Daily Threat Intelligence Report

This report contains following information

  1. Overall statistics
    1. Number of domains detected
    2. Number of domains detected by Google Safe Browsing
    3. IP address behind entry-level domains
    4. date of collection
  2. Top 10 domain statistics
    1. count (number of redirection paths that contain this domain)
    2. tier (1 is entry-level domain, 2 is intermediate hop, 3 is final landing domain)
    3. registar
    4. organization
  3. Top 10 IP statistics
    1. count
    2. location (city, country, region)
    3. hostname
    4. organization
  4. Consolidated redirection path
    1. green: tier one domain
    2. yellow: tier two domain
    3. red: tier three domain
num_domainnum_linksnum_full_urlnum_safebrowsing_maliciousnum_vt_maliciousdateipuser_agent
09294258002020-10-1264.32.8.67Iphone
tierdomaincountregistrarname_serversorg
0tier_1techiewheels.com1Line Drive Domains, LLCNS1.DNSNUTS.COMThe Management Group II
1tier_1usakanalist.com1Free Spirit Domains, LLCNS1.DNSNUTS.COMNone
2tier_1jav9.net1NamePal.com #8012 Inc.NS1.DNSNUTS.COMNone
3tier_1atgames-boo.com1SicherRegister, IncorporatedNS1.DNSNUTS.COMThe Management Group II
4tier_1dkca.net1Domain Name Origin, LLCNS1.DNSNUTS.COMNone
5tier_1jxieeducation.com1NamePal.com #8021 Inc.NS1.DNSNUTS.COMThe Management Group II
6tier_1riscv-basics.com1Flancrestdomains.com LLCNS1.DNSNUTS.COMNone
7tier_1coloriage-adulte.net1Domain Success LLCNS1.DNSNUTS.COMNone
8tier_1albcr.net1Inland Domains LLCNS1.DNSNUTS.COMThe Management Group II
9tier_124htinhyeu.net1Deleting Name Zone LLCNS1.DNSNUTS.COMNone
10tier_2go.trackinz.com30NAMECHEAP INCNS-1139.AWSDNS-14.ORGWhoisGuard, Inc.
11tier_2click.expmediadirect.com21NAMECHEAP INCNS1.LINODE.COMWhoisGuard, Inc.
12tier_2btpnative.com17GoDaddy.com, LLCNS1.DNSIMPLE.COMDomains By Proxy, LLC
13tier_2infopicked.com16NAMECHEAP INCNS0.DNSMADEEASY.COMWhoisGuard, Inc.
14tier_2p274639.infopicked.com13NAMECHEAP INCNS0.DNSMADEEASY.COMWhoisGuard, Inc.
15tier_2changeslots.com7Instra Corporation Pty Ltd.CLEO.NS.CLOUDFLARE.COMREDACTED FOR PRIVACY
16tier_2r.ealeo.com5DYNADOT LLCNS-1186.AWSDNS-20.ORGNone
17tier_2rd.bizrate.com5MarkMonitor, Inc.NS-1189.AWSDNS-20.ORGMeredith Corporation
18tier_2beta.infopicked.com4NAMECHEAP INCNS0.DNSMADEEASY.COMWhoisGuard, Inc.
19tier_2rd.connexity.net4NoneNoneNone
20tier_3clickitover.com30NAMECHEAP INCNS-1367.AWSDNS-42.ORGWhoisGuard, Inc.
21tier_3theconnectvpn.com7DonDominio (SCIP)ARNOLD.NS.CLOUDFLARE.COMSoluciones Corporativas IP, c/o Whois Proxy
22tier_3us.search.yahoo.com3MarkMonitor, Inc.NS1.YAHOO.COMOath Inc.
23tier_3allbestsecureus.com3NameCheap, Inc.DNS1.REGISTRAR-SERVERS.COMNone
24tier_3ww1.survey-smiles.com1Internet Domain Service BS Corp.NS1.HASTYDNS.COMWhois Privacy Corp.
25tier_3platform.ads-supply.com1NAMECHEAP INCAPOLLO.NS.CLOUDFLARE.COMWhoisGuard, Inc.
26tier_3boutiquerugs.com1GoDaddy.com, LLCANDY.NS.CLOUDFLARE.COMDomains By Proxy, LLC
27tier_3harveynichols.com1Amazon Registrar, Inc.NS-1106.AWSDNS-10.ORGHARVEY NICHOLS.COM LIMITED
28tier_3belk.com1CSC CORPORATE DOMAINS, INC.NS1.P17.DYNECT.NETBelk Stores Services, Inc
