Daily Threat Intelligence Report

This report contains following information. All tables and graphs are auto-generated.

  1. Overall statistics
    1. Number of domains detected
    2. Number of domains detected by Google Safe Browsing
    3. IP address behind entry-level domains
    4. date of collection
  2. Top 10 domain statistics
    1. count (number of redirection paths that contain this domain)
    2. tier (1 is entry-level domain, 2 is intermediate hop, 3 is final landing domain)
    3. registar
    4. organization
  3. Top 10 IP statistics
    1. count
    2. location (city, country, region)
    3. hostname
    4. organization
  4. Consolidated redirection path
    1. green: tier one domain
    2. yellow: tier two domain
    3. red: tier three domain

Content Warning: The following domain names and screenshots contain material that may be harmful or traumatizing to some audiences.

num_domainnum_linksnum_full_urlnum_safebrowsing_maliciousnum_vt_maliciousdateipuser_agent
02132116440182021-05-2564.32.8.68Safari
tierdomaincountregistrarname_serversorg
0tier_1jrpgreview.com1SNAPNAMES 42, LLCNS1.DNSNUTS.COMNone
1tier_1economictims.com1Domain Landing Zone LLCNS1.DNSNUTS.COMNone
2tier_1iopy.net1Name Find Source LLCNS1.DNSNUTS.COMNone
3tier_1duet-chehova.net1Afterdark Domains, LLCNS1.DNSNUTS.COMNone
4tier_1dutopia.info1UDomainName.com LLCNS1.DNSNUTS.COMThe Management Group II
5tier_1bttorrents.net1Fine Grain Domains, LLCNS1.DNSNUTS.COMNone
6tier_1erojii.net1Dropcatch Landing Spot LLCNS1.DNSNUTS.COMNone
7tier_1az-khaos.com1EUTurbo.com LLCNS1.DNSNUTS.COMNone
8tier_1cash-crypto.com1Top Level Domains LLCNS1.DNSNUTS.COMNone
9tier_1colrut.com1SNAPNAMES 65, LLCNS1.DNSNUTS.COMNone
10tier_21496.rebiraert.com69GoDaddy Online Services Cayman Islands Ltd.NS-1041.AWSDNS-02.ORGNone
11tier_2americanlisted.com65ilait ABNS1.TELECOM3.NETIntegration 3 Group AB
12tier_2melanthios-ana.com33Amazon Registrar, Inc.NS-1354.AWSDNS-41.ORGWhois Privacy Service
13tier_2click.appcast.io33NoneNoneNone
14tier_2track.vcdc.com26Key-Systems GmbHGUY.NS.CLOUDFLARE.COMc/o whoisproxy.com
15tier_2steinn-nik.com18Amazon Registrar, Inc.NS-1082.AWSDNS-07.ORGWhois Privacy Service
16tier_2traffic.weareoffers.com18NAMECHEAP INCAJAY.NS.CLOUDFLARE.COMPrivacy service provided by Withheld for Privacy ehf
17tier_2062kj.rdtk.io18GoDaddy.com, LLCNS-239.AWSDNS-29.COMNone
18tier_2fisudauh.top8NameSilo, LLCns1.selectel.orgSee PrivacyGuardian.org
19tier_2careerbliss.com7GoDaddy.com, LLCNS10.DNSMADEEASY.COMDomains By Proxy, LLC
20tier_2trk.careerbliss.com7GoDaddy.com, LLCNS10.DNSMADEEASY.COMDomains By Proxy, LLC
21tier_2click.expmediadirect1.com6NoneNoneNone
22tier_2facebuo.ru6SALENAMES-RUns1.nebula-dns.com.None
23tier_2komuxoe.ru6SALENAMES-RUns1.nebula-dns.com.None
24tier_2click.appcast.io_LOOP_14NoneNoneNone
25tier_2click.junmediadirect.com3NAMECHEAP INCNS1.LINODE.COMPrivacy service provided by Withheld for Privacy ehf
26tier_2btpnative.com31API GmbHNS1.DNSIMPLE.COMRegistrant of btpnative.com
27tier_2mybetterdl.com3NAMECHEAP INCNS0.DNSMADEEASY.COMRedacted for Privacy Purposes
28tier_29nl.es3NoneNoneNone
29tier_2newre-conversions.clickmeter.com3REGISTER S.P.A.NS-1498.AWSDNS-59.ORGREDACTED FOR PRIVACY
30tier_3google.com32MarkMonitor, Inc.NS1.GOOGLE.COMGoogle LLC
31tier_3careerbliss.com26GoDaddy.com, LLCNS10.DNSMADEEASY.COMDomains By Proxy, LLC
32tier_3pages-home.com15Name.com, Inc.NS1GLR.NAME.COMDomain Protection Services, Inc.
33tier_3seek.store.com8NoneNoneNone
34tier_3americanlisted.com4ilait ABNS1.TELECOM3.NETIntegration 3 Group AB
35tier_3watchadvanced-bestgreatlyfile.best4NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMPrivacy service provided by Withheld for Privacy ehf
36tier_3watchlatest-bestgreatlyfile.best4NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMPrivacy service provided by Withheld for Privacy ehf
37tier_3watchgreatly-bestcurrentfile.best3NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMPrivacy service provided by Withheld for Privacy ehf
38tier_3pages-home.b-cdn.net3Name.com, Inc.NS1.BUNNYDNS.COMDomain Protection Services, Inc.
39tier_3xsportshd.com2Name.com, Inc.MARIO.NS.CLOUDFLARE.COMNone
