Daily Threat Intelligence Report

This report contains following information

  1. Overall statistics
    1. Number of domains detected
    2. Number of domains detected by Google Safe Browsing
    3. IP address behind entry-level domains
    4. date of collection
  2. Top 10 domain statistics
    1. count (number of redirection paths that contain this domain)
    2. tier (1 is entry-level domain, 2 is intermediate hop, 3 is final landing domain)
    3. registar
    4. organization
  3. Top 10 IP statistics
    1. count
    2. location (city, country, region)
    3. hostname
    4. organization
  4. Consolidated redirection path
    1. green: tier one domain
    2. yellow: tier two domain
    3. red: tier three domain
num_domainnum_linksnum_full_urlnum_safebrowsing_maliciousnum_vt_maliciousdateipuser_agent
0383773002020-11-1664.32.8.68Chrome
tierdomaincountregistrarname_serversorg
0tier_1alchemicalpsychology.com1SNAPNAMES 13, LLCNS1.DNSNUTS.COMNone
1tier_1deresute-japan.com1SNAPNAMES 47, LLCNS1.DNSNUTS.COMNone
2tier_1being-bianca.com1Gozerdomains.com LLCNS1.DNSNUTS.COMNone
3tier_1faircheats.net1CloudNineDomain, LLCNS1.DNSNUTS.COMNone
4tier_1cheweyyy.com1Cool River Names, LLCNS1.DNSNUTS.COMNone
5tier_1720movies.com1ChocolateChipDomains, LLCNS1.DNSNUTS.COMNone
6tier_1enemagro.com1Sammamishdomains.com LLCNS1.DNSNUTS.COMNone
7tier_1early.com.au1Synergy Wholesale Pty LtdNS1.DNSNUTS.COMNone
8tier_1emilyshaus.com1Domain Success LLCNS1.DNSNUTS.COMNone
9tier_1banjx.com1Major League Domains, LLCNS1.DNSNUTS.COMNone
10tier_2pleasetrack.com8Name.com, Inc.NS1DJS.NAME.COMDomain Protection Services, Inc.
11tier_2click.expmediadirect.com6NAMECHEAP INCNS1.LINODE.COMWhoisGuard, Inc.
12tier_2click.junmediadirect.com5NAMECHEAP INCNS1.LINODE.COMWhoisGuard, Inc.
13tier_2usa.alexa-cam.com4Amazon Registrar, Inc.NS-1493.AWSDNS-58.ORGWhois Privacy Service
14tier_2track.vcdc.com3Key-Systems GmbHGUY.NS.CLOUDFLARE.COMc/o whoisproxy.com
15tier_2usd.alexa-cam.com3Amazon Registrar, Inc.NS-1493.AWSDNS-58.ORGWhois Privacy Service
16tier_2survey-smiles.com2Internet Domain Service BS Corp.NS1.WOMBATDNS.COMWhois Privacy Corp.
17tier_2usd.mnason-hec.com2Amazon Registrar, Inc.NS-1205.AWSDNS-22.ORGWhois Privacy Service
18tier_2noclick.connexity.com1MarkMonitor, Inc.NS-1235.AWSDNS-26.ORGConnexity, Inc.
19tier_2usa.mnason-hec.com1Amazon Registrar, Inc.NS-1205.AWSDNS-22.ORGWhois Privacy Service
20tier_3protects.s3.us-east-2.amazonaws.com8MarkMonitor, Inc.R1.AMAZONAWS.COMAmazon.com, Inc.
21tier_3ww1.survey-smiles.com2Internet Domain Service BS Corp.NS1.WOMBATDNS.COMWhois Privacy Corp.
22tier_3toovolution.club2NAMECHEAP INCdemi.ns.cloudflare.comWhoisGuard, Inc.
23tier_3affbank.com1DANESCO TRADING LTDGABE.NS.CLOUDFLARE.COMAdvertecy LTD
24tier_3stat1.info1GoDaddy.com, LLCNS15.DOMAINCONTROL.COMbingal media
25tier_3hbomax.com1MarkMonitor, Inc.NS-1007.AWSDNS-61.NETHome Box Office, Inc.
26tier_3rd.bizrate.com1NoneNoneNone
27tier_3kink.com1GoDaddy.com, LLCDELL.NS.CLOUDFLARE.COMCybernet Entertainment
