Security Scan Report: recovery-trezor.net

Submitted: Dec 17, 2025, 4:00:25 PMCompleted: Dec 17, 2025, 4:05:27 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 0 countries across 1 domain to perform 3 HTTP transactions. The main domain is recovery-trezor.net and was registered NaN years ago.

Submitted URL: https://recovery-trezor.net/

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

New, unranked site mimicking Trezor; classified as a confirmed phishing scam.

Risk Factors
Brand impersonation on a brand‑new, unranked domain
Critical domain age (<7 days) with no verifiable content
Lack of any legitimate indicators (no forms, no content, no official branding)
Domain age information unavailable

Details

Page Title

recovery-trezor.net

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(82%)

Domain Information

Within the network infrastructure generic top-level domain (.net), 'recovery-trezor.net' is registered with no subdomain. The core label 'recovery-trezor' covers 15 characters split between five vowels and 9 consonants, plus one hyphen. Breaking it apart gives three words: recovery, trez, or. Average segment length settles at four characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://recovery-trezor.net/

Page Load Overview

30.13s
Total Load Time
3
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:753 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software82% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
82%
documentation technical
54%
adult content
48%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3178.16.54.185UnknownUnknown
31--

Detected Technologies2

JQueryv3.7.1
100%

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1C803AB6050F595A7035380E259172B2B7ED0D603C66A55007BFD0FE62FEFD82A92B19B

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:QG7HQeTFVmIw7f3R1rQAOfQ1SW1Grd8yno3Xi82alHbgp6KAOfQ1S/PmsBWJmbLu:QGFVNgf+DBr8zl7g93OiGR

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:38016:9xBaPCTaUIgcNEOAIURUkpGxAABrAgAG5OqERwBoGMEYQQEBUIBPcVKBUjowQAgkNLGCRZpBVP8htujAtKkQOWAECkMI6AVj

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A

Other Hashes

Crop Resistant:N/A

Scan History

Scan history not available

Unable to load historical scan data