Daily Threat Intelligence Report

This report contains following information. All tables and graphs are auto-generated.

  1. Overall statistics
    1. Number of domains detected
    2. Number of domains detected by Google Safe Browsing
    3. IP address behind entry-level domains
    4. date of collection
  2. Top 10 domain statistics
    1. count (number of redirection paths that contain this domain)
    2. tier (1 is entry-level domain, 2 is intermediate hop, 3 is final landing domain)
    3. registar
    4. organization
  3. Top 10 IP statistics
    1. count
    2. location (city, country, region)
    3. hostname
    4. organization
  4. Consolidated redirection path
    1. green: tier one domain
    2. yellow: tier two domain
    3. red: tier three domain

Content Warning: The following domain names and screenshots contain material that may be harmful or traumatizing to some audiences.

num_domainnum_linksnum_full_urlnum_safebrowsing_maliciousnum_vt_maliciousdateipuser_agent
02062066471222021-05-24207.244.67.215Iphone
tierdomaincountregistrarname_serversorg
0tier_13b26cbed75120f.com1Communigal Communication LtdNS1.COMMONMX.COMNone
1tier_12808springcrest.com1TUCOWS, INC.NS1.COMMONMX.COMContact Privacy Inc. Customer 0159173381
2tier_1amorytinta.com1Top Pick Names LLCNS1.COMMONMX.COMNone
3tier_1atransmissionclinic.com1! #1 Host Canada, LLCNS1.COMMONMX.COMNone
4tier_1angularexamples.com1TUCOWS, INC.NS1.COMMONMX.COMContact Privacy Inc. Customer 0158840720
5tier_1668hf.com1ThirdFloorDNS.com LLCNS1.COMMONMX.COMNone
6tier_1airlot.net1DYNADOT LLCNS1.COMMONMX.COMNone
7tier_13dmekan.com1NorthNames, LLCNS1.COMMONMX.COMNone
8tier_1atmosenvios.com1Big Dipper Domains, LLCNS1.COMMONMX.COMNone
9tier_1arturoj.com1Nom Infinitum, LLCNS1.COMMONMX.COMNone
10tier_21496.rebiraert.com54GoDaddy Online Services Cayman Islands Ltd.NS-1041.AWSDNS-02.ORGNone
11tier_2americanlisted.com51ilait ABNS1.TELECOM3.NETIntegration 3 Group AB
12tier_2click.appcast.io49NoneNoneNone
13tier_2changeslots.com42Instra Corporation Pty Ltd.CLEO.NS.CLOUDFLARE.COMREDACTED FOR PRIVACY
14tier_2btpnative.com311API GmbHNS1.DNSIMPLE.COMRegistrant of btpnative.com
15tier_2mybetterdl.com28NAMECHEAP INCNS0.DNSMADEEASY.COMRedacted for Privacy Purposes
16tier_2p274639.mybetterdl.com28NAMECHEAP INCNS0.DNSMADEEASY.COMRedacted for Privacy Purposes
17tier_2careerbliss.com18GoDaddy.com, LLCNS10.DNSMADEEASY.COMDomains By Proxy, LLC
18tier_2trk.careerbliss.com18GoDaddy.com, LLCNS10.DNSMADEEASY.COMDomains By Proxy, LLC
19tier_2click.appcast.io_LOOP_112NoneNoneNone
20tier_2api.quotes.com12Internet Domain Service BS Corp.NS-CANADA.TOPDNS.COMWhois Privacy Corp.
21tier_29nl.es5NoneNoneNone
22tier_2newre-conversions.clickmeter.com5REGISTER S.P.A.NS-1498.AWSDNS-59.ORGREDACTED FOR PRIVACY
23tier_2melanthios-ana.com4Amazon Registrar, Inc.NS-1354.AWSDNS-41.ORGWhois Privacy Service
24tier_2feed.int.jobble.com3GoDaddy.com, LLCNS-1238.AWSDNS-26.ORGDomains By Proxy, LLC
25tier_2open.app.jobrapido.com3Marcaria.com International, Inc.NS-CLOUD-D1.GOOGLEDOMAINS.COMGDPR Masked
26tier_2us.jobrapido.com3Marcaria.com International, Inc.NS-CLOUD-D1.GOOGLEDOMAINS.COMGDPR Masked
27tier_2joblift.com3INWX GmbH & Co. KGNS-CLOUD-E1.GOOGLEDOMAINS.COMREDACTED FOR PRIVACY
