It was not a catalogue of public moments. The videos felt intimate, the camera angles too close, the audio too soft as if someone had filmed these lives for the solace of witnesses rather than the spectacle of viewers. And always, at the end of a clip, the prompt asked for another word, another confession, another memory. The site consumed language and responded with lives.
| Category | Findings | |----------|----------| | | • WHOIS privacy‑protected. • Created: 12 Oct 2015. • Registrar: Namecheap, Inc. | | Hosting / CDN | • Front‑end served through Cloudflare (AS13335). • Origin server IP blocks traced to OVH (France) and a handful of Russian data‑centers. | | Site architecture | • HTML5 video player with adaptive streaming (HLS). • Primary content delivered via embed links to external file‑hosting services (e.g., Google Drive, Mega, 1fichier). | | Third‑party services | • Google Analytics (UA‑XXXXX). • Facebook Pixel. • Advertising networks: PropellerAds, Revcontent, and a handful of “pop‑under” ad providers. • “Captcha” services (hCaptcha) for download gates. | | Security indicators | • SSL certificate valid (Let’s Encrypt, expires 18 May 2026). • Site flagged by: – Google Safe Browsing (malware/phishing). – Microsoft SmartScreen (unwanted software). – VirusTotal (multiple detections for “adware”, “trojan‑downloader”). | | Tracking & fingerprinting | • Use of “FingerprintJS” library, canvas‑fingerprinting, and “Device ID” cookies. | | Known malware / exploits | • Reports (Malwarebytes, 2024) of drive‑by download attempts when users click “Download” buttons; payloads often bundled with “AdInject” adware. | | Content delivery | • Primarily links to publicly shared files; many of those links are later taken down after DMCA notices, leading to “dead” pages. | Xxvidsx-com