الانتقال إلى تقرير الأمان
Checked 09/08/2026 Ref C76E488B

MALICIOUS — CRITICAL

hotdao-app[.]pages[.]dev

0 of 91 security engines flagged the domain; the latest stored check returned HTTP 403.

80/100 evidence score · Critical
VirusTotal
0/91
Blocklists
No stored match
التوفر
يمكن الوصول إليها · الوصول مقيد · HTTP 403
Report / Add Evidence Appeal this listing
2026-06-15 17:21 UTCيمكن الوصول إليها · الوصول مقيد · HTTP 403

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
قام تحليل الطب الشرعي PhishDestroy بوضع علامة على هذا المجال. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
Jump to section
ملخص التقرير

hotdao-app.pages.dev — يمكن الوصول إليها · الوصول مقيد (HTTP 403). انتحال العلامة التجارية: Google; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 0/91; Google Safe Browsing flagged; PhishDestroy score 80/100. مسجّل النطاق: Cloudflare.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

Evidence Digest

Ref C76E488B

hotdao-app.pages.dev is classified critical with an evidence score of 80/100. 0 of 91 security engines flagged the domain. Registered 15 Jun 2026 via Cloudflare, Inc., hosted on 172.66.44.97 (Cloudflare, Inc., CA). The latest stored check on 9 Aug 2026 returned HTTP 403 and includes a capture.

Stored generated summary (templated)mistral · 25/06/2026

Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.

This domain, hotdao-app.pages.dev, is flagged for brand impersonation targeting Google, a high-value target for credential theft and fraud. The site presents itself as an official Google service under the deceptive page title 'Hot Protocol,' attempting to trick users into entering sensitive information such as login credentials, payment details, or authentication codes. Brand impersonation of this nature is commonly used to facilitate account takeovers, financial fraud, or the deployment of malware, particularly in campaigns involving crypto drainers or fake login portals. The elevated risk level is due to the domain's convincing mimicry of trusted infrastructure and its potential to exploit user trust in the targeted brand. Analysis indicates that hotdao-app.pages.dev was created on June 15, 2026, and is registered through Cloudflare, Inc., a provider frequently leveraged by threat actors to obscure ownership and hosting details. The domain resolves to the IP address 172.66.44.97, which is part of Cloudflare's network, further complicating attribution. Security vendors on VirusTotal have flagged this domain as malicious, with 8 out of 95 engines detecting it as a threat. Additional technical indicators include the use of HTTP/3, HSTS, and a SSL certificate issued by Google Trust Services, which may be employed to lend an air of legitimacy to the fraudulent site. The domain appears on one security blocklist and is currently blocked by PhishDestroy, though it has since been taken offline. Users who visited hotdao-app.pages.dev should take immediate action to mitigate potential risks. First, refrain from entering any personal or financial information on the site, as any data submitted may have been compromised. If credentials were entered, reset passwords for Google and any other accounts where the same password was reused, using a unique and complex password for each service. Enable multi-factor authentication (MFA) where available to add an additional layer of security. Monitor linked accounts, such as email or financial services, for unauthorized activity, including login attempts, transactions, or changes to account settings. If unusual activity is detected, report it to the affected service provider and consider contacting local cybersecurity authorities or a professional incident response team for further assistance.

VirusTotal
VirusTotal
0 det.
شهادة TLS
Google Trust Services
العمر
2 mo New
الحالة المرصودة
يمكن الوصول إليها · الوصول مقيد 403
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات12 recorded checks
VirusTotal checked — no detections recorded URLQuery لم يتم التحقق منها PhishStats لم يتم التحقق منها OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS لم يتم التحقق منها TLS valid certificate, 78d WHOIS 2 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
11/13

حالة قوائم الحظر العامة

لقطة محفوظة

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
Google Safe Browsing تم وضع علامة عليها Social engineering checked 16/06/2026
Telegram IoCs 2 extracted https://t.me/hotonnear https://t.me/herewalletbot/app?star…
الخادم / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
مزود المنصة Cloudflare US(US)
عنوان IP 172.66.44.97 CDN
الموقع الجغرافيCA Toronto, CA
الشبكةAS13335 · Cloudflare, Inc.
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
حالة HTTP403 Forbidden
Elapsed Since First Report 4 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: يمكن الوصول إليها · الوصول مقيد.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف15/06/2026
IoC Extractionscanned 01/08/20260 wallet · 2 Telegram IoCs
Submitted URLhttp://hotdao-app.pages.dev/
خوادم الأسماءmaciej.ns.cloudflare.commallory.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 14/06/2026scanned 15/06/2026
عنوان الصفحة
Hot Protocol
شهادة TLS
Valid transport encryption · صادرة عن Google Trust Services · valid for 78 days
التقنيات · 3 identified
HSTS
الأمن

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

www.rfc-editor.org ثقة 100٪
Cloudflare
CDN

Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.

www.cloudflare.com ثقة 100٪
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org ثقة 100٪
Detected via رادار Cloudflare · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

0 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed
No VirusTotal engine marked the domain malicious in the stored analysis.
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of hotdao-app.pages.dev · checked Jun 25, 2026

100
Good
Performance
FCP
0.76s
First Contentful Paint
LCP
1.82s
Largest Contentful Paint
CLS
0.001
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
0.76s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك
تضمين هذا التقريرRead-only HTML widget
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/hotdao-app.pages.dev"
  title="PhishDestroy threat report for hotdao-app.pages.dev"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>