Security Scan Report: trezorsurgedevices.web.app

Submitted: Nov 5, 2025, 2:48:57 PMCompleted: Nov 5, 2025, 2:52:26 PMpubliccompleted
Loading additional data...

Summary

This website contacted 16 IPs in 2 countries across 5 domains to perform 38 HTTP transactions. The main domain is trezorsurgedevices.web.app and was registered NaN years ago.

Submitted URL: https://trezorsurgedevices.web.app/option.html

AI Security Verdict

High Risk

Confidence: 92%

7
Risk Score

Site impersonates Trezor on an unranked domain; high‑risk phishing.

Risk Factors
Brand impersonation (Trezor) on an unranked, unrelated domain
UNRANKED domain status combined with brand claims
Use of a generic hosting subdomain (web.app) to mimic a reputable hardware‑wallet provider
Domain age information unavailable

Details

Page Title

Trezor Hardware Wallet (Official) | Bitcoin & Crypto Security

Scan Type

public

Language

🇺🇸

English

(50% confidence)

Category

cryptocurrency blockchain

(64%)

Domain Information

The domain name 'trezorsurgedevices.web.app' uses the application-focused generic top-level domain (.app) with subdomain 'trezorsurgedevices'. Its registrable label 'web' stretches across 3 characters split between 1 vowel and two consonants. Breaking it apart gives 1 word: web. 'web' most strongly signals Tagalog. Usage also turns up in Breton and Sinhala contexts.

Screenshot

Security scan screenshot of https://trezorsurgedevices.web.app/option.html

Page Load Overview

0.80s
Total Load Time
38
HTTP Requests
5
Domains
382 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:50%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,107 chars
Detector Agreement:100%

Website Classification

Primary Category

cryptocurrency blockchain64% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

cryptocurrency blockchain
64%
cryptocurrency
30%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
16172.66.134.245United States
AS13335CLOUDFLARENET
13199.36.158.100United States
AS54113FASTLY
2104.16.174.226United States
AS13335CLOUDFLARENET
2104.16.175.226United States
AS13335CLOUDFLARENET
2142.250.184.227United States
AS15169GOOGLE
2142.250.185.202United States
AS15169GOOGLE
2142.250.185.227United States
AS15169GOOGLE
2172.66.137.111United States
AS13335CLOUDFLARENET
22606:4700:10::ac42:86f5United States
AS13335CLOUDFLARENET
22606:4700:10::ac42:896fUnited States
AS13335CLOUDFLARENET
3816--

Detected Technologies5

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T195E3236B8BA311461807A8545BEF2A542270D027D68AFDE83DDE538CCF97ACCD8D235D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:szRX48EFoChrRZ83si+zztwq27xrYM2mCNwLBO:0Iy3si+zztwq27xrwwg

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:152396:KFoAgoQAczxNA9MhWHAMRJCCgDIcAAwigTAMBVIAgBFAmJnpYQgJQQAVAAIZEDHKNaAgUH2AeFCsogwJAq5YiAaGAzDwDNkg

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffe7c181e7c7ff
Perceptual Hash:b38c9c69cc63e23c
Difference Hash:301e4c0b2b4f0f30
Wavelet Hash:fe8ee68080c381ff
Color Hash:#931f6d

Scan History

Scan history not available

Unable to load historical scan data