Daily Threat Intelligence Report

This report contains following information. All tables and graphs are auto-generated.

  1. Overall statistics
    1. Number of domains detected
    2. Number of domains detected by Google Safe Browsing
    3. IP address behind entry-level domains
    4. date of collection
  2. Top 10 domain statistics
    1. count (number of redirection paths that contain this domain)
    2. tier (1 is entry-level domain, 2 is intermediate hop, 3 is final landing domain)
    3. registar
    4. organization
  3. Top 10 IP statistics
    1. count
    2. location (city, country, region)
    3. hostname
    4. organization
  4. Consolidated redirection path
    1. green: tier one domain
    2. yellow: tier two domain
    3. red: tier three domain

Content Warning: The following domain names and screenshots contain material that may be harmful or traumatizing to some audiences.

num_domainnum_linksnum_full_urlnum_safebrowsing_maliciousnum_vt_maliciousdateipuser_agent
08387232082021-08-0774.63.241.23Android
tierdomaincountregistrarname_serversorg
0tier_1seemagic.co1GoDaddy.com, LLCns1.torresdns.comNone
1tier_1phlick.co1GoDaddy.com, LLCns1.torresdns.comNone
2tier_1potlocker.digital1NAMECHEAP INCns1.thednscloud.comPrivacy service provided by Withheld for Privacy ehf
3tier_1rams.coach1NoneNoneNone
4tier_1playerup.co1GoDaddy.com, LLCns1.torresdns.comNone
5tier_1liedstem.tech1NAMECHEAP INCNS1.NAMEDYNAMICS.NETPrivacy service provided by Withheld for Privacy ehf
6tier_1prison.school1NoneNoneNone
7tier_1mcworld.pro1DYNADOT LLCNS1.TORRESDNS.COMNone
8tier_1appsvill.vip1NoneNoneNone
9tier_1rockbros.co1GoDaddy.com, LLCns1.torresdns.comNone
10tier_21496.rebiraert.com43GoDaddy Online Services Cayman Islands Ltd.NS11.CONSTELLIX.COMNone
11tier_2americanlisted.com42ilait ABNS1.TELECOM3.NETIntegration 3 Group AB
12tier_2click.appcast.io11101Domain GRS LtdNS-85.AWSDNS-10.COMNone
13tier_2click.appcast.io_LOOP_16NoneNoneNone
14tier_2careerbliss.com5GoDaddy.com, LLCNS10.DNSMADEEASY.COMDomains By Proxy, LLC
15tier_2lifeworq.com4united domains AGNS.UDAG.DENone
16tier_2joblift.com3INWX GmbH & Co. KGNS-CLOUD-E1.GOOGLEDOMAINS.COMREDACTED FOR PRIVACY
17tier_2cmp.jobs3NoneNoneNone
18tier_2trk.careerbliss.com3GoDaddy.com, LLCNS10.DNSMADEEASY.COMDomains By Proxy, LLC
19tier_2us.expand-backend.mindmatch.ai2NoneNoneNone
20tier_2healthcarejobsite.com1ENOM, INC.DNS1.NAME-SERVICES.COMREDACTED FOR PRIVACY
21tier_2p.nexxt.com1Network Solutions, LLCNS21.WORLDNIC.COMNone
22tier_2apply.getwork.com1GoDaddy.com, LLCNS-1101.AWSDNS-09.ORGJobDig
23tier_2c.trafficcertify.com1GoDaddy.com, LLCNS75.DOMAINCONTROL.COMDomains By Proxy, LLC
24tier_211165151.searchiqnet.com1GoDaddy.com, LLCNS57.DOMAINCONTROL.COMDomains By Proxy, LLC
25tier_2antig-hra.com1Amazon Registrar, Inc.NS-1005.AWSDNS-61.NETWhois Privacy Service
26tier_2noclick.connexity.com1MarkMonitor, Inc.NS-1235.AWSDNS-26.ORGConnexity, Inc.
27tier_2rd.bizrate.com1MarkMonitor, Inc.NS-1189.AWSDNS-20.ORGMeredith Corporation
28tier_2rd.connexity.net1NoneNoneNone
29tier_2open.app.jobrapido.com1Marcaria.com International, Inc.NS-CLOUD-D1.GOOGLEDOMAINS.COMNone
30tier_3google.com24MarkMonitor, Inc.NS1.GOOGLE.COMGoogle LLC
31tier_3dan.com4TUCOWS, INC.EMMA.NS.CLOUDFLARE.COMREDACTED FOR PRIVACY
32tier_3open.app.jobrapido.com4Marcaria.com International, Inc.NS-CLOUD-D1.GOOGLEDOMAINS.COMGDPR Masked
33tier_3trk.careerbliss.com2GoDaddy.com, LLCNS10.DNSMADEEASY.COMDomains By Proxy, LLC
34tier_3careerbuilder.com2CSC CORPORATE DOMAINS, INC.BROCK.CBJOBS.NETCareerBuilder, LLC
