Security Scan Report: acombien.tn

Site favicon
Submitted: Oct 1, 2026, 1:04:54 PMCompleted: Oct 1, 2026, 1:06:12 PMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 88%

9
Risk Score

Newly registered (≤1 day) site with repeated CRITICAL EtherHiding malware-exfil IDS alerts, blockchain RPC traffic and a content-malware threat-intel hit on its own domain — malware distribution, not a normal e-commerce store.

Risk Factors (5)
CRITICAL IDS malware signature (EtherHiding Exfil) fired repeatedly against page traffic
Content-malware threat-intel match on the primary domain (iclickfix)
Brand-new domain performing blockchain RPC communication — EtherHiding/wallet-drainer infrastructure
Unranked third-party JavaScript host (browseid.codes) plus exploit-kit-flagged external IP
Unranked domain (not in Cisco Umbrella top 1M) with obfuscation-style dynamic code (4 eval, 2 Function calls)
Domain age information unavailable

Details

Page Title

Acceuil - Acombien.tn

Scan Type

public

Domain Name Analysis

The domain name 'acombien.tn' uses the Tunisian country-code top-level domain (.tn) without a subdomain. Its registrable label 'acombien' stretches across 8 characters holding 4 vowels versus four consonants. Word splitting yields three words: a, combi, en. Median word length comes out to 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://acombien.tn/

Page Load Overview

20.73s
Total Load Time
1.4 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:53%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:fr-FR
Text Length:964 chars
Detector Agreement:50%
Language mismatch: Declared as fr-FR but detected as en

Website Classification

Primary Category

entertainment media87% confidence
Type: spa
Method: ml+structural

All Detected Categories

entertainment media
87%
corporate
35%
news/blog
30%

Detected Features

Search
Articles
OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
24213.186.33.18France
AS16276OVH SAS
3104.17.208.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
374.125.29.95Google · CDNUnited States
AS15169Google LLC
3142.251.127.97Google · CDNUnited States
AS15169Google LLC
3192.178.183.157Google · CDNUnited States
AS15169Google LLC
3104.26.10.205Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3192.178.183.94Google · CDNUnited States
AS15169Google LLC
3172.66.150.162Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3216.239.32.36Google · CDNUnited States
AS15169Google LLC
3192.178.183.132Google · CDNUnited States
AS15169Google LLC
9625--

Detected Technologies14

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1BEC43B1BF6E20A32D2AA86F09177373C7B38C91E8FC10C74AA4367AE474ADD7125519D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:rl7KNW7CbnrZidxkXgfrNkIgQrtkogwrCYfTDD44ofF5pejZTXF3ft17CKgs9YfN:1KNWeMDD44Mjpev2/O4

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:547456:FqkAUBYEDEAogABQ9OBIBUxAHTUWIssQYeAAsU5WIKFSDiFEckKcXQCl1Bh+CABASACIsA6DCSZQUCBsGBiAUQghg9jRkTIY

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00ffffffffbfffff
Perceptual Hash:bf75222b413a6b61
Difference Hash:4400222042633340
Wavelet Hash:00fe82befe8081ef
Color Hash:#2d5886

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data