Verdict
estudiomigliaro.com.uy shows high-risk / scam indicators.
This assessment found strong scam indicators. Do not pay, sign in, or share personal details with this site.
| What this site appears to be | Website for Estudio Migliaro, an Uruguayan advisory firm (ISO 9001:2015) offering accounting, tax, HR, legal/notarial services and investment project consulting. Includes company mission, services, contact forms, phone/email, addresses in Salto and Montevideo, and a blog/news section. |
|---|
Evidence status and limitations
Evidence completeness: UNKNOWN
- The real-world operator identity was not independently verified.
- Module-level completeness metadata is unavailable for this legacy report.
At a glance
The checks that decide most of this verdict.
| Malware engines | 3 flagged itVirusTotal | Risk |
|---|---|---|
| Google Safe Browsing | Not listedGoogle | Clear |
| Abuse reports on the host | 0 reportsAbuseIPDB; shared hosting inflates this count | Noted |
| Domain age | 8.7 years oldRegistered history | Clear |
| Web archive | Archived since 2017283 snapshots | Clear |
| Certificate | Encrypted connectionIssued by YR1 | Noted |
The page as captured
Key findings
- Automated classification: Sensitive Interaction Risk.
- Domain age: 3 to 10 years (registration continuity).
- Public web-archive history exists since 2017.
- At least one reputation service TrustSniffer consulted had flagged this domain at assessment time.
Full analysis
Overview
Estudio Migliaro is presented as a Uruguayan business-advisory firm providing accounting, tax, human-resources, legal, notarial, management, and investment-project services to corporate clients, supported by informational pages, contact forms, and articles.
Scam/Impersonation Risk
The site's visible content is consistent with a conventional professional-services business: the homepage describes advisory services, the contact workflow does not request credentials, and testing detected no login form, hidden sensitive form, wallet connection, or suspicious browser behavior. That benign presentation is outweighed by a confirmed external reputation contradiction: three malicious and two suspicious detections were recorded, and the domain is reported on an external blacklist by more than one source. The available evidence does not establish an on-page impersonation or identity inconsistency, but the external detections create a material risk for credentials, payments, or other sensitive interactions.
- The homepage and contact workflow present accounting, tax, human-resources, legal/notarial, and investment-project advisory services without a login or sensitive-data form.
- External reputation telemetry recorded 3 malicious detections and 2 suspicious detections, with blacklist status confirmed by multiple sources.
- Domain registration continuity is dated to 2017, with an age of 8.72 years.
- Web-archive coverage records 283 snapshots from 2017-11-30 through 2026-04-20, spanning 10 years.
Regulatory Verification Notes
The “Quiénes Somos” and “Contacto” pages identify the business as Estudio Migliaro and provide locations in Salto and Montevideo, while the homepage presents an ISO 9001:2015 claim and a broad professional-services offering. The site does not state a licensing authority or license number for its accounting, legal, notarial, tax, or investment-advisory services. That is a regulatory-disclosure gap rather than, by itself, proof of misconduct. The real-world operator remains unverified, and governance and ownership transparency are insufficiently established for regulated or financially consequential engagement. The absence of a broker-dataset match provides no independent regulatory endorsement.
- The homepage states “ISO 9001:2015” and describes the firm’s mission, quality policy, and professional services.
- The “Quiénes Somos” and “Contacto” pages provide the Estudio Migliaro name and Salto and Montevideo contact locations.
- Confirmed technical evidence shows TLS validation at DV level, issued by YR1, valid through 2026-10-07.
- The site is hosted on AS6057, Administracion Nacional de Telecomunicaciones, Uruguay.
What to Verify Next
Before any sensitive engagement, an independent registry check should confirm the firm’s legal existence and the authorization of any regulated accounting, legal, notarial, tax, or investment-related activity. The published business identity and contact details should be confirmed through an independently sourced telephone number, registry record, or offline referral rather than relying solely on the website. Security teams should also obtain a current reputation disposition for the domain and preserve the evidence of the confirmed external detections before permitting credential or payment workflows.
- The “Quiénes Somos” page should be matched against an authoritative corporate or professional registry.
- The “Contacto” page should be validated through an independent communication route.
- The website domain should be checked against current external reputation records before being allow-listed or connected to sensitive workflows.
Summary Verdict
The overall posture is critical trust risk, driven by confirmed external threat and blacklist contradictions despite a professionally presented business profile and stable site behavior. The website’s apparent business purpose is not sufficient to support trust in sensitive interaction, and the operator’s real-world identity is not independently verified.
Infrastructure Integrity
The site resolves directly to one likely origin IP, with no detected CDN edge or WAF layer providing meaningful origin concealment; the hosting path is AS6057, Administracion Nacional de Telecomunicaciones, Uruguay. Transport encryption is present, but a DV certificate confirms domain control only and does not establish the operator’s identity or legitimacy.
Closing Assessment
Sensitive actions should remain disabled until independent identity, regulatory, contact-channel, and reputation checks are completed and the external detections are satisfactorily resolved.
Written analysis generated 2026-08-20 by the TrustSniffer Analysis Engine from the evidence in this report.
What the analysis found
2 findings contributed to this verdict, raised by registration and ownership, analysis engine, external reputation.
01 Governance Risk
- The public registration record for this domain is incomplete.Registration and ownership
rule:KF_WHOIS_INCOMPLETE
02 Sensitive Interaction Risk
- The analysis matched a pattern TrustSniffer treats as a direct threat to a visitor.Analysis engine
signal:direct_threat - An external threat feed lists this domain: either Google Safe Browsing marked it malicious, or a significant number of malware engines flagged it.External reputation
rule:EXT_BLACKLIST_CRITICAL
Identity verification
| Status | UNVERIFIED |
|---|---|
| Identity score | 30/100 |
| Identity verification confidence | 50% |
- No on-site identity signals detected
Identity verification measures whether the site can be independently connected to a real-world brand or person. It is separate from the classification confidence.
What TrustSniffer observed
First-party facts recorded during the assessment of estudiomigliaro.com.uy.
- The request stayed on estudiomigliaro.com.uy. It was not redirected to another domain. Clear
- The earliest public archive of this site is from 2017-11-30. Clear
- It is hosted on AS6057, from a server in UY. Noted
Domain intelligence
| Registrar | Not available |
|---|---|
| Hosting | AS6057 - Administracion Nacional de Telecomunicaciones, UY |
| Country | UY |
| Server IP | 190.64.214.123 |
| Name servers | Not available |
| SSL issuer | YR1 |
| SSL expiry | 2026-10-07 |
| Domain age | 8.72 years (continuous registration) |
| Domain expiry | Not available |
| Archive first seen | 2017-11-30 |
| Archive snapshots | 283 |
| Reputation | VirusTotal: 3 flagged | AbuseIPDB: 0 reports | Google Safe Browsing: 0 matches |
About this assessment
A trust score summarises the evidence TrustSniffer could collect about estudiomigliaro.com.uy at assessment time. It is a starting point for your own judgement, not a guarantee: a high score means the signals were consistent with a legitimately operated site, a low or critical score means several risk patterns were present.
TrustSniffer assesses a website from the evidence it can collect at a point in time: domain registration and age, hosting and certificate, the content the site served, and third-party reputation feeds. A score is a summary of that evidence, not a guarantee and not a legal finding. There is no human rating and no user review in it. A site can change after it is assessed.