Daily Threat Intelligence Report

This report contains following information

  1. Overall statistics
    1. Number of domains detected
    2. Number of domains detected by Google Safe Browsing
    3. IP address behind entry-level domains
    4. date of collection
  2. Top 10 domain statistics
    1. count (number of redirection paths that contain this domain)
    2. tier (1 is entry-level domain, 2 is intermediate hop, 3 is final landing domain)
    3. registar
    4. organization
  3. Top 10 IP statistics
    1. count
    2. location (city, country, region)
    3. hostname
    4. organization
  4. Consolidated redirection path
    1. green: tier one domain
    2. yellow: tier two domain
    3. red: tier three domain
num_domainnum_linksnum_full_urlnum_safebrowsing_maliciousnum_vt_maliciousdateipuser_agent
05857154002020-10-1237.48.65.149Iphone
tierdomaincountregistrarname_serversorg
0tier_1nod327.net1NamePanther.com LLCNS1.DNSNUTS.COMNone
1tier_1shireen-n.com1Nameselite, LLCNS1.DNSNUTS.COMNone
2tier_1dl4warez.com1NamePal.com #8013, LLCNS1.DNSNUTS.COMNone
3tier_1betteryourselfonline.com1Domainamania.com LLCNS1.DNSNUTS.COMNone
4tier_1healthyfoodtipsandtricks.com1SNAPNAMES 16, LLCNS1.DNSNUTS.COMNone
5tier_1rrys123.com1Entrust Domains, LLCNS1.DNSNUTS.COMNone
6tier_1uniformis.net1Domainsouffle.com LLCNS1.DNSNUTS.COMNone
7tier_1lamboise.com1SNAPNAMES 46, LLCNS1.DNSNUTS.COMNone
8tier_1g-res.com1EndeavourDomains, LLCNS1.DNSNUTS.COMNone
9tier_1hdgebi.com1MasterofMyDomains.net LLCNS1.DNSNUTS.COMNone
10tier_2go.trackinz.com24NAMECHEAP INCNS-1139.AWSDNS-14.ORGWhoisGuard, Inc.
11tier_2click.expmediadirect.com17NAMECHEAP INCNS1.LINODE.COMWhoisGuard, Inc.
12tier_2btpnative.com9GoDaddy.com, LLCNS1.DNSIMPLE.COMDomains By Proxy, LLC
13tier_2infopicked.com8NAMECHEAP INCNS0.DNSMADEEASY.COMWhoisGuard, Inc.
14tier_2p274639.infopicked.com6NoneNoneNone
15tier_2peachtrackerus.com4NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMWhoisGuard, Inc.
16tier_2beta.infopicked.com3NAMECHEAP INCNS0.DNSMADEEASY.COMWhoisGuard, Inc.
17tier_2c.clickprotects.com2GoDaddy.com, LLCNS63.DOMAINCONTROL.COMDomains By Proxy, LLC
18tier_211165151.addotnet.com2GoDaddy.com, LLCNS75.DOMAINCONTROL.COMDomains By Proxy, LLC
19tier_2geo.itunes.apple.com2CSC CORPORATE DOMAINS, INC.A.NS.APPLE.COMApple Inc.
20tier_3clickitover.com24NAMECHEAP INCNS-1367.AWSDNS-42.ORGWhoisGuard, Inc.
21tier_3allbestsecureus.com4NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMWhoisGuard, Inc.
22tier_3music.apple.com2CSC CORPORATE DOMAINS, INC.A.NS.APPLE.COMApple Inc.
23tier_3macys.com1Network Solutions, LLCA1-135.AKAM.NETNone
24tier_3btpnative.com1GoDaddy.com, LLCNS1.DNSIMPLE.COMDomains By Proxy, LLC
25tier_3rd.bizrate.com1MarkMonitor, Inc.NS-1189.AWSDNS-20.ORGMeredith Corporation
ipcityregionorgpostalcountry_nametiercounthostname
0207.244.67.218ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_112nan
1207.244.67.214ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_19nan
2207.244.67.216ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_14nan
364.32.8.69Los AngelesCaliforniaAS46844 Sharktech90009United Statestier_12customer.sharktech.net
4207.244.67.215ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_12nan
537.48.65.151AmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_11nan
637.48.65.149AmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_11nan
746.166.182.115AmsterdamNorth HollandAS43350 NForce Entertainment B.V.1012Netherlandstier_11nan
846.166.182.109AmsterdamNorth HollandAS43350 NForce Entertainment B.V.1012Netherlandstier_11nan
934.226.252.28Virginia BeachVirginiaAS14618 Amazon.com, Inc.23471United Statestier_224ec2-34-226-252-28.compute-1.amazonaws.com
10173.192.101.24DallasTexasAS36351 SoftLayer Technologies Inc.75270United Statestier_21918.65.c0ad.ip4.static.sl-reverse.com
11198.134.116.30New York CityNew YorkAS27257 Webair Internet Development Company Inc.10013United Statestier_217nan
12209.15.13.136TorontoOntarioAS13768 Aptum TechnologiesM5NCanadatier_31nan
1354.39.130.163LangfordBritish ColumbiaAS16276 OVH SASV9BCanadatier_34ns568503.ip-54-39-130.net
14209.132.243.15Los AngelesCaliforniaAS7296 Alchemy Communications, Inc.90009United Statestier_24nan
15184.85.6.44Atlantic CityNew JerseyAS16625 Akamai Technologies, Inc.08404United Statestier_22a184-85-6-44.deploy.static.akamaitechnologies.com
1623.43.252.68NewarkNew JerseyAS16625 Akamai Technologies, Inc.07175United Statestier_31a23-43-252-68.deploy.static.akamaitechnologies.com
1754.70.216.196PortlandOregonAS16509 Amazon.com, Inc.97220United Statestier_21ec2-54-70-216-196.us-west-2.compute.amazonaws.com
1895.142.19.2New York CityNew YorkAS20645 PurePeak Ltd.10004United Statestier_21nan
19157.245.227.32Santa ClaraCaliforniaAS14061 DigitalOcean, LLC95051United Statestier_324nan
2054.39.130.163LangfordBritish ColumbiaAS16276 OVH SASV9BCanadatier_34ns568503.ip-54-39-130.net
2123.41.189.63NewarkNew JerseyAS16625 Akamai Technologies, Inc.07175United Statestier_31a23-41-189-63.deploy.static.akamaitechnologies.com
22100.37.135.2New York CityNew YorkAS701 MCI Communications Services, Inc. d/b/a Verizon Business10004United Statestier_31pool-100-37-135-2.nycmny.fios.verizon.net
23209.15.13.136TorontoOntarioAS13768 Aptum TechnologiesM5NCanadatier_31nan
2423.43.252.68NewarkNew JerseyAS16625 Akamai Technologies, Inc.07175United Statestier_31a23-43-252-68.deploy.static.akamaitechnologies.com
25192.138.218.207SeattleWashingtonAS14332 Connexity, Inc.98111United Statestier_31rd.bizrate.com

Have other ideas? / Want to subscribe to get threat intelligence report? / Contact

Zhouhan Chen, NYU Center for Data Science, zc1245@nyu.edu, Personal Website