Security Scan Report: banbif-ie.firebaseapp.com

Submitted: Sep 26, 2026, 11:50:48 PMCompleted: Sep 26, 2026, 11:52:15 PMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 92%

9
Risk Score

Firebase-hosted clone of BanBif Peruvian e-banking with a login form and a primary-domain phishing report — clear brand impersonation and credential phishing. Do not enter any credentials.

Risk Factors (5)
Impersonation of BanBif bank on a domain that is not banbif.com / banbif.pe
Login/password field on an impersonating, unranked domain
Primary-domain phishing report (Indicators of Compromise)
Fabricated banking data (S/ 87,654.345 balances, fictional accounts) used to mimic an e-banking session
Free shared-hosting subdomain masking true page age
Domain age information unavailable

Details

Page Title

Banbif - Posición global

Scan Type

public

Domain Name Analysis

Within the commercial generic top-level domain (.com), 'banbif-ie.firebaseapp.com' is registered with subdomain 'banbif-ie'. The core label 'firebaseapp' covers 11 characters containing 5 vowels alongside six consonants. Word splitting yields 3 words: fire, base, app. The median word length lands at four characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://banbif-ie.firebaseapp.com/

Page Load Overview

3.20s
Total Load Time
832 KB
Total Size

Language Analysis

Primary Language

🇪🇸Spanish
Code: es
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:es
Text Length:13,252 chars
Detector Agreement:75%

Website Classification

Primary Category

finance banking98% confidence
Type: static
Method: ml+structural

All Detected Categories

finance banking
98%
corporate business
81%
government public service
61%
technology software
54%
adult content
49%

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
13199.36.158.100Fastly · CDNUnited States
AS54113Fastly, Inc.
12104.18.8.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
252--

Detected Technologies5

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17B54FC20E0F12127818741DBF6666F6B2AD9D25BDA0B461473FD07F61FC2CA6EA1B40D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:nt1+ENYazdLI8SDuk2ksOsOiaR8loW9oUZS8a+Q4M:nt1+ENYazdLI8SDuk2ksOsOiaR8loW9O

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:304758:nhgUBLAOSA4DDkFWBQzMITJCoAhWjDiWOsRQJoyMBhxKQiQCbEHxAaADANyQUGAoqACAVYC4ijQ0IIhglQCcJlwCqA4YGENg

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:3c3fffffffffdb00
Perceptual Hash:d4c25ada52d856f8
Difference Hash:d8e666e6e4a2b2aa
Wavelet Hash:0c10773737ffda00
Color Hash:#8f1f93

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data