सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 18। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 11 days has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
11 days
Reports sent
1
Current status
Observed active at latest stored check
डोमेन सुरक्षा और ख़तरे की आसूचना

h5[.]msg-whatapp[.]com[.]cn

“WhatsApp网页版 - 多标签页同时管理与外贸工具联动”

धमकी भरा फैसला गंभीर 98/100 साक्ष्य स्कोर
उपलब्धता असत्यापित वर्तमान पहुंच योग्यता असत्यापित है
वायरस का कुल पता लगाना: 18/91 Spamhaus DBL: DBL_PHISH URLQuery threat systems: 4 alerts ब्रांड प्रतिरूपण: Google युवा डोमेन: 16 दिन पुराना
02/08/2026 Google 1 Report Sent

साक्ष्य सारांश

आलोचनात्मक
Evidence score
98/100

Analysis of h5.msg-whatapp.com.cn shows the domain is actively used for malicious purposes. The domain was registered on July 28, 2026 through the registrar 万商云集(成都)科技股份有限公司 and resolves to the IPv4 address 192.197.113.111. Hosting details indicate the authoritative name servers are ns1.kenpains.com and ns2.kenpains.com, which are not associated with reputable cloud providers. VirusTotal scans have recorded 12 detections out of 91 security vendors, suggesting that a minority of scanners have identified malicious patterns, but the majority have not flagged the domain.

The domain appears on at least one public blocklist and is explicitly blocked by the PhishDestroy service, reinforcing its classification as a high‑risk phishing resource. No public SSL certificate information, HTTP response codes, or page title data are currently available, limiting the ability to assess the surface‑level behavior of the site. The lack of visible page metadata means that defenders cannot confirm whether the site mimics a legitimate brand or employs credential‑harvesting forms, although its naming pattern strongly implies an attempt to impersonate WhatsApp services. Given the recent registration date, the active blocklist presence, and the partial detection by multiple vendors, the domain should be treated as hostile.

Defensive recommendations include adding the domain and its resolving IP address to outbound and inbound firewall deny lists, updating DNS filtering policies to block the nameservers ns1.kenpains.com and ns2.kenpains.com, and ensuring that endpoint protection solutions ingest the 12 VirusTotal detections. Continuous monitoring of the IP 192.197.113.111 for any changes in reputation or additional malicious activity is advised, as the infrastructure may be repurposed for further campaigns. Until more detailed payload or page content analysis becomes available, the prudent stance is to assume the domain is being used for credential‑stealing or related phishing operations.

भेजे गए प्रमाण का स्नैपशॉट

भेजा गया
लेज़र रिकॉर्ड
1
केस आईडी
PD-20260802-FDB99F
कैप्चर किए गए पेज का शीर्षक
WhatsApp网页版 - 多标签页同时管理与外贸工具联动
PDF दस्तावेज़
PDF प्रमाण
प्रमाण का पूरा पाठ
Policy Violations:
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
VirusTotal
VirusTotal
18 det.
URLQuery
यूआरएलक्वेरी
4 threat alerts
सीएफ रडार
दुर्भावनापूर्ण
TLS प्रमाणपत्र
Let's Encrypt
आयु
16d Very New!
देखी गई स्थिति
असत्यापित
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1

Data Coverage

VirusTotal 18 / 91 यूआरएलक्वेरी 4 threat-system alerts फ़िशस्टैट्स जाँच नहीं की गई ओटीएक्स no community references सीएफ रडार provider verdict: malicious URLScan capture संग्रहित रिपोर्ट URLScan verdict विश्लेषण पूरा हुआ डीएनएस ब्लॉक जाँच नहीं की गई TLS valid certificate, 86d कौन है 16d old स्क्रीनशॉट 5 captures · 4 sources चेन पुनर्निर्देशित करें जांच नहीं की गई
नेटवर्क सुरक्षा इंटेलिजेंस
Threat Detection Systems 4 alerts
Detection System Indicator Verdict Alert
Cloudflare DNS h5.msg-whatapp.com.cn malicious Sinkholed
OpenDNS h5.msg-whatapp.com.cn phishing Phishing Block
CIRA Canadian Shield DNS h5.msg-whatapp.com.cn malicious Sinkholed
DNS4EU h5.msg-whatapp.com.cn malicious Sinkholed
CF Cloudflare Radar Verdict दुर्भावनापूर्ण
Phishing

