apply-9at[.]pages[.]dev
فحص التصيد والأمان للنطاق apply-9at.pages.dev
“Security Verification Required”
apply-9at.pages.dev — آخر نشاط معروف (HTTP 200). انتحال العلامة التجارية: PayPal; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 3/91 (alphaMountain.ai, Sophos, Webroot); URLQuery 4 alerts; PhishDestroy score 76/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy identifies apply-9at.pages.dev as a live phishing domain impersonating PayPal to harvest credentials and payment data. This site is actively hosted on Cloudflare Pages with a Google Trust Services SSL certificate, lending false legitimacy to its fraudulent login portals. Despite zero VirusTotal detections as of this advisory, the domain’s infrastructure remains under active monitoring.
This domain was flagged with zero detections on VirusTotal (4/95 engines) and resolves to IP 172.66.45.10 through Cloudflare, Inc. Registrations via Cloudflare Pages often mask malicious intent due to legitimate infrastructure abuse, though no active blocklists have flagged this domain yet. Its use of a verifiable SSL certificate further complicates detection for end users.
Users who visited apply-9at.pages.dev should immediately check browser history for unauthorized logins or payment submissions. Scan devices with updated antivirus software and revoke any saved credentials exposed on this site. Report the domain to your bank and PayPal’s fraud team if financial details were entered. Avoid reusing passwords across services to prevent credential stuffing attacks.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | newassets.hcaptcha.com/captcha/v1/9abe19f0c4a8a3dfa7147f989a6f693ecec2228b/static/hcaptcha.html#frame=challenge&id=0r03kk4ifu0q&host=apply-9at.pages.dev&sentry=true&reportapi=https%3a%2f%2faccounts.hcaptcha.com&recaptchacompat=true&custom=false&hl=en&tp |
audit | Hunting_JS_WebAssembly |
| Private YARA rules | js.hcaptcha.com/1/api.js |
audit | Hunting_JS_WebAssembly |
| Private YARA rules | newassets.hcaptcha.com/captcha/v1/9abe19f0c4a8a3dfa7147f989a6f693ecec2228b/static/hcaptcha.html#frame=checkbox&id=0r03kk4ifu0q&host=apply-9at.pages.dev&sentry=true&reportapi=https%3a%2f%2faccounts.hcaptcha.com&recaptchacompat=true&custom=false&hl=en&tpl |
audit | Hunting_JS_WebAssembly |
| Private YARA rules | newassets.hcaptcha.com/c/08b85f9c87cf91b75330a00d8b3e0e4c0756252d81ed629ca7f9d52a35a3163d/hsw.js |
audit | Hunting_JS_WebAssembly |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of apply-9at.pages.dev · checked Apr 13, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب