Malc0de Database Exclusive

: URLs and web addresses actively caught spreading malware, hosting drive-by downloads, or operating as command-and-control (C2) nodes.

Malc0de provided raw text files and RSS feeds of its daily findings. Security administrators used these feeds to automatically update blocklists in firewalls, Intrusion Detection Systems (IDS), and Intrusion Prevention Systems (IPS). 3. DNS Sinkholing Data malc0de database

A typical entry in the Malc0de database is a study in minimalism: : URLs and web addresses actively caught spreading

The value of Malc0de lay in its structured, easily exportable data. Each entry in the database typically provided several key pieces of actionable threat intelligence: hosting drive-by downloads

Malc0de is particularly effective at tracking (EKs). EKs are scripts that probe a victim’s browser for unpatched vulnerabilities (Flash, Silverlight, Internet Explorer).