Hudson Rock
How a business website became a malware trap.
A joint investigation with Kirk of Derp.ca traced how a compromised Artlist website was used to deliver malware.
Read the joint investigationWe watch your corner of the Internet.
Ohey monitors your website for malware and reputation problems, and watches for domains that could be used to impersonate your business.


Ohey checks your public website for malware and signs of compromise. It also watches for warnings that your website or domain is being treated as unsafe.
Malicious code can run behind a page that still looks familiar. Ohey looks for known web threats and suspicious changes, so a compromised site does not have to wait for a customer complaint.
A warning from a security service can affect whether people reach your website. Ohey tells you what was flagged, which source reported it and when it was observed.
A similar web address can be used to copy your business, collect customer details or make a fraudulent payment request. Ohey watches for domains that resemble your name and activity associated with possible impersonation.
An extra word or a changed letter can make an address easy to mistake for yours. Ohey brings the observed domain and related activity together so you can take a closer look.
Similar names can be legitimate. Ohey gives you the details to review a match, check who owns it and see whether it is being used to imitate your business.

You get the affected website or domain, what Ohey observed and when it appeared. The alert explains what to check next, so you can take it to your website provider or IT team.
Ohey keeps a record of observations. You can see what changed and compare it with an update your team expected.
About OheyThe team behind Ohey investigates compromised websites, malware and the infrastructure used to deliver it. The work is published at Derp.ca, with technical analysis and evidence behind the findings.
Read the research at Derp.caHudson Rock
A joint investigation with Kirk of Derp.ca traced how a compromised Artlist website was used to deliver malware.
Read the joint investigationThe Hacker News
The Hacker News cites Derp's research into malicious developer tools in its coverage of the FakeGit malware campaign.
Read the FakeGit coverageOX Security
OX Security credits Kirk from Derp.ca for help with its investigation into the Miasma attack on npm packages.
Read the Miasma investigationEvery plan includes malware, reputation, brand and domain monitoring.
For your business.
$19/ month
For a small team.
$49/ month
For agencies.
$149/ month