28tier_2click.jometer.com2Amazon Registrar, Inc.NS-129.AWSDNS-16.COMWhois Privacy Service
29tier_2nexxt.com2Network Solutions, LLCNS21.WORLDNIC.COMNone
30tier_3theconnectvpn.com42DonDominio (SCIP)ARNOLD.NS.CLOUDFLARE.COMSoluciones Corporativas IP, c/o Whois Proxy
31tier_3careerbuilder.com9CSC CORPORATE DOMAINS, INC.BROCK.CBJOBS.NETCareerBuilder, LLC
32tier_3careerbliss.com6GoDaddy.com, LLCNS10.DNSMADEEASY.COMDomains By Proxy, LLC
33tier_3verify.captchabrowser.com4NAMECHEAP INCRORY.NS.CLOUDFLARE.COMPrivacy service provided by Withheld for Privacy ehf
34tier_3linkedin.com3MarkMonitor, Inc.DNS1.P09.NSONE.NETLinkedIn Corporation
35tier_3americanlisted.com3ilait ABNS1.TELECOM3.NETIntegration 3 Group AB
36tier_3open.app.jobrapido.com_LOOP_13NoneNoneNone
37tier_3caregivers.careinhomes.com2NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMRedacted for Privacy Purposes
38tier_3healthcarejobsite.com2ENOM, INC.DNS1.NAME-SERVICES.COMREDACTED FOR PRIVACY
39tier_3click.jometer.com2Amazon Registrar, Inc.NS-129.AWSDNS-16.COMWhois Privacy Service
40tier_3click.appcast.io_LOOP_22NoneNoneNone
41tier_3getstarjobs.getitcorporate.com2GoDaddy.com, LLCNS-CLOUD-E1.GOOGLEDOMAINS.COMGet It LLC
42tier_3provpnservice.me2NAMECHEAP INCNoneNone
43tier_3ring.joveo.com1Go Canada Domains, LLCNS-1256.AWSDNS-29.ORGDomains By Proxy, LLC
44tier_3godaddy.com1GoDaddy.com, LLCA1-245.AKAM.NETGo Daddy Operating Company, LLC
45tier_3bing.com1MarkMonitor, Inc.DNS1.P09.NSONE.NETMicrosoft Corporation
46tier_3retailgigs.com1ENOM, INC.DNS1.NAME-SERVICES.COMREDACTED FOR PRIVACY
47tier_3feed.int.jobble.com1GoDaddy.com, LLCNS-1238.AWSDNS-26.ORGDomains By Proxy, LLC
48tier_3art.com1CSC CORPORATE DOMAINS, INC.SDNS113.ULTRADNS.BIZArt.com, Inc.
49tier_3techcareers.com1ENOM, INC.DNS1.NAME-SERVICES.COMREDACTED FOR PRIVACY
50tier_3manufacturingworkers.com1ENOM, INC.DNS1.NAME-SERVICES.COMREDACTED FOR PRIVACY
51tier_3austinjobsite.com1ENOM, INC.DNS1.NAME-SERVICES.COMREDACTED FOR PRIVACY
52tier_3realestatejobsite.com1ENOM, INC.DNS1.NAME-SERVICES.COMREDACTED FOR PRIVACY
53tier_3click.joveo.com1Go Canada Domains, LLCNS-1256.AWSDNS-29.ORGDomains By Proxy, LLC
54tier_3ziprecruiter.com1Safenames LtdCAROL.NS.CLOUDFLARE.COMNone
55tier_3music.apple.com1CSC CORPORATE DOMAINS, INC.A.NS.APPLE.COMApple Inc.
56tier_3amazon.com1MarkMonitor, Inc.NS1.P31.DYNECT.NETAmazon Technologies, Inc.
57tier_3diversityworkers.com_LOOP_11NoneNoneNone
58tier_3fedexground.thejobnetwork.com1GoDaddy.com, LLCNS-1356.AWSDNS-41.ORGRealMatch
59tier_3financialjobbank.com1NoneNoneNone
ipcityregionorgpostalcountry_nametiercounthostnameanycast
0207.244.67.216WashingtonWashington, D.C.AS30633 Leaseweb USA, Inc.20045United Statestier_125nannan
1207.244.67.215WashingtonWashington, D.C.AS30633 Leaseweb USA, Inc.20045United Statestier_115nannan
2207.244.67.218WashingtonWashington, D.C.AS30633 Leaseweb USA, Inc.20045United Statestier_114nannan
3104.243.45.179New York CityNew YorkAS23470 ReliableSite.Net LLC10004United Statestier_112nannan
4207.244.67.214WashingtonWashington, D.C.AS30633 Leaseweb USA, Inc.20045United Statestier_111nannan
5104.243.45.178New York CityNew YorkAS23470 ReliableSite.Net LLC10004United Statestier_18nannan
