Daily Threat Intelligence Report

This report contains following information

  1. Overall statistics
    1. Number of domains detected
    2. Number of domains detected by Google Safe Browsing
    3. IP address behind entry-level domains
    4. date of collection
  2. Top 10 domain statistics
    1. count (number of redirection paths that contain this domain)
    2. tier (1 is entry-level domain, 2 is intermediate hop, 3 is final landing domain)
    3. registar
    4. organization
  3. Top 10 IP statistics
    1. count
    2. location (city, country, region)
    3. hostname
    4. organization
  4. Consolidated redirection path
    1. green: tier one domain
    2. yellow: tier two domain
    3. red: tier three domain
num_domainnum_linksnum_full_urlnum_safebrowsing_maliciousnum_vt_maliciousdateipuser_agent
0232371002020-10-0964.32.8.67Iphone
tierdomaincountregistrarname_serversorg
0tier_1calvindtaylor.com1EmpireStateDomains, LLCNS1.DNSNUTS.COMNone
1tier_1akeremuna2018.com1Domain Secure LLCNS1.DNSNUTS.COMNone
2tier_1being-bianca.com1Gozerdomains.com LLCNS1.DNSNUTS.COMNone
3tier_1dachnyj-sad-ogorod.com1SNAPNAMES 60, LLCNS1.DNSNUTS.COMNone
4tier_1accessusbank.com1Sea Wasp, LLCNS1.DNSNUTS.COMSavvy Investments, LLC Privacy ID# 733920
5tier_10gtx.com1Domainarmada.com LLCNS1.DNSNUTS.COMNone
6tier_1bookcooking.net1One Putt, LLCNS1.DNSNUTS.COMNone
7tier_1biyaherongbarat.com1InlandDomains, LLCNS1.DNSNUTS.COMNone
8tier_1games66hacked.com1Free Dive Domains, LLCNS1.DNSNUTS.COMNone
9tier_1femmes-vetements.com1Domaincatcher LLCNS1.DNSNUTS.COMNone
10tier_2go.trackinz.com13NoneNoneNone
11tier_2btpnative.com8GoDaddy.com, LLCNS1.DNSIMPLE.COMDomains By Proxy, LLC
12tier_2infopicked.com7NAMECHEAP INCNS0.DNSMADEEASY.COMWhoisGuard, Inc.
13tier_2p274639.infopicked.com7NoneNoneNone
14tier_2click.expmediadirect.com6NoneNoneNone
15tier_2changeslots.com1Instra Corporation Pty Ltd.CLEO.NS.CLOUDFLARE.COMREDACTED FOR PRIVACY
16tier_2beta.infopicked.com1NoneNoneNone
17tier_3clickitover.com13NoneNoneNone
18tier_3theconnectvpn.com1DonDominio (SCIP)ARNOLD.NS.CLOUDFLARE.COMSoluciones Corporativas IP, c/o Whois Proxy
ipcityregionorgpostalcountry_nametiercounthostname
0207.244.67.216ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_15nan
1207.244.67.214ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_14nan
264.32.8.68Los AngelesCaliforniaAS46844 Sharktech90009United Statestier_11customer.sharktech.net
346.166.182.109AmsterdamNorth HollandAS43350 NForce Entertainment B.V.1012Netherlandstier_11nan
446.166.182.115AmsterdamNorth HollandAS43350 NForce Entertainment B.V.1012Netherlandstier_11nan
537.48.65.150AmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_11nan
6207.244.67.215ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_11nan
7173.192.101.24DallasTexasAS36351 SoftLayer Technologies Inc.75270United Statestier_21518.65.c0ad.ip4.static.sl-reverse.com
834.226.252.28Virginia BeachVirginiaAS14618 Amazon.com, Inc.23471United Statestier_214ec2-34-226-252-28.compute-1.amazonaws.com
9209.15.13.136TorontoOntarioAS13768 Aptum TechnologiesM5NCanadatier_28nan
10198.134.116.30New York CityNew YorkAS27257 Webair Internet Development Company Inc.10013United Statestier_26nan
11157.245.227.32Santa ClaraCaliforniaAS14061 DigitalOcean, LLC95051United Statestier_313nan
12104.27.187.165Atlantic CityNew JerseyAS13335 Cloudflare, Inc.08404United Statestier_31nan

Have other ideas? / Want to subscribe to get threat intelligence report? / Contact

Zhouhan Chen, NYU Center for Data Science, zc1245@nyu.edu, Personal Website