Skip to content

Quick Start

cGraph: Color codes of the Timeline Graph

There can be 4 types of domain nodes in our graph.

  1. Benign - These are clean sites
  2. Compromised - These are used to be clean site but now hacked by attackers
  3. Malicious - These are attack sites created by attackers
  4. Unknown - The status of the site is not known (as we do not have sufficient information)

We are using Diffrent color nodes for these for domain types.

  1. Benign domains
  2. We mark a domain as benign if all of the following conditions are satisfied
    • Alexa rank is below 100K and appeared in Alexa top 1m for at least two weeks
    • Domain or URL(s) does not have VT positive (VT >= 1) for the day

    If the above conditions are satisfied we are using the color

  3. Compromised domains
  4. We mark a domain as Compromised if all of the following conditions are satisfied

    • Alexa rank is below 100K and appeared in Alexa top 1m for at least two weeks
    • Domain or URL(s) has VT positive (VT >= 1) for the day

    If the above conditions are satisfied we are using the color

  5. Malicious domains
  6. We will consider only VT >= 2 as malicious. Further, these domains do not have Alexa rank below 100k for at least two weeks.

    • For VT = 2.

    • For VT 3 and 4.

    • For VT between 5 and 9.

    • VT 10 or more.


For Unkown Domains.
For IP address.