Security Scan Report: tokikonut.net

Site favicon
Submitted: Oct 16, 2025, 3:41:04 AMCompleted: Oct 16, 2025, 3:41:37 AMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 29 HTTP transactions. The main domain is tokikonut.net and was registered NaN years ago.

Submitted URL: https://tokikonut.net/login

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

New, unranked site impersonating e‑Devlet with credential‑stealing form; treat as confirmed phishing scam.

Risk Factors
Brand impersonation of e‑Devlet on a brand‑new domain
Credential harvesting form (ID number and password)
Domain age < 7 days (critical risk)
Google Safe Browsing social engineering detection
Domain is UNRANKED in Cisco Umbrella (low reputation)
Domain age information unavailable

Details

Page Title

e-Devlet Kapısı

Scan Type

public

Language

🇹🇷

Turkish

(80% confidence)

Category

unknown

(0%)

Domain Information

The domain 'tokikonut.net' uses the network infrastructure generic top-level domain (.net) and has no subdomain. The second-level label 'tokikonut' is 9 characters long with four vowels and five consonants. It segments into 3 words: to, kiko, nut. Median word length comes out to three characters. 'to' is most common in Czech usage. You will also see it in Slovak and Polish contexts. Overall, 'tokikonut.net' reads as Czech.

Screenshot

Security scan screenshot of https://tokikonut.net/login

Page Load Overview

8.87s
Total Load Time
29
HTTP Requests
1
Domains
145 KB
Total Size

Language Analysis

Primary Language

🇹🇷Turkish
Code: tr
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:tr
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:tr
Text Length:1,138 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
29196.251.81.228Seychelles
AS401120CHEAPY-HOST
291--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1A9A2BCD058AD2E6D4A0684950507EA163A42D247DF8EA0C8F9FD57FA3FEBC09054F27B

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:CSlNshIJEBWIfdh84W9ddVtDEiNU/eRADQ7hvBagx1EMhkOMcnTIODj2tyXdS7uE:rJ+aF8yOgj3mcK

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:21853:gEQAAUccRExcCICYAJHIBAJCyAkZoAOgQAyCVAggB7FgSF7IRcRYEBD4zJyES2IWOAMIoS8lpIDJAUOEOICQ0BAEAUAikikk

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fcd8ccfcfce4c0db
Perceptual Hash:f6d9a96689432699
Difference Hash:00101808686d0412
Wavelet Hash:f8c8d8fcfce4c0c0
Color Hash:#6640bf

Other Hashes

Crop Resistant:00101808686d0412

Scan History

Scan history not available

Unable to load historical scan data