Security Scan Report: davariyabrothers.com

Site favicon
Submitted: Sep 23, 2026, 1:18:45 PMCompleted: Sep 23, 2026, 1:20:12 PMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 92%

9
Risk Score

Legitimate 14-year-old diamond firm whose site is compromised: it loads malware (AMOS ClickFix loader, EtherHiding exfil) and is corroborated as malicious by multiple feeds. Do not visit; report.

Risk Factors
Critical IDS malware alerts for AMOS ClickFix loader and EtherHiding exfiltration
Primary scanned URL corroborated as malware by two independent threat feeds
Malicious third-party script domains loaded by the page (entry-code-cdn.codes, rehearsal-b.com)
EtherHiding-style blockchain RPC contract calls used to retrieve/hide malicious payloads
Site content hijacked with injected gambling SEO spam, indicating an active compromise
Domain age information unavailable

Details

Page Title

Davariya Brothers

Scan Type

public

Domain Name Analysis

The domain 'davariyabrothers.com' uses the commercial generic top-level domain (.com) and has no subdomain. The registrable portion 'davariyabrothers' spans 16 characters containing 6 vowels alongside ten consonants. Word splitting yields four words: dav, ari, ya, brothers. Expect 3 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://davariyabrothers.com

Page Load Overview

14.18s
Total Load Time
5.6 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-US
Text Length:8,285 chars
Detector Agreement:100%

Website Classification

Primary Category

gambling betting100% confidence
Type: spa
Method: ml+structural

All Detected Categories

gambling betting
100%
entertainment media
96%
adult content
85%
healthcare medical
84%
blog personal website
76%

Detected Features

Search
Articles

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
15172.67.201.183Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
7142.251.110.95Google · CDNUnited States
AS15169Google LLC
7104.21.92.252Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
7138.124.60.214Switzerland
AS203273NetCrafters OU
7142.251.20.94Google · CDNUnited States
AS15169Google LLC
7188.114.97.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
7172.67.171.128Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
7152.236.9.75Frankfurt am Main, Hesse, Germany
AS396356Latitude.sh
7172.66.150.162Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
7178.16.52.101Frankfurt am Main, Hesse, Germany
AS202412Omegatech LTD
7810--

Detected Technologies9

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1A6E15571F1B516B700A382923695FB6979E0C617CBEF4584B3DDC2632F9EE81E943290

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:ljHjCIjuXDa/D2KUu2G4Fh8/G4Fmg424Fg+skKmk2OLwmNnwL5QFRX3laQxJ:ljHjDjuTa/Cq2eOOVO/Q85QFd3QeJ

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:6974:GQLEDRQSiAAAbgBEGBFA+RhoBIDFAEFLi1CISYJCBLgkDPYBrAEhBQAKMaoBSnhWUAIRNIYZQKIESBoMIIEBBtwAATAyANA4

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:c7c70000d7f7ffff
Perceptual Hash:b43993bc9a676461
Difference Hash:1c3e8e8a3526061c
Wavelet Hash:c7000000d7d7f7ff
Color Hash:#2dd28d

Other Hashes

Crop Resistant:1c3e8e8a3526061c

Scan History

Scan history not available

Unable to load historical scan data