Security Scan Report: startpublics.ghost.io

Site favicon
Submitted: Feb 25, 2026, 4:49:32 PMCompleted: Feb 25, 2026, 4:50:43 PMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 2 countries across 2 domains to perform 10 HTTP transactions. The main domain is startpublics.ghost.io and was registered NaN years ago.

Submitted URL: https://startpublics.ghost.io/us-en/

The Cisco Umbrella rank of the primary domain is #42,708 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 85%

7
Risk Score

Page impersonates Trezor on a non‑official domain; likely phishing – avoid.

Risk Factors
Brand impersonation via meta tags on a non‑official domain
Domain mismatch with claimed brand
Low ranking (100k) for a brand‑specific page
Email collection form on a phishing‑styled page
Domain age information unavailable

Details

Page Title

Trézor.io/Start™ — Secure & Activate Your Device | Trezor® Official

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(66%)

Domain Information

The domain 'startpublics.ghost.io' uses the British Indian Ocean Territory country-code top-level domain (.io); it also runs on subdomain 'startpublics'. The second-level label 'ghost' is 5 characters long with one vowel and 4 consonants. Splitting it apart reveals 1 word: ghost. Median word length comes out to 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://startpublics.ghost.io/us-en/

Page Load Overview

0.65s
Total Load Time
14
HTTP Requests
2
Domains
638 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:4,718 chars
Detector Agreement:75%

Website Classification

Primary Category

technology software66% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
66%
cryptocurrency blockchain
60%
corporate
35%
news/blog
30%

Detected Features

Articles
OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
7104.16.174.226United States
7146.75.123.7Frankfurt am Main, Hesse, Germany
AS54113Fastly, Inc.
142--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T166B21B3AB3A82639191302DAA5D53B097A2BD04BE16C1A8175FCC1685FC1DF6683375E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:0mnsf7p04wpKsIsAA6fHCtHpbSBsU/6OYBE9Wpyd2xrrVf9m0z+F8jo13avDB:DsfV04wpKsIsAA6fHCtHpbkvxYBUBYRf

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:24203:I7IBgwBECDKhkidIAIaFBwsAiYBIKRDAbBwIENCcIEgDihEwTKjBRhXKBpIwZD8BA4iiMEOAEMduggQAiAAEgCXKwAAIiysS

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fdc3c3c3cfcfcfcf
Perceptual Hash:b066cacbcecb9a18
Difference Hash:491c960e1c18181c
Wavelet Hash:a0c2c3c3c3c7cfc6
Color Hash:#a653ac

Other Hashes

Crop Resistant:491c960e1c18181c

Scan History

Scan history not available

Unable to load historical scan data