dexautomate[.]web[.]app
“Dex Automate | Simple and secure interface that integrates seamlessly with your browser.”
Observation enregistrée
Contraste de titres observé
Résumé des preuves
Analysis indicates that dexautomate.web.app resolves to the Fastly edge address 199.36.158.100, located in the United States and announced under ASN 54113 (Fastly, Inc.). The site presents the page title “Dex Automate | Simple and secure interface that integrates seamlessly with your …”, but the HTTP response returned a 404 status at the time of inspection, suggesting the content has been removed or the host is no longer serving the page. The TLS certificate is issued by Google Trust Services under the WR4 profile, confirming that the domain is hosted on Google infrastructure and was registered through Google LLC. Reputation services assign a Scamadviser trust score of 1 out of 100, reflecting extreme untrustworthiness. The domain is classified as an investment‑scam type according to the supplied intelligence, and it has been listed on three public blocklists (PhishDestroy, ScamSniffer, Enkrypt) as well as on three additional security blocklists referenced in the intelligence feed.
VirusTotal scans show nine of ninety‑five scanners flag the domain as malicious, reinforcing the suspicion. Detected technologies include Firebase hosting, enforced HSTS, and support for HTTP/3, all typical of modern web delivery platforms but not indicative of benign intent. No nameserver information is available, and no further payload or credential‑collection pages have been captured.
Because the site is currently offline, immediate mitigation focuses on ensuring that network‑level defenses continue to block the hostname and its associated IP address, updating URL filtering rules, and monitoring Fastly‑origin traffic for potential re‑use of the same IP range. Analysts should also verify that any internal users who may have previously accessed the domain are instructed to change compromised credentials and to report any suspicious activity. The lack of live content prevents confirmation of the exact phishing flow, so further observation is recommended in case the domain reactivates.
Data Coverage
Signaux de sécurité
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
8 sources externes surveillées Aucune correspondance
Chronologie de détection
-
État du domaine
Accessible → Inaccessible
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Technologies
3 technologies identifiées avec une forte confiance
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif