Daily Threat Intelligence Report

This report contains following information

  1. Overall statistics
    1. Number of domains detected
    2. Number of domains detected by Google Safe Browsing
    3. IP address behind entry-level domains
    4. date of collection
  2. Top 10 domain statistics
    1. count (number of redirection paths that contain this domain)
    2. tier (1 is entry-level domain, 2 is intermediate hop, 3 is final landing domain)
    3. registar
    4. organization
  3. Top 10 IP statistics
    1. count
    2. location (city, country, region)
    3. hostname
    4. organization
  4. Consolidated redirection path
    1. green: tier one domain
    2. yellow: tier two domain
    3. red: tier three domain
num_domainnum_linksnum_full_urlnum_safebrowsing_maliciousnum_vt_maliciousdateipuser_agent
0113113217202020-12-14103.224.182.207Chrome
tierdomaincountregistrarname_serversorg
0tier_1bellsoutj.net1GoDaddy.com, LLCNS1.ABOVE.COMNone
1tier_1benstreaming.com1GoDaddy.com, LLCNS1.ABOVE.COMNone
2tier_1allvids.net1GoDaddy.com, LLCNS1.ABOVE.COMNone
3tier_1bestlibraryspot.net1GoDaddy.com, LLCNS1.ABOVE.COMNone
4tier_1examfeedback.net1GoDaddy.com, LLCNS1.ABOVE.COMNone
5tier_1best-free-book.com1GoDaddy.com, LLCNS1.ABOVE.COMNone
6tier_1appsgun.com1GoDaddy.com, LLCNS1.ABOVE.COMNone
7tier_1appsforipads.net1GoDaddy.com, LLCNS1.ABOVE.COMNone
8tier_1fashionmazia.com1GoDaddy.com, LLCNS1.ABOVE.COMNone
9tier_1bitcofree.com1GoDaddy.com, LLCNS1.ABOVE.COMNone
10tier_2bidr.trellian.com22ABOVE.COM PTY LTD.NS1.TRELLIAN.COMREDACTED FOR PRIVACY
11tier_2xml.sedodna.com11PSI-USA, Inc. dba Domain RobotNS-1222.AWSDNS-24.ORGNone
12tier_2srchassist.com10GoDaddy.com, LLCNS01.DOMAINCONTROL.COMDomains By Proxy, LLC
13tier_2track.traffic.name9NoneNoneNone
14tier_2api.quotes.com7Internet Domain Service BS Corp.NS-CANADA.TOPDNS.COMWhois Privacy Corp.
15tier_20redirb.com7ABOVE.COM PTY LTD.NS1.ABOVE.COMREDACTED FOR PRIVACY
16tier_2dprtb.com6GoDaddy.com, LLCNS1.DNSIMPLE.COMDomains By Proxy, LLC
17tier_21496.wcitianka.com6GoDaddy Online Services Cayman Islands LTDNS-1096.AWSDNS-09.ORGNone
18tier_2americanlisted.com5ilait ABNS1.TELECOM3.NETIntegration 3 Group AB
19tier_2click.expmediadirect.com4NAMECHEAP INCNS1.LINODE.COMWhoisGuard, Inc.
20tier_3stewsearch.com10GoDaddy.com, LLCNS65.DOMAINCONTROL.COMAdsurplus SA
21tier_3suggestive.com9GoDaddy.com, LLCJEAN.NS.CLOUDFLARE.COMDomains By Proxy, LLC
22tier_3turbo-pdf.com2NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMWhoisGuard, Inc.
23tier_3us.tideri.com2united domains AGNS.UDAG.DENone
24tier_3sweetwater.com_LOOP_11NoneNoneNone
25tier_3americanlisted.com1ilait ABNS1.TELECOM3.NETIntegration 3 Group AB
26tier_3us.sercanto.com1OVH, SASDNS20.OVH.NETWickedin s.r.l.
27tier_3samsung.com1NoneNoneNone
28tier_3searchfrequently.com1GoDaddy.com, LLCNEIL.NS.CLOUDFLARE.COMDomains By Proxy, LLC
29tier_3boot-upintensely-thesophisticatedfile.best1NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMWhoisGuard, Inc.
iphostnamecityregionorgpostalcountry_nametiercountanycast
0103.224.182.207lb-182-207.above.comCaulfield SouthVictoriaAS133618 Trellian Pty. Limited3193Australiatier_140nan
1103.224.182.206bidr.trellian.comCaulfield SouthVictoriaAS133618 Trellian Pty. Limited3193Australiatier_222nan
2173.239.53.32nanNew York CityNew YorkAS27257 Webair Internet Development Company Inc.10013United Statestier_212nan
391.195.240.136nanMunichBavariaAS47846 SEDO GmbH80331Germanytier_211nan
4165.22.38.5nanCliftonNew JerseyAS14061 DigitalOcean, LLC07014United Statestier_210nan
534.207.32.33ec2-34-207-32-33.compute-1.amazonaws.comVirginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_210nan
65.79.68.236nanAmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_27nan
7198.54.112.216nanSan JoseCaliforniaAS22612 Namecheap, Inc.95103United Statestier_27nan
8103.224.212.247lb-212-247.above.comCaulfield SouthVictoriaAS133618 Trellian Pty. Limited3193Australiatier_27nan
9209.15.13.136nanTorontoOntarioAS13768 Aptum TechnologiesM5NCanadatier_26nan
1035.209.61.240240.61.209.35.bc.googleusercontent.comCouncil BluffsIowaAS15169 Google LLC51502United Statestier_31nan
11104.131.162.119nanCliftonNew JerseyAS14061 DigitalOcean, LLC07014United Statestier_310nan
12104.18.52.225nanSan FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_35True
13172.67.166.78nanSan FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_34True
1475.101.207.6ec2-75-101-207-6.compute-1.amazonaws.comVirginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_33nan
15178.128.246.195nanAmsterdamNorth HollandAS14061 DigitalOcean, LLC1012Netherlandstier_32nan
1635.246.171.123123.171.246.35.bc.googleusercontent.comFrankfurt am MainHesseAS15169 Google LLC60311Germanytier_32nan
17100.37.135.2pool-100-37-135-2.nycmny.fios.verizon.netNew York CityNew YorkAS701 MCI Communications Services, Inc. d/b/a Verizon Business10004United Statestier_31nan
1835.209.61.240240.61.209.35.bc.googleusercontent.comCouncil BluffsIowaAS15169 Google LLC51502United Statestier_31nan
1934.90.160.4343.160.90.34.bc.googleusercontent.comGroningenGroningenAS15169 Google LLC9711Netherlandstier_31nan
2023.33.132.38a23-33-132-38.deploy.static.akamaitechnologies.comNew York CityNew YorkAS16625 Akamai Technologies, Inc.10004United Statestier_31nan

Have other ideas? / Want to subscribe to get threat intelligence report? / Contact

Zhouhan Chen, NYU Center for Data Science, zc1245@nyu.edu, Personal Website