Security Scan Report: sje.ie

Site favicon
Submitted: Oct 4, 2026, 4:25:19 AMCompleted: Oct 4, 2026, 4:27:01 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

A legitimate Irish electrician site appears compromised: an injected ClickFix overlay fakes a Cloudflare 'Human Verification' check and pushes Windows users to run Terminal commands, with critical malware/EtherHiding IDS alerts.

Risk Factors (6)
Injected ClickFix social-engineering overlay directing Windows users to open Terminal and paste attacker-supplied commands (leads to infostealer/RAT execution)
Injected overlay impersonates a Cloudflare-style security check, exploiting trust in a well-known brand
Critical IDS alerts for EtherHiding exfiltration and ClickFix C2 domain lookups triggered from this page
Page loads JavaScript/network resources from multiple domains flagged as exploit-kit ('ek clearfake') by 2-3 independent threat feeds
Obfuscated/obfuscator-style JavaScript observed in page content
Content unrelated to an Irish electrical contractor's site (blockchain RPC calls, injected verification overlay) indicates site compromise
Domain age information unavailable

Details

Page Title

Home - SJE Energy Solutionsother network

Scan Type

public

Domain Name Analysis

Within the Irish country-code top-level domain (.ie), 'sje.ie' is registered while skipping any subdomain. The core label 'sje' covers 3 characters with one vowel and 2 consonants. Splitting it apart reveals two words: s, je. Average segment length settles at 1.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://sje.ie/

Page Load Overview

34.60s
Total Load Time
4.4 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-US
Text Length:7,245 chars
Detector Agreement:75%

Website Classification

Primary Category

cryptocurrency blockchain49% confidence
Type: spa
Method: ml+structural

All Detected Categories

cryptocurrency blockchain
49%
download file sharing
42%
documentation technical
37%
corporate
25%

Detected Features

OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
17152.89.64.146United Kingdom
AS205654Labtech Systems Ltd
9142.251.110.95Google · CDNUnited States
AS15169Google LLC
935.227.193.242Google · CDNKansas City, Missouri, United States
AS396982Google LLC
9172.67.130.228Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
9142.251.14.94Google · CDNUnited States
AS15169Google LLC
9178.16.52.101Frankfurt am Main, Hesse, Germany
AS202412Omegatech LTD
9104.26.5.88Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
9188.114.96.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
9142.251.20.94Google · CDNUnited States
AS15169Google LLC
9104.26.4.88Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
10711--

Detected Technologies9

JQueryv3.7.1
100%
Bootstrapv1791087927
100%
50%

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1EC04D633318D0C3E122B06CA90127B4DA0EFDB7BDD6A44E5F6F7124A97EDCD06656229

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:ge/0yFgoEpInodjZPnFzBGkp0/S2W9x4B/B+rdJKNjTZ1X33rNrz386r7PS8kVs2:gzPLjb

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:180378:gkyC3KWgKgYsMFRCBsK2MkhZgoEVcYBAFQCIRhSFkFAIBAJoBlXaGQCVCDoERUgDwTFlDtWhKASQgrFLQQUPaADIBKyEfWVQ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fffffff8f8988800
Perceptual Hash:db80a39f42f98cb2
Difference Hash:50a9333121311909
Wavelet Hash:ff09fff0f8988800
Color Hash:#2dd298

Scan History

Scan history not available

Unable to load historical scan data