Security Scan Report: 44tx.mjt.lu

Redirected to: https://requests.grafixart.ca/hardwallet/recover/

Submitted: Nov 24, 2025, 12:45:38 PMCompleted: Nov 24, 2025, 12:48:52 PMpubliccompleted
Loading additional data...

Summary

This website contacted 18 IPs in 4 countries across 7 domains to perform 46 HTTP transactions. The main domain is requests.grafixart.ca and was registered NaN years ago.

Submitted URL: http://44tx.mjt.lu/lnk/AVoAAIOHT5YAAAAAAAAAAgTVfdUAAO6m-vwAAAAAAARDmwBpJEcdT2XEkLVMRBOfE_OGKnCItQAEFIU/1/NYmmZEJPhNEgRTrCHsCfFg/aHR0cHM6Ly9zY2FuLnBhZ2UvUFFzM0ho

Effective URL: https://requests.grafixart.ca/hardwallet/recover/Redirected

The Cisco Umbrella rank of the primary domain is #34,384 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Phishing page impersonating Ledger; do not provide any information.

Risk Factors
Brand impersonation of Ledger on a non‑official domain
Deceptive urgent messaging targeting cryptocurrency users
Form collecting sensitive seed phrase data
Redirects from an unrelated domain
Low ranking domain for a brand‑impersonating site
Domain age information unavailable

Details

Page Title

Ledger Security Alert

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

finance banking

(58%)

Domain Information

Domain '44tx.mjt.lu' uses the Luxembourgish country-code top-level domain (.lu) with subdomain '44tx'. The second-level label 'mjt' is 3 characters long containing 0 vowels alongside 3 consonants. Word splitting yields 2 words: mj, t. Average segment length settles at 1.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://44tx.mjt.lu/lnk/AVoAAIOHT5YAAAAAAAAAAgTVfdUAAO6m-vwAAAAAAARDmwBpJEcdT2XEkLVMRBOfE_OGKnCItQAEFIU/1/NYmmZEJPhNEgRTrCHsCfFg/aHR0cHM6Ly9zY2FuLnBhZ2UvUFFzM0ho

Page Load Overview

0.71s
Total Load Time
46
HTTP Requests
7
Domains
512 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:326 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking58% confidence
Type: static
Method: ml+structural

All Detected Categories

finance banking
58%
technology software
34%
government public service
32%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
21172.66.42.239United States
AS13335CLOUDFLARENET
15142.250.186.131United States
AS15169GOOGLE
4173.209.33.219Canada
AS36666GTCOMM
2104.18.3.29United States
AS13335CLOUDFLARENET
2172.66.41.17United States
AS13335CLOUDFLARENET
2142.250.186.106United States
AS15169GOOGLE
2104.16.80.73United States
AS13335CLOUDFLARENET
22606:4700::6810:4f49United States
AS13335CLOUDFLARENET
22606:4700:3108::ac42:2aefUnited States
AS13335CLOUDFLARENET
22606:4700:3108::ac42:2911United States
AS13335CLOUDFLARENET
4618--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T13802A9D666F30199EC1795A42FB527092668D007E20EC96CBFDD5748CF885CD9CA23EC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:i/1wveqpM1p17rIng99HaR185TTCYg9i3aFJLGJyAWxCyoUsJNe5wX2O7sZhG5:i6+wqe5wX0ZA

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:9012:MIHMgYwAUUblwqIgEEeLAAQAS6vEqEKWSgAQIpgGINB8EDwwBYToATkIgeaIOFQBwBxEkQxooilSkVMQYaOIyqVnAACOMgEI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:c0c0d8d8d8c8c0c0
Perceptual Hash:f9df66760601d903
Difference Hash:0018121210301000
Wavelet Hash:c0d8d8d8d8d8d8de
Color Hash:#8f79d2

Other Hashes

Crop Resistant:0018121210301000

Scan History

Scan history not available

Unable to load historical scan data