Security Scan Report: www.grupoimpaktu.ao

Redirected to:
https://www.grupoimpaktu.ao/quotesss/onedrive-verify-obf.html
Submitted: Sep 18, 2026, 12:45:25 AMCompleted: Sep 18, 2026, 12:46:17 AMpubliccompleted

This website contacted 3 IPs in 3 countries across 2 domains to perform 4 HTTP transactions. The main domain is grupoimpaktu.ao and was registered 35 years ago.

Submitted URL: http://www.grupoimpaktu.ao/quotesss/onedrive-verify-obf.html

Effective URL:

https://www.grupoimpaktu.ao/quotesss/onedrive-verify-obf.html
Redirected

AI Security Verdict

Confirmed Scam

Confidence: 90%

9
Risk Score

Compromised legit domain grupoimpaktu.ao hosting a fake Microsoft OneDrive verification page that harvests email addresses; domain is independently flagged for phishing.

Risk Factors
Impersonation of Microsoft OneDrive on a non-Microsoft domain
Multi-source phishing threat-intelligence match on the primary domain
Deceptive email-harvesting form presented as file-access verification
Established legitimate domain appears compromised and abused for phishing hosting
Domain age information unavailable

Details

Page Title

Access your file - OneDrive

Scan Type

public

Domain Name Analysis

Within the Angolan country-code top-level domain (.ao), 'www.grupoimpaktu.ao' is registered and includes subdomain 'www'. The second-level label 'grupoimpaktu' is 12 characters long containing five vowels alongside seven consonants. Splitting it apart reveals four words: grupo, im, pak, tu. The median word length lands at 2.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://www.grupoimpaktu.ao/quotesss/onedrive-verify-obf.html

Page Load Overview

9.61s
Total Load Time
19 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:426 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software53% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
53%
documentation technical
32%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2135.181.34.42Helsinki, Uusimaa, Finland
AS24940Hetzner Online GmbH
123.38.21.121Akamai · CDNHaarlem, North Holland, Netherlands
AS16625Akamai Technologies, Inc.
1184.30.220.140Akamai · CDNFrankfurt am Main, Hesse, Germany
AS16625Akamai Technologies, Inc.
43--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T18A7394EF97225CB7E846D3ECDB960044305D81EBA581CB60F29C6B0E6F940D99C9EB91

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:UkvdPPWr6RHMV0rKV7GpGcG3Gh4UbGgFarIyJiuiIPAXruYHXV7UO2gheDNEw:UIdPPWr6RAIyXk1V7UO2gfw

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:80721:YQlZDCYKtSxgZIxAloCwsRKEAkhWAQkyc6AmghUTYmBNx8EiQGFNhAIYgK0kSDJClAIQAAI3oOMaowAMEkpYiMgYiSgRYXMh

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff181818180018ff
Perceptual Hash:9c1cb633b41cb399
Difference Hash:2c3222323a4c320c
Wavelet Hash:ff1f1c1c180018ff
Color Hash:#612dd2

Other Hashes

Crop Resistant:2c3222323a4c320c

Scan History

Scan history not available

Unable to load historical scan data