35tier_3click.appcast.io_LOOP_12NoneNoneNone
36tier_3lifeworq.com1united domains AGNS.UDAG.DENone
37tier_3everyjobforme.com1GoDaddy.com, LLCNS-1009.AWSDNS-62.NETPercipio Holdings, Inc.
38tier_3careers.hcahealthcare.com1MarkMonitor, Inc.NS1.MEDCITY.NETHCA - Information Technology & Services, Inc.
39tier_3us.jobtome.com1GoDaddy.com, LLCCHRIS.NS.CLOUDFLARE.COMJobtome Internantional SA
40tier_3americanlisted.com1ilait ABNS1.TELECOM3.NETIntegration 3 Group AB
41tier_3chewy.com1Moniker Online Services LLCNS1.P02.DYNECT.NETChewy, Inc.
42tier_3nextcareernow.com1GoDaddy.com, LLCNS53.DOMAINCONTROL.COMNone
43tier_3ads.midwayusa.com1GoDaddy.com, LLCNS-1486.AWSDNS-57.ORGNone
44tier_3click.thejobnetwork.com1GoDaddy.com, LLCNS-1356.AWSDNS-41.ORGNone
45tier_3open.app.jobrapido.com_LOOP_11NoneNoneNone
46tier_3linkedin.com1MarkMonitor, Inc.DNS1.P09.NSONE.NETLinkedIn Corporation
iphostnamecityregionorgpostalcountry_nametiercountanycast
0209.126.123.11static-ip-209-126-123-11.inaddr.ip-pool.comSt. LouisMissouriAS30083 GoDaddy.com, LLC63150United Statestier_16nan
1209.126.123.13static-ip-209-126-123-13.inaddr.ip-pool.comSt. LouisMissouriAS30083 GoDaddy.com, LLC63150United Statestier_14nan
223.82.12.29nanWashingtonWashington, D.C.AS30633 Leaseweb USA, Inc.20045United Statestier_14nan
3209.126.123.12static-ip-209-126-123-12.inaddr.ip-pool.comSt. LouisMissouriAS30083 GoDaddy.com, LLC63150United Statestier_14nan
478.41.204.34server368.snel.comLopikUtrechtAS62370 Snel.com B.V.3411Netherlandstier_13nan
5212.32.237.101nanAmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_13nan
623.82.12.32nanWashingtonWashington, D.C.AS30633 Leaseweb USA, Inc.20045United Statestier_12nan
778.41.204.29server368.snel.comLopikUtrechtAS62370 Snel.com B.V.3411Netherlandstier_12nan
8212.32.237.90nanAmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_12nan
9212.32.237.92nanAmsterdamNorth HollandAS60781 LeaseWeb Netherlands B.V.1012Netherlandstier_12nan
10198.54.112.216nanLos AngelesCaliforniaAS22612 Namecheap, Inc.90009United Statestier_243nan
1135.209.61.240240.61.209.35.bc.googleusercontent.comCouncil BluffsIowaAS15169 Google LLC51502United Statestier_31nan
12207.38.44.116cbsmtp1.careerbliss.comLos AngelesCaliforniaAS5693 Latisys-Irvine, LLC90009United Statestier_32nan
13100.37.135.2pool-100-37-135-2.nycmny.fios.verizon.netNew York CityNew YorkAS701 MCI Communications Services, Inc. d/b/a Verizon Business10004United Statestier_33nan
1434.107.113.4545.113.107.34.bc.googleusercontent.comFrankfurt am MainHesseAS15169 Google LLC60311Germanytier_31nan
153.232.183.77ec2-3-232-183-77.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_24nan
1652.2.188.203ec2-52-2-188-203.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_23nan
1734.117.159.7676.159.117.34.bc.googleusercontent.comKansas CityMissouriAS15169 Google LLC64121United Statestier_23True
1845.33.72.236nanMorris PlainsNew JerseyAS63949 Linode, LLC07927United Statestier_23nan
1952.204.63.126ec2-52-204-63-126.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_22nan
2034.120.235.106106.235.120.34.bc.googleusercontent.comMountain ViewCaliforniaAS15169 Google LLC94043United Statestier_22True
2168.168.84.6060.84.168.68.static.dbsintl.netNorristownPennsylvaniaAS17378 TierPoint, LLC19403United Statestier_22nan
22209.132.243.15nanLos AngelesCaliforniaAS7296 Alchemy Communications, Inc.90009United Statestier_22nan
2368.168.84.162162.84.168.68.static.dbsintl.netNorristownPennsylvaniaAS17378 TierPoint, LLC19403United Statestier_21nan
