Is korfezbirlik.com a scam? TrustSniffer's high-risk assessment: 0/100

korfezbirlik.com
Download PDF Check another site How we score

Verdict

0 OUT OF 100
Critical Risk

korfezbirlik.com shows high-risk / scam indicators.

This assessment found strong scam indicators. Do not pay, sign in, or share personal details with this site.

Sensitive Interaction Risk Governance Risk

Assessed 2026-08-21 by automated analysis. Classification confidence 55%.

What this site appears to beOfficial/organizational website for Körfez Birlik, a regional bus/cooperative service covering Ayvalık, Gömeç, Burhaniye and Edremit. Contains schedules, route information, company history and contact details.

Evidence status and limitations

Evidence completeness: UNKNOWN

  • The real-world operator identity was not independently verified.
  • Module-level completeness metadata is unavailable for this legacy report.

At a glance

The checks that decide most of this verdict.

Malware engines14 flagged itVirusTotalRisk
Google Safe BrowsingNot listedGoogleClear
Abuse reports on the host0 reportsAbuseIPDB; shared hosting inflates this countNoted
Domain age12 years oldRegistered historyClear
Web archiveArchived since 2015Public history existsClear
CertificateEncrypted connectionIssued by YR1Noted

The page as captured

https://korfezbirlik.com/
Screenshot of the korfezbirlik.com homepage captured during the TrustSniffer assessment
What korfezbirlik.com served when TrustSniffer captured it on 2026-08-21. The page may look different now.

Key findings

  • Automated classification: Sensitive Interaction Risk.
  • Domain age: more than 10 years (registration continuity).
  • Public web-archive history exists since 2015.
  • At least one reputation service TrustSniffer consulted had flagged this domain at assessment time.

Full analysis

Security Alert

Fortinet, Sophos flagged this site in external intelligence checks, indicating elevated compromise/scam exposure that requires immediate caution.

What appears to be a local transport and cooperative website for Körfez Birlik, presenting regional bus schedules, routes, company information, charter services, and contact details for travel between Ayvalık, Gömeç, Burhaniye, and Edremit.

Scam/Impersonation Risk

The principal risk is not the apparent subject matter of the site but the conflict between its ordinary local-business presentation and strong external threat intelligence. The domain is recorded as blacklisted by external sources, with multiple malicious detections, including detections from Fortinet and Sophos; this is a material contradiction that outweighs the homepage’s benign appearance. No distinct legal-entity conflict or brand-impersonation finding was observed, but the site’s real-world operator remains unverified. The homepage contains no login or sensitive-data form, which limits the observed interaction surface, but it does not neutralize the external reputation risk.

Evidence
  • The homepage presents route and service information for Körfez Birlik and contains one search form only; no login or sensitive form was observed.
  • External reputation telemetry recorded 14 malicious detections from 19 effective evaluations, with Fortinet and Sophos among the flagged vendors.
  • The domain was marked as blacklisted by external reputation sources, while Google Safe Browsing was recorded as non-malicious.
  • Registration records show creation on 2014-10-22 and an age of 11.84 years; historical records show first seen on 2015-07-12 and last seen on 2025-07-12, with 11 years tracked.

Regulatory Verification Notes

The site includes organisational pages such as About, Management Board, Members, Gallery, visitor information, and Contact, which provide a coherent public-facing structure. However, the available evidence does not independently verify the operator’s legal identity, and the site does not state a license authority or license number. That omission is a regulatory-transparency gap rather than, by itself, proof of fraud. The transport presentation should therefore not be treated as evidence that any applicable operating authorization has been established. The absence of a broker-dataset match provides no affirmative regulatory validation.

Evidence
  • The About, Management Board, Members, and Contact pages provide organisational content but do not independently establish the real-world operator identity.
  • The site does not claim a license, identify a licensing authority, or publish a license number in the reviewed content.
  • The domain registrar is Alantron Inc.; the registration expiry is 2035-10-22.
  • The site is served from AS16276, identified as OVH - OVH SAS, FR; its TLS certificate is DV-validated, issued by YR1, and valid until 2026-11-14.

What to Verify Next

Before any sensitive interaction, an enterprise or prospective counterparty should independently confirm that the domain and published contact routes belong to the relevant local transport cooperative through an offline or separately sourced channel. Any applicable transport authorization should be checked with the competent Turkish authority or registry, using the operator’s legal name rather than relying solely on the website. Security teams should also require a fresh reputation and malware review before permitting the domain in organisational browsing or communications workflows.

