Security Scan Report: online-etaxis.firebaseapp.com

Site favicon
Submitted: Oct 27, 2025, 12:08:59 AMCompleted: Oct 27, 2025, 12:09:38 AMpubliccompleted
Loading additional data...

Summary

This website contacted 16 IPs in 1 country across 5 domains to perform 40 HTTP transactions. The main domain is online-etaxis.firebaseapp.com.

Submitted URL: https://online-etaxis.firebaseapp.com/

AI Security Verdict

High Risk

Confidence: 92%

9
Risk Score

Impersonates Cyprus tax authority on a generic Firebase domain; high‑risk phishing.

Risk Factors
Brand impersonation on an unusual, generic hosting domain
Unranked/low‑reputation domain
Likely newly registered domain
Domain age information unavailable

Details

Page Title

Επιστροφή ΦΠΑ

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

The domain 'online-etaxis.firebaseapp.com' uses the commercial generic top-level domain (.com) with subdomain 'online-etaxis'. The core label 'firebaseapp' covers 11 characters holding five vowels versus six consonants. It segments into three words: fire, base, app. The median word length lands at 4 characters. Most frequently, 'fire' shows up in Danish. Usage also turns up in Norwegian and Chinese (Pinyin) contexts.

Screenshot

Security scan screenshot of https://online-etaxis.firebaseapp.com/

Page Load Overview

18.04s
Total Load Time
40
HTTP Requests
5
Domains
642 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:602 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
10104.16.174.226United States
AS13335CLOUDFLARENET
2199.36.158.100United States
AS54113FASTLY
2205.234.175.175United States
AS30081CACHENETWORKS
2104.26.13.205United States
AS13335CLOUDFLARENET
2104.26.8.44United States
AS13335CLOUDFLARENET
2104.16.175.226United States
AS13335CLOUDFLARENET
2172.67.69.226United States
AS13335CLOUDFLARENET
22606:4700:20::681a:92cUnited States
AS13335CLOUDFLARENET
22606:4700:20::ac43:45e2United States
AS13335CLOUDFLARENET
22606:4700::6810:aee2United States
AS13335CLOUDFLARENET
4016--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1CC32B57AB801CE5F98235D996079EF3D91CED55FCA12C8E8B3ECC6001BC5CB29A91D85

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:TJRJZutrTXNnvbz2cMNVuu3DUyMFsb//WgnqzcJm0MtLhPm/vzCa:j3utrTXBvbzY3DUyCsP/MtLhPm/v7

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:11437:IDKt8BrmAGBBNDCKgiADm4VOYBEgZlAFFKJJAADjECEIHHILEYTOYREgEmIRQAgoSMPBwI4BFkFuQ+BhzgzAimhAFQlBBxYL

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:c0ffffffff000000
Perceptual Hash:f2f65870f86258e2
Difference Hash:09304c0c08898db1
Wavelet Hash:80ffffefff000000
Color Hash:#5391ac

Scan History

Scan history not available

Unable to load historical scan data