it-web-whatsapp[.]hl[.]cn
Domain Security & Threat Intelligence Report
Analyst Security Overview
AI-GeneratedThe domain it-web-whatsapp.hl.cn poses a significant threat as a phishing site targeting cryptocurrency users. With a VirusTotal (VT) detection score of 26 out of 95, it is recognized as malicious, indicating a high likelihood of being used to compromise user credentials and financial data. The exact type of data being drained remains unknown, but the urgency to address this threat is clear.
Registered through Alibaba Cloud (China) just 2 days ago, this domain is actively hosted and utilizing the IP address 168.76.144.218. The rapid creation and the current age of the domain suggest that it is likely part of a phishing campaign aimed at exploiting unsuspecting individuals. With one blocklist entry, this domain's potential for damage is compounded by its newness and the lack of a clear target brand, which indicates a generic approach to phishing.
Currently, it-web-whatsapp.hl.cn remains alive and operational. PhishDestroy is actively monitoring this domain and assessing the threat it presents. Immediate action is recommended for users to avoid interaction with this domain to safeguard their cryptocurrency assets.
Threat Response Pipeline
Public Blocklist Status
Website Screenshot
Domain Intelligence
ns2.kenpains.com
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If you have interacted with this domain, entered personal information, or connected a cryptocurrency wallet — take immediate action. Below are resources to help you report the incident and protect yourself.
Report to Your Local Authorities
Select your country to see local cybercrime reporting contacts and complaint templates.
Related Domain Reports
More Domains at Alibaba Cloud (China)
Stay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive
URLScan Report