Daily Threat Intelligence Report

This report contains following information

  1. Overall statistics
    1. Number of domains detected
    2. Number of domains detected by Google Safe Browsing
    3. IP address behind entry-level domains
    4. date of collection
  2. Top 10 domain statistics
    1. count (number of redirection paths that contain this domain)
    2. tier (1 is entry-level domain, 2 is intermediate hop, 3 is final landing domain)
    3. registar
    4. organization
  3. Top 10 IP statistics
    1. count
    2. location (city, country, region)
    3. hostname
    4. organization
  4. Consolidated redirection path
    1. green: tier one domain
    2. yellow: tier two domain
    3. red: tier three domain
num_domainnum_linksnum_full_urlnum_safebrowsing_maliciousnum_vt_maliciousdateipuser_agent
025525810870252021-04-2137.48.65.149Safari
tierdomaincountregistrarname_serversorg
0tier_1jntukresultsdb.com1Domainsofcourse.com LLCNS1.COMMONMX.COMNone
1tier_1fibroidclear.com1GoDaddy.com, LLCNS1.COMMONMX.COMNone
2tier_1arconaitv.co1Communigal Communication Ltdns2.commonmx.comNone
3tier_1airtemail.in1Dynadot LLCns1.commonmx.comNone
4tier_1filmapik.tv1Domain Landing Zone LLCNS1.COMMONMX.COMNone
5tier_1alriyadh.us1Communigal Communication Ltdns2.commonmx.comNone
6tier_1impotencemeds.info1DYNADOT LLCNS1.COMMONMX.COMNone
7tier_1bezlohotrona.info1DYNADOT LLCNS1.COMMONMX.COMNone
8tier_1haimatsu.info1DYNADOT LLCNS1.COMMONMX.COMNone
9tier_1buysellads.ph1NoneNoneNone
10tier_21496.rawlexi.com183GoDaddy Online Services Cayman Islands LTDNS-128.AWSDNS-16.COMNone
11tier_2americanlisted.com182ilait ABNS1.TELECOM3.NETIntegration 3 Group AB
12tier_29nl.es46NoneNoneNone
13tier_2newre-conversions.clickmeter.com46NoneNoneNone
14tier_2trk.jometer.com44Amazon Registrar, Inc.NS-129.AWSDNS-16.COMWhois Privacy Service
15tier_2api.l5srv.net43GoDaddy.com, LLCNS53.DOMAINCONTROL.COMDomains By Proxy, LLC
16tier_2click.appcast.io34101Domain GRS LtdNS-85.AWSDNS-10.COMNone
17tier_2careerbliss.com23GoDaddy.com, LLCNS10.DNSMADEEASY.COMDomains By Proxy, LLC
18tier_2trk.careerbliss.com22GoDaddy.com, LLCNS10.DNSMADEEASY.COMDomains By Proxy, LLC
19tier_2click.appcast.io_LOOP_116NoneNoneNone
20tier_2nizephoros-pom.com6Amazon Registrar, Inc.NS-1192.AWSDNS-21.ORGWhois Privacy Service
21tier_2managerformula.com6NoneNoneNone
22tier_2btpnav.com51API GmbHNS1.DNSIMPLE.COMRegistrant of btpnav.com
23tier_2linkup.com3GoDaddy.com, LLCNS-102.AWSDNS-12.COMJobDig
24tier_2jsv3.recruitics.com3TUCOWS, INC.NS-1237.AWSDNS-26.ORGREDACTED FOR PRIVACY
25tier_2p.nexxt.com3Network Solutions, LLCNS21.WORLDNIC.COMNone
26tier_2linkup.com_LOOP_12NoneNoneNone
27tier_2linkup.com_LOOP_22NoneNoneNone
28tier_2sanfranciscogigs.com2NoneNoneNone
29tier_2job-openings.monster.com2CSC CORPORATE DOMAINS, INC.NS1.TMPW.NETMonster Worldwide, Inc.
30tier_3google.com102MarkMonitor, Inc.NS1.GOOGLE.COMGoogle LLC
31tier_3upward.careers43GoDaddy.com, LLCns21.domaincontrol.comDomains By Proxy, LLC
32tier_3careerbliss.com11GoDaddy.com, LLCNS10.DNSMADEEASY.COMDomains By Proxy, LLC
33tier_3s3.amazonaws.com6MarkMonitor Inc.R1.AMAZONAWS.COMNone
34tier_3careerbuilder.com3CSC CORPORATE DOMAINS, INC.BROCK.CBJOBS.NETCareerBuilder, LLC
35tier_3jobs.bswhealth.com3Network Solutions, LLCNS03.BAYLORHEALTHCARE.COMNone
36tier_3feed.int.jobble.com3GoDaddy.com, LLCNS-1238.AWSDNS-26.ORGDomains By Proxy, LLC
37tier_3click.appcast.io_LOOP_22NoneNoneNone
38tier_3sanfranciscogigs.com2ENOM, INC.DNS1.NAME-SERVICES.COMREDACTED FOR PRIVACY
39tier_3juju.com2Network Solutions, LLCNS-1111.AWSDNS-10.ORGNone
40tier_3monster.com2CSC CORPORATE DOMAINS, INC.NS1.TMPW.NETMonster Worldwide, Inc.
41tier_3click.appcast.io_LOOP_12NoneNoneNone
42tier_3us.tideri.com1united domains AGNS.UDAG.DENone
43tier_3neuvoo.com1MarkMonitor, Inc.NS-1302.AWSDNS-34.ORGTalent.com
44tier_3americanlisted.com1ilait ABNS1.TELECOM3.NETIntegration 3 Group AB
