Security Scan Report: ikasbet-giris.icu

Redirected to:
https://ikasbet-giris.icu/login_up.php
Site favicon
Submitted: Sep 12, 2026, 5:17:16 AMCompleted: Sep 12, 2026, 5:17:37 AMpubliccompleted

Summary

This website contacted 5 IPs in 2 countries across 3 domains to perform 2 HTTP transactions. The main domain is ikasbet-giris.icu and was registered 27 years ago.

Submitted URL: http://ikasbet-giris.icu/

Effective URL: https://ikasbet-giris.icu/login_up.phpRedirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Page impersonates Plesk, collects login credentials, and is hosted on a 2‑day‑old unranked domain – confirmed phishing scam.

Risk Factors
Brand impersonation of Plesk on a newly registered domain
Credential collection via login form
Critical domain age (<7 days) with 3x risk multiplier
Domain age information unavailable

Details

Page Title

Plesk Obsidian 18.0.80

Scan Type

public

Language

🇹🇷

Turkish

(80% confidence)

Category

technology software

(67%)

Domain Information

The domain 'ikasbet-giris.icu' uses the .icu top-level domain with no subdomain. The second-level label 'ikasbet-giris' is 13 characters long split between 5 vowels and seven consonants, notching 1 hyphen. Breaking it apart gives 5 words: ik, as, bet, gir, is. The median word length lands at two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://ikasbet-giris.icu/

Page Load Overview

3.73s
Total Load Time
30
HTTP Requests
3
Domains
516 KB
Total Size

Language Analysis

Primary Language

🇹🇷Turkish
Code: tr
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:tr
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:tr
Text Length:521 chars
Detector Agreement:50%

Website Classification

Primary Category

technology software67% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
67%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
6172.67.170.1Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
6104.21.71.63Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
654.75.209.111Aws · CLOUDDublin, Leinster, Ireland
AS16509Amazon.com, Inc.
654.220.60.138Aws · CLOUDDublin, Leinster, Ireland
AS16509Amazon.com, Inc.
634.8.226.60Google · CDNKansas City, Missouri, United States
AS396982Google LLC
305--

Page Statistics

30
Requests
3
Unique Domains
2.3 MB
Total Size

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T16731BB475CB0DC0E726256A5ADD6F028CAE0F05EF6693C40F19D50AF1FE5B82849361A

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

24:huaM/BTK+0eoRYkJAd4H96uO5tTGIGt/OiCKikGVvANosRrEFhd8WvG:Yao5kZ47fVXPxOwh+x

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1622:AARAAAAACAoAQAAQAABAACAAIAAAABAAAAAAAAAAAAAAAAAIBAoAAAEAAAAAcUAgAAAAJAAAjgAAgAIQAAQQAIAAAAAEAABA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0018011818181800
Perceptual Hash:886667cc747433b3
Difference Hash:71710db3b3b3b34d
Wavelet Hash:0018233b3f3f3b33
Color Hash:#453a78

Scan History

Scan history not available

Unable to load historical scan data