2445.60.240.250nanRedwood CityCaliforniaAS19551 Incapsula Inc94065United Statestier_21True
2523.44.129.151a23-44-129-151.deploy.static.akamaitechnologies.comPiscatawayNew JerseyAS20940 Akamai International B.V.08854United Statestier_21nan
2634.194.124.180ec2-34-194-124-180.compute-1.amazonaws.comAshburnVirginiaAS14618 Amazon.com, Inc.20149United Statestier_21nan
2734.98.123.249249.123.98.34.bc.googleusercontent.comMountain ViewCaliforniaAS15169 Google LLC94043United Statestier_21True
28192.138.218.207rd.bizrate.comSeattleWashingtonAS14332 Connexity, Inc.98111United Statestier_21nan
29192.138.218.139rd.connexity.netSeattleWashingtonAS14332 Connexity, Inc.98111United Statestier_21nan
30142.250.80.68lga34s35-in-f4.1e100.netNew York CityNew YorkAS15169 Google LLC10004United Statestier_310nan
31142.250.80.4lga34s33-in-f4.1e100.netNew York CityNew YorkAS15169 Google LLC10004United Statestier_39nan
32172.217.11.4lga25s60-in-f4.1e100.netWestburyNew YorkAS15169 Google LLC11590United Statestier_35nan
3352.28.84.253ec2-52-28-84-253.eu-central-1.compute.amazonaws.comFrankfurt am MainHesseAS16509 Amazon.com, Inc.60311Germanytier_34nan
34100.37.135.2pool-100-37-135-2.nycmny.fios.verizon.netNew York CityNew YorkAS701 MCI Communications Services, Inc. d/b/a Verizon Business10004United Statestier_33nan
35207.38.44.116cbsmtp1.careerbliss.comLos AngelesCaliforniaAS5693 Latisys-Irvine, LLC90009United Statestier_32nan
36176.31.237.74ns325147.ip-176-31-237.euRoubaixHauts-de-FranceAS16276 OVH SAS59051 CEDEX 1Francetier_32nan
3713.225.229.65server-13-225-229-65.jfk51.r.cloudfront.netNew York CityNew YorkAS16509 Amazon.com, Inc.10004United Statestier_32nan
3834.107.113.4545.113.107.34.bc.googleusercontent.comFrankfurt am MainHesseAS15169 Google LLC60311Germanytier_31nan
39104.18.28.118nanSan FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_31True
40104.17.77.7nanSan FranciscoCaliforniaAS13335 Cloudflare, Inc.94107United Statestier_31True
41130.211.38.206206.38.211.130.bc.googleusercontent.comMountain ViewCaliforniaAS15169 Google LLC94043United Statestier_31True
4235.209.61.240240.61.209.35.bc.googleusercontent.comCouncil BluffsIowaAS15169 Google LLC51502United Statestier_31nan
4323.4.234.14a23-4-234-14.deploy.static.akamaitechnologies.comPiscatawayNew JerseyAS16625 Akamai Technologies, Inc.08854United Statestier_31nan
44178.33.233.91ns338135.ip-178-33-233.euParisÎle-de-FranceAS16276 OVH SAS75000Francetier_31nan
4551.91.64.195ns31189212.ip-51-91-64.euRoubaixHauts-de-FranceAS16276 OVH SAS59051 CEDEX 1Francetier_31nan
46216.239.32.21any-in-2015.1e100.netMountain ViewCaliforniaAS15169 Google LLC94043United Statestier_31True
47184.29.189.107a184-29-189-107.deploy.static.akamaitechnologies.comPiscatawayNew JerseyAS16625 Akamai Technologies, Inc.08854United Statestier_31nan
48199.83.128.213199.83.128.213.ip.incapdns.netRedwood CityCaliforniaAS19551 Incapsula Inc94065United Statestier_31True
4913.107.42.14nanRedmondWashingtonAS8068 Microsoft Corporation98052United Statestier_31True

Aggregated redirection graph of domains located on current IP address.

  • The redirection flows from left to right
  • Leftmost domains are initial domains hosted on current IP
  • Rightmost domains are final landing domains we were able to crawl

Screenshot of high-occurrence final landing domains

Have other ideas? / Want to subscribe to get threat intelligence report? / Contact

Zhouhan Chen, NYU Center for Data Science, zc1245@nyu.edu, Personal Website