Security Scan Report: ldger-appstarted.wixstudio.com

Site favicon
Submitted: May 2, 2026, 5:19:57 PMCompleted: May 2, 2026, 5:21:11 PMpubliccompleted
Loading additional data...

Summary

This website contacted 7 IPs in 1 country across 9 domains to perform 94 HTTP transactions. The main domain is ldger-appstarted.wixstudio.com and was registered NaN years ago.

Submitted URL: https://ldger-appstarted.wixstudio.com/eng-app

AI Security Verdict

Moderate Risk

Confidence: 88%

5
Risk Score

The site impersonates Ledger’s brand on an unranked Wixstudio subdomain with no forms but suspicious JavaScript, posing a high‑risk phishing threat.

Risk Factors
Brand impersonation with mismatched domain
Unranked domain in Cisco Umbrella
Typosquatted brand name (ldger vs ledger)
Suspicious JavaScript eval and Function() usage
Hosted on generic Wixstudio subdomain
Safety Factors
Domain age >9 years
No credential or payment forms
No malicious Indicators of Compromise detected
No network IDS alerts
Low JavaScript obfuscation score
Established domain (3422 days old) with no strong malicious indicators — risk clamped from 8 to 5
Domain age information unavailable

Details

Page Title

Getting™ Started | Ledger.com/start®

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

real estate property

(34%)

Domain Information

You're looking at domain 'ldger-appstarted.wixstudio.com' on the commercial generic top-level domain (.com) with subdomain 'ldger-appstarted'. Count 9 characters in 'wixstudio' holding 4 vowels versus five consonants. Word splitting yields three words: wi, x, studio. Average segment length settles at 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ldger-appstarted.wixstudio.com/eng-app

Page Load Overview

6.16s
Total Load Time
84
HTTP Requests
8
Domains
671 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:77 chars
Detector Agreement:100%

Website Classification

Primary Category

real estate property34% confidence
Type: spa
Method: ml+structural

All Detected Categories

real estate property
34%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1254.225.81.254Ashburn, Virginia, United States
AS14618Amazon.com, Inc.
1234.149.206.255Kansas City, Missouri, United States
AS396982Google LLC
1234.144.206.118Kansas City, Missouri, United States
AS396982Google LLC
1234.49.229.81Kansas City, Missouri, United States
AS396982Google LLC
1265.8.131.125United States
AS16509Amazon.com, Inc.
12151.101.2.217United States
AS54113Fastly, Inc.
1234.160.37.117Kansas City, Missouri, United States
AS396982Google LLC
847--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T193748EB4E301F13A4E2731AF5389BB0C513D50515D524A2EFAEC916419D7FEA22E3B3A

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:WdzS6TQ8IIxlJbn6uZuHuKtVcosWtVcosClcuhpqY9LDebmlTK4weiwi+n4fSBSq:WdzSP8IYlgz0Yx+4we54XcEY

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:339590:0IDkiRFVgBCaRoNsABEAEjEgAFBmRAQyFsEU4hCAAQ0UEK7ZxgAWuYBgBA0WUgjrQMYAjQJjBqMIwAMjIkBhJIwOUYIjgCRC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:b181878f8f8f8f8d
Perceptual Hash:bb6c6cc499959dc0
Difference Hash:43611d19195d5d59
Wavelet Hash:e181838f8f8f8f89
Color Hash:#40bf59

Scan History

Scan history not available

Unable to load historical scan data