definition. . gov (derived from the word government) is a generic top-level domain (gTLD) in the Domain Name System of the Internet. It is restricted for use by government entities in the United States.

What are .io domains? ›

. io is a country-code top-level domain name (ccTLD) for the Chagos Archipelago, assigned to the British Indian Ocean Territory (BIOT). However, it has become a generic domain and is popular in the tech world since IO or I/O means input/output in computer science. Each of them serves a specific purpose.

Is .com or .org more reliable? ›

The primary difference between the 2 domains is the level of branding and trust that they carry. The . org extension conveys a sense of seriousness and credibility, while the .com extension lends itself more to commercial ventures.

Is .org or .net more reliable? ›

In general, . org sites can be perceived as more reliable, as these sites typically don't try to convince you to treat yourself to things you don't need.

What domain is reliable sources? ›

org domains are more reliable than .com.
  • .edu - educational institutions.
  • .gov - government bodies.
  • .org - organizations, non-profit.
  • .com - commercial businesses, for-profit.
  • .net - organizations related to the Internet itself.
  • .ca - sample country, i.e., Canada.
  • .gc.ca - Canadian government.
Sep 15, 2022

Which two domains are the most reliable? ›

. gov - This is the domain used by the US government and its agencies, making it one of the most reliable and trustworthy domains. . edu - This is the domain used by educational institutions such as universities, colleges, and schools.

Top Articles
Latest Posts
Article information

Author: Jamar Nader

Last Updated:

Views: 5886

Rating: 4.4 / 5 (75 voted)

Reviews: 90% of readers found this page helpful

Author information

Name: Jamar Nader

Birthday: 1995-02-28

Address: Apt. 536 6162 Reichel Greens, Port Zackaryside, CT 22682-9804

Phone: +9958384818317

Job: IT Representative

Hobby: Scrapbooking, Hiking, Hunting, Kite flying, Blacksmithing, Video gaming, Foraging

Introduction: My name is Jamar Nader, I am a fine, shiny, colorful, bright, nice, perfect, curious person who loves writing and wants to share my knowledge and understanding with you.