Daily Threat Intelligence Report

This report contains following information

  1. Overall statistics
    1. Number of domains detected
    2. Number of domains detected by Google Safe Browsing
    3. IP address behind entry-level domains
    4. date of collection
  2. Top 10 domain statistics
    1. count (number of redirection paths that contain this domain)
    2. tier (1 is entry-level domain, 2 is intermediate hop, 3 is final landing domain)
    3. registar
    4. organization
  3. Top 10 IP statistics
    1. count
    2. location (city, country, region)
    3. hostname
    4. organization
  4. Consolidated redirection path
    1. green: tier one domain
    2. yellow: tier two domain
    3. red: tier three domain
num_domainnum_linksnum_full_urlnum_safebrowsing_maliciousnum_vt_maliciousdateipuser_agent
0116118395002020-12-0837.48.65.149Chrome
tierdomaincountregistrarname_serversorg
0tier_1mypirateproxy.com1Chipshot Domains LLCNS1.DNSNUTS.COMThe Management Group II
1tier_1templatesuplex.com1Skykomishdomains.com LLCNS1.DNSNUTS.COMNone
2tier_1panorama-pamporovo.com1Snapsource LLCNS1.DNSNUTS.COMNone
3tier_1dl4warez.com1NamePal.com #8013 Inc.NS1.DNSNUTS.COMThe Management Group II
4tier_1codecramp.com1Traffic Names, IncorporatedNS1.DNSNUTS.COMNone
5tier_1mowalls.net1eNomToo, Inc.NS1.DNSNUTS.COMNone
6tier_1bryantan.info1BigLizarddomains.com LLCNS1.DNSNUTS.COMStatutory Masking Enabled
7tier_1jostoto.us1UdomainName.com LLCns2.dnsnuts.comNone
8tier_1aish.us1UdomainName.com LLCns2.dnsnuts.comNone
9tier_1mangaice.com1Leatherneckdomains.com, LLCNS1.DNSNUTS.COMThe Management Group II
10tier_2dprtb.com38GoDaddy.com, LLCNS1.DNSIMPLE.COMDomains By Proxy, LLC
11tier_21496.wcitianka.com36GoDaddy Online Services Cayman Islands LTDNS-1096.AWSDNS-09.ORGNone
12tier_2americanlisted.com36ilait ABNS1.TELECOM3.NETIntegration 3 Group AB
13tier_2click.expmediadirect.com18NoneNoneNone
14tier_2click.appcast.io17101Domain GRS LtdNS-85.AWSDNS-10.COMNone
15tier_2rd.lcjalerts.com17GoDaddy.com, LLCNS-130.AWSDNS-16.COMDomains By Proxy, LLC
16tier_2us.jobtome.com16GoDaddy.com, LLCCHRIS.NS.CLOUDFLARE.COMJobtome Internantional SA
17tier_2rd.torchdaily.com10GoDaddy.com, LLCNS-1225.AWSDNS-25.ORGDomains By Proxy, LLC
18tier_2krvtrk.com10NoneNoneNone
19tier_2jsv3.recruitics.com8TUCOWS, INC.NS1.P24.DYNECT.NETREDACTED FOR PRIVACY
20tier_3jobs2careers.com11Amazon Registrar, Inc.NS-1189.AWSDNS-20.ORGWhois Privacy Service
21tier_3myhealthcycle.com10NoneNoneNone
22tier_3turbo-pdf.com9NoneNoneNone
23tier_3shipt.com_LOOP_17NoneNoneNone
24tier_3homedepotretailjobs.com5CSC CORPORATE DOMAINS, INC.NS-1365.AWSDNS-42.ORGHome Depot Product Authority, LLC
25tier_3feed.int.jobble.com3GoDaddy.com, LLCNS-1238.AWSDNS-26.ORGDomains By Proxy, LLC
26tier_3qualitydriversolutions.thejobnetwork.com2GoDaddy.com, LLCNS-1356.AWSDNS-41.ORGRealMatch
27tier_3sjobs.brassring.com2CSC CORPORATE DOMAINS, INC.A1-160.AKAM.NETNot Disclosed
28tier_3macys.com2Network Solutions, LLCA1-135.AKAM.NETMacy's Systems and Technology, Inc.
29tier_3the-house.com1GoDaddy.com, LLCNS-1305.AWSDNS-35.ORGActive Sports, Inc.
ipcityregionorgpostalcountry_nametiercounthostname
0207.244.67.218ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_123nan
1207.244.67.216ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_113nan
2207.244.67.215ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_111nan
3207.244.67.214ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_18nan
464.32.8.67Los AngelesCaliforniaAS46844 Sharktech90009United Statestier_12customer.sharktech.net
5185.107.56.59RotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_12nan
637.48.65.150AmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_12nan
764.32.8.69Los AngelesCaliforniaAS46844 Sharktech90009United Statestier_11customer.sharktech.net
837.48.65.149AmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_11nan
9185.107.56.58RotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_11nan
10209.15.13.136TorontoOntarioAS13768 Aptum TechnologiesM5NCanadatier_240nan
11198.54.112.216San JoseCaliforniaAS22612 Namecheap, Inc.95103United Statestier_236nan
1235.209.61.240Council BluffsIowaAS15169 Google LLC51502United Statestier_236240.61.209.35.bc.googleusercontent.com
13198.134.116.30New York CityNew YorkAS27257 Webair Internet Development Company Inc.10013United Statestier_218nan
14130.211.38.206Kansas CityMissouriAS15169 Google LLC64121United Statestier_216206.38.211.130.bc.googleusercontent.com
153.86.134.189Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_212ec2-3-86-134-189.compute-1.amazonaws.com
1634.203.143.4Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_210ec2-34-203-143-4.compute-1.amazonaws.com
1734.194.75.233Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_210ec2-34-194-75-233.compute-1.amazonaws.com
183.211.178.164Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_27ec2-3-211-178-164.compute-1.amazonaws.com
1934.234.179.35Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_27ec2-34-234-179-35.compute-1.amazonaws.com
20157.245.245.47North BergenNew JerseyAS14061 DigitalOcean, LLC07047United Statestier_310nan
21178.128.246.195AmsterdamNorth HollandAS14061 DigitalOcean, LLC1012Netherlandstier_39nan
22100.37.135.2New York CityNew YorkAS701 MCI Communications Services, Inc. d/b/a Verizon Business10004United Statestier_38pool-100-37-135-2.nycmny.fios.verizon.net
2334.236.61.118Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_36ec2-34-236-61-118.compute-1.amazonaws.com
2413.225.229.69New York CityNew YorkAS16509 Amazon.com, Inc.10004United Statestier_33server-13-225-229-69.jfk51.r.cloudfront.net
25199.83.128.213Redwood CityCaliforniaAS19551 Incapsula Inc94065United Statestier_33199.83.128.213.ip.incapdns.net
2634.199.213.119Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_32ec2-34-199-213-119.compute-1.amazonaws.com
2734.201.214.108Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_32ec2-34-201-214-108.compute-1.amazonaws.com
2866.77.22.60WaynePennsylvaniaAS209 CenturyLink Communications, LLC19087United Statestier_32nan
2952.3.90.145Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_32ec2-52-3-90-145.compute-1.amazonaws.com

Have other ideas? / Want to subscribe to get threat intelligence report? / Contact

Zhouhan Chen, NYU Center for Data Science, zc1245@nyu.edu, Personal Website