Security Scan Report: index-support9.firebaseapp.com

Redirected to:
https://verrifyonline.ru/usaa-verify
Submitted: Sep 30, 2026, 2:54:47 AMCompleted: Sep 30, 2026, 2:55:38 AMpubliccompleted

This website contacted 1 IP in 1 country across 2 domains to perform 4 HTTP transactions. The main domain is verrifyonline.ru and was registered 13 years ago.

Submitted URL: https://index-support9.firebaseapp.com/

Effective URL:

https://verrifyonline.ru/usaa-verify
Redirected

AI Security Verdict

High Risk

Confidence: 72%

7
Risk Score

Firebase-hosted link redirects to verrifyonline.ru/usaa-verify, a deceptive USAA-branded verification URL on an unrelated .ru domain. Payload returned a 502 error, so this is brand-impersonation infrastructure - do not enter any details.

Risk Factors (4)
Deceptive lookalike hostname (verrifyonline.ru) impersonating a 'verify online' service
URL path /usaa-verify invokes the USAA brand on a non-USAA domain
Redirect from free Firebase hosting to an unrelated external domain
Destination infrastructure could not be retrieved (502), hiding any credential-harvesting payload
Domain age information unavailable

Details

Page Title

502 Bad Gateway

Scan Type

public

Domain Name Analysis

You're looking at domain 'index-support9.firebaseapp.com' on the commercial generic top-level domain (.com), featuring subdomain 'index-support9'. The second-level label 'firebaseapp' is 11 characters long holding five vowels versus 6 consonants. Segmentation suggests three words: fire, base, app. The median word length lands at four characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://index-support9.firebaseapp.com/

Page Load Overview

0.18s
Total Load Time
2 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:68 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service72% confidence
Type: static
Method: ml+structural

All Detected Categories

government public service
72%
news media journalism
71%
healthcare medical
67%
adult content
55%
finance banking
54%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4199.36.158.100Fastly · CDNUnited States
AS54113Fastly, Inc.
41--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T107E0C08F6CD2310276B1421205E0F20833E3A11D268CCA1AB4CAC2701E443D6C3278D4

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6:hxuJzhqIzqYeQkVYrGAEdxUBVYrDIkRn+mmH9MDyWE8efYypERX2LWFgz4HX4Qb:hYq/A4xUaR+xHuDMERfgz4IQb

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:1:0:f337b9fd5701b15407fc46fa5efbb81a

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:3fffffffffffffff
Perceptual Hash:870707070f0f1f3f
Difference Hash:c000000000000000
Wavelet Hash:30f0f0f0f0f0f0f0
Color Hash:#405bbf

Other Hashes

Crop Resistant:c000000000000000

Scan History

Scan history not available

Unable to load historical scan data