Daily Threat Intelligence Report

This report contains following information

  1. Overall statistics
    1. Number of domains detected
    2. Number of domains detected by Google Safe Browsing
    3. IP address behind entry-level domains
    4. date of collection
  2. Top 10 domain statistics
    1. count (number of redirection paths that contain this domain)
    2. tier (1 is entry-level domain, 2 is intermediate hop, 3 is final landing domain)
    3. registar
    4. organization
  3. Top 10 IP statistics
    1. count
    2. location (city, country, region)
    3. hostname
    4. organization
  4. Consolidated redirection path
    1. green: tier one domain
    2. yellow: tier two domain
    3. red: tier three domain
num_domainnum_linksnum_full_urlnum_safebrowsing_maliciousnum_vt_maliciousdateipuser_agent
01761724840112021-04-1264.32.8.68Chrome
tierdomaincountregistrarname_serversorg
0tier_19novels.net1! #1 Host Japan, Inc.NS1.DNSNUTS.COMThe Management Group II
1tier_1brickerenterprise.com1NamePal.com #8011 Inc.NS1.DNSNUTS.COMNone
2tier_1buysql.com1Long Drive Domains LLCNS1.DNSNUTS.COMNone
3tier_1dxnewradio.com1Aquila Domains LLCNS1.DNSNUTS.COMNone
4tier_1alekseypopovv.net1Namearsenal.com LLCNS1.DNSNUTS.COMNone
5tier_1dashitz.com1Name Nelly CorporationNS1.DNSNUTS.COMNone
6tier_110dle.com1Free Drop Zone LLCNS1.DNSNUTS.COMNone
7tier_1faidishare.com1SQUIDSAILERDOMAINS.COM, LLCNS1.DNSNUTS.COMThe Management Group II
8tier_1eelfie.com1eNom419, IncorporatedNS1.DNSNUTS.COMNone
9tier_1bbw-nude.net1Namevolcano.com LLCNS1.DNSNUTS.COMNone
10tier_2btpnav.com521API GmbHNS1.DNSIMPLE.COMRegistrant of btpnav.com
11tier_21496.rawlexi.com43GoDaddy Online Services Cayman Islands LTDNS-128.AWSDNS-16.COMNone
12tier_2americanlisted.com40ilait ABNS1.TELECOM3.NETIntegration 3 Group AB
13tier_2aristo-hag.com28Amazon Registrar, Inc.NS-1226.AWSDNS-25.ORGWhois Privacy Service
14tier_2track.vcdc.com17Key-Systems GmbHGUY.NS.CLOUDFLARE.COMc/o whoisproxy.com
15tier_2click.appcast.io16101Domain GRS LtdNS-85.AWSDNS-10.COMNone
16tier_29nl.es8NoneNoneNone
17tier_2newre-conversions.clickmeter.com8REGISTER S.P.A.NS-1498.AWSDNS-59.ORGREDACTED FOR PRIVACY
18tier_2ring.joveo.com5Go Canada Domains, LLCNS-1256.AWSDNS-29.ORGDomains By Proxy, LLC
19tier_2api.apptap.com4Amazon Registrar, Inc.NS-1256.AWSDNS-29.ORGWhois Privacy Service
20tier_2redirect.viglink.com4Amazon Registrar, Inc.NS1.VIGLINK.COMWhois Privacy Service
21tier_2v4.s.arclk.net3PSI-USA, Inc. dba Domain RobotA.NS14.NETNone
22tier_2link.sylikes.com3MarkMonitor, Inc.NS-1063.AWSDNS-04.ORGConnexity, Inc.
23tier_2rd.bizrate.com3NoneNoneNone
24tier_2rd.connexity.net3NoneNoneNone
25tier_2melanthios-ana.com3Amazon Registrar, Inc.NS-1354.AWSDNS-41.ORGWhois Privacy Service
26tier_2click.junmediadirect.com3NAMECHEAP INCNS1.LINODE.COMPrivacy service provided by Withheld for Privacy ehf
27tier_2trk.jometer.com3Amazon Registrar, Inc.NS-129.AWSDNS-16.COMNone
28tier_2click.expmediadirect.com2NAMECHEAP INCNS1.LINODE.COMPrivacy service provided by Withheld for Privacy ehf
29tier_2clk.rtpdn12.com2NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMPrivacy service provided by Withheld for Privacy ehf
30tier_3irl.com22GoDaddy.com, LLCNS-106.AWSDNS-13.COMDomains By Proxy, LLC
31tier_3us.tideri.com22united domains AGNS.UDAG.DENone
32tier_3careerbuilder.com6CSC CORPORATE DOMAINS, INC.BROCK.CBJOBS.NETCareerBuilder, LLC
33tier_3loyality-program.com3Amazon Registrar, Inc.NS-108.AWSDNS-13.COMNone
34tier_3signup.finddreamjobs.com3GoDaddy.com, LLCALEXIS.NS.CLOUDFLARE.COMFind Dream Jobs
35tier_3americanlisted.com3ilait ABNS1.TELECOM3.NETIntegration 3 Group AB
36tier_3jobleads.com2united domains AGCRUZ.NS.CLOUDFLARE.COMNone
37tier_3bing.com2MarkMonitor, Inc.DNS1.P09.NSONE.NETMicrosoft Corporation
38tier_3signup.careersandjobs.co2GoDaddy.com, LLCalexis.ns.cloudflare.comDomains By Proxy, LLC
39tier_3aliexpress.com_LOOP_12NoneNoneNone
40tier_3ram21.proasdf.com2GoDaddy.com, LLCNS61.DOMAINCONTROL.COMDomains By Proxy, LLC
41tier_3click.appcast.io2101Domain GRS LtdNS-85.AWSDNS-10.COMNone
42tier_3venus.com1GoDaddy.com, LLCNS0.DNSMADEEASY.COMVenus Fashion, Inc.
43tier_3enterprise.com1MarkMonitor, Inc.NS1.ENTERPRISE.COMEnterprise Rent a Car
44tier_3toryburch.com1CSC CORPORATE DOMAINS, INC.DNS1.CSCDNS.NETRiver Light V, L.P.
45tier_3incues.com1GoDaddy.com, LLCNS-1290.AWSDNS-33.ORGDomains By Proxy, LLC
46tier_3healthcarejobsite.com1ENOM, INC.DNS1.NAME-SERVICES.COMREDACTED FOR PRIVACY
47tier_3ads-blocker-extension.com1NoneNoneNone
48tier_3bestsecretflirt.com1GoDaddy.com, LLCNS0.DNSMADEEASY.COMNone
49tier_3click.appcast.io_LOOP_11NoneNoneNone
50tier_3nissanusa.com1MarkMonitor, Inc.EDNS2.ULTRADNS.BIZNissan North America, Inc
51tier_3michaelkors.com1NOM-IQ Ltd dba Com LaudeA1-111.AKAM.NETMichael Kors, L.L.C.
52tier_3google.com_LOOP_11NoneNoneNone
53tier_3storystudio.sfgate.com1CSC CORPORATE DOMAINS, INC.NS1.HEARSTNP.COMHearst Communications, Inc.
54tier_3whatjobs.com1123-Reg LimitedVIDA.NS.CLOUDFLARE.COMNone
55tier_3birkenstock.com_LOOP_11NoneNoneNone
56tier_3bradfordexchangechecks.com1CSC CORPORATE DOMAINS, INC.PDNS1.ULTRADNS.NETThe Bradford Exchange Check Company, Ltd.
iphostnamecityregionorgpostalcountry_nametiercountanycast
064.32.8.68customer.sharktech.netLos AngelesCaliforniaAS46844 Sharktech90009United Statestier_117nan
164.32.8.69customer.sharktech.netLos AngelesCaliforniaAS46844 Sharktech90009United Statestier_115nan
264.32.8.67customer.sharktech.netLos AngelesCaliforniaAS46844 Sharktech90009United Statestier_112nan
3185.107.56.60nanRotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_110nan
4185.107.56.57nanRotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_110nan
5185.107.56.59nanRotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_18nan
6185.107.56.58nanRotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_17nan
764.32.8.70customer.sharktech.netLos AngelesCaliforniaAS46844 Sharktech90009United Statestier_17nan
8209.15.13.136nanTorontoOntarioAS13768 Aptum TechnologiesM5NCanadatier_254nan
9198.54.112.216nanSan JoseCaliforniaAS22612 Namecheap, Inc.95103United Statestier_243nan
1035.209.61.240240.61.209.35.bc.googleusercontent.comCouncil BluffsIowaAS15169 Google LLC51502United Statestier_33nan
11167.233.8.197static.197.8.233.167.clients.your-server.deNürnbergBavariaAS24940 Hetzner Online GmbH90402Germanytier_217nan
12178.62.225.201nanAmsterdamNorth HollandAS14061 DigitalOcean, LLC1012Netherlandstier_210nan
1352.72.29.7ec2-52-72-29-7.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_29nan
1452.3.4.129ec2-52-3-4-129.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_28nan
15192.138.218.207nanSeattleWashingtonAS14332 Connexity, Inc.98111United Statestier_26nan
1634.197.176.2ec2-34-197-176-2.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_26nan
173.234.0.165ec2-3-234-0-165.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_26nan
1852.206.108.38ec2-52-206-108-38.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_26nan
1954.208.107.202ec2-54-208-107-202.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_26nan
2023.21.166.230ec2-23-21-166-230.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_25nan
2154.235.205.204ec2-54-235-205-204.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_25nan
2288.99.101.106static.106.101.99.88.clients.your-server.deHohen NeuendorfBrandenburgAS24940 Hetzner Online GmbH16540Germanytier_24nan
2352.205.177.114ec2-52-205-177-114.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_23nan
24192.138.218.139rd.connexity.netSeattleWashingtonAS14332 Connexity, Inc.98111United Statestier_23nan
25100.37.135.2pool-100-37-135-2.nycmny.fios.verizon.netNew York CityNew YorkAS701 MCI Communications Services, Inc. d/b/a Verizon Business10004United Statestier_35nan
2634.225.128.119ec2-34-225-128-119.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_23nan
2718.235.67.128ec2-18-235-67-128.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_23nan
2835.246.171.123123.171.246.35.bc.googleusercontent.comFrankfurt am MainHesseAS15169 Google LLC60311Germanytier_322nan
29100.37.135.2pool-100-37-135-2.nycmny.fios.verizon.netNew York CityNew YorkAS701 MCI Communications Services, Inc. d/b/a Verizon Business10004United Statestier_35nan
30157.245.84.7nanNorth BergenNew JerseyAS14061 DigitalOcean, LLC07047United Statestier_34nan
3134.192.40.54ec2-34-192-40-54.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_33nan
3299.84.114.78server-99-84-114-78.ewr52.r.cloudfront.netNewarkNew JerseyAS16509 Amazon.com, Inc.07175United Statestier_33nan
33167.172.139.120nanNorth BergenNew JerseyAS14061 DigitalOcean, LLC07047United Statestier_33nan
3467.207.81.229nanNorth BergenNew JerseyAS14061 DigitalOcean, LLC07047United Statestier_33nan
3535.209.61.240240.61.209.35.bc.googleusercontent.comCouncil BluffsIowaAS15169 Google LLC51502United Statestier_33nan
3652.73.87.228ec2-52-73-87-228.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_32nan
37194.6.195.224www.jobleads.deHamburgHamburgAS39227 Corpex Internet GmbH20038Germanytier_32nan
38157.245.242.152nanNorth BergenNew JerseyAS14061 DigitalOcean, LLC07047United Statestier_32nan
39204.79.197.200a-0001.a-msedge.netRedmondWashingtonAS8068 Microsoft Corporation98052United Statestier_32True
40104.21.10.65nanSan FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_32True
41162.243.10.151nanNew York CityNew YorkAS14061 DigitalOcean, LLC10011United Statestier_32nan
4299.84.114.84server-99-84-114-84.ewr52.r.cloudfront.netNewarkNew JerseyAS16509 Amazon.com, Inc.07175United Statestier_32nan
4364.227.12.111nanNorth BergenNew JerseyAS14061 DigitalOcean, LLC07047United Statestier_32nan
4454.205.240.192ec2-54-205-240-192.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_32nan
45104.17.48.14nanSan FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_32True
4623.73.235.8a23-73-235-8.deploy.static.akamaitechnologies.comEdisonNew JerseyAS16625 Akamai Technologies, Inc.08817United Statestier_31nan
47172.232.19.98a172-232-19-98.deploy.static.akamaitechnologies.comNewarkNew JerseyAS20940 Akamai International B.V.07175United Statestier_31nan
4823.59.250.96a23-59-250-96.deploy.static.akamaitechnologies.comNewarkNew JerseyAS20940 Akamai International B.V.07175United Statestier_31nan
4918.235.141.204ec2-18-235-141-204.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_31nan
5052.73.153.209ec2-52-73-153-209.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_31nan
5199.84.114.91server-99-84-114-91.ewr52.r.cloudfront.netNewarkNew JerseyAS16509 Amazon.com, Inc.07175United Statestier_31nan
5268.168.84.162162.84.168.68.static.dbsintl.netNorristownPennsylvaniaAS17378 TierPoint, LLC19403United Statestier_31nan
53159.203.59.96nanTorontoOntarioAS14061 DigitalOcean, LLCM5NCanadatier_31nan
54100.25.52.1ec2-100-25-52-1.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_31nan
55161.35.60.200nanNorth BergenNew JerseyAS14061 DigitalOcean, LLC07047United Statestier_31nan
5667.207.80.24nanNorth BergenNew JerseyAS14061 DigitalOcean, LLC07047United Statestier_31nan
5788.80.185.92li678-92.members.linode.comLondonEnglandAS63949 Linode, LLCEC1AUnited Kingdomtier_31nan

Aggregated redirection graph of domains located on current IP address.

  • The redirection flows from left to right
  • Leftmost domains are initial domains hosted on current IP
  • Rightmost domains are final landing domains we were able to crawl

Screenshot of high-occurrence final landing domains

Have other ideas? / Want to subscribe to get threat intelligence report? / Contact

Zhouhan Chen, NYU Center for Data Science, zc1245@nyu.edu, Personal Website