---
title: "Is hadhim.co a Scam? Trust Score 5/100"
source: TrustSniffer
type: Website trust & fraud report
subject: "hadhim.co"
verdict: "Critical Risk"
title: "Is hadhim.co a Scam? Trust Score 5/100"
trust_score: 5
classification_confidence: 55
canonical_url: https://trustsniffer.com/report/hadhim.co
assessed: 2026-08-20
---

# Is hadhim.co a scam? TrustSniffer's high-risk assessment: 5/100

## Verdict


**Verdict: Critical Risk, trust score 5/100.** hadhim.co shows high-risk / scam indicators.

This assessment found strong scam indicators. Do not pay, sign in, or share personal details with this site.

Labels: Sensitive Interaction Risk

Assessed 2026-08-20 by automated analysis. Classification confidence 55%.

| Field | Value |
| --- | --- |
| What this site appears to be | Arabic-language online store (تمور هضيم) offering dates, traditional sweets, coffee blends, ghee and distilled floral waters. The page contains product listings, prices, add-to-cart UI elements, branch locations, business registration numbers and customer reviews/blog entries. |

## Evidence status and limitations


Evidence completeness: UNKNOWN

- The real-world operator identity was not independently verified.
- Module-level completeness metadata is unavailable for this legacy report.

## At a glance

The checks that decide most of this verdict.

| Check | Result | Status |
| --- | --- | --- |
| Malware engines | 4 flagged it (VirusTotal) | Risk |
| Google Safe Browsing | Not listed (Google) | Clear |
| Abuse reports on the host | 0 reports (AbuseIPDB; shared hosting inflates this count) | Noted |
| Domain age | 9.3 years old (Registered history) | Clear |
| Web archive | Archived since 2020 (Public history exists) | Clear |
| Certificate | Encrypted connection (Issued by WE1) | Noted |

## The page as captured


![Screenshot of the hadhim.co homepage captured during the TrustSniffer assessment](https://trustsniffer.com/outputs/hadhim.co/screenshots/first.png)

_What hadhim.co served when TrustSniffer captured it on 2026-08-20. The page may look different now._

## Key findings


- Automated classification: Sensitive Interaction Risk.
- Domain age: 3 to 10 years (registration continuity).
- Public web-archive history exists since 2020.
- At least one reputation service TrustSniffer consulted had flagged this domain at assessment time.

## Full analysis


### Overview

The website is an Arabic-language e-commerce storefront for “تمور هضيم,” presenting dates, kleeja and maamoul sweets, ghee and dairy products, specialty coffee blends, distilled floral waters, branch locations, product prices, customer reviews, and add-to-cart purchasing functions. Its apparent business model is direct retail sales of packaged food and traditional products, supported by online order fulfillment and physical or franchise branches.


### Scam/Impersonation Risk

The storefront presents coherent commercial content, and the available page analysis did not identify brand impersonation, a login form, hidden sensitive forms, or wallet-related behavior. However, this benign presentation is outweighed by a confirmed blacklist status: external reputation assessment recorded multiple malicious and suspicious detections, and blacklist confirmation was recorded by two sources. This is a material contradiction that places account access, credential submission, and financial interaction in a clearly elevated-risk category. The apparent retail identity should therefore not be treated as sufficient evidence of operational safety or operator legitimacy.


Evidence:
- The Arabic storefront contains product listings, prices, branch information, customer reviews, and add-to-cart controls; no brand-impersonation finding was recorded on the analyzed page.
- External reputation assessment recorded 4 malicious detections and 1 suspicious detection among 5 evaluated detections; blacklist status was recorded by 2 external sources.
- The domain was registered on 2017-04-17 and is approximately 9.35 years old through GoDaddy.com, LLC; registration continuity does not offset the current reputation contradiction.

### Regulatory Verification Notes

The site displays business registration numbers and branch locations on its commercial pages, which provides apparent identity material but does not independently verify the real-world operator. The available evidence does not establish regulated-entity status or a claimed license, so licensing and business-registration validation remain unresolved transparency matters rather than standalone evidence of a scam. The identity connection is assessed as likely but not verified, and the on-page disclosure state is unclear. Any reputational warning should be treated as a security signal, not as a legal or regulatory determination.


Evidence:
- The store and business-information pages present business registration numbers, branch locations, customer reviews, and product-ordering content.
- The domain registration record identifies HADHIM.CO HADHIM.CO as the owner and HADHIM as the organization.
- The site is served from AS13335, CLOUDFLARENET - Cloudflare, Inc., US.
- TLS uses a DV certificate issued by WE1, valid through 2026-09-27T02:02:03+00:00.

### What to Verify Next

Before any purchase or account-related activity, the business registration numbers displayed on the site should be checked against the relevant official commercial registry, with the registered entity name and operating address matched to the transaction counterparty. Payment should be limited to methods offering meaningful dispute and recovery protections, and the recipient name should be checked before authorization. Official contact channels should also be confirmed through an independent route rather than relying solely on details presented on the website.


Evidence:
- The site publishes business registration numbers and branch locations that can be matched against official records.
- The storefront supports direct product ordering and add-to-cart transactions, creating a payment-counterparty verification requirement.
- The available evidence identifies no sensitive login form, hidden password form, wallet connection, or wallet-drainer behavior during page analysis.

### Summary Verdict

The website has a critical trust posture and should be treated as unsuitable for sensitive interaction. Its coherent retail presentation and apparent business identifiers do not overcome the confirmed external reputation contradiction, and the real-world operator identity remains only likely rather than independently verified.


