Daily Threat Intelligence Report

This report contains following information

  1. Overall statistics
    1. Number of domains detected
    2. Number of domains detected by Google Safe Browsing
    3. IP address behind entry-level domains
    4. date of collection
  2. Top 10 domain statistics
    1. count (number of redirection paths that contain this domain)
    2. tier (1 is entry-level domain, 2 is intermediate hop, 3 is final landing domain)
    3. registar
    4. organization
  3. Top 10 IP statistics
    1. count
    2. location (city, country, region)
    3. hostname
    4. organization
  4. Consolidated redirection path
    1. green: tier one domain
    2. yellow: tier two domain
    3. red: tier three domain
num_domainnum_linksnum_full_urlnum_safebrowsing_maliciousnum_vt_maliciousdateipuser_agent
02452468940172021-04-17207.244.67.215Safari
tierdomaincountregistrarname_serversorg
0tier_1igramecka.com1TUCOWS, INC.NS1.COMMONMX.COMContact Privacy Inc. Customer 0159177977
1tier_1forumt.biz1Communigal Communication Ltdns2.commonmx.comNone
2tier_1btcapp.co1Communigal Communication Ltdns2.commonmx.comNone
3tier_1coolkicks.co1Dynadot LLCns2.commonmx.comNone
4tier_1csmatrix.org1Atomicdomainnames.com LLCNS1.COMMONMX.COMStatutory Masking Enabled
5tier_1beauty-boutique.co1Communigal Communication Ltdns2.commonmx.comNone
6tier_1avsarangg.com1TUCOWS, INC.NS1.COMMONMX.COMContact Privacy Inc. Customer 0158852301
7tier_1carloscastillo.co1Communigal Communication Ltdns1.commonmx.comNone
8tier_1hqasianphotos.com1TUCOWS, INC.NS1.COMMONMX.COMContact Privacy Inc. Customer 0159171163
9tier_1flyingsg.com1TUCOWS, INC.NS1.COMMONMX.COMContact Privacy Inc. Customer 0158841585
10tier_2btpnav.com1501API GmbHNS1.DNSIMPLE.COMRegistrant of btpnav.com
11tier_2aristo-hag.com80Amazon Registrar, Inc.NS-1226.AWSDNS-25.ORGWhois Privacy Service
12tier_2nizephoros-pom.com46Amazon Registrar, Inc.NS-1192.AWSDNS-21.ORGWhois Privacy Service
13tier_21496.rawlexi.com37GoDaddy Online Services Cayman Islands LTDNS-128.AWSDNS-16.COMNone
14tier_2americanlisted.com31ilait ABNS1.TELECOM3.NETIntegration 3 Group AB
15tier_2managerformula.com24NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMPrivacy service provided by Withheld for Privacy ehf
16tier_29nl.es19NoneNoneNone
17tier_2newre-conversions.clickmeter.com19REGISTER S.P.A.NS-1498.AWSDNS-59.ORGREDACTED FOR PRIVACY
18tier_2trk.jometer.com19Amazon Registrar, Inc.NS-129.AWSDNS-16.COMWhois Privacy Service
19tier_2api.l5srv.net19GoDaddy.com, LLCNS53.DOMAINCONTROL.COMDomains By Proxy, LLC
20tier_2click.expmediadirect.com17NAMECHEAP INCNS1.LINODE.COMPrivacy service provided by Withheld for Privacy ehf
21tier_2asufij.xyz16NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMPrivacy service provided by Withheld for Privacy ehf
22tier_2btpnative.com41API GmbHNS1.DNSIMPLE.COMRegistrant of btpnative.com
23tier_2infopicked.com4NAMECHEAP INCNS0.DNSMADEEASY.COMPrivacy service provided by Withheld for Privacy ehf
24tier_2atnpx.com3GoDaddy.com, LLCBECKY.NS.CLOUDFLARE.COMDomains By Proxy, LLC
25tier_2ad.doubleclick.net3MarkMonitor, Inc.NS1.GOOGLE.COMGoogle Inc.
26tier_2t.co2CSC Corporate Domains, Inc.d01-01.ns.twtrdns.netTwitter, Inc.
27tier_2ww2.siteplug.com2DOMAINPEOPLE, INC.NS-1263.AWSDNS-29.ORGREDACTED FOR PRIVACY
28tier_2click.linksynergy.com2CSC CORPORATE DOMAINS, INC.DNS1.P09.NSONE.NETRakuten Marketing
29tier_2clever-redirect.com2NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMPrivacy service provided by Withheld for Privacy ehf
30tier_3irl.com70GoDaddy.com, LLCNS-106.AWSDNS-13.COMDomains By Proxy, LLC
31tier_3s3.amazonaws.com24MarkMonitor, Inc.R1.AMAZONAWS.COMAmazon.com, Inc.
32tier_3managerformula.com20NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMPrivacy service provided by Withheld for Privacy ehf
33tier_3upward.careers19GoDaddy.com, LLCns21.domaincontrol.comDomains By Proxy, LLC
34tier_3xzb.subeamy.pw16NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMPrivacy service provided by Withheld for Privacy ehf
35tier_3us.tideri.com12united domains AGNS.UDAG.DENone
36tier_3americanlisted.com5ilait ABNS1.TELECOM3.NETIntegration 3 Group AB
