Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is ycwaoc@sina.com.
The latest stored availability evidence still shows the domain reachable; 7 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
web[.]i-whatsapp[.]com[.]cn
“WhatsApp Web”
web.i-whatsapp.com.cn — لم يتم التحقق منها. انتحال العلامة التجارية: WhatsApp; نوع الاحتيال: Social Media Phishing. ملخص الأدلة: VirusTotal 14/91 (ADMINUSLabs, Criminal IP, BitDefender, CyRadar, ESET); URLQuery 2 alerts; URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 95/100. مسجّل النطاق: 成都西维数码科技有限公司.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, web.i-whatsapp.com.cn, poses a brand impersonation threat designed to deceive users into believing they are accessing the legitimate WhatsApp Web service. The site mimics the official WhatsApp Web interface, potentially tricking visitors into entering credentials, personal information, or downloading malicious content. Given the domain's design to replicate a trusted platform, users may unknowingly expose sensitive data to unauthorized third parties, leading to account compromise or further exploitation. Analysis indicates the domain was registered on January 5, 2026, through 成都西维数码科技有限公司, a registrar based in China. It resolved to the IP address 154.221.8.129, located in Hong Kong under AS137951 (ASLINE LIMITED). The domain has been flagged by 21 out of 95 security vendors on VirusTotal, confirming its malicious nature. Additionally, it appears on one security blocklist and was previously blocked by network-level protections. The absence of an SSL certificate further increases the risk, as any data transmitted would lack encryption, making interception easier for threat actors. If a user visited web.i-whatsapp.com.cn, immediate action is required to mitigate potential compromise. First, disconnect the device from the network to prevent further data exfiltration. Reset any credentials entered on the site, particularly WhatsApp or email passwords, using a separate, trusted device. Scan the affected device with updated security tools to detect and remove any malware or unauthorized applications. Monitor linked accounts for suspicious activity, such as unauthorized logins or messages sent without consent. Users should also report the domain to their organization’s security team or relevant authorities to aid in broader threat containment efforts.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 2 identified
Ubuntu is a free and open-source operating system on Linux for the enterprise server, desktop, cloud, and IoT.
www.ubuntu.com ثقة 100٪Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org ثقة 100٪تحليل VirusTotal
الأدلة المؤرشفة
الأدلة والتقارير الخارجية
PD-20260105-ACC56A Recipient: ycwaoc@sina.com هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب