Security Scan Report: 6768wa654.firebaseapp.com

Site favicon
Submitted: Sep 29, 2026, 11:52:54 PMCompleted: Sep 29, 2026, 11:53:26 PMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 55%

5
Risk Score

Empty 'waiting' page on an unranked firebase subdomain that POSTs to an external unranked PHP endpoint. No forms, malware, or threat-intel hits, but the hidden background beacon and lack of any legitimate purpose warrant caution.

Risk Factors (2)
Outbound POST from an otherwise empty page to an unranked third-party PHP endpoint (possible hidden beacon/exfiltration sink)
Unranked domain with no reputation and no legitimate identifiable purpose for its content
Safety Factors (4)
No credential, password, or payment forms present (0 forms, 0 password fields)
No Indicators of Compromise matches against the page or its resources
No JavaScript malware (YARA) patterns and no high-precision native-YARA hits
No network-level IDS alerts and no known kit roster matches
Domain age information unavailable

Details

Page Title

waiting

Scan Type

public

Domain Name Analysis

Within the commercial generic top-level domain (.com), '6768wa654.firebaseapp.com' is registered and includes subdomain '6768wa654'. Count 11 characters in 'firebaseapp' split between 5 vowels and six consonants. Splitting it apart reveals three words: fire, base, app. Median word length is 4 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://6768wa654.firebaseapp.com/

Page Load Overview

0.25s
Total Load Time
15 KB
Total Size

Language Analysis

Primary Language

🏳️UNKNOWN
Code: unknown
Confidence:0%

Detection Details

Text Length:7 chars
Detector Agreement:0%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2199.36.158.100Fastly · CDNUnited States
AS54113Fastly, Inc.
1195.181.248.199Slovakia
AS8648dogado GmbH
32--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1D6F2677105E74F949A88C4DB253D644B29AA10978CCEF781BBDEA1212FDC10C76F7A72

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:xw/nlQy6Zv+tIqJhBQC2d1m0AcPjd4+2cH/38ru7f2nVRlu1TJs7RQJq6OPxMpoy:tiQTdkql28opMzjkP+zV+Vvut

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:35503:PEi4QDICQSGJoVAACAMAMhoAIwhGnscGCNAFOBgIRODgGcAMp4GhMVBLggA5hXAeCIzAGNIbADnRdIVEBJJCkkNlBiQGJqR0

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A

Other Hashes

Crop Resistant:N/A

Scan History

Scan history not available

Unable to load historical scan data