The author put some text in base64 in the URL:s, perhaps the original had information encoded in such a way that might leak something interesting.
"Not the real HSBC", and "Also not real HSBC" respectively.