Security Scan Report: menuwerm.firebaseapp.com

Redirected to:
https://service-twint.org/FR
Submitted: Oct 2, 2026, 10:54:31 AMCompleted: Oct 2, 2026, 10:55:30 AMpubliccompleted

This website contacted 1 IP in 1 country across 2 domains to perform 3 HTTP transactions. The main domain is service-twint.org and was registered 13 years ago.

Submitted URL: https://menuwerm.firebaseapp.com/

Effective URL:

https://service-twint.org/FR
Redirected

AI Security Verdict

Moderate Risk

Confidence: 55%

4
Risk Score

Only a 502 error/redirection stub was served, redirecting from a free Firebase subdomain to an unrelated unranked domain; no forms, IoC, or malware found, but the cross-domain hop plus a phishing ML label warrant caution.

Risk Factors (3)
Cross-domain hop from a free Firebase subdomain to an unrelated, unranked domain with unknown creation date
Content analyzer flags the page as phishing scam (67% confidence)
No verifiable legitimate site was actually served — only a gateway error / redirection stub
Safety Factors (6)
No Indicators of Compromise matched against the page or its resources
No JavaScript malware (YARA) patterns and no behavioral JS signals detected
No native-YARA high-precision hits and no known malicious kit in the kit roster
No network IDS/Suricata alerts and no cross-origin credential exfiltration
Zero forms — no password, payment or hidden credential fields to harvest
All JavaScript originated from the site's own domain; no third-party script hosts
Domain age information unavailable

Details

Page Title

502 Bad Gateway

Scan Type

public

Domain Name Analysis

The domain name 'menuwerm.firebaseapp.com' uses the commercial generic top-level domain (.com) and includes subdomain 'menuwerm'. Its registrable label 'firebaseapp' stretches across 11 characters containing five vowels alongside 6 consonants. Word splitting yields 3 words: fire, base, app. Average segment length settles at 4 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://menuwerm.firebaseapp.com/

Page Load Overview

1.42s
Total Load Time
1 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-US
Text Length:30 chars
Detector Agreement:100%

Website Classification

Primary Category

phishing scam67% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

phishing scam
67%
adult content
37%
real estate property
30%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3199.36.158.100Fastly · CDNUnited States
AS54113Fastly, Inc.
31--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F8F0D44F9CE1A0515251404556D2F44CAD4344BF559854F8FACC65904F49A16F0D77A8

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

12:/wMxCXzqJmr2xHG0DFbjX3EdZ7XxhuNCkJzR0bNmoQb:/wMxCgZDFbjkbvihR0bQ

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:524:AAAAAAAAIAAAAAAAAAAAAAAAAAAAAAAAAAEBAAAAAAAgAAAAABACgAAAAAAAAAAEAAAAAQBAAAAAAAAAAEAAAAAAAAAAAAAA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:3fffffffffffffff
Perceptual Hash:870707070f0f1f3f
Difference Hash:c000000000000000
Wavelet Hash:30f0f0f0f0f0f0f0
Color Hash:#a0ac53

Other Hashes

Crop Resistant:c000000000000000

Scan History

Scan history not available

Unable to load historical scan data