45tier_3linkup.com_LOOP_11NoneNoneNone
46tier_3irl.com1GoDaddy.com, LLCNS-106.AWSDNS-13.COMDomains By Proxy, LLC
47tier_3click.joveo.com1Go Canada Domains, LLCNS-1256.AWSDNS-29.ORGDomains By Proxy, LLC
48tier_3uber.com1MarkMonitor Inc.EDNS126.ULTRADNS.BIZNone
49tier_3toryburch.com1CSC CORPORATE DOMAINS, INC.DNS1.CSCDNS.NETRiver Light V, L.P.
50tier_3us.allthetopbananas.com1ENOM, INC.DANE.NS.CLOUDFLARE.COMREDACTED FOR PRIVACY
51tier_3trk.careerbliss.com1GoDaddy.com, LLCNS10.DNSMADEEASY.COMDomains By Proxy, LLC
52tier_3profoundnaturalsuccess.com1TUCOWS, INC.AMY.NS.CLOUDFLARE.COMContact Privacy Inc. Customer 0160302410
53tier_3godaddy.com1GoDaddy.com, LLCA1-245.AKAM.NETGo Daddy Operating Company, LLC
ipcityregionorgpostalcountry_nametiercounthostname
0207.244.67.214WashingtonWashington, D.C.AS30633 Leaseweb USA, Inc.20045United Statestier_128nan
1207.244.67.218WashingtonWashington, D.C.AS30633 Leaseweb USA, Inc.20045United Statestier_127nan
2207.244.67.216WashingtonWashington, D.C.AS30633 Leaseweb USA, Inc.20045United Statestier_125nan
3207.244.67.215WashingtonWashington, D.C.AS30633 Leaseweb USA, Inc.20045United Statestier_125nan
4104.243.45.190New York CityNew YorkAS23470 ReliableSite.Net LLC10004United Statestier_116nan
5104.243.45.178New York CityNew YorkAS23470 ReliableSite.Net LLC10004United Statestier_111nan
6104.243.45.179New York CityNew YorkAS23470 ReliableSite.Net LLC10004United Statestier_110nan
737.48.65.149AmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_18nan
8206.221.176.184New York CityNew YorkAS23470 ReliableSite.Net LLC10004United Statestier_17nan
982.192.82.227AmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_14nan
10198.54.112.216San JoseCaliforniaAS22612 Namecheap, Inc.95103United Statestier_2183nan
1135.209.61.240Council BluffsIowaAS15169 Google LLC51502United Statestier_31240.61.209.35.bc.googleusercontent.com
12207.38.44.116Los AngelesCaliforniaAS5693 Latisys-Irvine, LLC90009United Statestier_312cbsmtp1.careerbliss.com
1367.227.173.37LansingMichiganAS32244 Liquid Web, L.L.C48901United Statestier_243nan
1454.197.247.190AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_225ec2-54-197-247-190.compute-1.amazonaws.com
1554.235.205.204AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_225ec2-54-235-205-204.compute-1.amazonaws.com
16100.37.135.2New York CityNew YorkAS701 MCI Communications Services, Inc. d/b/a Verizon Business10004United Statestier_36pool-100-37-135-2.nycmny.fios.verizon.net
1723.21.166.45AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_221ec2-23-21-166-45.compute-1.amazonaws.com
1823.21.53.13AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_221ec2-23-21-53-13.compute-1.amazonaws.com
1952.3.4.129AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_217ec2-52-3-4-129.compute-1.amazonaws.com
2099.84.114.25NewarkNew JerseyAS16509 Amazon.com, Inc.07175United Statestier_214server-99-84-114-25.ewr52.r.cloudfront.net
2199.84.114.65NewarkNew JerseyAS16509 Amazon.com, Inc.07175United Statestier_213server-99-84-114-65.ewr52.r.cloudfront.net
2299.84.114.17NewarkNew JerseyAS16509 Amazon.com, Inc.07175United Statestier_211server-99-84-114-17.ewr52.r.cloudfront.net
23100.25.52.1AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_210ec2-100-25-52-1.compute-1.amazonaws.com
243.234.0.165AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_27ec2-3-234-0-165.compute-1.amazonaws.com
2599.84.114.53NewarkNew JerseyAS16509 Amazon.com, Inc.07175United Statestier_26server-99-84-114-53.ewr52.r.cloudfront.net
26209.15.13.136TorontoOntarioAS13768 Aptum TechnologiesM5NCanadatier_25nan
27209.236.97.200MinneapolisMinnesotaAS13649 Flexential Colorado Corp.55440United Statestier_23nan
2852.2.164.72AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_23ec2-52-2-164-72.compute-1.amazonaws.com