40tier_3top.faqtoids.com2MarkMonitor, Inc.DNS1.P01.NSONE.NETIAC Search & Media, Inc.
41tier_3dice.com2GoDaddy.com, LLCNS-1446.AWSDNS-52.ORGDice Holdings, Inc.
42tier_3get-express-vpn.online2TLD Registrar Solutions Ltd.NS-409.AWSDNS-51.COMNone
43tier_3click.joveo.com2Go Canada Domains, LLCNS-1256.AWSDNS-29.ORGDomains By Proxy, LLC
44tier_3loadfreeextremelyfile.digital2NAMECHEAP INCdns1.registrar-servers.comPrivacy service provided by Withheld for Privacy ehf
45tier_3signupandturnyourscreenoffsafepowernow.date2NAMECHEAP INCns1.fp261.parklogic.comPrivacy service provided by Withheld for Privacy ehf
46tier_3watchgreatly-bestlatestfile.best2NamecheapDNS1.REGISTRAR-SERVERS.COMPrivacy service provided by Withheld for Privacy ehf
47tier_3r.srvtrck.com1GoDaddy.com, LLCBEN.NS.CLOUDFLARE.COMDomains By Proxy, LLC
48tier_3wayfair.com1MarkMonitor, Inc.A1-100.AKAM.NETWayfair, LLC
49tier_3volume.com1DYNADOT LLCA.NS.VOLUME.COMNone
50tier_3dataprivacyadvocate.com1Amazon Registrar, Inc.NS-1519.AWSDNS-61.ORGWhois Privacy Service
51tier_3loadquickextremelyfile.digital1NAMECHEAP INCdns1.registrar-servers.comPrivacy service provided by Withheld for Privacy ehf
52tier_3loadstrongextremelyfile.digital1NoneNoneNone
53tier_3jobs.vioc.com1CSC CORPORATE DOMAINS, INC.DNS1.P06.NSONE.NETValvoline Licensing and Intellectual Property LLC
54tier_3casinobonus4u.com1Domain.com, LLCNS104.WEBMASTERS.COMDomain Privacy Service FBO Registrant.
55tier_3luckywinnernow.com1Amazon Registrar, Inc.NS-1269.AWSDNS-30.ORGWhois Privacy Service
56tier_3robogarden.io1GoDaddy.com, LLCBECKY.NS.CLOUDFLARE.COMNone
57tier_3bulksupplements.com_LOOP_11NoneNoneNone
58tier_3kbb.com1CSC CORPORATE DOMAINS, INC.PDNS164.ULTRADNS.BIZAutotrader.com
59tier_3jobleads.com1united domains AGCRUZ.NS.CLOUDFLARE.COMNone
iphostnamecityregionorgpostalcountry_nametiercountanycast
064.32.8.70customer.sharktech.netLos AngelesCaliforniaAS46844 Sharktech90009United Statestier_122nan
1185.107.56.59nanRotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_121nan
264.32.8.67customer.sharktech.netLos AngelesCaliforniaAS46844 Sharktech90009United Statestier_119nan
3185.107.56.58nanRotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_116nan
464.32.8.68customer.sharktech.netLos AngelesCaliforniaAS46844 Sharktech90009United Statestier_115nan
564.32.8.69customer.sharktech.netLos AngelesCaliforniaAS46844 Sharktech90009United Statestier_115nan
6185.107.56.57nanRotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_114nan
7185.107.56.60nanRotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_18nan
8198.54.112.216nanSan JoseCaliforniaAS22612 Namecheap, Inc.95103United Statestier_270nan
935.209.61.240240.61.209.35.bc.googleusercontent.comCouncil BluffsIowaAS15169 Google LLC51502United Statestier_34nan
1054.174.112.67ec2-54-174-112-67.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_231nan
11167.233.8.197static.197.8.233.167.clients.your-server.deNürnbergBavariaAS24940 Hetzner Online GmbH90402Germanytier_226nan
1252.7.145.236ec2-52-7-145-236.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_220nan
1323.105.36.164nanWashingtonWashington, D.C.AS30633 Leaseweb USA, Inc.20045United Statestier_218nan
1452.207.132.139ec2-52-207-132-139.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_215nan
15207.38.44.116cbsmtp1.careerbliss.comLos AngelesCaliforniaAS5693 Latisys-Irvine, LLC90009United Statestier_326nan
16104.21.48.137nanSan FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_212True
1734.197.35.212ec2-34-197-35-212.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_211nan
18185.233.2.13nanPushkinSt.-PetersburgAS48096 Enterprise Cloud Ltd.196621Russiatier_28nan
193.224.107.254ec2-3-224-107-254.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_27nan
20198.134.116.30nanNew York CityNew YorkAS27257 Webair Internet Development Company Inc.10013United Statestier_26nan
2188.85.75.1161d2-03-d8489-116.webazilla.comAmsterdamNorth HollandAS35415 Webzilla B.V.1012Netherlandstier_26nan
22209.15.13.136nanTorontoOntarioAS13768 Aptum TechnologiesM5NCanadatier_26nan
23172.67.152.39nanSan FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_26True
