Security Scan Report: not-start-eng-trezr.pages.dev

Redirected to:
https://not-start-eng-trezr.pages.dev/
Site favicon
Submitted: Sep 27, 2026, 12:45:02 AMCompleted: Sep 27, 2026, 12:45:36 AMpubliccompleted

This website contacted 1 IP in 1 country across 1 domain to perform 3 HTTP transactions. The main domain is not-start-eng-trezr.pages.dev and was registered 6 years ago.

Submitted URL: http://not-start-eng-trezr.pages.dev/

Effective URL:

https://not-start-eng-trezr.pages.dev/
Redirected

AI Security Verdict

High Risk

Confidence: 75%

7
Risk Score

Fake Trezor hardware wallet setup page on a pages.dev subdomain, reported as phishing and impersonating Trezor. No credential form detected, but avoid connecting devices or sharing wallet seed phrases.

Risk Factors (5)
Single-source threat-intel report of phishing on the primary domain.
Impersonates Trezor hardware wallet brand on an unofficial pages.dev subdomain.
Uses wallet setup and seed phrase instructions typical of hardware-wallet phishing lures.
Unranked domain on shared hosting with unknown creation date.
Directs users to connect a hardware device and visit a 'dedicated software portal' without legitimate Trezor association.
Domain age information unavailable

Details

Page Title

Trezor Device Setup - Unique Interface

Scan Type

public

Domain Name Analysis

You're looking at domain 'not-start-eng-trezr.pages.dev' on the developer-focused generic top-level domain (.dev), featuring subdomain 'not-start-eng-trezr'. The core label 'pages' covers 5 characters containing two vowels alongside three consonants. Breaking it apart gives one word: pages. Average segment length settles at 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://not-start-eng-trezr.pages.dev/

Page Load Overview

0.27s
Total Load Time
4 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:668 chars
Detector Agreement:67%

Website Classification

Primary Category

documentation technical80% confidence
Type: static
Method: ml+structural

All Detected Categories

documentation technical
80%
technology software
76%
finance banking
27%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3188.114.97.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
31--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T193A1674A9AE30126B54350792FF7674037B8D407D24ACE793DDC22588F8A2D5E8A37CD

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:TUTxyJFauBcb9RIFd9ugxJf3AtiGQ1n4zy91:gTxCFauaxRIFd9bxJf3YiGQCzyH

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:4800:gYUyBgAAAChQ0SKAGCSgCAEEVACQEgQAAYBQAAIkHKAgAEAYAAQgAPEFEEIYCMAEECMYGgACgAObhUwAAAhQoKJFIDBIQBEC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:f0f0f6f6f6f0f6f0
Perceptual Hash:e44f1f49299669b4
Difference Hash:422484c4c4c4c424
Wavelet Hash:f0f0f0f6e0e0e6e0
Color Hash:#783f3a

Other Hashes

Crop Resistant:422484c4c4c4c424

Scan History

Scan history not available

Unable to load historical scan data