Security Scan Report: groupeglobalenergy.com

Site favicon
Submitted: Oct 1, 2026, 1:36:14 PMCompleted: Oct 1, 2026, 1:36:51 PMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 96%

10
Risk Score

Legitimate-looking Groupe Global Energy corporate site compromised with an injected ClickFix fake 'Human Verification' overlay: 2 analyst-vetted YARA hits, CRITICAL EtherHiding IDS alert and multi-source malware threat-intel. Never press Win+X / paste into Terminal.

Risk Factors (5)
Injected ClickFix 'Human Verification' overlay mimicking a Cloudflare check with a fake Ray ID
Page content instructs the user to paste a command into Windows Terminal/PowerShell (malware execution)
Blockchain RPC abuse (EtherHiding) — page loads polygon.gateway.tenderly.co via XMLHttpRequest to fetch payload/contract data
Unranked third-party script host browseid.codes serving JavaScript to a supposedly corporate site
Primary domain listed as iclickfix/unknown malware by two independent threat-intel feeds
Domain age information unavailable

Details

Page Title

Groupe Global Energy – Votre meilleur partenaire

Scan Type

public

Domain Name Analysis

The domain name 'groupeglobalenergy.com' uses the commercial generic top-level domain (.com) without a subdomain. Count 18 characters in 'groupeglobalenergy' holding seven vowels versus 11 consonants. Breaking it apart gives 3 words: groupe, global, energy. Median word length comes out to 6 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://groupeglobalenergy.com/

Page Load Overview

1.32s
Total Load Time
2.4 MB
Total Size

Language Analysis

Primary Language

🇫🇷French
Code: fr
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:fr-FR
Text Length:4,022 chars
Detector Agreement:75%

Website Classification

Primary Category

corporate business46% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

corporate business
46%
government public service
38%
phishing scam
37%
documentation technical
27%

Detected Features

Articles

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
991.216.107.208France
AS210403Groupe LWS SARL
735.227.193.242Google · CDNKansas City, Missouri, United States
AS396982Google LLC
7178.16.52.101Frankfurt am Main, Hesse, Germany
AS202412Omegatech LTD
233--

Detected Technologies7

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T16A23EA3393880376A6CE4BDCD2553649D0E8DC77C94E96E9F2AF10CEE858AA350B7714

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:sWSZdypGFFOhYlFe05H7UGJ+b0vLBwl2Qx8NLWU/cSz6o59+sv7iSOoLe+:sHypKFRlFFYGRwl2VZccGh+

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:48934:iAR+Q4yyGtmAEqEQGoGEEQEjqbgQGOCUA5Kg4G25AYNGGGYIDeCWyBCUA0YCVgxAwAjBkqARRVTJ8IYYZTXgACPDIaAGCYMC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:9f9f9fffdf8fffc3
Perceptual Hash:bc3c3cc3c7c33838
Difference Hash:30363422262f2626
Wavelet Hash:9e838f9f83819f81
Color Hash:#7ad22d

Other Hashes

Crop Resistant:30363422262f2626

Scan History

Scan history not available

Unable to load historical scan data