24100.37.135.2pool-100-37-135-2.nycmny.fios.verizon.netNew York CityNew YorkAS701 MCI Communications Services, Inc. d/b/a Verizon Business10004United Statestier_34nan
2534.196.13.28ec2-34-196-13-28.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_24nan
26198.134.116.18nanNew York CityNew YorkAS27257 Webair Internet Development Company Inc.10013United Statestier_23nan
27173.192.101.2418.65.c0ad.ip4.static.sl-reverse.comDallasTexasAS36351 SoftLayer Technologies Inc.75270United Statestier_23nan
28207.38.44.116cbsmtp1.careerbliss.comLos AngelesCaliforniaAS5693 Latisys-Irvine, LLC90009United Statestier_326nan
29172.106.13.38unassigned.psychz.netWashingtonWashington, D.C.AS40676 Psychz Networks20045United Statestier_318nan
303.226.146.143ec2-3-226-146-143.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_313nan
31172.217.9.228lga34s11-in-f4.1e100.netAnn ArborMichiganAS15169 Google LLC48109United Statestier_39nan
32158.69.125.9ns521759.ip-158-69-125.netMontréalQuebecAS16276 OVH SASH2WCanadatier_38nan
33172.217.10.100lga34s15-in-f4.1e100.netNew York CityNew YorkAS15169 Google LLC10004United Statestier_37nan
34172.217.11.4lga25s60-in-f4.1e100.netWestburyNew YorkAS15169 Google LLC11590United Statestier_35nan
3518.235.125.136ec2-18-235-125-136.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_35nan
3635.209.61.240240.61.209.35.bc.googleusercontent.comCouncil BluffsIowaAS15169 Google LLC51502United Statestier_34nan
37100.37.135.2pool-100-37-135-2.nycmny.fios.verizon.netNew York CityNew YorkAS701 MCI Communications Services, Inc. d/b/a Verizon Business10004United Statestier_34nan
38172.217.3.100lga34s18-in-f4.1e100.netWestburyNew YorkAS15169 Google LLC11590United Statestier_33nan
39104.21.67.38nanSan FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_32True
4051.91.200.241ip241.ip-51-91-200.euPéronneHauts-de-FranceAS16276 OVH SAS80200Francetier_32nan
41172.217.10.4lga34s12-in-f4.1e100.netNew York CityNew YorkAS15169 Google LLC10004United Statestier_32nan
42172.217.6.196lga25s54-in-f4.1e100.netWestburyNew YorkAS15169 Google LLC11590United Statestier_32nan
43172.217.12.196lga25s63-in-f4.1e100.netWestburyNew YorkAS15169 Google LLC11590United Statestier_32nan
44172.217.10.68lga34s14-in-f4.1e100.netNew York CityNew YorkAS15169 Google LLC10004United Statestier_32nan
45104.19.168.96nanSan FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_31True
463.220.104.3ec2-3-220-104-3.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_31nan
473.216.164.241ec2-3-216-164-241.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_31nan
4823.64.60.211a23-64-60-211.deploy.static.akamaitechnologies.comEdisonNew JerseyAS16625 Akamai Technologies, Inc.08817United Statestier_31nan
49172.67.26.187nanSan FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_31True
5052.85.61.100server-52-85-61-100.ewr53.r.cloudfront.netNewarkNew JerseyAS16509 Amazon.com, Inc.07175United Statestier_31nan
5152.85.61.90server-52-85-61-90.ewr53.r.cloudfront.netNewarkNew JerseyAS16509 Amazon.com, Inc.07175United Statestier_31nan
5252.85.61.46server-52-85-61-46.ewr53.r.cloudfront.netNewarkNew JerseyAS16509 Amazon.com, Inc.07175United Statestier_31nan
5320.45.1.53nanSan AntonioTexasAS8075 Microsoft Corporation78295United Statestier_31nan
5452.85.61.67server-52-85-61-67.ewr53.r.cloudfront.netNewarkNew JerseyAS16509 Amazon.com, Inc.07175United Statestier_31nan
55209.216.87.128nanTampaFloridaAS398779 Ace Host, LLC33606United Statestier_31nan
5634.192.40.54ec2-34-192-40-54.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_31nan
5754.230.48.111server-54-230-48-111.yul62.r.cloudfront.netMontréalQuebecAS16509 Amazon.com, Inc.H2WCanadatier_31nan

Aggregated redirection graph of domains located on current IP address.

  • The redirection flows from left to right
  • Leftmost domains are initial domains hosted on current IP
  • Rightmost domains are final landing domains we were able to crawl

Screenshot of high-occurrence final landing domains

Have other ideas? / Want to subscribe to get threat intelligence report? / Contact

Zhouhan Chen, NYU Center for Data Science, zc1245@nyu.edu, Personal Website