Security Scan Report: dannadottorgiuseppe.it

Site favicon
Submitted: Sep 18, 2026, 10:47:25 PMCompleted: Sep 18, 2026, 10:47:54 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 88%

9
Risk Score

Legitimate-looking Italian ENT medical site whose pages have been compromised to serve an EtherHiding exploit-kit payload (malicious script from aleverifocation.beer + blockchain RPC exfil). Do not visit; content is unrelated to the risk.

Risk Factors (5)
Critical IDS malware/exploit-kit alerts indicating active EtherHiding payload delivery
Malicious external script loaded from aleverifocation.beer (multi-feed IoC)
Blockchain RPC / smart-chain connections plus Crypto API and Function() code generation
Primary domain reported as a malware loader
Compromised WordPress/Divi site (Divi contact forms + injected malicious script) used as a malware distribution relay
Domain age information unavailable

Details

Page Title

Studio otorinolaringoiatra a Caserta | Studio d'Anna

Scan Type

public

Domain Name Analysis

Within the Italian country-code top-level domain (.it), 'dannadottorgiuseppe.it' is registered with no subdomain. The core label 'dannadottorgiuseppe' covers 19 characters split between eight vowels and eleven consonants. It segments into 4 words: danna, dot, tor, giuseppe. Expect four characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://dannadottorgiuseppe.it

Page Load Overview

6.81s
Total Load Time
1.1 MB
Total Size

Language Analysis

Primary Language

🇮🇹Italian
Code: it
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:it-IT
Text Length:8,169 chars
Detector Agreement:100%

Website Classification

Primary Category

news/blog40% confidence
Type: spa
Method: structural

All Detected Categories

news/blog
40%

Detected Features

Search
Articles
OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1151.158.194.11Haarlem, North Holland, Netherlands
AS12876Scaleway SAS
10152.236.9.75Frankfurt am Main, Hesse, Germany
AS396356Latitude.sh
10142.251.14.94Google · CDNUnited States
AS15169Google LLC
1035.227.193.242Google · CDNKansas City, Missouri, United States
AS396982Google LLC
10178.16.52.101Frankfurt am Main, Hesse, Germany
AS202412Omegatech LTD
515--

Detected Technologies7

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T137736412121DE1A5D9051ECA32DBB72F5E1A0C3621718079D8B94CECDFEBC2B43A5B6D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:79SnKP6MykbPMPOOejXMIQyi1CUcT6aE4IasDLt:3dYamt

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:77168:gTvIVgxEJggd0TMfRCSDQ0E40LqIqhQYMAAECN0mOIIqFaYDpQABFpiIEkkkQA8EKqBkgQhAkCJykC0YiFgwOoIBPqhIBQWC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffc082caefffc380
Perceptual Hash:f199628b678c8e27
Difference Hash:881814161a6b4c4d
Wavelet Hash:ff8080c2efffc280
Color Hash:#bf4048

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data