Security Scan Report: tg-hkeles.vip

Site favicon
Submitted: Jan 18, 2026, 11:40:28 AMCompleted: Jan 18, 2026, 11:41:53 AMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 2 countries across 4 domains to perform 13 HTTP transactions. The main domain is tg-hkeles.vip and was registered NaN years ago.

Submitted URL: https://tg-hkeles.vip/

AI Security Verdict

Confirmed Scam

Confidence: 96%

10
Risk Score

Confirmed phishing site impersonating Telegram; do not provide any data and report.

Risk Factors
Brand impersonation/typosquatting on a brand‑new domain
Critical domain age (<7 days) with brand claim
Unranked domain lacking reputation
Mimics official Telegram QR‑code login without legitimate authority
Domain age information unavailable

Details

Page Title

Telegram

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

corporate

(50%)

Domain Information

You're looking at domain 'tg-hkeles.vip' on the .vip top-level domain with no subdomain. The core label 'tg-hkeles' covers 9 characters holding two vowels versus 6 consonants; bonus characters include one hyphen. Tokenizing the label suggests four words: tg, h, kele, s. Median word length comes out to 1.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://tg-hkeles.vip/

Page Load Overview

3.63s
Total Load Time
23
HTTP Requests
4
Domains
35 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:3,816 chars
Detector Agreement:75%

Website Classification

Primary Category

corporate50% confidence
Type: static
Method: structural

All Detected Categories

corporate
50%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
12192.163.167.56Singapore
AS138995Antbox Networks Limited
11149.154.167.99London, England, United Kingdom
AS62041Telegram Messenger Inc
232--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1BFF14152F714E83A2357067D3491F10E42E2E48BD7C1AA50B9E572E60E8FEF680F7255

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:ujtSoUZZUG7LtP0JwH+0Y10M0vFdu5MCqgy0thfp088SFH7ZyZU58a:KtSGsp0JwH+0Y10M0NduKCqgy0thfp0G

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:7826:sBCCAREJBBSwFAoicE+DkMJAyuUwNSGAKkFxgpFgNCIJsiCeNCKUB4AMR2gOEBhzWAoMApFEYGABBAMiEgisYCkUTGyKhiGl

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffe7e7e7ffffff
Perceptual Hash:b323cccc3333cccc
Difference Hash:00000c0c08000000
Wavelet Hash:3c242424e0f0f0f0
Color Hash:#832d86

Other Hashes

Crop Resistant:00000c0c08000000

Scan History

Scan history not available

Unable to load historical scan data