Security Scan Report: xoerkxr.com

Redirected to: https://trustwallet.com/download

Submitted: Mar 23, 2026, 2:42:17 PMCompleted: Mar 23, 2026, 2:43:02 PMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 2 countries across 6 domains to perform 83 HTTP transactions. The main domain is trustwallet.com and was registered NaN years ago.

Submitted URL: https://xoerkxr.com/

Effective URL: https://trustwallet.com/downloadRedirected

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Site redirects to Trust Wallet but triggers a suspicious ELF download; likely malicious malware distribution.

Risk Factors
Critical network IDS alert indicating executable (ELF) download
Brand impersonation via meta tags on an unrelated, unranked domain
Domain age information unavailable

Details

Page Title

Get the Trust Wallet App Now | Trust

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(73%)

Domain Information

Domain 'xoerkxr.com' uses the commercial generic top-level domain (.com) and has no subdomain. The second-level label 'xoerkxr' is 7 characters long containing 2 vowels alongside 5 consonants. Splitting it apart reveals 5 words: xo, e, rk, x, r. Expect one character per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://xoerkxr.com/

Page Load Overview

2.84s
Total Load Time
83
HTTP Requests
8
Domains
440 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:6,939 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software73% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
73%
cryptocurrency blockchain
71%
finance banking
61%
government public service
55%
documentation technical
48%

Detected Features

Search
OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
19172.66.138.67United States
AS13335Cloudflare, Inc.
16172.66.134.28United States
AS13335Cloudflare, Inc.
16172.67.196.218United States
AS13335Cloudflare, Inc.
16142.251.36.104GermanyUnknown
16185.111.111.158GermanyUnknown
835--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1CD74F766E680E367E846AFDCA27EAD75B03F5C6EFBC3DA0782D4C9245105CB85542EC0

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:CQzDVA/arPXqF1GrDV6gariXqSf1dVGQCXe0DDXe0yyHhl+PurVD6thXe0uZyeFQ:1jOgFqnournQ4i

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:342371:kCr3UgZMAQmM94cCXCAMROAAGAkKiEJEMBDATFQLKmAgBCYKiGOFwQQAcAEQjEcsaBYgGYbGQGBR7yUImgCSEI4HBbgAAABA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff818181ffffffff
Perceptual Hash:ed69d292926966c3
Difference Hash:802b2b2b2f36162e
Wavelet Hash:7e818181d7c3c3d7
Color Hash:#441f93

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data