Security Scan Report: e-wody.firstcloudit.com

Redirected to:
https://www.drivehq.com/help/hosting/FileNotFound.aspx?filePath=/e-wod...
Site favicon
Submitted: Sep 15, 2026, 1:48:00 PMCompleted: Sep 15, 2026, 1:49:27 PMpubliccompleted

This website contacted 2 IPs in 1 country across 2 domains to perform 28 HTTP transactions. The main domain is drivehq.com and was registered 12 years ago.

Submitted URL: https://e-wody.firstcloudit.com

Effective URL:

https://www.drivehq.com/help/hosting/FileNotFound.aspx?filePath=/e-wod...
Redirected

AI Security Verdict

Moderate Risk

Confidence: 72%

5
Risk Score

Entry host e-wody.firstcloudit.com carries a multi-feed APT Sofacy malware Indicator of Compromise; it redirects to a benign DriveHQ 404 page with no forms, so the risk lies in the flagged origin, not the rendered content.

Risk Factors
Content-malware Indicator of Compromise (APT Sofacy / malware family) on the entry domain e-wody.firstcloudit.com, corroborated by 2 independent feeds
Cross-domain redirect from a malware-flagged free-hosting subdomain to a third-party brand domain
Safety Factors
Final destination www.drivehq.com is the brand's own established domain (not a lookalike) — no brand impersonation
No password, disguised-password or payment fields; single benign error-report form
No YARA malware patterns, no IDS/Suricata alerts, no cross-origin credential exfiltration
Rendered page is a standard 'File not found' error page with no victim-facing data collection
Established domain (7860 days old) with no strong malicious indicators — risk clamped from 7 to 5
Domain age information unavailable

Details

Page Title

File not found - DriveHQ Web and File Hosting Servicesecondary capture

Scan Type

public

Domain Name Analysis

You're looking at domain 'e-wody.firstcloudit.com' on the commercial generic top-level domain (.com) and includes subdomain 'e-wody'. The second-level label 'firstcloudit' is 12 characters long split between four vowels and 8 consonants. Tokenizing the label suggests 3 words: first, cloud, it. Expect 5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://e-wody.firstcloudit.com

Page Load Overview

30.60s
Total Load Time
798 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:69%
Script:Latin
Direction:ltr

Detection Details

Text Length:12,588 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software71% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
71%
documentation technical
42%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1466.220.9.57Salinas, California, United States
AS6939Hurricane Electric LLC
1466.220.9.47Salinas, California, United States
AS6939Hurricane Electric LLC
282--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F93176019D1E8DA8C90387705FF6E0DC5FB5DAFCD308DC8175CDA9950F90A4805516F1

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

24:h0rNFCZ0CTLYa/E/cGTjH4AnmjidaidwKzlKz/ENaKOEloEQx0/Jw8MkPqvdEfbG:WtzfnH4bWaWwMEilVQx0/MhWfbG

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1669:QAAgAAAAAAAAIDAAAQIAAAAQAAAAAgAAAAAhgIgQAAZAAIAABAAAAUCAABggGCIAAAAQJQAAAQQAQAAAAAAAAEBACAEEAAAC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00ffffffc3c30000
Perceptual Hash:bc97436d4292bc4b
Difference Hash:d510303e171617c1
Wavelet Hash:00ffffffc3c30000
Color Hash:#79a3d2

Scan History

Scan history not available

Unable to load historical scan data