37tier_3kbb.com3CSC CORPORATE DOMAINS, INC.PDNS164.ULTRADNS.BIZAutotrader.com
38tier_3storystudio.chron.com3CSC CORPORATE DOMAINS, INC.NS1.HEARSTNP.COMHearst Newspapers, LLC
39tier_3weniix.com2NAMECHEAP INCDNS1.NAMECHEAPHOSTING.COMPrivacy service provided by Withheld for Privacy ehf
40tier_3storystudio.sfgate.com1CSC CORPORATE DOMAINS, INC.NS1.HEARSTNP.COMHearst Communications, Inc.
41tier_3belk.com1CSC CORPORATE DOMAINS, INC.DNS1.P08.NSONE.NETBelk Stores Services, Inc
42tier_3music.apple.com1CSC CORPORATE DOMAINS, INC.A.NS.APPLE.COMApple Inc.
43tier_3aristo-hag.com1Amazon Registrar, Inc.NS-1226.AWSDNS-25.ORGWhois Privacy Service
44tier_3art.com1CSC CORPORATE DOMAINS, INC.SDNS113.ULTRADNS.BIZArt.com, Inc.
45tier_3littlewoods.com1Network Solutions, LLCASIA1.AKAM.NETStatutory Masking Enabled
46tier_3halloweenexpress.com1GoDaddy.com, LLCNS27.DOMAINCONTROL.COMASADART LLC
47tier_3bergdorfgoodman.com1CSC CORPORATE DOMAINS, INC.NS-1513.AWSDNS-61.ORGNM Nevada Trust
48tier_3148.trackints.com1NameCheap, Inc.NS0.DNSMADEEASY.COMNone
49tier_3google.com_LOOP_11NoneNoneNone
ipcityregionorgpostalcountry_nametiercounthostnameanycast
0207.244.67.214WashingtonWashington, D.C.AS30633 Leaseweb USA, Inc.20045United Statestier_131nannan
1207.244.67.216WashingtonWashington, D.C.AS30633 Leaseweb USA, Inc.20045United Statestier_126nannan
2207.244.67.218WashingtonWashington, D.C.AS30633 Leaseweb USA, Inc.20045United Statestier_126nannan
3207.244.67.215WashingtonWashington, D.C.AS30633 Leaseweb USA, Inc.20045United Statestier_115nannan
4206.221.176.184New York CityNew YorkAS23470 ReliableSite.Net LLC10004United Statestier_113nannan
5104.243.45.178New York CityNew YorkAS23470 ReliableSite.Net LLC10004United Statestier_113nannan
6104.243.45.179New York CityNew YorkAS23470 ReliableSite.Net LLC10004United Statestier_112nannan
7104.243.45.190New York CityNew YorkAS23470 ReliableSite.Net LLC10004United Statestier_111nannan
8185.107.56.199RotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_14nannan
937.48.65.151AmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_13nannan
10209.15.13.136TorontoOntarioAS13768 Aptum TechnologiesM5NCanadatier_2154nannan
11198.54.112.216San JoseCaliforniaAS22612 Namecheap, Inc.95103United Statestier_237nannan
1252.72.29.7AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_235ec2-52-72-29-7.compute-1.amazonaws.comnan
1354.208.107.202AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_232ec2-54-208-107-202.compute-1.amazonaws.comnan
1434.197.176.2AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_231ec2-34-197-176-2.compute-1.amazonaws.comnan
1535.209.61.240Council BluffsIowaAS15169 Google LLC51502United Statestier_35240.61.209.35.bc.googleusercontent.comnan
1618.235.67.128AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_229ec2-18-235-67-128.compute-1.amazonaws.comnan
1767.227.173.37LansingMichiganAS32244 Liquid Web, L.L.C48901United Statestier_219nannan
18198.134.116.30New York CityNew YorkAS27257 Webair Internet Development Company Inc.10013United Statestier_217nannan
1923.200.0.5EdisonNew JerseyAS20940 Akamai International B.V.08817United Statestier_37a23-200-0-5.deploy.static.akamaitechnologies.comnan
2023.21.166.45AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_210ec2-23-21-166-45.compute-1.amazonaws.comnan
2123.21.53.13AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_210ec2-23-21-53-13.compute-1.amazonaws.comnan
2223.200.0.41EdisonNew JerseyAS20940 Akamai International B.V.08817United Statestier_313a23-200-0-41.deploy.static.akamaitechnologies.comnan
2354.197.247.190AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_29ec2-54-197-247-190.compute-1.amazonaws.comnan
2454.235.205.204AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_29ec2-54-235-205-204.compute-1.amazonaws.comnan
2544.239.66.208BoardmanOregonAS16509 Amazon.com, Inc.97818United Statestier_28ec2-44-239-66-208.us-west-2.compute.amazonaws.comnan
2699.84.114.53NewarkNew JerseyAS16509 Amazon.com, Inc.07175United Statestier_26server-99-84-114-53.ewr52.r.cloudfront.netnan
