Security Scan Report: nemu.com.br

Redirected to:
https://usenemu.com/br
Site favicon
Submitted: Sep 15, 2026, 8:30:50 PMCompleted: Sep 15, 2026, 8:31:37 PMpubliccompleted

This website contacted 49 IPs in 6 countries across 35 domains to perform 146 HTTP transactions. The main domain is usenemu.com and was registered 16 years ago.

Submitted URL: https://nemu.com.br

Effective URL:

https://usenemu.com/br
Redirected

AI Security Verdict

Low Risk

Confidence: 75%

2
Risk Score

Nemu/usenemu.com appears to be a legitimate attribution SaaS page. No credential/payment forms, brand impersonation, or malware/IoC evidence found; only mild caution due to unknown final-domain age and eval usage.

Risk Factors (1)
410 eval() calls in JavaScript, though no credential exfiltration or malicious network sink was detected
Safety Factors (4)
Self-branding detected: page presents Nemu, matching the domain brand
No forms or credential/payment collection present
No threat-intel, YARA, kit-roster, or native-YARA malware matches
Content and layout are consistent with a legitimate SaaS attribution platform
Domain age information unavailable

Details

Page Title

Nemu | Atribuição em Tempo-Real para E-commerce

Scan Type

public

Domain Name Analysis

Within the Brazilian country-code top-level domain (.com.br), 'nemu.com.br' is registered and has no subdomain. The core label 'nemu' covers 4 characters split between two vowels and two consonants. It segments into two words: n, emu. The median word length lands at 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://nemu.com.br

Page Load Overview

5.60s
Total Load Time
3.3 MB
Total Size

Language Analysis

Primary Language

🇵🇹Portuguese
Code: pt
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:pt
Text Length:6,361 chars
Detector Agreement:80%

Website Classification

Primary Category

corporate50% confidence
Type: spa
Method: structural

All Detected Categories

corporate
50%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
503.165.206.25Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
231.43.161.6Aws · CLOUDNetherlands
AS16509Amazon.com, Inc.
2199.232.192.193Fastly · CDNUnited States
AS54113Fastly, Inc.
2104.26.8.83Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2185.133.35.22Brazil
AS273584LINKED STORE BRASIL CRIACAO E DESENVOL DE SOFTWARE
2179.191.182.65Offenbach, Hesse, Germany
AS52580Azion Technologies Ltda.
265.9.130.75Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
2146.75.120.193Fastly · CDNFrankfurt am Main, Hesse, Germany
AS54113Fastly, Inc.
218.64.211.99Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
2157.240.0.6Facebook · CDNFrankfurt am Main, Hesse, Germany
AS32934Facebook, Inc.
14649--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T19341F3B34CA08A1E0AA087D264D7F5DCC5B2D81BE874E591F5E9154E2ED1FD388B3368

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:M7THgThEtPbbrHRJFf61ISql5Z4Z+Bgti+:MvEazFxS0ZYJti+

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:2310:YAgAAAAAAAAIAEABMAAAAAAAABAkEAAAAAIsAgwIAAIiAACACAAAAoQAAAEAAACAAAAACAIQBMkQAAgAAAAAEAAAA2AAABQA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffe7e7ffe7c3c3c3
Perceptual Hash:bcc33c2dd28d34cc
Difference Hash:6a8e8e4c0e163617
Wavelet Hash:bfc3c7e7c3818181
Color Hash:#783a5d

Scan History

Scan history not available

Unable to load historical scan data