Daily Threat Intelligence Report

This report contains following information

  1. Overall statistics
    1. Number of domains detected
    2. Number of domains detected by Google Safe Browsing
    3. IP address behind entry-level domains
    4. date of collection
  2. Top 10 domain statistics
    1. count (number of redirection paths that contain this domain)
    2. tier (1 is entry-level domain, 2 is intermediate hop, 3 is final landing domain)
    3. registar
    4. organization
  3. Top 10 IP statistics
    1. count
    2. location (city, country, region)
    3. hostname
    4. organization
  4. Consolidated redirection path
    1. green: tier one domain
    2. yellow: tier two domain
    3. red: tier three domain
num_domainnum_linksnum_full_urlnum_safebrowsing_maliciousnum_vt_maliciousdateipuser_agent
02982991118202020-10-04103.224.182.207Android
tierdomaincountregistrarname_serversorg
0tier_1puracandelatv.com1GoDaddy.com, LLCNS1.ABOVE.COMNone
1tier_1codanova.com1GoDaddy.com, LLCNS1.ABOVE.COMNone
2tier_1dudroid.com1GoDaddy.com, LLCNS1.ABOVE.COMNone
3tier_1secondnaturecd.com1GoDaddy.com, LLCNS1.ABOVE.COMNone
4tier_1vvvgrace.net1GoDaddy.com, LLCNS1.ABOVE.COMNone
5tier_103calls.com1GoDaddy.com, LLCNS1.ABOVE.COMNone
6tier_1ddiziizle.net1GoDaddy.com, LLCNS1.ABOVE.COMNone
7tier_1articlemarketingautomation.com1GoDaddy.com, LLCNS1.ABOVE.COMNone
8tier_1benstreaming.com1GoDaddy.com, LLCNS1.ABOVE.COMNone
9tier_1googledocs.co.uk1Internet Domain Services BS Corp t/a Internet.bs [Tag = IDS-BS]nNone
10tier_2bidr.trellian.com217ABOVE.COM PTY LTD.NS1.TRELLIAN.COMREDACTED FOR PRIVACY
11tier_2track.amzinguidance.com114NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMWhoisGuard, Inc.
12tier_2trkads.info102DANESCO TRADING LTDNS1.DIGITALOCEAN.COMDANESCO TRADING LTD.
13tier_2google.com102MarkMonitor, Inc.NS1.GOOGLE.COMGoogle LLC
14tier_20redira.com17ABOVE.COM PTY LTD.NS1.ABOVE.COMREDACTED FOR PRIVACY
15tier_211164440.searchiqnet.com7GoDaddy.com, LLCNS57.DOMAINCONTROL.COMDomains By Proxy, LLC
16tier_2query.pureleads.com7New Frontier, Inc.NS1.P05.DYNECT.NETDomain Protection Services, Inc.
17tier_2clickserve.dartsearch.net5MarkMonitor, Inc.NS1.GOOGLE.COMGoogle LLC
18tier_2ad.doubleclick.net5NoneNoneNone
19tier_2dbc.pathroutes.com5GoDaddy.com, LLCNS75.DOMAINCONTROL.COMDomains By Proxy, LLC
20tier_3instantprizesnow.com114NAMECHEAP INCDAWN.NS.CLOUDFLARE.COMWhoisGuard, Inc.
21tier_3google.com_LOOP_1102NoneNoneNone
22tier_3amazon.com5MarkMonitor, Inc.NS1.P31.DYNECT.NETAmazon Technologies, Inc.
23tier_3mytears.restasis.com4NoneNoneNone
24tier_3freeshipping.com2GoDaddy.com, LLCERIC.NS.CLOUDFLARE.COMClarus Direct
25tier_3everydayconsumers.com2GoDaddy.com, LLCJANET.NS.CLOUDFLARE.COMDomains By Proxy, LLC
26tier_3macys.com2Network Solutions, LLCA1-135.AKAM.NETNone
27tier_3bidr.trellian.com2ABOVE.COM PTY LTD.NS1.TRELLIAN.COMREDACTED FOR PRIVACY
28tier_3cellularoutfitter.com_LOOP_21NoneNoneNone
29tier_3zoro.com_LOOP_11NoneNoneNone
iphostnamecityregionorgpostalcountry_nametiercount
0103.224.182.207lb-182-207.above.comCaulfield SouthVictoriaAS133618 Trellian Pty. Limited3193Australiatier_1241
1103.224.182.206bidr.trellian.comCaulfield SouthVictoriaAS133618 Trellian Pty. Limited3193Australiatier_2217
234.226.252.28ec2-34-226-252-28.compute-1.amazonaws.comVirginia BeachVirginiaAS14618 Amazon.com, Inc.23471United Statestier_2114
3165.22.162.145nanSanta ClaraCaliforniaAS14061 DigitalOcean, LLC95051United Statestier_2102
4172.217.165.132lax30s03-in-f4.1e100.netLos AngelesCaliforniaAS15169 Google LLC90009United Statestier_227
5142.250.64.100lga34s31-in-f4.1e100.netNew York CityNew YorkAS15169 Google LLC10004United Statestier_224
6209.132.243.15nanLos AngelesCaliforniaAS7296 Alchemy Communications, Inc.90009United Statestier_219
7172.217.10.132lga34s16-in-f4.1e100.netCliftonNew JerseyAS15169 Google LLC07015United Statestier_217
8103.224.212.241lb-212-241.above.comCaulfield SouthVictoriaAS133618 Trellian Pty. Limited3193Australiatier_217
9172.217.10.100lga34s15-in-f4.1e100.netCliftonNew JerseyAS15169 Google LLC07015United Statestier_210
10172.217.12.196lga25s63-in-f4.1e100.netCliftonNew JerseyAS15169 Google LLC07015United Statestier_26
11100.37.135.2pool-100-37-135-2.nycmny.fios.verizon.netNew York CityNew YorkAS701 MCI Communications Services, Inc. d/b/a Verizon Business10004United Statestier_3107
12172.67.144.45nanNew York CityNew YorkAS13335 Cloudflare, Inc.10004United Statestier_338
13104.18.51.94nanAtlantic CityNew JerseyAS13335 Cloudflare, Inc.08404United Statestier_338
14104.18.50.94nanAtlantic CityNew JerseyAS13335 Cloudflare, Inc.08404United Statestier_338
1513.33.83.196server-13-33-83-196.ewr52.r.cloudfront.netNewarkNew JerseyAS16509 Amazon.com, Inc.07175United Statestier_34
1634.202.188.95ec2-34-202-188-95.compute-1.amazonaws.comVirginia BeachVirginiaAS14618 Amazon.com, Inc.23471United Statestier_33
17172.67.219.253nanNew York CityNew YorkAS13335 Cloudflare, Inc.10004United Statestier_32
1823.41.189.63a23-41-189-63.deploy.static.akamaitechnologies.comNewarkNew JerseyAS16625 Akamai Technologies, Inc.07175United Statestier_32
1954.224.113.54ec2-54-224-113-54.compute-1.amazonaws.comVirginia BeachVirginiaAS14618 Amazon.com, Inc.23471United Statestier_31
20104.22.13.220nanNew York CityNew YorkAS13335 Cloudflare, Inc.10004United Statestier_31

Have other ideas? / Want to subscribe to get threat intelligence report? / Contact

Zhouhan Chen, NYU Center for Data Science, zc1245@nyu.edu, Personal Website