Security Scan Report: navatenami-pr.com

Site favicon
Submitted: Sep 21, 2026, 11:47:30 AMCompleted: Sep 21, 2026, 11:47:57 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 80%

8
Risk Score

Legitimate-looking 10-year-old marketing agency page, but a CRITICAL EtherHiding malware IDS alert, blockchain-RPC callouts and malware threat-intel hits on the domain and a loaded resource indicate the site is compromised and serving a hidden loader.

Risk Factors
Critical network IDS malware alert (EtherHiding exfiltration)
Blockchain RPC domain contact (gateway.tenderly.co) typical of EtherHiding loaders
Malware threat-intel match on the primary domain
Malware threat-intel match on an externally loaded resource (qaz0.com)
Domain age information unavailable

Details

Page Title

נאוה תנעמי | משרד פרסום דיגיטלי | ייעוץ עסקי שיווקי | יחסי ציבור

Scan Type

public

Domain Name Analysis

The domain name 'navatenami-pr.com' uses the commercial generic top-level domain (.com). Its registrable label 'navatenami-pr' stretches across 13 characters split between five vowels and seven consonants; bonus characters include one hyphen. Breaking it apart gives 4 words: nava, ten, ami, pr. Median word length comes out to 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://navatenami-pr.com

Page Load Overview

6.61s
Total Load Time
1.7 MB
Total Size

Language Analysis

Primary Language

🇮🇱Hebrew
Code: he
Confidence:80%
Script:Hebrew
Direction:rtl

Detection Details

HTML Lang Attribute:he-IL
Text Length:10,010 chars
Detector Agreement:100%

Website Classification

Primary Category

corporate70% confidence
Type: dynamic
Method: structural

All Detected Categories

corporate
70%

Detected Features

OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1054.38.94.26France
AS16276OVH SAS
4142.251.151.119Google · CDNUnited States
AS15169Google LLC
435.227.193.242Google · CDNKansas City, Missouri, United States
AS396982Google LLC
4142.251.156.119Google · CDNUnited States
AS15169Google LLC
4188.114.96.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4142.251.14.94Google · CDNUnited States
AS15169Google LLC
4192.0.77.48San Francisco, California, United States
AS2635Automattic, Inc
4142.251.155.119Google · CDNUnited States
AS15169Google LLC
4142.251.152.119Google · CDNUnited States
AS15169Google LLC
4192.178.183.94Google · CDNUnited States
AS15169Google LLC
4610--

Detected Technologies7

100%
JQueryv3.7.1
100%
50%

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T156C3F81361D0F07E251ABF9A76EAA71F5311A820E70F26F664D2205C9BCD3F501B7AC6

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:l5kxg/ypmcYBeuN8fbykbPMPOOejXMcF66SyUcT6am7Yass+j:l5kqKeBENaYj

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:121687:pQpJAIfETKAAgEiDJLxKsamGFUBOgAQVCbQRkEUgcABUZgaQcA6lBqkZRBclGjiAYQY2FRqkCUpFIiKMiRVAAQCxIllwnXgR

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Scan History

Scan history not available

Unable to load historical scan data