Security Scan Report: alnahreengroup.com

Site favicon
Submitted: Sep 23, 2026, 1:18:25 PMCompleted: Sep 23, 2026, 1:19:52 PMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 93%

9
Risk Score

Compromised legitimate import/export company site serving a ClickFix fake-CAPTCHA malware kit (AMOS loader), confirmed by a CRITICAL roster-anchored YARA rule, a CRITICAL Suricata malware alert, and multi-source threat-intel hits. Do not interact.

Risk Factors
Critical roster-anchored YARA rule for a ClickFix FakeCAPTCHA LOLBin malware kit
Suricata CRITICAL alert for an AMOS ClickFix loader script request
Multi-source malware/exploit-kit threat-intel matches on loaded third-party resources
Requests to a suspicious .life domain flagged by IDS for DNS and HTTP activity
Compromised legitimate business site repurposed to deliver a fake-CAPTCHA malware payload
Domain age information unavailable

Details

Page Title

AL NAHREEN INTL CO – IMPORTS & EXPORTS WLL

Scan Type

public

Domain Name Analysis

Within the commercial generic top-level domain (.com), 'alnahreengroup.com' is registered without a subdomain. Its registrable label 'alnahreengroup' stretches across 14 characters with 6 vowels and eight consonants. It segments into 5 words: a, lnah, re, en, group. Median word length comes out to 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://alnahreengroup.com

Page Load Overview

27.51s
Total Load Time
6.3 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-US
Text Length:3,733 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: spa
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
10103.50.162.50Mumbai, Maharashtra, India
10142.250.154.95Google · CDNUnited States
AS15169Google LLC
10138.124.60.214Switzerland
AS203273NetCrafters OU
10172.67.130.228Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
10185.92.183.208Riga, Riga, Latvia
AS56971Cgi Global Limited
1092.42.104.18Strasbourg, Grand Est, France
AS29066velia.net Internetdienste GmbH
10157.240.0.35Facebook · CDNFrankfurt am Main, Hesse, Germany
AS32934Facebook, Inc.
10142.251.127.84Google · CDNUnited States
AS15169Google LLC
1013.33.52.208Cloudfront · CDNNew York, New York, United States
AS16509Amazon.com, Inc.
10142.250.154.94Google · CDNUnited States
AS15169Google LLC
10010--

Detected Technologies6

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T14892B772A069010ABF4E97EDD2D2722CD8D8A515C781E7BA70F821789A78DF700F791D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:j7xzL2Pr/ZdSZUaAhDkW5JgRdnaBE5dkN:j7xWDZdypaR5JgdnaBE5dI

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:20324:hiwAAHkKlRQxQwxSJ7DQCmAShQmcoQgoYFkZhjUoPBAspAQkIGhhAwJZQCNUAMhGoiQFFX4RMgkZCAT6FCAoYBB8jU5ogVfg

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fefeffffffffffff
Perceptual Hash:d555555554aaaaaa
Difference Hash:0000000000000000
Wavelet Hash:0e0e0e0e0e0e0e0e
Color Hash:#2dd28d

Other Hashes

Crop Resistant:0000000000000000

Scan History

Scan history not available

Unable to load historical scan data