# weendash.vip — SUSPICIOUS > Beware: weendash.vip is a fake login phishing domain, 1/95 flagged on VirusTotal, designed to steal credentials. ## Summary PhishDestroy identifies weendash.vip as a fake login phishing domain actively impersonating legitimate services to harvest user credentials. This domain resolves to IP 104.21.92.182 and was created on March 21, 2026, registered through Gname.com Pte. Ltd. with a Let's Encrypt SSL certificate. VirusTotal analysis shows 1 out of 95 security vendors have flagged this domain, indicating low but notable detection rates. The domain's recent creation date and minimal detection coverage suggest it may be part of a rapidly deployed campaign aimed at unsuspecting victims. The use of a legitimate-looking SSL certificate further lends credibility to its malicious intent, tricking users into entering sensitive information on fraudulent login pages. The infrastructure hosting weendash.vip has been observed resolving to a known malicious IP address, reinforcing its classification as an elevated-risk threat. Users who have visited weendash.vip should immediately check for any entered credentials or payment details on untrusted forms. Disconnect from the network to prevent potential data exfiltration, and run a full antivirus scan to detect any compromise. For further verification, cross-reference this domain on PhishDestroy using its unique seed identifier 154c49 to confirm its malicious status and avoid future interactions. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-03-21 04:45:37 - Registrar: Gname.com Pte. Ltd. - IP: 104.21.92.182 ## Detection Status - VirusTotal: 1 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/cb59e13c-def1-48e0-abc9-c45b6760a943 - PhishDestroy: https://phishdestroy.io/domain/weendash.vip/ - LLM endpoint: https://phishdestroy.io/domain/weendash.vip/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/weendash.vip/ Last updated: 2026-03-23