Security Scan Report: tg-hkeles.vip

Redirected to: https://tg-hkeles.vip/

Site favicon
Submitted: Jan 17, 2026, 9:42:19 PMCompleted: Jan 17, 2026, 9:43:43 PMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 2 countries across 4 domains to perform 1 HTTP transaction. The main domain is tg-hkeles.vip and was registered NaN years ago.

Submitted URL: http://tg-hkeles.vip/

Effective URL: https://tg-hkeles.vip/Redirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

New, unranked domain impersonating Telegram – confirmed phishing scam.

Risk Factors
Brand impersonation on a newly registered, unranked domain
Critical domain age (<7 days) combined with brand spoofing
Use of QR‑code login flow to harvest credentials
Domain age information unavailable

Details

Page Title

Telegram

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

corporate

(50%)

Domain Information

Within the .vip top-level domain, 'tg-hkeles.vip' is registered with no subdomain. The registrable portion 'tg-hkeles' spans 9 characters containing 2 vowels alongside six consonants, notching 1 hyphen. Splitting it apart reveals 4 words: tg, h, kele, s. Expect 1.5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://tg-hkeles.vip/

Page Load Overview

3.67s
Total Load Time
24
HTTP Requests
4
Domains
35 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:3,816 chars
Detector Agreement:75%

Website Classification

Primary Category

corporate50% confidence
Type: static
Method: structural

All Detected Categories

corporate
50%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
12192.163.167.56Singapore
AS138995Antbox Networks Limited
12149.154.167.99London, England, United Kingdom
AS62041Telegram Messenger Inc
242--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T181F15152F714E83A2357067D3490F10E42E2E44BD7C2AA50B9E572E60E8FEF680F7255

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:ujtSoUZZUG7LtP0JwH+0Y10M0vFdu5MCqgy0thfp088SFH7ZyZU58S:KtSGsp0JwH+0Y10M0NduKCqgy0thfp0e

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:7834:sBSCAREJhBKwFAsiME2DkOJAyuUwNSGAKgFwgIFoPCYLsqCeNCCUB4AMQ2gOkBhzSAoMApFEYGAJBAMiEgikYCgWTGyKhiHl

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffe7e7e7ffffff
Perceptual Hash:b323cccc3333cccc
Difference Hash:00000c0c08000000
Wavelet Hash:3c242424e0f0f0f0
Color Hash:#5e2d86

Other Hashes

Crop Resistant:00000c0c08000000

Scan History

Scan history not available

Unable to load historical scan data