Daily Threat Intelligence Report

This report contains following information

  1. Overall statistics
    1. Number of domains detected
    2. Number of domains detected by Google Safe Browsing
    3. IP address behind entry-level domains
    4. date of collection
  2. Top 10 domain statistics
    1. count (number of redirection paths that contain this domain)
    2. tier (1 is entry-level domain, 2 is intermediate hop, 3 is final landing domain)
    3. registar
    4. organization
  3. Top 10 IP statistics
    1. count
    2. location (city, country, region)
    3. hostname
    4. organization
  4. Consolidated redirection path
    1. green: tier one domain
    2. yellow: tier two domain
    3. red: tier three domain
num_domainnum_linksnum_full_urlnum_safebrowsing_maliciousnum_vt_maliciousdateipuser_agent
0162171414002020-12-2064.32.8.68Safari
tierdomaincountregistrarname_serversorg
0tier_1magnetkitty.com1Domainshop LLCNS1.DNSNUTS.COMNone
1tier_12dads.tv1Deep Sea Domains LLCNS1.DNSNUTS.COMNone
2tier_1torrentbuzz.net1Hang Ten Domains, LLCNS1.DNSNUTS.COMNone
3tier_1subfeed.net1Magnolia Domains, LLCNS1.DNSNUTS.COMNone
4tier_1makeupforlady.com1SNAPNAMES 28, LLCNS1.DNSNUTS.COMNone
5tier_1badmuckingfastard.com1Domain Bazaar LLCNS1.DNSNUTS.COMNone
6tier_1chepicks.com1Gold Domain Names LLCNS1.DNSNUTS.COMNone
7tier_1honyolar.com1NamePal.com #8024, LLCNS1.DNSNUTS.COMNone
8tier_1skookumgames.com1Flancrestdomains.com LLCNS1.DNSNUTS.COMNone
9tier_1pornrelax.net1Coral Reef Domains LLCNS1.DNSNUTS.COMNone
10tier_2dprtb.com35GoDaddy.com, LLCNS1.DNSIMPLE.COMDomains By Proxy, LLC
11tier_21496.wcitianka.com33GoDaddy Online Services Cayman Islands LTDNS-1096.AWSDNS-09.ORGNone
12tier_2americanlisted.com31ilait ABNS1.TELECOM3.NETIntegration 3 Group AB
13tier_2build.mediapicker.com23GoDaddy.com, LLCRAQUEL.NS.CLOUDFLARE.COMDomains By Proxy, LLC
14tier_2click.appcast.io19101Domain GRS LtdNS-85.AWSDNS-10.COMNone
15tier_2click.expmediadirect.com18NoneNoneNone
16tier_2click.junmediadirect.com10NAMECHEAP INCNS1.LINODE.COMWhoisGuard, Inc.
17tier_2rd.windwardjobs.com8GoDaddy.com, LLCNS1045.UI-DNS.BIZDomains By Proxy, LLC
18tier_2feed.int.jobble.com5GoDaddy.com, LLCNS-1238.AWSDNS-26.ORGDomains By Proxy, LLC
19tier_2track.vcdc.com5Key-Systems GmbHGUY.NS.CLOUDFLARE.COMc/o whoisproxy.com
20tier_3boot-upprecise-theintenselyfile.best4NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMWhoisGuard, Inc.
21tier_3click.appcast.io3101Domain GRS LtdNS-85.AWSDNS-10.COMNone
22tier_3amazon.force.com3MarkMonitor, Inc.PCH1.SALESFORCE-DNS.COMSalesforce.com, Inc.
23tier_3streamswiftcompletelypro.best3NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMWhoisGuard, Inc.
24tier_3feed.int.jobble.com3GoDaddy.com, LLCNS-1238.AWSDNS-26.ORGDomains By Proxy, LLC
25tier_3streamspeedycompletelypro.best3NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMWhoisGuard, Inc.
26tier_3cmp.jobs3NoneNS1.LINODE.COMNone
27tier_3storestrongheavilyapplication.icu3NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMWhoisGuard, Inc.
28tier_3boot-upintensely-thefreefile.best3NoneNoneNone
29tier_3streamcompletelyswiftpro.best3NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMWhoisGuard, Inc.
ipcityregionorgpostalcountry_nametiercounthostnameanycast
0207.244.67.215ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_117nannan
1207.244.67.218ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_117nannan
2207.244.67.216ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_111nannan
3207.244.67.214ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_111nannan
4185.107.56.60AmsterdamNorth HollandAS43350 NForce Entertainment B.V.1012Netherlandstier_13nannan
5185.107.56.58AmsterdamNorth HollandAS43350 NForce Entertainment B.V.1012Netherlandstier_12nannan
637.48.65.150AmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_12nannan
764.32.8.69Los AngelesCaliforniaAS46844 Sharktech90009United Statestier_12customer.sharktech.netnan
8185.107.56.57AmsterdamNorth HollandAS43350 NForce Entertainment B.V.1012Netherlandstier_11nannan
937.48.65.148AmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_11nannan
10209.15.13.136TorontoOntarioAS13768 Aptum TechnologiesM5NCanadatier_239nannan
11198.54.112.216San JoseCaliforniaAS22612 Namecheap, Inc.95103United Statestier_234nannan
1235.209.61.240Council BluffsIowaAS15169 Google LLC51502United Statestier_32240.61.209.35.bc.googleusercontent.comnan
1318.210.49.168Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_223ec2-18-210-49-168.compute-1.amazonaws.comnan
14198.134.116.30New York CityNew YorkAS27257 Webair Internet Development Company Inc.10013United Statestier_218nannan
15198.134.116.18New York CityNew YorkAS27257 Webair Internet Development Company Inc.10013United Statestier_210nannan
163.211.178.164Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_32ec2-3-211-178-164.compute-1.amazonaws.comnan
1734.194.75.233Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_29ec2-34-194-75-233.compute-1.amazonaws.comnan
1852.54.3.79Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_27ec2-52-54-3-79.compute-1.amazonaws.comnan
1952.86.208.245Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_27ec2-52-86-208-245.compute-1.amazonaws.comnan
2075.101.207.6Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_323ec2-75-101-207-6.compute-1.amazonaws.comnan
21100.37.135.2New York CityNew YorkAS701 MCI Communications Services, Inc. d/b/a Verizon Business10004United Statestier_36pool-100-37-135-2.nycmny.fios.verizon.netnan
2245.33.72.236Morris PlainsNew JerseyAS63949 Linode, LLC07927United Statestier_33li1018-236.members.linode.comnan
2334.214.35.2PortlandOregonAS16509 Amazon.com, Inc.97293United Statestier_32ec2-34-214-35-2.us-west-2.compute.amazonaws.comnan
243.211.178.164Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_32ec2-3-211-178-164.compute-1.amazonaws.comnan
2592.223.21.73LuxembourgLuxembourgAS199524 G-Core Labs S.A.L-1882Luxembourgtier_32ed-sl-b73.fe.core.pwnan
2635.209.61.240Council BluffsIowaAS15169 Google LLC51502United Statestier_32240.61.209.35.bc.googleusercontent.comnan
27158.69.76.164MontréalQuebecAS16276 OVH SASH3ACanadatier_31nannan
2835.246.171.123Frankfurt am MainHesseAS15169 Google LLC60311Germanytier_31123.171.246.35.bc.googleusercontent.comnan
29104.27.178.5San FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_31nanTrue

Have other ideas? / Want to subscribe to get threat intelligence report? / Contact

Zhouhan Chen, NYU Center for Data Science, zc1245@nyu.edu, Personal Website