Security Scan Report: trust-ledger-login-patch-docker.vercel.app

Redirected to:
https://trust-ledger-login-patch-docker.vercel.app/ledger%20form/verif...
Site favicon
Submitted: Jul 23, 2026, 4:45:10 PMCompleted: Jul 23, 2026, 4:46:39 PMpubliccompleted
Loading additional data...

Summary

This website contacted 3 IPs in 1 country across 3 domains to perform 2 HTTP transactions. The main domain is trust-ledger-login-patch-docker.vercel.app and was registered NaN years ago.

Submitted URL: http://trust-ledger-login-patch-docker.vercel.app/

Effective URL: https://trust-ledger-login-patch-docker.vercel.app/ledger%20form/verify.htmlRedirected

AI Security Verdict

Confirmed Scam

Confidence: 94%

9
Risk Score

High‑confidence phishing site impersonating Ledger to steal recovery seed phrases.

Risk Factors
Brand impersonation of Ledger on untrusted subdomain
Credential harvesting form for seed phrase
Anti‑analysis JavaScript (devtools/right‑click blocking)
Domain age information unavailable

Details

Page Title

Ledger Live

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

finance banking

(40%)

Domain Information

Within the application-focused generic top-level domain (.app), 'trust-ledger-login-patch-docker.vercel.app' is registered and includes subdomain 'trust-ledger-login-patch-docker'. The second-level label 'vercel' is 6 characters long split between 2 vowels and 4 consonants. It segments into two words: ver, cel. Median word length comes out to 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://trust-ledger-login-patch-docker.vercel.app/

Page Load Overview

1.07s
Total Load Time
29
HTTP Requests
5
Domains
1.2 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:424 chars
Detector Agreement:50%

Website Classification

Primary Category

finance banking40% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

finance banking
40%
technology software
36%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
11104.18.0.22Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
9104.17.208.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
9216.198.79.131United States
AS16509Amazon.com, Inc.
293--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17A9293AA25F2183255A390B977EEFA063273C207D102CA5539ED57C86FC2D418672FDD

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:q7DhGFzVjvr/jXrXDDFjB0wVrZT1hrBP9MxHcBQa5i4iUo1ofM6bgiOikDMx:q7DhGFzVjvr/jXrXDDFjB0wVrZT1hrBv

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:20752:o4KQRoIhRSJloSQJoBSZoGhUAAkAKBFCvL1cLY+EIIWEgCABgMCxyChgSAjYSAJl4kQkCwoBAUYFIZwmw4pc6kFlQMArIkGB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:70ffd9818181d9db
Perceptual Hash:c9c3c56676193399
Difference Hash:c4c0132b2b2b3370
Wavelet Hash:70ff9981818198fe
Color Hash:#79d2bb

Other Hashes

Crop Resistant:c4c0132b2b2b3370

Scan History

Scan history not available

Unable to load historical scan data