28tier_3wolve.pro1DANESCO TRADING LTDAIDEN.NS.CLOUDFLARE.COMDANESCO TRADING LTD.
ipcityregionorgpostalcountry_nametiercounthostname
0207.244.67.216ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_15nan
1207.244.67.215ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_14nan
2207.244.67.214ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_14nan
3207.244.67.218ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_13nan
4185.107.56.57RotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_11nan
5185.107.56.59RotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_11nan
634.198.58.156Virginia BeachVirginiaAS14618 Amazon.com, Inc.23450United Statestier_28ec2-34-198-58-156.compute-1.amazonaws.com
754.225.132.253Virginia BeachVirginiaAS14618 Amazon.com, Inc.23450United Statestier_26ec2-54-225-132-253.compute-1.amazonaws.com
8198.134.116.30New York CityNew YorkAS27257 Webair Internet Development Company Inc.10013United Statestier_26nan
9198.134.116.18New York CityNew YorkAS27257 Webair Internet Development Company Inc.10013United Statestier_25nan
1052.205.210.89Virginia BeachVirginiaAS14618 Amazon.com, Inc.23450United Statestier_24ec2-52-205-210-89.compute-1.amazonaws.com
11162.210.195.122WashingtonWashington, D.C.AS30633 Leaseweb USA, Inc.20045United Statestier_22nan
12144.76.0.242NürnbergBavariaAS24940 Hetzner Online GmbH90402Germanytier_21static.242.0.76.144.clients.your-server.de
13192.138.218.215SeattleWashingtonAS14332 Connexity, Inc.98111United Statestier_21noclick.connexity.com
1494.130.185.237NürnbergBavariaAS24940 Hetzner Online GmbH90402Germanytier_21static.237.185.130.94.clients.your-server.de
153.213.249.202Virginia BeachVirginiaAS14618 Amazon.com, Inc.23450United Statestier_21ec2-3-213-249-202.compute-1.amazonaws.com
1652.219.80.160ColumbusOhioAS16509 Amazon.com, Inc.43209United Statestier_32s3-r-w.us-east-2.amazonaws.com
17199.59.242.153TampaFloridaAS395082 Bodis, LLC33609United Statestier_32nan
1835.156.139.229Frankfurt am MainHesseAS16509 Amazon.com, Inc.60311Germanytier_31ec2-35-156-139-229.eu-central-1.compute.amazonaws.com
19132.148.19.88MesaArizonaAS26496 GoDaddy.com, LLC85214United Statestier_31ip-132-148-19-88.ip.secureserver.net
2023.38.170.104NewarkNew JerseyAS20940 Akamai International B.V.07175United Statestier_31a23-38-170-104.deploy.static.akamaitechnologies.com
2152.219.88.8ColumbusOhioAS16509 Amazon.com, Inc.43209United Statestier_31s3-r-w.us-east-2.amazonaws.com
22192.138.218.207SeattleWashingtonAS14332 Connexity, Inc.98111United Statestier_31rd.bizrate.com
2352.219.105.18ColumbusOhioAS16509 Amazon.com, Inc.43209United Statestier_31s3-r-w.us-east-2.amazonaws.com
2452.219.104.176ColumbusOhioAS16509 Amazon.com, Inc.43209United Statestier_31s3-r-w.us-east-2.amazonaws.com
2552.219.80.200ColumbusOhioAS16509 Amazon.com, Inc.43209United Statestier_31s3-r-w.us-east-2.amazonaws.com

Have other ideas? / Want to subscribe to get threat intelligence report? / Contact

Zhouhan Chen, NYU Center for Data Science, zc1245@nyu.edu, Personal Website