Security Scan Report: o2-billing-recovery.firebaseapp.com

Site favicon
Submitted: Sep 29, 2026, 2:54:53 AMCompleted: Sep 29, 2026, 2:55:38 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 68%

7
Risk Score

Deceptive 'o2-billing-recovery' hostname on free Firebase hosting impersonates the O2 telecom brand. Page failed to render, but this is a classic billing-phishing lure; no forms captured. Avoid.

Risk Factors (4)
Brand impersonation of O2 via deceptive hostname on a free hosting platform
'Billing recovery' social-engineering lure targeting a telecom customer base
Unranked domain with unknown subdomain age
External IP-lookup domain contacted (ipapi.co)
Domain age information unavailable

Details

Page Title

o2

Scan Type

public

Domain Name Analysis

Domain 'o2-billing-recovery.firebaseapp.com' uses the commercial generic top-level domain (.com); it also runs on subdomain 'o2-billing-recovery'. Count 11 characters in 'firebaseapp' containing five vowels alongside 6 consonants. Breaking it apart gives three words: fire, base, app. Average segment length settles at 4 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://o2-billing-recovery.firebaseapp.com/

Page Load Overview

0.65s
Total Load Time
1.6 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:2 chars
Detector Agreement:0%

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
8199.36.158.100Fastly · CDNUnited States
AS54113Fastly, Inc.
4104.26.9.44Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4192.178.183.94Google · CDNUnited States
AS15169Google LLC
4142.251.13.94Google · CDNUnited States
AS15169Google LLC
4142.251.127.94Google · CDNUnited States
AS15169Google LLC
245--

Detected Technologies6

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1C835CFBBAE476FCABF71140355DE12C30D0EDB03916A22B5B70D94AA590EE746BF940C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

12288:TiOqX+YIU/xZXLby4i6rrx0jk/UFsPHngdbbOqX+YIU/x4jc4i6rrx0jk/UFsPHH:T+OFU/Pvy5EofOFU/Ojc5Eo6

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1063733:x4X0YUkgAUI0GMuAAFNAAAGjK0rHOlUVgLwMAWAcJJCMAHx0QLLCQIwAQQCGAwEmA4IShsgJIQ5b6aOSwo2waCiUAQMMgABT

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffe7e7ffffff
Perceptual Hash:a2dd887722dd8876
Difference Hash:0000000808000000
Wavelet Hash:0f0f0f0707070f0f
Color Hash:#e08b6c

Other Hashes

Crop Resistant:0000000808000000

Scan History

Scan history not available

Unable to load historical scan data