Summary Report - (Past 24 hours)
Global Fast Flux
Fast flux hosting is a technique where the nodes in a botnet are used as the endpoints in a website hosting scheme. The DNS records change frequently, often every few minutes, to point to new bots. The actual nodes themselves simply proxy the request back to the central hosting location. This gives the botnet a robust hosting infrastructure. Many different kinds of botnets use fastflux DNS techniques, for malware hosting, for illegal content hosting, for phishing site hosting, and other such activities. These hosts are likely to be infected with some form of malware.
Many times a single botnet will host several different fastflux domains at once. We try to find these distinct bot networks by looking for domains whose IPs match those of other domains. This relationship is presented in the Distinct Networks section.
Currently monitoring 3 active fastflux domains. The average duration across the 86385 domains ever tracked is 1 week. The longest duration of any domain is 253 weeks.
Domain Created stjohnhos.co.uk 2013-07-25 00:25:22 UTC newflirtingdates.info 2013-07-21 00:24:36 UTC switch-to-dish.com 2013-07-12 00:25:30 UTC com-jun-30.us 2013-07-12 00:25:27 UTC mybestchoice.biz 2013-07-11 00:23:45 UTC joxbox.com 2013-07-10 00:25:09 UTC afghandosti.com 2013-07-10 00:21:48 UTC com-june-19.us 2013-07-06 00:24:27 UTC com-jun-19.us 2013-07-05 00:24:26 UTC getghosted.com 2013-07-05 00:24:26 UTC
Domain Started Duration emltrk.com 2013-02-23 < 1 minute brylanehome.com 2013-02-23 < 1 minute getghosted.com 2013-07-05 < 1 minute
Number of hosts Domains