Security Scan Report: admin-ad.firebaseapp.com

Submitted: Sep 29, 2026, 7:53:28 AMCompleted: Sep 29, 2026, 7:54:20 AMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 55%

4
Risk Score

Unranked Firebase-hosted placeholder page that copies an IONOS Webmail login description but contains no forms or credential capture; brand reference only, no active phishing or malware evidence observed.

Risk Factors (4)
Hosting-platform subdomain with unknown true creation age, commonly abused for throwaway phishing or template pages
Copied third-party (IONOS Webmail) meta description on an unrelated domain — consistent with an unfinished phishing template or scraped page skeleton
Generic placeholder title ('Sample Background') inconsistent with the claimed webmail service
An unrelated external domain (xmedixn.host) is referenced in the scan, with no legitimate relationship to the page content
Safety Factors (6)
No credential, login, or payment form present in the captured DOM
No Indicators of Compromise matches against the page or its resources
No JavaScript malware (YARA) patterns, no known phishing kit in the kit roster, no high-precision YARA-scanner hits
No network-level IDS/Suricata alerts and no cross-origin credential exfiltration
All JavaScript served same-origin — no third-party script hosts
Verdict cited a credential/login form, but DOM analysis found no password field (real or disguised) or payment field, and no other hard signal — credential-phishing framing unsupported; risk adjusted from 4 to 4
Domain age information unavailable

Details

Page Title

Sample Background

Scan Type

public

Domain Name Analysis

The domain 'admin-ad.firebaseapp.com' uses the commercial generic top-level domain (.com), featuring subdomain 'admin-ad'. Its registrable label 'firebaseapp' stretches across 11 characters with five vowels and six consonants. Breaking it apart gives three words: fire, base, app. Median word length is four characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://admin-ad.firebaseapp.com/

Page Load Overview

0.75s
Total Load Time
10 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:17 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
9199.36.158.100Fastly · CDNUnited States
AS54113Fastly, Inc.
91--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T16D03F9268D467DC15790BF93F1EC69CD1A2DE3D96C830058867AAE94C50DFAC31C66DC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:zHqz7FrHmdlr4tSRF654bDnPYi+fDCUeQ5v1FlCVVXcDjhSpqxgVLm:Adh4PPYBBCVuDWM

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:38714:ygI1qBPi4GUQ4IDDW0AJGiOiRCCUESCCYLFzCzYIgDVSNWwUxEC6TLsAIoKSAQRQQCAwiQLEz5YBKkImQEDDYtIB9beAEiIG

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A

Other Hashes

Crop Resistant:N/A

Scan History

Scan history not available

Unable to load historical scan data