hofaso[.]do
“.”
ملخص الأدلة
The domain hofaso.do was registered on 21 February 2026 and is presently taken offline. DNS resolution points to the IPv4 address 185.231.33.130, which is announced by AS211720 belonging to Datashield, Inc. and geolocated to South Carolina, United States. The host presents an SSL certificate identified as R12, indicating the use of a short‑lived or self‑signed certificate typical of malicious infrastructure. Reputation services have flagged the domain: three of ninety‑three VirusTotal scanners reported detections, and the site is listed on a single external blocklist.
Additionally, the PhishDestroy feed has actively blocked the domain. The page title returned by HTTP queries is a single period (“.”), providing no insight into the intended impersonated brand or lure technique. No public evidence of the landing page content, credential‑capture forms, or redirect behavior is available, and the site does not appear to be serving active traffic at the time of analysis. Given the limited but concrete indicators—recent registration, dedicated IP under a known hosting ASN, low‑level TLS certificate, and multi‑vendor detection—it is prudent for defensive teams to treat hofaso.do as a malicious phishing vector until further remediation.
Organizations should add the domain and its resolving IP address to network‑level deny lists, enforce DNS filtering that incorporates the observed blocklist entry, and ensure that web‑proxy and email security gateways reference the PhishDestroy feed. Continuous monitoring of the IP space owned by Datashield, Inc. may reveal additional related artifacts. Because the site is offline, active response options such as sinkholing are not applicable, but threat‑intel correlation with other observed campaigns that share the same ASN or certificate profile could surface broader attribution.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب