Daily Threat Intelligence Report

This report contains following information

  1. Overall statistics
    1. Number of domains detected
    2. Number of domains detected by Google Safe Browsing
    3. IP address behind entry-level domains
    4. date of collection
  2. Top 10 domain statistics
    1. count (number of redirection paths that contain this domain)
    2. tier (1 is entry-level domain, 2 is intermediate hop, 3 is final landing domain)
    3. registar
    4. organization
  3. Top 10 IP statistics
    1. count
    2. location (city, country, region)
    3. hostname
    4. organization
  4. Consolidated redirection path
    1. green: tier one domain
    2. yellow: tier two domain
    3. red: tier three domain
num_domainnum_linksnum_full_urlnum_safebrowsing_maliciousnum_vt_maliciousdateipuser_agent
0114113323002020-11-1937.48.65.149Safari
tierdomaincountregistrarname_serversorg
0tier_1heyphim.com1Fetch Registrar, LLCNS1.DNSNUTS.COMNone
1tier_1arpasuyu.net1Domain Grabber LLCNS1.DNSNUTS.COMNone
2tier_135ink.com1CloudBreakDomains, LLCNS1.DNSNUTS.COMNone
3tier_1paydayloansfastcasha.com1Domainsoverboard.com LLCNS1.DNSNUTS.COMNone
4tier_1ua24ua.com1Ripcurl Domains, LLCNS1.DNSNUTS.COMNone
5tier_1flippaper.net1SNAPNAMES 22, LLCNS1.DNSNUTS.COMNone
6tier_1cvv2.cc1Dropcatch Marketplace LLCNS1.DNSNUTS.COMNone
7tier_1bluebonnetfederalcreditunion.com1Sea Wasp, LLCNS1.DNSNUTS.COMSavvy Investments, LLC Privacy ID# 772559
8tier_1webmformat.com1Alpha Beta Domains LLCNS1.DNSNUTS.COMNone
9tier_1policeanalyst.com1Atomicdomainnames.com LLCNS1.DNSNUTS.COMNone
10tier_2sopho-kat.com26Amazon Registrar, Inc.NS-1009.AWSDNS-62.NETWhois Privacy Service
11tier_2dprtb.com25GoDaddy.com, LLCNS1.DNSIMPLE.COMDomains By Proxy, LLC
12tier_21496.wcitianka.com20GoDaddy Online Services Cayman Islands LTDNS-1096.AWSDNS-09.ORGNone
13tier_2americanlisted.com19ilait ABNS1.TELECOM3.NETIntegration 3 Group AB
14tier_2verifiedclicker.com18TUCOWS, INC.1-YOU.NJALLA.NOREDACTED FOR PRIVACY
15tier_2mnason-hec.com15Amazon Registrar, Inc.NS-1205.AWSDNS-22.ORGWhois Privacy Service
16tier_2btpnative.com14GoDaddy.com, LLCNS1.DNSIMPLE.COMDomains By Proxy, LLC
17tier_2infopicked.com12NAMECHEAP INCNS0.DNSMADEEASY.COMWhoisGuard, Inc.
18tier_2track.vcdc.com4Key-Systems GmbHGUY.NS.CLOUDFLARE.COMc/o whoisproxy.com
19tier_2rd.bizrate.com4MarkMonitor, Inc.NS-1189.AWSDNS-20.ORGMeredith Corporation
20tier_3us.tideri.com19united domains AGNS.UDAG.DENone
21tier_3antivirus-protection.me18NAMECHEAP INCNoneNone
22tier_3toovolution.club15NoneNoneNone
23tier_3affbank.com3DANESCO TRADING LTDGABE.NS.CLOUDFLARE.COMAdvertecy LTD
24tier_3us.search.yahoo.com1MarkMonitor, Inc.NS1.YAHOO.COMOath Inc.
25tier_3maxlend.com_LOOP_11NoneNoneNone
26tier_3kbb.com1CSC CORPORATE DOMAINS, INC.PDNS164.ULTRADNS.BIZAutotrader.com
27tier_3womanwithin.com1CSC CORPORATE DOMAINS, INC.PDNS1.ULTRADNS.NETFullBeauty Brands Operations, LLC
28tier_3fragrancex.com1GoDaddy.com, LLCNS1.P16.DYNECT.NETFragranceX.com Inc.
29tier_3reebok.com1CSC CORPORATE DOMAINS, INC.NS1.NETNAMES.NETReebok International, Ltd.
ipcityregionorgpostalcountry_nametiercounthostname
0207.244.67.214ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_119nan
1207.244.67.215ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_116nan
2207.244.67.216ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_114nan
3207.244.67.218ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_114nan
4185.107.56.57RotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_11nan
5185.107.56.59RotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_11nan
6185.107.56.58RotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_11nan
764.32.8.69Los AngelesCaliforniaAS46844 Sharktech90009United Statestier_11customer.sharktech.net
864.32.8.68Los AngelesCaliforniaAS46844 Sharktech90009United Statestier_11customer.sharktech.net
964.32.8.70Los AngelesCaliforniaAS46844 Sharktech90009United Statestier_11customer.sharktech.net
10209.15.13.136TorontoOntarioAS13768 Aptum TechnologiesM5NCanadatier_239nan
1152.205.210.89Virginia BeachVirginiaAS14618 Amazon.com, Inc.23450United Statestier_221ec2-52-205-210-89.compute-1.amazonaws.com
12198.54.112.216San JoseCaliforniaAS22612 Namecheap, Inc.95103United Statestier_220nan
1354.225.132.253Virginia BeachVirginiaAS14618 Amazon.com, Inc.23450United Statestier_220ec2-54-225-132-253.compute-1.amazonaws.com
1435.209.61.240Council BluffsIowaAS15169 Google LLC51502United Statestier_219240.61.209.35.bc.googleusercontent.com
15134.209.199.255AmsterdamNorth HollandAS14061 DigitalOcean, LLC1012Netherlandstier_218nan
16173.192.101.24DallasTexasAS36351 SoftLayer Technologies Inc.75270United Statestier_21418.65.c0ad.ip4.static.sl-reverse.com
17192.138.218.207SeattleWashingtonAS14332 Connexity, Inc.98111United Statestier_24rd.bizrate.com
1866.165.243.151TampaFloridaAS29802 HIVELOCITY, Inc.33606United Statestier_2366-165-243-151.static.hvvc.us
19192.138.218.139SeattleWashingtonAS14332 Connexity, Inc.98111United Statestier_23rd.connexity.net
2035.246.171.123Frankfurt am MainHesseAS15169 Google LLC60311Germanytier_319123.171.246.35.bc.googleusercontent.com
21172.86.75.234AmsterdamNorth HollandAS40676 Psychz Networks1017Netherlandstier_318nan
2213.32.182.128WashingtonWashington, D.C.AS16509 Amazon.com, Inc.20045United Statestier_38server-13-32-182-128.iad66.r.cloudfront.net
2313.32.182.45WashingtonWashington, D.C.AS16509 Amazon.com, Inc.20045United Statestier_33server-13-32-182-45.iad66.r.cloudfront.net
2413.32.182.48WashingtonWashington, D.C.AS16509 Amazon.com, Inc.20045United Statestier_33server-13-32-182-48.iad66.r.cloudfront.net
2535.156.139.229Frankfurt am MainHesseAS16509 Amazon.com, Inc.60311Germanytier_33ec2-35-156-139-229.eu-central-1.compute.amazonaws.com
2666.218.84.137Atlantic CityNew JerseyAS26101 Oath Holdings Inc.08404United Statestier_31ats1.l7.search.vip.bf1.yahoo.com
27100.37.135.2New York CityNew YorkAS701 MCI Communications Services, Inc. d/b/a Verizon Business10004United Statestier_31pool-100-37-135-2.nycmny.fios.verizon.net
2823.44.217.143NewarkNew JerseyAS16625 Akamai Technologies, Inc.07175United Statestier_31a23-44-217-143.deploy.static.akamaitechnologies.com
2913.32.182.43WashingtonWashington, D.C.AS16509 Amazon.com, Inc.20045United Statestier_31server-13-32-182-43.iad66.r.cloudfront.net

Have other ideas? / Want to subscribe to get threat intelligence report? / Contact

Zhouhan Chen, NYU Center for Data Science, zc1245@nyu.edu, Personal Website