Daily Threat Intelligence Report

This report contains following information

  1. Overall statistics
    1. Number of domains detected
    2. Number of domains detected by Google Safe Browsing
    3. IP address behind entry-level domains
    4. date of collection
  2. Top 10 domain statistics
    1. count (number of redirection paths that contain this domain)
    2. tier (1 is entry-level domain, 2 is intermediate hop, 3 is final landing domain)
    3. registar
    4. organization
  3. Top 10 IP statistics
    1. count
    2. location (city, country, region)
    3. hostname
    4. organization
  4. Consolidated redirection path
    1. green: tier one domain
    2. yellow: tier two domain
    3. red: tier three domain
num_domainnum_linksnum_full_urlnum_safebrowsing_maliciousnum_vt_maliciousdateipuser_agent
0176175459002020-12-1164.32.8.70Safari
tierdomaincountregistrarname_serversorg
0tier_1ahatintime.com1Domain Original, LLCNS1.DNSNUTS.COMNone
1tier_1general-files.org1BullRunDomains.com LLCNS1.DNSNUTS.COMThe Management Group II
2tier_1abdato.com1Dropcatching Names LLCNS1.DNSNUTS.COMNone
3tier_1ammoparadise.com1OldTownDomains.com LLCNS1.DNSNUTS.COMNone
4tier_118moa07.com1Silver Domain Names LLCNS1.DNSNUTS.COMNone
5tier_1btmam.com1NameSnapper LLCNS1.DNSNUTS.COMNone
6tier_1atgames-boo.com1Sicherregister, LLCNS1.DNSNUTS.COMNone
7tier_1bont4.com1SNAPNAMES 95, LLCNS1.DNSNUTS.COMNone
8tier_1adex-wow.com1Domaincomesaround.com LLCNS1.DNSNUTS.COMNone
9tier_1al-emprator.com1SNAPNAMES 92, LLCNS1.DNSNUTS.COMNone
10tier_2dprtb.com39GoDaddy.com, LLCNS1.DNSIMPLE.COMDomains By Proxy, LLC
11tier_21496.wcitianka.com37NoneNoneNone
12tier_2americanlisted.com35ilait ABNS1.TELECOM3.NETIntegration 3 Group AB
13tier_2click.expmediadirect.com25NAMECHEAP INCNS1.LINODE.COMWhoisGuard, Inc.
14tier_2track.vcdc.com19Key-Systems GmbHGUY.NS.CLOUDFLARE.COMc/o whoisproxy.com
15tier_2juju.com14Network Solutions, LLCNS-1111.AWSDNS-10.ORGNone
16tier_2build.mediapicker.com10GoDaddy.com, LLCRAQUEL.NS.CLOUDFLARE.COMDomains By Proxy, LLC
17tier_2euphe-gun.com10Amazon Registrar, Inc.NS-1325.AWSDNS-37.ORGWhois Privacy Service
18tier_2clk.rtpdn11.com9NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMWhoisGuard, Inc.
19tier_2melanthios-ana.com7Amazon Registrar, Inc.NS-1354.AWSDNS-41.ORGWhois Privacy Service
20tier_3thefatburner.info15GoDaddy.com, LLCMOLLY.NS.CLOUDFLARE.COMNone
21tier_3us.tideri.com13united domains AGNS.UDAG.DENone
22tier_3bitcofeed.info9GoDaddy.com, LLCMOLLY.NS.CLOUDFLARE.COMNone
23tier_3juju.com8Network Solutions, LLCNS-1111.AWSDNS-10.ORGNone
24tier_3kbb.com6CSC CORPORATE DOMAINS, INC.PDNS164.ULTRADNS.BIZAutotrader.com
25tier_3storestrongheavilyapplication.icu5NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMWhoisGuard, Inc.
26tier_3jobs.luxottica.com3REGISTER S.P.A.A1-83.AKAM.NETLuxottica Group S.p.A.
27tier_3streamcompletelystrongpro.best2NAMECHEAP INCDNS1.REGISTRAR-SERVERS.COMWhoisGuard, Inc.
28tier_3jobs.vailresortscareers.com2CSC CORPORATE DOMAINS, INC.DNS1.P03.NSONE.NETVail Resorts Inc.
29tier_3track.vcdc.com2Key-Systems GmbHGUY.NS.CLOUDFLARE.COMc/o whoisproxy.com
ipcityregionorgpostalcountry_nametiercounthostnameanycast
0207.244.67.214ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_122nannan
1207.244.67.216ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_122nannan
2207.244.67.218ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_121nannan
3207.244.67.215ManassasVirginiaAS30633 Leaseweb USA, Inc.20108United Statestier_117nannan
464.32.8.68Los AngelesCaliforniaAS46844 Sharktech90009United Statestier_13customer.sharktech.netnan
537.48.65.150AmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_13nannan
664.32.8.70Los AngelesCaliforniaAS46844 Sharktech90009United Statestier_12customer.sharktech.netnan
764.32.8.69Los AngelesCaliforniaAS46844 Sharktech90009United Statestier_12customer.sharktech.netnan
8185.107.56.60RotterdamSouth HollandAS43350 NForce Entertainment B.V.3012Netherlandstier_12nannan
937.48.65.151AmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_12nannan
10209.15.13.136TorontoOntarioAS13768 Aptum TechnologiesM5NCanadatier_242nannan
11198.54.112.216San JoseCaliforniaAS22612 Namecheap, Inc.95103United Statestier_238nannan
1235.209.61.240Council BluffsIowaAS15169 Google LLC51502United Statestier_235240.61.209.35.bc.googleusercontent.comnan
13198.134.116.30New York CityNew YorkAS27257 Webair Internet Development Company Inc.10013United Statestier_225nannan
14173.239.53.32New York CityNew YorkAS27257 Webair Internet Development Company Inc.10013United Statestier_211nannan
1518.210.49.168Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_211ec2-18-210-49-168.compute-1.amazonaws.comnan
1652.44.196.184Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_27ec2-52-44-196-184.compute-1.amazonaws.comnan
173.221.180.161Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_27ec2-3-221-180-161.compute-1.amazonaws.comnan
18144.76.0.242NürnbergBavariaAS24940 Hetzner Online GmbH90402Germanytier_27static.242.0.76.144.clients.your-server.denan
1954.165.163.115Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_32ec2-54-165-163-115.compute-1.amazonaws.comnan
2075.101.207.6Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_318ec2-75-101-207-6.compute-1.amazonaws.comnan
2135.246.171.123Frankfurt am MainHesseAS15169 Google LLC60311Germanytier_313123.171.246.35.bc.googleusercontent.comnan
2223.253.31.170NoviMichiganAS19994 Rackspace Hosting48376United Statestier_38nannan
23172.67.218.143San FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_38nanTrue
24104.24.114.148San FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_37nannan
2523.44.217.143NewarkNew JerseyAS16625 Akamai Technologies, Inc.07175United Statestier_36a23-44-217-143.deploy.static.akamaitechnologies.comnan
26104.27.174.27San FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_35nanTrue
27155.56.230.62WalldorfBaden-WürttembergAS12510 SAP SE69190Germanytier_35nannan
283.225.89.48Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_34ec2-3-225-89-48.compute-1.amazonaws.comnan
2954.165.163.115Virginia BeachVirginiaAS14618 Amazon.com, Inc.23464United Statestier_32ec2-54-165-163-115.compute-1.amazonaws.comnan

Have other ideas? / Want to subscribe to get threat intelligence report? / Contact

Zhouhan Chen, NYU Center for Data Science, zc1245@nyu.edu, Personal Website