Security Scan Report: alexsisto.com

Submitted: Sep 13, 2026, 2:47:30 AMCompleted: Sep 13, 2026, 2:48:52 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Legitimate-looking Sisto Events page appears compromised: it loads flagged malware domain xaz2.com, contacts blockchain RPC endpoints, and triggers CRITICAL EtherHiding malware-exfiltration IDS alerts. Avoid.

Risk Factors (4)
CRITICAL IDS alert for EtherHiding malware exfiltration (ET MALWARE EtherHiding Exfil M2)
Primary domain itself carries a content-malware threat-intel match (unknown RAT)
Third-party malware domain xaz2.com loaded by the page (2 corroborating feeds)
DNS/TLS traffic to blockchain RPC domains consistent with EtherHiding malware C2
Domain age information unavailable

Details

Page Title

Sisto Events – Your Event, Your Music!

Scan Type

public

Domain Name Analysis

The domain name 'alexsisto.com' uses the commercial generic top-level domain (.com). The core label 'alexsisto' covers 9 characters split between four vowels and five consonants. Word splitting yields two words: alex, sisto. Median word length is 4.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://alexsisto.com

Page Load Overview

27.71s
Total Load Time
6.6 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-GB
Text Length:12,547 chars
Detector Agreement:75%

Website Classification

Primary Category

documentation technical64% confidence
Type: spa
Method: ml+structural

All Detected Categories

documentation technical
64%
news/blog
20%

Detected Features

Articles

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
13142.250.154.95Google · CDNUnited States
AS15169Google LLC
1013.227.192.80Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
10142.251.110.97Google · CDNUnited States
AS15169Google LLC
1095.110.230.80Ponte San Pietro, Lombardy, Italy
AS31034Aruba S.p.A.
1013.33.187.28Cloudfront · CDNNew York, New York, United States
AS16509Amazon.com, Inc.
10188.114.96.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
10142.251.127.95Google · CDNUnited States
AS15169Google LLC
10216.239.34.36Google · CDNUnited States
AS15169Google LLC
10142.251.110.94Google · CDNUnited States
AS15169Google LLC
10192.0.77.48San Francisco, California, United States
AS2635Automattic, Inc
12312--

Detected Technologies10

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1DCE20A31906915857F4ED74AF2E3722CE5849A66CA12E7B7B0BE201C4978DF70097D2F

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:e9i5Q62I/xE6x4g5bn/qJPZdypaRE5gj2M8EP4tR:MiCl1ypN5gj2M8EgtR

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:31258:Ig74HaYO5FwAytAoAVR3hK1IkLWZEJgBFmRpAAyagGEnlaYAoCicCKjA4qBBEVJEUoQREARUEEQa4JtEDcgZApChUQKg7AjZ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000183c1c0830ff
Perceptual Hash:88736647d947334d
Difference Hash:d1cdf1b3b371e5b7
Wavelet Hash:00011d3f3d1d71ff
Color Hash:#78503a

Scan History

Scan history not available

Unable to load historical scan data