6104.243.45.190New York CityNew YorkAS23470 ReliableSite.Net LLC10004United Statestier_16nannan
7185.107.56.200RotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_13nannan
8185.107.56.199RotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_12nannan
9185.107.56.198RotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_12nannan
10173.192.101.24DallasTexasAS36351 SoftLayer Technologies Inc.75270United Statestier_25818.65.c0ad.ip4.static.sl-reverse.comnan
11198.54.112.216San JoseCaliforniaAS22612 Namecheap, Inc.95103United Statestier_254nannan
1235.209.61.240Council BluffsIowaAS15169 Google LLC51502United Statestier_33240.61.209.35.bc.googleusercontent.comnan
1334.207.32.33AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_242ec2-34-207-32-33.compute-1.amazonaws.comnan
14207.38.44.116Los AngelesCaliforniaAS5693 Latisys-Irvine, LLC90009United Statestier_36cbsmtp1.careerbliss.comnan
15209.15.13.136TorontoOntarioAS13768 Aptum TechnologiesM5NCanadatier_234nannan
163.234.0.165AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_221ec2-3-234-0-165.compute-1.amazonaws.comnan
17100.37.135.2New York CityNew YorkAS701 MCI Communications Services, Inc. d/b/a Verizon Business10004United Statestier_310pool-100-37-135-2.nycmny.fios.verizon.netnan
1852.3.4.129AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_31ec2-52-3-4-129.compute-1.amazonaws.comnan
19100.25.52.1AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_213ec2-100-25-52-1.compute-1.amazonaws.comnan
205.79.68.236AmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_212nannan
21209.132.243.15Los AngelesCaliforniaAS7296 Alchemy Communications, Inc.90009United Statestier_25nannan
2223.21.53.13AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_24ec2-23-21-53-13.compute-1.amazonaws.comnan
2368.168.84.60NorristownPennsylvaniaAS17378 TierPoint, LLC19403United Statestier_2460.84.168.68.static.dbsintl.netnan
2454.174.112.67AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_24ec2-54-174-112-67.compute-1.amazonaws.comnan
2554.235.161.36AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_23ec2-54-235-161-36.compute-1.amazonaws.comnan
2691.134.128.52RoubaixHauts-de-FranceAS16276 OVH SAS59100Francetier_23nannan
2734.117.159.76Kansas CityMissouriAS15169 Google LLC64121United Statestier_2376.159.117.34.bc.googleusercontent.comTrue
2840.113.236.79Des MoinesIowaAS8075 Microsoft Corporation50392United Statestier_22nannan
29199.59.242.153Wilkes-BarrePennsylvaniaAS395082 Bodis, LLC18701United Statestier_22nannan
30172.67.181.234San FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_327nanTrue
31104.21.91.236San FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_315nanTrue
32100.37.135.2New York CityNew YorkAS701 MCI Communications Services, Inc. d/b/a Verizon Business10004United Statestier_310pool-100-37-135-2.nycmny.fios.verizon.netnan
33207.38.44.116Los AngelesCaliforniaAS5693 Latisys-Irvine, LLC90009United Statestier_36cbsmtp1.careerbliss.comnan
3413.224.206.35PhiladelphiaPennsylvaniaAS16509 Amazon.com, Inc.19099United Statestier_33server-13-224-206-35.phl50.r.cloudfront.netnan
3513.107.42.14RedmondWashingtonAS8068 Microsoft Corporation98052United Statestier_33nanTrue
3635.209.61.240Council BluffsIowaAS15169 Google LLC51502United Statestier_33240.61.209.35.bc.googleusercontent.comnan
