Security Scan Report: nexoexterior.web.app

Site favicon
Submitted: Sep 23, 2026, 9:50:07 PMCompleted: Sep 23, 2026, 9:51:30 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 72%

7
Risk Score

Unauthorized clone of Banco Exterior's branding hosted on a free Firebase subdomain, with DevTools blocking and eval-heavy JS. No credential form captured, but clear brand impersonation — treat as high-risk and avoid entering any data.

Risk Factors
Impersonation of a DIFFERENT entity's brand (Banco Exterior) on a non-official domain
Hosted on free shared platform (.web.app) where subdomains can be created anonymously and aged arbitrarily
Domain unranked (not in Cisco Umbrella top 1M) despite claiming a major national bank identity
DevTools/right-click/source-view blocking with dynamic eval() execution
Financial/banking content clone with no verifiable connection to the legitimate institution
Domain age information unavailable

Details

Page Title

Inicio - Banco Exterior

Scan Type

public

Domain Name Analysis

Within the application-focused generic top-level domain (.app), 'nexoexterior.web.app' is registered, featuring subdomain 'nexoexterior'. Count 3 characters in 'web' split between 1 vowel and two consonants. Splitting it apart reveals one word: web. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://nexoexterior.web.app/

Page Load Overview

23.87s
Total Load Time
12.2 MB
Total Size

Language Analysis

Primary Language

🇪🇸Spanish
Code: es
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:es
Text Length:5,472 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking90% confidence
Type: spa
Method: ml+structural

All Detected Categories

finance banking
90%
corporate business
86%
cryptocurrency blockchain
66%
technology software
65%
government public service
45%

Detected Features

Articles
OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
23199.36.158.100Fastly · CDNUnited States
AS54113Fastly, Inc.
23200.16.95.182Venezuela
AS262176BANCO EXTERIOR
23142.251.14.138Google · CDNUnited States
AS15169Google LLC
2334.96.90.98Google · CDNKansas City, Missouri, United States
AS396982Google LLC
23142.251.14.139Google · CDNUnited States
AS15169Google LLC
1155--

Detected Technologies9

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T134D02BDF6A29A08B6F59B080D8E03F18443FAFC93851D942E6C41528449432E2B54139

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6:hB1KzILki+16hqzKcHDYXbvcypA9g7KdaCeV9g7JuB9d:hPIs+1jFDYXbkypAqkTeVq9G

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:1:0:ee7ea473f4742d945dc7a507a8c921d9

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0200ffffffff1f00
Perceptual Hash:8ef12e95639ce390
Difference Hash:9e8641311b74b261
Wavelet Hash:020e8303ffff1f00
Color Hash:#40bf62

Scan History

Scan history not available

Unable to load historical scan data