Security Scan Report: started-io-trezo.netlify.app

Submitted: Oct 10, 2025, 4:13:48 PMCompleted: Oct 10, 2025, 4:14:25 PMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 1 country across 1 domain to perform 2 HTTP transactions. The main domain is started-io-trezo.netlify.app.

Submitted URL: https://started-io-trezo.netlify.app/

AI Security Verdict

High Risk

Confidence: 85%

9
Risk Score

Impersonates Trezor on a new unranked Netlify domain – likely phishing.

Risk Factors
Brand impersonation on an unusual, unranked domain
Newly registered / unknown domain age
Lack of official Trezor domain (trezor.io) in final URL
Domain age information unavailable

Details

Page Title

Trezor.io/Start® - Starting Up Your Device - Trezor®

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(66%)

Domain Information

The domain name 'started-io-trezo.netlify.app' uses the application-focused generic top-level domain (.app), featuring subdomain 'started-io-trezo'. Count 7 characters in 'netlify' split between two vowels and five consonants. Breaking it apart gives 3 words: net, li, fy. Median word length comes out to two characters. 'neto' is most common in Esperanto usage. It also appears in Bosnian and Serbian contexts.

Screenshot

Security scan screenshot of https://started-io-trezo.netlify.app/

Page Load Overview

12.86s
Total Load Time
2
HTTP Requests
1
Domains
5 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,944 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software66% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
66%
cryptocurrency blockchain
46%
education learning
42%
documentation technical
34%
cryptocurrency
22%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
063.176.8.218Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
035.157.26.135Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
02a05:d014:58f:6200::258Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
02a05:d014:58f:6200::259Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
24--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T13082822A75F73003558396A96BF317563A61D407CE0ECA183EAD5284DFC6A82FC9378D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:BUSLcBRN9gF3kC2rCO+Rg0xzgwF2xX6yJMoLwkqSfjjffLKsRAj:B9LIMfrockqSf3ffLKsRi

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:18117:kxRkgdiAACCXuPBA5MABZJAqcBARACgGAaRKJAgqCFRSUtRpwsACgHEAKQCtAYAghogABpXVhico6ACwQwBCB0OwgcmdgEkk

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:f9c2c0c6e7fffb8b
Perceptual Hash:f1634cce8acb13c3
Difference Hash:4b865c5a0c0a2a2a
Wavelet Hash:f8c0c0c0e7ffc383
Color Hash:#d24b2d

Other Hashes

Crop Resistant:4b865c5a0c0a2a2a

Scan History

Scan history not available

Unable to load historical scan data