Security Scan Report: liyrkan.com

Submitted: Sep 19, 2026, 9:47:23 PMCompleted: Sep 19, 2026, 9:47:43 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Personal portfolio page, but it loads exploit-kit-flagged resources and connects to a blockchain RPC node, triggering a CRITICAL EtherHiding exfiltration IDS alert — a malware-distribution pattern. Avoid.

Risk Factors (6)
CRITICAL IDS malware/exfiltration alert (EtherHiding)
Corroborated malicious third-party resource loaded (sr-hostes-js.beer exploit-kit signature)
Blockchain RPC connection flagged as wallet-drainer/EtherHiding pattern
Primary domain itself appears in a malware threat-intel feed
Dynamic Function() constructor code generation in page JavaScript
Unranked domain with weak legitimacy signals (score 10/100)
Domain age information unavailable

Details

Page Title

Karma's portfolio

Scan Type

public

Domain Name Analysis

The domain 'liyrkan.com' uses the commercial generic top-level domain (.com) without a subdomain. Its registrable label 'liyrkan' stretches across 7 characters split between 2 vowels and five consonants. Segmentation suggests three words: li, yr, kan. Median word length is two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://liyrkan.com

Page Load Overview

1.75s
Total Load Time
16.3 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:831 chars
Detector Agreement:67%

Website Classification

Primary Category

technology software42% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
42%
social media network
33%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
8213.158.94.246Italy
AS34762Combell NV
2142.251.127.95Google · CDNUnited States
AS15169Google LLC
2162.159.129.233Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2162.159.133.233Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2142.251.14.94Google · CDNUnited States
AS15169Google LLC
2132.145.155.63Oracle · CLOUDAshburn, Virginia, United States
AS31898Oracle Corporation
269.46.46.46Seattle, Washington, United States
AS400940Railway
2178.16.52.101Frankfurt am Main, Hesse, Germany
AS202412Omegatech LTD
2162.159.130.233Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
249--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T15AB2176090FD247F918622D596919B0F3FE4AE43CE2F966A74ED4AD24FC3D83D827109

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:TRqMWGvG2NvYY88beiFNM/PDDWkZXfc9aIc3:FqXGvG2NvBxbec2j6kZXU93y

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:25459:IFbFYoE31ZPLrCELhEAACAkCAAGrlYIAotBU+SBquEFVQBCAIhJAIDJSCQIII5ATULqJVAkg2kCui0Umbaonl01DUggBAAAC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:01757d6171010038
Perceptual Hash:c2c73c38393cccce
Difference Hash:33cdc5c9c1f1f1e9
Wavelet Hash:99e57d797901013d
Color Hash:#931f8a

Scan History

Scan history not available

Unable to load historical scan data