2799.84.114.17NewarkNew JerseyAS16509 Amazon.com, Inc.07175United Statestier_25server-99-84-114-17.ewr52.r.cloudfront.netnan
2899.84.114.25NewarkNew JerseyAS16509 Amazon.com, Inc.07175United Statestier_25server-99-84-114-25.ewr52.r.cloudfront.netnan
29204.44.79.214Los AngelesCaliforniaAS8100 QuadraNet Enterprises LLC90014United Statestier_24204.44.79.214.static.quadranet.comnan
3067.227.172.40LansingMichiganAS32244 Liquid Web, L.L.C48901United Statestier_319nannan
3123.200.0.41EdisonNew JerseyAS20940 Akamai International B.V.08817United Statestier_313a23-200-0-41.deploy.static.akamaitechnologies.comnan
3235.246.171.123Frankfurt am MainHesseAS15169 Google LLC60311Germanytier_312123.171.246.35.bc.googleusercontent.comnan
3352.73.87.228AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_312ec2-52-73-87-228.compute-1.amazonaws.comnan
34157.245.242.152North BergenNew JerseyAS14061 DigitalOcean, LLC07047United Statestier_310nannan
3552.88.215.122BoardmanOregonAS16509 Amazon.com, Inc.97818United Statestier_39ec2-52-88-215-122.us-west-2.compute.amazonaws.comnan
36167.172.136.193North BergenNew JerseyAS14061 DigitalOcean, LLC07047United Statestier_39nannan
3723.200.0.5EdisonNew JerseyAS20940 Akamai International B.V.08817United Statestier_37a23-200-0-5.deploy.static.akamaitechnologies.comnan
3835.165.21.241BoardmanOregonAS16509 Amazon.com, Inc.97818United Statestier_37ec2-35-165-21-241.us-west-2.compute.amazonaws.comnan
39157.245.84.7North BergenNew JerseyAS14061 DigitalOcean, LLC07047United Statestier_36nannan
40161.35.60.200North BergenNew JerseyAS14061 DigitalOcean, LLC07047United Statestier_35nannan
4154.205.240.192AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_35ec2-54-205-240-192.compute-1.amazonaws.comnan
4267.207.81.229North BergenNew JerseyAS14061 DigitalOcean, LLC07047United Statestier_35nannan
4335.209.61.240Council BluffsIowaAS15169 Google LLC51502United Statestier_35240.61.209.35.bc.googleusercontent.comnan
4452.73.153.209AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_34ec2-52-73-153-209.compute-1.amazonaws.comnan
45151.101.0.200San FranciscoCaliforniaAS54113 Fastly94107United Statestier_34nanTrue
4652.203.36.44AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_34ec2-52-203-36-44.compute-1.amazonaws.comnan
4764.227.12.111North BergenNew JerseyAS14061 DigitalOcean, LLC07047United Statestier_34nannan
4823.44.217.143NewarkNew JerseyAS16625 Akamai Technologies, Inc.07175United Statestier_33a23-44-217-143.deploy.static.akamaitechnologies.comnan
49162.0.209.104San JoseCaliforniaAS22612 Namecheap, Inc.95103United Statestier_32premium170-1.web-hosting.comnan
5052.217.77.230AshburnVirginiaAS16509 Amazon.com, Inc.20149United Statestier_32s3-1.amazonaws.comnan
51100.37.135.2New York CityNew YorkAS701 MCI Communications Services, Inc. d/b/a Verizon Business10004United Statestier_32pool-100-37-135-2.nycmny.fios.verizon.netnan
5254.231.82.226AshburnVirginiaAS16509 Amazon.com, Inc.20149United Statestier_32s3-1.amazonaws.comnan
5352.216.115.85AshburnVirginiaAS16509 Amazon.com, Inc.20149United Statestier_32s3-1.amazonaws.comnan
5467.207.80.24North BergenNew JerseyAS14061 DigitalOcean, LLC07047United Statestier_32nannan
5552.216.237.133AshburnVirginiaAS16509 Amazon.com, Inc.20149United Statestier_32s3-1.amazonaws.comnan
5652.217.4.118AshburnVirginiaAS16509 Amazon.com, Inc.20149United Statestier_32s3-1.amazonaws.comnan
57198.199.66.189North BergenNew JerseyAS14061 DigitalOcean, LLC07047United Statestier_32nannan
5852.217.33.22AshburnVirginiaAS16509 Amazon.com, Inc.20149United Statestier_32s3-1.amazonaws.comnan
5952.216.146.5AshburnVirginiaAS16509 Amazon.com, Inc.20149United Statestier_31s3-1.amazonaws.comnan

Aggregated redirection graph of domains located on current IP address.

  • The redirection flows from left to right
  • Leftmost domains are initial domains hosted on current IP
  • Rightmost domains are final landing domains we were able to crawl

Screenshot of high-occurrence final landing domains

Have other ideas? / Want to subscribe to get threat intelligence report? / Contact

Zhouhan Chen, NYU Center for Data Science, zc1245@nyu.edu, Personal Website