29tier_3softsurroundings.com1Network Solutions, LLCNS-1390.AWSDNS-45.ORGNone
ipcityregionorgpostalcountry_nametiercounthostname
0207.244.67.215ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_114nan
1207.244.67.216ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_110nan
2207.244.67.218ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_19nan
3207.244.67.214ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_18nan
437.48.65.150AmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_13nan
537.48.65.149AmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_12nan
637.48.65.151AmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_11nan
746.166.182.115AmsterdamNorth HollandAS43350 NForce Entertainment B.V.1012Netherlandstier_11nan
837.48.65.148AmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_11nan
946.166.182.111AmsterdamNorth HollandAS43350 NForce Entertainment B.V.1012Netherlandstier_11nan
1034.226.252.28Virginia BeachVirginiaAS14618 Amazon.com, Inc.23471United Statestier_237ec2-34-226-252-28.compute-1.amazonaws.com
11173.192.101.24DallasTexasAS36351 SoftLayer Technologies Inc.75270United Statestier_23618.65.c0ad.ip4.static.sl-reverse.com
12198.134.116.30New York CityNew YorkAS27257 Webair Internet Development Company Inc.10013United Statestier_221nan
13209.15.13.136TorontoOntarioAS13768 Aptum TechnologiesM5NCanadatier_219nan
14209.132.243.15Los AngelesCaliforniaAS7296 Alchemy Communications, Inc.90009United Statestier_26nan
15199.59.242.153TampaFloridaAS395082 Bodis, LLC33609United Statestier_25nan
1666.165.243.151TampaFloridaAS29802 HIVELOCITY, Inc.33606United Statestier_2566-165-243-151.static.hvvc.us
17192.138.218.207SeattleWashingtonAS14332 Connexity, Inc.98111United Statestier_25rd.bizrate.com
18192.138.218.139SeattleWashingtonAS14332 Connexity, Inc.98111United Statestier_24rd.connexity.net
1966.218.84.137Atlantic CityNew JerseyAS26101 Oath Holdings Inc.08404United Statestier_33ats1.l7.search.vip.bf1.yahoo.com
20157.245.227.32Santa ClaraCaliforniaAS14061 DigitalOcean, LLC95051United Statestier_330nan
21104.27.187.165Atlantic CityNew JerseyAS13335 Cloudflare, Inc.08404United Statestier_34nan
2266.218.84.137Atlantic CityNew JerseyAS26101 Oath Holdings Inc.08404United Statestier_33ats1.l7.search.vip.bf1.yahoo.com
2354.39.130.163LangfordBritish ColumbiaAS16276 OVH SASV9BCanadatier_33ns568503.ip-54-39-130.net
24104.27.186.165Atlantic CityNew JerseyAS13335 Cloudflare, Inc.08404United Statestier_32nan
25172.67.181.234New York CityNew YorkAS13335 Cloudflare, Inc.10004United Statestier_31nan
26208.91.196.145AustinTexasAS19905 NeuStar, Inc.78701United Statestier_31nan
27172.64.141.7New York CityNew YorkAS13335 Cloudflare, Inc.10004United Statestier_31nan
2835.241.61.24Kansas CityMissouriAS15169 Google LLC64121United Statestier_3124.61.241.35.bc.googleusercontent.com
29151.101.2.49JohannesburgGautengAS54113 Fastly2041South Africatier_31nan

Have other ideas? / Want to subscribe to get threat intelligence report? / Contact

Zhouhan Chen, NYU Center for Data Science, zc1245@nyu.edu, Personal Website