Security Scan Report: calisourcing.com

Site favicon
Submitted: Sep 17, 2026, 7:47:27 AMCompleted: Sep 17, 2026, 7:47:50 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Legitimate-looking Cali Sourcing site (own brand, no login) appears compromised and serving an EtherHiding malware loader: CRITICAL IDS EtherHiding/exploit-kit alerts, blockchain-RPC plus Cloudflare Worker payload chain, and a malware-loader threat-intel match on the domain.

Risk Factors (5)
EtherHiding malware loader: blockchain RPC queries combined with a Cloudflare Worker fetch chain
7 CRITICAL IDS malware/exploit-kit alerts (EtherHiding exfiltration, ErrTraffic Beer cluster check-in)
Threat-intelligence match on the primary domain categorised as a malware loader
Third-party malicious domain (aleverifocation.beer, 2 corroborating feeds) loaded by the page
Injected obfuscated JavaScript using Function() constructor and encoding/decoding routines
Domain age information unavailable

Details

Page Title

Home - Cali Sourcing

Scan Type

public

Domain Name Analysis

Domain 'calisourcing.com' uses the commercial generic top-level domain (.com) while skipping any subdomain. Its registrable label 'calisourcing' stretches across 12 characters containing 5 vowels alongside 7 consonants. Splitting it apart reveals two words: cali, sourcing. Median word length is six characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://calisourcing.com

Page Load Overview

2.71s
Total Load Time
905 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-US
Text Length:5,444 chars
Detector Agreement:100%

Website Classification

Primary Category

corporate50% confidence
Type: dynamic
Method: structural

All Detected Categories

corporate
50%

Detected Features

Articles
OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
863.250.43.131United States
AS22612Namecheap, Inc.
4142.250.154.95Google · CDNUnited States
AS15169Google LLC
463.250.43.130United States
AS22612Namecheap, Inc.
4142.251.13.95Google · CDNUnited States
AS15169Google LLC
4172.66.164.193Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4142.251.110.94Google · CDNUnited States
AS15169Google LLC
4188.114.97.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4152.236.9.75Frankfurt am Main, Hesse, Germany
AS396356Latitude.sh
368--

Detected Technologies9

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T11693C68F97B3327572078725B9D9633496ACC113D9060DE67CB5A2288FC27A702F719E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:9KuahZdypaTjrBcqlH142wAPub4kaAg3CtJ0IDL:VCypMreGw8ub4kmStJ0IDL

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:93683:M4RAUOQAEBHGRBJMwRUQTTIwkKHgmFVxNEFJilZAgGXFkCgIAKSGbiqFQEmkgFZ1jJYwhyMAcWYIgaDJkyAigIAgHAIrqJ4s

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff000000000009ff
Perceptual Hash:8b0cbc38fccac1dc
Difference Hash:2b79e1c1e1d1f108
Wavelet Hash:ff0938300020ffff
Color Hash:#862d58

Scan History

Scan history not available

Unable to load historical scan data