Security Scan Report: sorgupaneli.life

Submitted: Sep 12, 2026, 8:47:38 PMCompleted: Sep 12, 2026, 8:48:33 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 82%

8
Risk Score

Very new domain flagged in threat intelligence for Agent Tesla malware, openly selling illegal T.C./GSM/HTS/location data-record lookups with IR-traceable Telegram bank-transfer payment. Avoid; report.

Risk Factors
Threat-intel match for Agent Tesla malware on the primary domain (single-source, unverified)
Claims to sell unlawful access to citizens' T.C., GSM, HTS, location, address and financial records
Very new domain (17 days) with no reputation history
Off-platform Telegram-only contact and manual IBAN/key delivery to evade payment tracing
Unranked in Cisco Umbrella top 1M
Domain age information unavailable

Details

Page Title

Fsociety Sorgu Paneli | Türkiye'nin #1 Sorgu Paneli - TC, GSM, HTS, Konum, Plaka, Adres Sorgu

Scan Type

public

Domain Name Analysis

Domain 'sorgupaneli.life' uses the .life top-level domain while skipping any subdomain. Its registrable label 'sorgupaneli' stretches across 11 characters with five vowels and 6 consonants. Word splitting yields four words: so, rgu, panel, i. The median word length lands at 2.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://sorgupaneli.life

Page Load Overview

30.79s
Total Load Time
1.2 MB
Total Size

Language Analysis

Primary Language

🇹🇷Turkish
Code: tr
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:tr
Text Length:6,970 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service89% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

government public service
89%
finance banking
88%
technology software
81%
documentation technical
53%
adult content
35%

Detected Features

OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
6172.67.210.96Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4142.250.154.95Google · CDNUnited States
AS15169Google LLC
4104.17.24.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4172.66.161.212Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4104.21.53.73Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4104.20.42.169Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4142.251.110.94Google · CDNUnited States
AS15169Google LLC
4104.17.25.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
348--

Detected Technologies5

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1ED031F2168F2747B4163D2CA99A9671F6DD7912BDD6B550573FC0B882FCBC8AAC0310E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:oz9bi1AmZII65TR2txQHaBkj5Lv8iemuhzHv:oJwZZII6ZR2te6Bkj5LEiemwzHv

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:41084:AUAgoFMgYNO8QoYJgwAg0RKWaziJoGomSm0wxBBQlQIhDeAEGSoBE4HsCghCxnGYyQikUCgSSAKBQWDXQsGmeaUMCgKFQOIU

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:c680607c7c600000
Perceptual Hash:c3f43c9096c7e13c
Difference Hash:1423c8c8c8c96313
Wavelet Hash:dfc0e0fe7e646101
Color Hash:#86392d

Other Hashes

Crop Resistant:1423c8c8c8c96313

Scan History

Scan history not available

Unable to load historical scan data