Evidence
  • The Contact page publishes local telephone contact information that can be checked through an independently sourced directory or offline channel.
  • The About and Management Board pages identify the organisation’s claimed structure but require confirmation against an authoritative external record.
  • The website’s transport and charter-service claims should be matched to the applicable official authorization framework before commercial reliance.

Summary Verdict

The overall posture is critical, with sensitive interaction risk taking precedence over the site’s plausible local-business content. The website may represent a genuine transport organisation, but that legitimacy is not independently verified and the confirmed external threat signals prevent a trustworthy assessment.

Infrastructure Integrity

The site is protected by a CDN/WAF layer, and the observed address belongs to the CDN edge rather than an observable origin candidate. This provides a mitigating layer against direct origin exposure but is not evidence that the website or its operator is legitimate.

Evidence
  • The observed edge IP was 217.182.23.244.
  • CDN/WAF protection was detected, with one observed edge address and zero origin candidates identified.
  • The infrastructure resolved in France through OVH - OVH SAS.

Closing Assessment

Sensitive actions, credential submission, financial activity, and organisational integration should remain suspended until independent identity, authorization, and technical-security checks produce a consistent result.

Written analysis generated 2026-08-21 by the TrustSniffer Analysis Engine from the evidence in this report.

What the analysis found

2 findings contributed to this verdict, raised by registration and ownership, analysis engine, external reputation.

01 Governance Risk

  • The public registration record for this domain is incomplete.Registration and ownership rule:KF_WHOIS_INCOMPLETE

02 Sensitive Interaction Risk

  • The analysis matched a pattern TrustSniffer treats as a direct threat to a visitor.Analysis engine signal:direct_threat
  • An external threat feed lists this domain: either Google Safe Browsing marked it malicious, or a significant number of malware engines flagged it.External reputation rule:EXT_BLACKLIST_CRITICAL

Identity verification

StatusUNVERIFIED
Identity score30/100
Identity verification confidence50%
  • No on-site identity signals detected

Identity verification measures whether the site can be independently connected to a real-world brand or person. It is separate from the classification confidence.

What TrustSniffer observed

First-party facts recorded during the assessment of korfezbirlik.com.

  • The request stayed on korfezbirlik.com. It was not redirected to another domain. Clear
  • Registration is published under Alantron Inc.. Clear
  • DNS for this domain is served by korfezbirlik.com, across 2 name servers. Noted
  • The registration is paid up to 2035-10-22. Clear
  • The earliest public archive of this site is from 2015-07-12. Clear
  • It is hosted on OVH, from a server in FR. Noted

Domain intelligence

RegistrarAlantron Inc.
HostingOVH - OVH SAS, FR
CountryFR
Server IP217.182.23.244
Name serversNS1.KORFEZBIRLIK.COM, NS2.KORFEZBIRLIK.COM
SSL issuerYR1
SSL expiry2026-11-14
Domain age11.84 years (continuous registration)
Domain expiry2035-10-22
Archive first seen2015-07-12
Archive snapshotsNot counted (archive lookup incomplete)
ReputationVirusTotal: 14 flagged | AbuseIPDB: 0 reports | Google Safe Browsing: 0 matches

About this assessment

A trust score summarises the evidence TrustSniffer could collect about korfezbirlik.com at assessment time. It is a starting point for your own judgement, not a guarantee: a high score means the signals were consistent with a legitimately operated site, a low or critical score means several risk patterns were present.

TrustSniffer assesses a website from the evidence it can collect at a point in time: domain registration and age, hosting and certificate, the content the site served, and third-party reputation feeds. A score is a summary of that evidence, not a guarantee and not a legal finding. There is no human rating and no user review in it. A site can change after it is assessed.

Common questions about korfezbirlik.com

Is korfezbirlik.com a scam?

TrustSniffer's assessment of korfezbirlik.com found strong scam indicators. It scored 0 out of 100 on 2026-08-21, which is the critical-risk band. The specific signals are listed in the evidence above.

Is korfezbirlik.com safe to use?

This assessment found strong scam indicators. Do not pay, sign in, or share personal details with this site.

What is the trust score of korfezbirlik.com?

korfezbirlik.com scored 0 out of 100 on 2026-08-21, which places it in the critical-risk band. The score is built from the domain's age and registration history, its hosting and certificate, the content of the site itself, and third-party reputation data. There is no human rating and no user review in it.

Download this report as PDF Free, no account needed. Create one to keep a history of the sites you check.
By AminRez, Founder & Lead Security Researcher, TrustSniffer
Produced by the TrustSniffer Analysis Engine · assessed 2026-08-21 · how we assess · report a mistake