Security Scan Report: sportsbg-f9609.firebaseapp.com

Submitted: Sep 27, 2026, 12:50:37 AMCompleted: Sep 27, 2026, 12:51:53 AMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 55%

4
Risk Score

Unranked Firebase subdomain showing a generic 'Permission Check' page that collects an email plus a browser fingerprint. No password/payment fields and no threat-intel hits, so no credential phishing proven — treat as unverified and avoid submitting personal data.

Risk Factors (4)
Free/instant-publish Firebase subdomain whose actual page age cannot be established
Email-collecting form combined with browser fingerprinting on an unidentified page with no branding or stated operator
Vague 'Permission Check / Authenticate' framing with security-assurance language but no identifiable service or owner
Unranked domain with no reputation history
Safety Factors (4)
No password, payment, or disguised-credential fields present
No Indicators of Compromise matched against the page or its resources
No JavaScript malware/YARA hits, no network IDS alerts, and no obfuscated or exfiltrating scripts detected
Cross-origin credential submission and credential exfiltration both negative
Domain age information unavailable

Details

Page Title

Authentication

Scan Type

public

Domain Name Analysis

Within the commercial generic top-level domain (.com), 'sportsbg-f9609.firebaseapp.com' is registered and includes subdomain 'sportsbg-f9609'. The registrable portion 'firebaseapp' spans 11 characters split between 5 vowels and 6 consonants. Word splitting yields three words: fire, base, app. Average segment length settles at four characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://sportsbg-f9609.firebaseapp.com/

Page Load Overview

1.25s
Total Load Time
3 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:85 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical45% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

documentation technical
45%
government public service
44%
healthcare medical
36%
news media journalism
30%
technology software
27%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2199.36.158.100Fastly · CDNUnited States
AS54113Fastly, Inc.
1172.67.74.226Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
32--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10561B58BF5F30452B913626867A353043738C5076A88CD693E9CBBA8CF8464589BB7CC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:TBRzqDI99NF12UnrFCRRT61mi1YMYb7/ZJQC7t0/4zChfk6Bg1VlL8e:TBRuqnsUnrFSRTGY/7zQCW/Lk6klL8e

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:3228:EAAEkQAAhACBgJgIAcAICAREEADCMUAAGAGABABAAAkBABAAUQAAQIAoBEKCAADEAxAJAgAWAyAEGiIBAAgAMgARFQoAERAI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffe7e7ffffff
Perceptual Hash:e6cc993366cc9c32
Difference Hash:0008000c4d000800
Wavelet Hash:3c3c3c2407073f3f
Color Hash:#3a7863

Other Hashes

Crop Resistant:0008000c4d000800

Scan History

Scan history not available

Unable to load historical scan data