3713.224.206.97PhiladelphiaPennsylvaniaAS16509 Amazon.com, Inc.19099United Statestier_33server-13-224-206-97.phl50.r.cloudfront.netnan
3852.22.228.123AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_32ec2-52-22-228-123.compute-1.amazonaws.comnan
3968.168.84.162NorristownPennsylvaniaAS17378 TierPoint, LLC19403United Statestier_32162.84.168.68.static.dbsintl.netnan
4013.224.206.88PhiladelphiaPennsylvaniaAS16509 Amazon.com, Inc.19099United Statestier_32server-13-224-206-88.phl50.r.cloudfront.netnan
4135.241.55.51Kansas CityMissouriAS15169 Google LLC64121United Statestier_3251.55.241.35.bc.googleusercontent.comTrue
42104.21.38.250San FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_32nanTrue
43172.67.141.150San FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_32nanTrue
44142.93.4.215North BergenNew JerseyAS14061 DigitalOcean, LLC07047United Statestier_32nannan
4523.51.164.51PhiladelphiaPennsylvaniaAS16625 Akamai Technologies, Inc.19099United Statestier_31a23-51-164-51.deploy.static.akamaitechnologies.comnan
46204.79.197.200RedmondWashingtonAS8068 Microsoft Corporation98052United Statestier_31a-0001.a-msedge.netTrue
4768.168.84.165NorristownPennsylvaniaAS17378 TierPoint, LLC19403United Statestier_31165.84.168.68.static.dbsintl.netnan
4823.36.199.139PhiladelphiaPennsylvaniaAS16625 Akamai Technologies, Inc.19099United Statestier_31a23-36-199-139.deploy.static.akamaitechnologies.comnan
4913.224.206.75PhiladelphiaPennsylvaniaAS16509 Amazon.com, Inc.19099United Statestier_31server-13-224-206-75.phl50.r.cloudfront.netnan
5068.168.84.170NorristownPennsylvaniaAS17378 TierPoint, LLC19403United Statestier_31170.84.168.68.static.dbsintl.netnan
5168.168.84.166NorristownPennsylvaniaAS17378 TierPoint, LLC19403United Statestier_31166.84.168.68.static.dbsintl.netnan
5268.168.84.190NorristownPennsylvaniaAS17378 TierPoint, LLC19403United Statestier_31190.84.168.68.static.dbsintl.netnan
5368.168.84.178NorristownPennsylvaniaAS17378 TierPoint, LLC19403United Statestier_31178.84.168.68.static.dbsintl.netnan
5413.224.206.121PhiladelphiaPennsylvaniaAS16509 Amazon.com, Inc.19099United Statestier_31server-13-224-206-121.phl50.r.cloudfront.netnan
55104.16.176.190San FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_31nanTrue
5613.224.213.79PhiladelphiaPennsylvaniaAS16509 Amazon.com, Inc.19099United Statestier_31server-13-224-213-79.phl50.r.cloudfront.netnan
57199.83.128.213Redwood CityCaliforniaAS19551 Incapsula Inc94065United Statestier_31199.83.128.213.ip.incapdns.netTrue
5868.168.84.172NorristownPennsylvaniaAS17378 TierPoint, LLC19403United Statestier_31172.84.168.68.static.dbsintl.netnan
5952.3.4.129AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_31ec2-52-3-4-129.compute-1.amazonaws.comnan

Aggregated redirection graph of domains located on current IP address.

  • The redirection flows from left to right
  • Leftmost domains are initial domains hosted on current IP
  • Rightmost domains are final landing domains we were able to crawl

Screenshot of high-occurrence final landing domains

Have other ideas? / Want to subscribe to get threat intelligence report? / Contact

Zhouhan Chen, NYU Center for Data Science, zc1245@nyu.edu, Personal Website