Security Scan Report: pcomahue.com.ar

Site favicon
Submitted: Sep 16, 2026, 9:47:33 PMCompleted: Sep 16, 2026, 9:48:20 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 82%

8
Risk Score

Legitimate-looking Argentine plastics site (13 days old) is compromised/serving malware: CRITICAL EtherHiding exfil IDS alert, Ethereum testnet C2 endpoint, and multi-feed 'iclickfix' malware resource xaz2.com. No forms, but active malware delivery — do not browse.

Risk Factors
Critical IDS alert for malware/EtherHiding exfiltration
Multi-source corroborated malware indicator on a script/resource loaded by the page
Interaction with Ethereum testnet RPC endpoint for potential C2/smart-contract dead-drop
Very new domain (13 days) hosting unrelated content
Single-source primary-domain malware report
Domain age information unavailable

Details

Page Title

Plásticos del Comahue S.A – Líderes en Plástico Corrugado

Scan Type

public

Domain Name Analysis

The domain name 'pcomahue.com.ar' uses the Argentine country-code top-level domain (.com.ar). The core label 'pcomahue' covers 8 characters with 4 vowels and 4 consonants. Breaking it apart gives 3 words: p, coma, hue. Median word length comes out to 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://pcomahue.com.ar

Page Load Overview

23.88s
Total Load Time
4.2 MB
Total Size

Language Analysis

Primary Language

🇪🇸Spanish
Code: es
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:es
Text Length:2,090 chars
Detector Agreement:75%

Website Classification

Primary Category

corporate business92% confidence
Type: spa
Method: ml+structural

All Detected Categories

corporate business
92%
documentation technical
86%
government public service
86%
adult content
84%
education learning
75%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2545.227.162.41Argentina
AS266660ELSERVER S.R.L
23104.26.4.88Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
23188.114.97.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
23160.153.59.38United States
AS398101GoDaddy.com, LLC
944--

Detected Technologies8

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T14D23F877A0A32140162BCF47E7CA772C4219D56288421DFA7155214E8F9AFFF23DBA1B

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:m9i5Q62I/xE6x4g5bn/tFyiFi7kgZdyp6QuzTwHW5UsN4CWoZAsMxwDPEDA7xFlJ:kiCdvypNSN4U

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:48806:A2djhMQnBHIkIAAIZEiXeawHQo04AADsgS0aKIECgCCmwASzmOwNEVDEAqAIEAIFO9oRMBQEaAZPQhyLzwjmUQACGshQqvEI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fefefeffe7e7c7ff
Perceptual Hash:f7dddc2288886333
Difference Hash:000008000c0c0c08
Wavelet Hash:0e0e0e0ee6e6c2fe
Color Hash:#e0ad6c

Other Hashes

Crop Resistant:000008000c0c0c08

Scan History

Scan history not available

Unable to load historical scan data