Security Scan Report: pages-trezor-io-login.typedream.app

Submitted: Oct 29, 2025, 10:43:41 AMCompleted: Oct 29, 2025, 10:44:34 AMpubliccompleted
Loading additional data...

Summary

This website contacted 16 IPs in 3 countries across 5 domains to perform 99 HTTP transactions. The main domain is pages-trezor-io-login.typedream.app.

Submitted URL: https://pages-trezor-io-login.typedream.app/

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

High‑risk phishing page impersonating Trezor on an unranked domain.

Risk Factors
Brand impersonation on a non‑official, unranked domain
Deceptive subdomain with "login" suggesting credential collection
New or unknown domain age increasing suspicion
Domain age information unavailable

Details

Page Title

🔐 Trezor @Login | The Official #^Wallet | Secure*

Scan Type

public

Language

🇺🇸

English

(50% confidence)

Category

cryptocurrency

(60%)

Domain Information

The domain name 'pages-trezor-io-login.typedream.app' uses the application-focused generic top-level domain (.app) with subdomain 'pages-trezor-io-login'. The second-level label 'typedream' is 9 characters long holding three vowels versus six consonants. Breaking it apart gives 2 words: type, dream. Median word length comes out to 4.5 characters. Most frequently, 'type' shows up in French. You may catch it in English and Chinese (Pinyin) as well.

Screenshot

Security scan screenshot of https://pages-trezor-io-login.typedream.app/

Page Load Overview

23.44s
Total Load Time
99
HTTP Requests
5
Domains
2.3 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:50%
Script Type:Latin
Text Length:4,835 chars
Detector Agreement:100%

Website Classification

Primary Category

cryptocurrency60% confidence
Type: static
Method: structural

All Detected Categories

cryptocurrency
60%
corporate
50%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
9142.250.181.227United States
AS15169GOOGLE
6104.17.24.14United States
AS13335CLOUDFLARENET
6188.114.96.3United States
AS13335CLOUDFLARENET
6142.250.186.170United States
AS15169GOOGLE
645.43.142.2United Kingdom
AS16276OVH SAS
6188.114.97.3United States
AS13335CLOUDFLARENET
645.43.142.4United Kingdom
AS16276OVH SAS
645.43.142.7United Kingdom
AS16276OVH SAS
62a00:1450:4001:812::2003Frankfurt am Main, Hesse, Germany
AS15169GOOGLE
6104.17.25.14United States
AS13335CLOUDFLARENET
9916--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1B8F2E25A5498101D431A40E3A9B33FC9FA755C7FFB2156D2A9F803A2B39ADF1325860B

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:OoR9poRp9IuWMkPUip2fBlHaJi2owzBzGOoMQZ6mcR7Yp5vduKHYo5nzN5cL/w1g:sFlo

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:36422:xBlUQLgFSGKYI5iIUPmiK4gYhAGwiDpnykmgMfQik8AcgOAAIAIpmESADDBIERBoVXIQBOCCk0gzDRoASxDEME90ECCwBXdA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fc7c1f1f1fff3f1f
Perceptual Hash:9f50f4d107a8f80f
Difference Hash:8ce8377070906474
Wavelet Hash:7cfc01010dfd1f16
Color Hash:#40bfae

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data