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
15/16

ब्लॉकलिस्ट कवरेज

10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 13/08/2026

10 निगरानी वाले बाहरी स्रोत कोई मिलान नहीं

पहचान समयरेखा

  1. पहली दर्ज प्रविष्टि

    पहला संग्रहीत मान: पहुँच योग्य

सहेजा गया कैप्चर

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict विश्लेषण पूरा हुआ score 0 report ↗
सर्वर / ASN nginx · AS136038 HDTIDCCLOUD-AS-AP - HDTIDC LIMITED, HK
IP प्रतिष्ठा IP abuse confidence 0/100 0 reports checked 02/08/2026
Registrar (base domain) 万商云集(成都)科技股份有限公司
दुरुपयोग संपर्कali28077778@outlook.com
IP पता 192.197.113.111 HK
भौगोलिक स्थानHK Tung Chung, HK
नेटवर्कAS136038 · HDTIDC LIMITED
रिवर्स IPviewdns.info → rapiddns.io →
Registration (base domain)msg-whatapp.com.cn · निर्मित 28/07/2026 (16d · Very New!) Expires 28/07/2027
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
पहली बार पता चला02/08/2026
DOM Analysisanalyzed 02/08/2026DOM analysis score 98/1002 brand signals
Submitted URLhttp://h5.msg-whatapp.com.cn/
नेमसर्वरns1.kenpains.comns2.kenpains.com
TLS फिंगरप्रिंट
TLS अवलोकन29/07/2026 से मान्य02/08/2026 को स्कैन किया गया
TLS सब्जेक्ट वैकल्पिक नामchat.audios-whatapp.hl.cnchat.buzz-whatapp.com.cnchat.call-whatapp.com.cnchat.chans-whatapp.hl.cnchat.chats-whatapp.com.cnchat.comm-whatapp.com.cnchat.connect-whatapp.com.cnchat.dial-whatapp.com.cnchat.dialogue-whatapp.com.cnchat.flows-whatapp.hl.cnchat.links-whatapp.com.cnchat.message-whatapp.com.cnchat.msg-whatapp.com.cnchat.one-whatapp.com.cnchat.ping-whatapp.com.cn+80
Favicon Hash
पेज शीर्षक
WhatsApp网页版 - 多标签页同时管理与外贸工具联动
Impersonates
Google WhatsApp
TLS प्रमाणपत्र
Valid transport encryption · जारीकर्ता Let's Encrypt · valid for 86 days

तकनीकें

3 उच्च-विश्वसनीयता वाली तकनीकें पहचानी गईं

Nginx HSTS HTTP/3
Cloudflare Radar
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

18 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed Previous stored snapshot: 12 detections
alphaMountain.ai
BitDefender
Cluster25
CRDF
ईएसईटी
Emsisoft
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
कास्परस्की
LevelBlue
Lionic
नेटक्राफ्ट
SOCRadar
सोफोस
VIPRE
वेबरूट

संग्रहीत साक्ष्य

Wayback Machine Snapshot
साक्ष्य समीक्षा के लिए एक ऐतिहासिक स्नैपशॉट उपलब्ध है
View Archive
साइट प्रदर्शन विश्लेषण

Google PageSpeed Insights — mobile performance audit of h5.msg-whatapp.com.cn · checked Aug 2, 2026

100
Good
Performance
FCP
0.8s
First Contentful Paint
LCP
0.8s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
2.29s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
साइट कॉन्फ़िगरेशन विश्लेषण
Stored observations are retained with their original collection time.
robots.txt Present · HTTP 200
Valid robots.txt; no Disallow/Allow paths were extracted.
Sitemap 1 page · HTTP 200

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें

बाहरी उपकरण

स्कैमएडवाइज़रScamAdviser विश्वास स्कोर 80/100स्थिति: Likely Safeस्रोत खोलें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/h5.msg-whatapp.com.cn"
  title="PhishDestroy threat report for h5.msg-whatapp.com.cn"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>