الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 24. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

jl-np-whatsapp[.]com[.]cn

“WhatsApp | 安全可靠的免费私密消息和通话”

حكم التهديد حرجة 95/100 درجة الأدلة
التوفر المحتوى غير متوفر لم يكن المحتوى متاحًا في الملاحظة الأخيرة
اكتشافات VirusTotal: 24/93 Spamhaus DBL: DBL_PHISH URLQuery threat systems: 5 alerts انتحال العلامة التجارية: WhatsApp
25/02/2026 WhatsApp 1 Report Sent
ملخص التقرير

jl-np-whatsapp.com.cn — المحتوى غير متوفر. انتحال العلامة التجارية: WhatsApp; نوع الاحتيال: Social Media Phishing. ملخص الأدلة: VirusTotal 24/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 5 alerts; URLScan malicious verdict; Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 95/100. مسجّل النطاق: 成都垦派科技有限公司.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
CE4BA55F
الدرجة
95/100

This domain, jl-np-whatsapp.com.cn, operates as a fraudulent WhatsApp login portal designed to harvest user credentials through brand impersonation. The site presents a localized Chinese interface with the page title 'WhatsApp | 安全可靠的免费私密消息和通话,' falsely claiming to offer secure messaging services. Analysis indicates the infrastructure is specifically engineered to target users seeking WhatsApp access, likely distributing phishing kits that capture login credentials and session tokens for account takeover or further social engineering attacks. Infrastructure analysis reveals multiple high-confidence indicators of malicious activity. The domain was registered on February 25, 2026, through 成都垦派科技有限公司, a registrar frequently associated with abusive registrations. VirusTotal detection shows 24 out of 95 security vendors flagging the domain as malicious, while it appears on one security blocklist. The site resolves to IP address 43.226.17.32 (AS64050, BGP Network Limited, South Korea), an autonomous system previously linked to phishing campaigns. The SSL certificate is issued by Let's Encrypt (R12), a common choice for threat actors due to its free and automated issuance process. Users who visited jl-np-whatsapp.com.cn should immediately revoke any entered credentials and enable multi-factor authentication on their WhatsApp accounts. All active sessions should be terminated through the official WhatsApp application or web interface. If financial or personal information was submitted, affected parties should monitor accounts for unauthorized activity and consider placing fraud alerts with relevant institutions. Browser data and cached credentials associated with this domain should be cleared to prevent persistent access attempts. Organizations should update network security policies to block the domain, its resolving IP, and associated autonomous system ranges to prevent further exposure.

VirusTotal
VirusTotal
24 det.
URLQuery
URLQuery
5 threat alerts
DNS Security
6/14
رادار CF
ضار
شهادة TLS
R12
العمر
6 mo
الحالة المرصودة
المحتوى غير متوفر
PhishDestroy
قائمة الإتلاف
مُدرج
Reports Sent
1
نطاق تغطية البيانات VirusTotal 24 / 93 URLQuery 5 threat-system alerts PhishStats checked — no match recorded OTX no community references رادار CF provider verdict: malicious URLScan capture التقرير المخزن URLScan verdict malicious حجب عناوين DNS 6/14 TLS valid certificate, 85d WHOIS 6 mo old لقطة شاشة 3 captures · 3 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
DNS Provider Blocks 6 / 14
Brand Whatsapp Cloudflare Family Cloudflare Security Controld Adblock Controld Family Controld Malware
Threat Detection Systems 5 alerts
Detection System Indicator Verdict Alert
Quad9 DNS jl-np-whatsapp.com.cn malicious Sinkholed
OpenDNS jl-np-whatsapp.com.cn phishing Phishing Block
Cloudflare DNS jl-np-whatsapp.com.cn malicious Sinkholed
Hagezi Threat Feed jl-np-whatsapp.com.cn malicious Sinkholed
DNS4EU jl-np-whatsapp.com.cn malicious Sinkholed
CF Cloudflare Radar Verdict ضار
Security threats Phishing Security Risks Phishing

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
18/18
Sent Report Recorded
Stored sent-report record for registrar 成都垦派科技有限公司, hosting provider, 1 abuse contact
sztarkzvio@gmail.com
25/02/2026

حالة قوائم الحظر العامة

لقطة محفوظة

معلومات النطاق

النطاق
URLScan Verdict ضار score 100 Phishing brand: Whatsapp report ↗
الخادم / ASN nginx · AS64050 BGP Network Limited
سمعة عنوان IP abuse score 0/100 0 reports checked 15/06/2026
مسجّل النطاق 成都垦派科技有限公司 CN(CN)
جهة الإبلاغ عن إساءة الاستخدامsztarkzvio@gmail.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ jl-np-whatsapp.com.cn →
عنوان IP 43.226.17.32 KR
الموقع الجغرافيKR Incheon, KR
الشبكةAS64050 · BGP Network Limited
التسجيلتم إنشاؤه 25/02/2026 (175d)
الوقت حتى أول تعذّر للوصول 19 days
ما الذي نحتسبه الوقت المنقضي من أول تقرير عن إساءة الاستخدام المخزن إلى الملاحظة الأولى بأن المحتوى غير متوفر. هذا لا يحدد السبب.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف25/02/2026
DOM Analysisanalyzed 29/07/2026score 0/100
IoC Extractionscanned 02/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://jl-np-whatsapp.com.cn/
خوادم الأسماءns2.kenpains.com
TLS Observationvalid from 23/02/2026scanned 15/03/2026
Case ID
عنوان الصفحة
WhatsApp | 安全可靠的免费私密消息和通话
شهادة TLS
Valid transport encryption · صادرة عن R12 · valid for 85 days
التقنيات · 2 identified
Nginx
Web servers Reverse proxies

High-performance HTTP server and reverse proxy, known for stability and low resource usage.

HSTS
الأمن

HTTP Strict Transport Security — forces browsers to use HTTPS connections only.

Detected via رادار Cloudflare · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

24 / قام موردو الأمان 93 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 20 detections
ADMINUSLabs
alphaMountain.ai
BitDefender
CRDF
CyRadar
DNS8
ESET
Emsisoft
Fortinet
G-Data
Gridinsoft
كاسبرسكي
Lionic
Mimecast
نتكرافت
OpenPhish
سوفوس
Trustwave
VIPRE
Webroot

الأدلة المؤرشفة

Wayback Machine Snapshot
لقطة تاريخية متاحة لمراجعة الأدلة
View Archive
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of jl-np-whatsapp.com.cn · checked Mar 1, 2026

88
Needs Work
Performance
FCP
1.86s
First Contentful Paint
LCP
2.78s
Largest Contentful Paint
CLS
0.041
Cumulative Layout Shift
TBT
2ms
Total Blocking Time
SI
6.75s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

الأدلة والتقارير الخارجية

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260225-4B3F1B Recipient: sztarkzvio@gmail.com
Page title stored with report: WhatsApp | 安全可靠的免费私密消息和通话
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 367.0 KB
نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/jl-np-whatsapp.com.cn"
  title="PhishDestroy threat report for jl-np-whatsapp.com.cn"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>