Security Scan Report: fr-notificationsecu.firebaseapp.com

Redirected to:
https://connectauthentificationsecu.nl/fr-Wetransfer/
Submitted: Oct 8, 2026, 8:56:54 PMCompleted: Oct 8, 2026, 8:57:51 PMpubliccompleted

This website contacted 1 IP in 1 country across 2 domains to perform 3 HTTP transactions. The main domain is connectauthentificationsecu.nl.

Submitted URL: https://fr-notificationsecu.firebaseapp.com/

Effective URL:

https://connectauthentificationsecu.nl/fr-Wetransfer/
Redirected

AI Security Verdict

High Risk

Confidence: 62%

7
Risk Score

Free Firebase subdomain named like a security notification redirects to connectauthentificationsecu.nl/fr-Wetransfer/, a deceptive hostname pair mimicking WeTransfer and a 'secure authentication' page. Content was unreachable (502), but the phishing redirect chain shape warrants avoidance.

Risk Factors (5)
Deceptive hostname and path combination ('notificationsecu' subdomain -> 'connectauthentificationsecu' domain -> fr-Wetransfer path) forming a classic phishing redirect chain
Unrelated cross-registrable-domain redirect from a free hosting platform subdomain to an unrelated .nl domain
WeTransfer brand referenced in the URL path on a non-WeTransfer domain
Unranked destination domain (not in Cisco Umbrella top 1M) with unknown creation date
Destination page unreachable (502), consistent with short-lived phishing infrastructure
Domain age information unavailable

Details

Page Title

502 Bad Gateway

Scan Type

public

Domain Name Analysis

You're looking at domain 'fr-notificationsecu.firebaseapp.com' on the commercial generic top-level domain (.com) with subdomain 'fr-notificationsecu'. Its registrable label 'firebaseapp' stretches across 11 characters split between 5 vowels and six consonants. Tokenizing the label suggests 3 words: fire, base, app. The median word length lands at four characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://fr-notificationsecu.firebaseapp.com/

Page Load Overview

5.60s
Total Load Time
1 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:64%
Script:Latin
Direction:ltr

Detection Details

Text Length:84 chars
Detector Agreement:100%

Website Classification

Primary Category

news media journalism38% confidence
Type: static
Method: ml+structural

All Detected Categories

news media journalism
38%
government public service
28%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3199.36.158.100Fastly · CDNUnited States
AS54113Fastly, Inc.
31--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T13BF0DCDF6A4030E21683211AA186F05CF8ABCCAC649980B4C5D226890A10325F1A3BD3

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6:A0gYs0kMRJlKIOCDMwBQJmmHBq9yVaMXeKP1qbKZgIhSAhuPoljQ6s1foAljo8n:AAkM8WDgxHcMVaMXz7XxhuPqWFoAho8n

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:1:0:34821cb6baa7b471e6cd2185fa2fafd6

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:3fffffffffffffff
Perceptual Hash:870707070f0f1f3f
Difference Hash:c000000000000000
Wavelet Hash:30f0f0f0f0f0f0f0
Color Hash:#8c40bf

Other Hashes

Crop Resistant:c000000000000000

Scan History

Scan history not available

Unable to load historical scan data