Security Scan Report: connect-trezrlog.framer.ai

Site favicon
Submitted: Dec 4, 2025, 10:51:16 AMCompleted: Dec 4, 2025, 10:52:24 AMpubliccompleted
Loading additional data...

Summary

This website contacted 61 IPs in 2 countries across 7 domains to perform 22 HTTP transactions. The main domain is connect-trezrlog.framer.ai and was registered NaN years ago.

Submitted URL: https://connect-trezrlog.framer.ai/

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Fake Trezor login page on a Framer subdomain – high‑risk phishing.

Risk Factors
Brand impersonation of Trezor on a non‑official domain
Unranked domain (not in Cisco Umbrella top 1 M) used for brand‑specific login page
Misleading page title and content designed to trick users into believing it is an official Trezor login
Domain age information unavailable

Details

Page Title

Trézor Login | Trézor Hardware Wallet (Official)

Scan Type

public

Language

🇺🇸

English

(51% confidence)

Category

finance banking

(66%)

Domain Information

You're looking at domain 'connect-trezrlog.framer.ai' on the Anguillan country-code top-level domain (.ai) and includes subdomain 'connect-trezrlog'. Count 6 characters in 'framer' split between 2 vowels and 4 consonants. Breaking it apart gives 1 word: framer. Average segment length settles at 6 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://connect-trezrlog.framer.ai/

Page Load Overview

0.46s
Total Load Time
22
HTTP Requests
7
Domains
2.0 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:51%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:51%
Script Type:Latin
Text Length:146 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking66% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

finance banking
66%
technology software
51%
documentation technical
28%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
965.9.175.129United States
AS16509AMAZON-02
565.8.131.45United States
AS16509AMAZON-02
365.9.175.99United States
AS16509AMAZON-02
213.226.244.13United States
AS16509AMAZON-02
152.223.52.2United States
AS16509AMAZON-02
145.43.142.7United Kingdom
AS16276OVH SAS
118.245.60.101United States
AS16509AMAZON-02
065.8.131.116United States
AS16509AMAZON-02
065.9.175.34United States
AS16509AMAZON-02
013.226.244.93United States
AS16509AMAZON-02
2261--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1D0638C97616AF1656CD7283EDB2DE42C8D312540FF32C3CBA29E825F45D9AF4229271C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:pzVJVMaj5eHCe+FVHeckVJV4aL9VFaTVhVk9VCwya3BG8X:bx0G8X

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:70728:BgEE4WCEBAsECBQA0DIZk0gaICgc3VetSQEMEENFZBBa8gFNExgAg4BAbAgkCtIPKBkDRYQQhA2AEKSIiQsRCBAoQKABMiaR

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fc1e1f3fff1f17fc
Perceptual Hash:9e55d0f0c307acf8
Difference Hash:8c70737091647585
Wavelet Hash:7c1c0f0f2f1f04f4
Color Hash:#40bf59

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data