2968.168.84.60NorristownPennsylvaniaAS17378 TierPoint, LLC19403United Statestier_2360.84.168.68.static.dbsintl.net
3067.227.172.40LansingMichiganAS32244 Liquid Web, L.L.C48901United Statestier_343nan
31172.217.12.164CliftonNew JerseyAS15169 Google LLC07015United Statestier_322lga25s62-in-f4.1e100.net
32172.217.10.100CliftonNew JerseyAS15169 Google LLC07015United Statestier_318lga34s15-in-f4.1e100.net
33172.217.3.100WestburyNew YorkAS15169 Google LLC11590United Statestier_316lga34s18-in-f4.1e100.net
34172.217.11.4New York CityNew YorkAS15169 Google LLC10004United Statestier_315lga25s60-in-f4.1e100.net
35172.217.10.132CliftonNew JerseyAS15169 Google LLC07015United Statestier_313lga34s16-in-f4.1e100.net
36172.217.12.132CliftonNew JerseyAS15169 Google LLC07015United Statestier_312lga34s19-in-f4.1e100.net
37207.38.44.116Los AngelesCaliforniaAS5693 Latisys-Irvine, LLC90009United Statestier_312cbsmtp1.careerbliss.com
38100.37.135.2New York CityNew YorkAS701 MCI Communications Services, Inc. d/b/a Verizon Business10004United Statestier_36pool-100-37-135-2.nycmny.fios.verizon.net
39142.250.64.100WestburyNew YorkAS15169 Google LLC11590United Statestier_35lga34s31-in-f4.1e100.net
4099.84.47.93NewarkNew JerseyAS16509 Amazon.com, Inc.07175United Statestier_33server-99-84-47-93.ewr52.r.cloudfront.net
4152.216.9.221AshburnVirginiaAS16509 Amazon.com, Inc.20149United Statestier_32s3-1.amazonaws.com
4252.216.142.222AshburnVirginiaAS16509 Amazon.com, Inc.20149United Statestier_32s3-1.amazonaws.com
4352.70.5.225AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_32ec2-52-70-5-225.compute-1.amazonaws.com
4454.234.245.31AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_32ec2-54-234-245-31.compute-1.amazonaws.com
4552.217.0.166AshburnVirginiaAS16509 Amazon.com, Inc.20149United Statestier_31s3-1.amazonaws.com
4635.246.171.123Frankfurt am MainHesseAS15169 Google LLC60311Germanytier_31123.171.246.35.bc.googleusercontent.com
4754.211.44.127AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_31ec2-54-211-44-127.compute-1.amazonaws.com
4835.209.61.240Council BluffsIowaAS15169 Google LLC51502United Statestier_31240.61.209.35.bc.googleusercontent.com
4952.216.26.78AshburnVirginiaAS16509 Amazon.com, Inc.20149United Statestier_31s3-1.amazonaws.com
5034.193.246.88AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_31ec2-34-193-246-88.compute-1.amazonaws.com
5168.168.84.133NorristownPennsylvaniaAS17378 TierPoint, LLC19403United Statestier_31133.84.168.68.static.dbsintl.net
52172.217.6.228WestburyNew YorkAS15169 Google LLC11590United Statestier_31lga25s55-in-f228.1e100.net
5354.205.240.192AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_31ec2-54-205-240-192.compute-1.amazonaws.com
5454.165.163.115AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_31ec2-54-165-163-115.compute-1.amazonaws.com
5599.84.114.4NewarkNew JerseyAS16509 Amazon.com, Inc.07175United Statestier_31server-99-84-114-4.ewr52.r.cloudfront.net
5699.84.47.94NewarkNew JerseyAS16509 Amazon.com, Inc.07175United Statestier_31server-99-84-47-94.ewr52.r.cloudfront.net
57104.36.195.150WashingtonWashington, D.C.AS63086 Uber Technologies, Inc20045United Statestier_31nan
58104.126.116.88New York CityNew YorkAS20940 Akamai International B.V.10004United Statestier_31a104-126-116-88.deploy.static.akamaitechnologies.com
5952.206.97.121AshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_31ec2-52-206-97-121.compute-1.amazonaws.com

Aggregated redirection graph of domains located on current IP address.

  • The redirection flows from left to right
  • Leftmost domains are initial domains hosted on current IP
  • Rightmost domains are final landing domains we were able to crawl

Screenshot of high-occurrence final landing domains

Have other ideas? / Want to subscribe to get threat intelligence report? / Contact

Zhouhan Chen, NYU Center for Data Science, zc1245@nyu.edu, Personal Website