### Infrastructure Integrity

The website is protected by Cloudflare CDN/WAF infrastructure, which is a mitigating control against direct exposure of the hosting environment but is not evidence that the operator or content is legitimate. All observed addresses were CDN edge addresses, and no origin server candidate was observable in the analysis.


Evidence:
- Observed edge addresses: 162.159.143.27, 172.66.3.23, 2606:4700:7::30b, and 2a06:98c1:58::30b.
- All four observed addresses resolve through AS13335; 0 origin IP candidates were identified.

### Closing Assessment

Prospective users should restrict activity to passive viewing and refrain from login, credential submission, or financial transactions unless the operator, registration details, and payment counterparty have been independently validated and the reputation issue has been satisfactorily resolved.


_Written analysis generated 2026-08-20 by the TrustSniffer Analysis Engine from the evidence in this report._

## What the analysis found

1 finding contributed to this verdict, raised by analysis engine, external reputation.

### 01 Sensitive Interaction Risk
- The analysis matched a pattern TrustSniffer treats as a direct threat to a visitor. (Analysis engine `signal:direct_threat`)
- An external threat feed lists this domain: either Google Safe Browsing marked it malicious, or a significant number of malware engines flagged it. (External reputation `rule:EXT_BLACKLIST_CRITICAL`)

## Identity verification


| Field | Value |
| --- | --- |
| Status | LIKELY |
| Identity score | 76/100 |
| Identity verification confidence | 76% |

- Trusted social count=2

_Identity verification measures whether the site can be independently connected to a real-world brand or person. It is separate from the classification confidence._

## What TrustSniffer observed

First-party facts recorded during the assessment of hadhim.co.

- The request stayed on hadhim.co. It was not redirected to another domain. (Clear)
- Registration is published under GoDaddy.com, LLC. (Clear)
- DNS for this domain is served by salla.cloud, across 2 name servers. (Noted)
- The registration is paid up to 2029-04-16. (Clear)
- The earliest public archive of this site is from 2020-04-27. (Clear)
- It is hosted on CLOUDFLARENET, from a server in US. (Noted)

## Domain intelligence


| Field | Value |
| --- | --- |
| Registrar | GoDaddy.com, LLC |
| Hosting | CLOUDFLARENET - Cloudflare, Inc., US |
| Country | US |
| Server IP | 2a06:98c1:58::30b |
| Name servers | NS1.SALLA.CLOUD, NS2.SALLA.CLOUD |
| SSL issuer | WE1 |
| SSL expiry | 2026-09-27 |
| Domain age | 9.35 years (continuous registration) |
| Domain expiry | 2029-04-16 |
| Archive first seen | 2020-04-27 |
| Archive snapshots | Not counted (archive lookup incomplete) |
| Reputation | VirusTotal: 4 flagged \| AbuseIPDB: 0 reports \| Google Safe Browsing: 0 matches |

## About this assessment


A trust score summarises the evidence TrustSniffer could collect about hadhim.co at assessment time. It is a starting point for your own judgement, not a guarantee: a high score means the signals were consistent with a legitimately operated site, a low or critical score means several risk patterns were present.

TrustSniffer assesses a website from the evidence it can collect at a point in time: domain registration and age, hosting and certificate, the content the site served, and third-party reputation feeds. A score is a summary of that evidence, not a guarantee and not a legal finding. There is no human rating and no user review in it. A site can change after it is assessed.

## Related on TrustSniffer
- [1111365.co risk report](https://trustsniffer.com/report/1111365.co) (Critical Risk, 0/100)
- [lotusexchange2.co risk report](https://trustsniffer.com/report/lotusexchange2.co) (Critical Risk, 0/100)
- [mediafires.co risk report](https://trustsniffer.com/report/mediafires.co) (Critical Risk, 0/100)
- [herofx.co risk report](https://trustsniffer.com/report/herofx.co) (Critical Risk, 0/100)
- [footdealer.co risk report](https://trustsniffer.com/report/footdealer.co) (Critical Risk, 0/100)
- [coinpot.co risk report](https://trustsniffer.com/report/coinpot.co) (Critical Risk, 0/100)
- [coinscope.co risk report](https://trustsniffer.com/report/coinscope.co) (Critical Risk, 0/100)
- [elmasyedekparca.com risk report](https://trustsniffer.com/report/elmasyedekparca.com) (Critical Risk, 0/100)
- [par30s.ir risk report](https://trustsniffer.com/report/par30s.ir) (Critical Risk, 0/100)
- [anmedplus.by risk report](https://trustsniffer.com/report/anmedplus.by) (Critical Risk, 0/100)
- [Every website and wallet TrustSniffer has assessed](https://trustsniffer.com/directory)
- [Other domains assessed as high-risk or phishing](https://trustsniffer.com/directory/phishing-domains)
- [Check another website](https://trustsniffer.com/web-intelligence)
- [Check a crypto wallet address](https://trustsniffer.com/on-chain-risk)
- [The TrustSniffer Risk Index](https://trustsniffer.com/stats)

## Guides
- [Stablecoin Freezes, Sep 29, 2026: 9 Wallets](https://trustsniffer.com/blog/stablecoin-freeze-report-2026-09-29)
- [Stablecoin Freezes, Sep 28, 2026: 24 Wallets](https://trustsniffer.com/blog/stablecoin-freeze-report-2026-09-28)
- [Stablecoin Freezes, Sep 27, 2026: 3 Wallets](https://trustsniffer.com/blog/stablecoin-freeze-report-2026-09-27)

---
*Source: [TrustSniffer](https://trustsniffer.com/report/hadhim.co) — independent automated trust & fraud analysis. Cite as https://trustsniffer.com/report/hadhim.co · assessed 2026-08-20.*
