Security Scan Report: netflix-71f05.firebaseapp.com

Redirected to:
https://netflix-71f05.firebaseapp.com/
Site favicon
Submitted: Sep 27, 2026, 12:45:29 AMCompleted: Sep 27, 2026, 12:46:43 AMpubliccompleted

This website contacted 1 IP in 1 country across 1 domain to perform 13 HTTP transactions. The main domain is netflix-71f05.firebaseapp.com and was registered 13 years ago.

Submitted URL: http://netflix-71f05.firebaseapp.com/

Effective URL:

https://netflix-71f05.firebaseapp.com/
Redirected

AI Security Verdict

Confirmed Scam

Confidence: 97%

10
Risk Score

Fake Netflix sign-in page hosted on a free firebaseapp.com subdomain, using Netflix branding and UK pricing. Multi-feed phishing intelligence plus a Google Safe Browsing Social Engineering hit confirm it is a scam. Do not enter credentials.

Risk Factors (5)
Impersonation of Netflix brand on a domain that is not netflix.com
Safe Browsing Social Engineering detection
Multi-source phishing threat-intelligence match on the primary domain
Free shared hosting platform subdomain (firebaseapp.com) with unknown tenant creation date
Clone of a real brand's exact marketing copy, UK pricing and footer links to funnel victims to a sign-in step
Domain age information unavailable

Details

Page Title

Netflix

Scan Type

public

Domain Name Analysis

The domain name 'netflix-71f05.firebaseapp.com' uses the commercial generic top-level domain (.com) and includes subdomain 'netflix-71f05'. The second-level label 'firebaseapp' is 11 characters long with five vowels and 6 consonants. Tokenizing the label suggests 3 words: fire, base, app. Expect four characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://netflix-71f05.firebaseapp.com/

Page Load Overview

4.49s
Total Load Time
695 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:2,592 chars
Detector Agreement:100%

Website Classification

Primary Category

entertainment media82% confidence
Type: static
Method: ml+structural

All Detected Categories

entertainment media
82%
technology software
64%
finance banking
55%
blog personal website
54%
social media network
51%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
13199.36.158.100Fastly · CDNUnited States
AS54113Fastly, Inc.
131--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1AE2275B96585207B573749C57117E70EB2A3C03AE5076CA83BF8CE6A5FE5F0A86B1180

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:TG9p71P2gmsElK1H6bC9EZWaVonoaIPU8/flSU1xfkUVhty8aMfjUkfwUb2Ln1Hg:a9F1egjP6RWImC+U29jwnJsGxg1JpBOf

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:9962:ZIAAmJFCLBg0iMoEQjEBRUCRJSQSCmgCDAl5hpi5CmDOEhDtKhWoEsIcBECAD4Fb8QOtBAWCBNAAACghlVwQIFCVCARiAIqg

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:000018fdff41000c
Perceptual Hash:9a6c33649a6cb31b
Difference Hash:25e43321e18739d9
Wavelet Hash:0100f9fffff7000c
Color Hash:#bfd279

Scan History

Scan history not available

Unable to load historical scan data