Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is dxf486@sina.com.
The latest stored availability evidence still shows the domain reachable; 29 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
m[.]whatsapp[.]ih[.]hl[.]cn
“WhatsApp ç½é¡µç”
m.whatsapp.ih.hl.cn — Belum terverifikasi. Peniruan identitas merek: WhatsApp; Jenis penipuan: Impersonation. Ringkasan bukti: VirusTotal 20/91 (Criminal IP, alphaMountain.ai, BitDefender, Cluster25, CRDF); URLScan malicious verdict; Spamhaus DBL_ABUSED_PHISH; CF Radar malicious; PhishDestroy score 95/100. Registrar: 成都垦派科技有限公司.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
The domain m.whatsapp.ih.hl.cn is currently active and associated with high-risk phishing activities. It resolves to the IP address 154.195.74.69 and has been flagged by 14 out of 95 security vendors on VirusTotal, indicating a significant threat level. The domain was created on February 28, 2026, and is registered through 成都垦派科技有限公司. Its nameservers are ns1.kenpains.com and ns2.kenpains.com, which may suggest a connection to a specific hosting provider known for malicious domain registrations. The domain is actively blocked by PhishDestroy and is listed on one security blocklist. Security teams should prioritize monitoring this domain, implement blocking measures if not already in place, and review logs for any interactions with this domain. Additional analysis is required to determine the full extent of its threat capabilities, as the specific content and objectives of the phishing operation remain unknown.
Intelijen Keamanan Jaringan
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Referensi Silang Intelijen Ancaman · source references
Teknologi · 10 identified
Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com Keyakinan 100%Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org Keyakinan 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Keyakinan 100%Lodash is a JavaScript library which provides utility functions for common programming tasks using the functional programming paradigm.
www.lodash.com Keyakinan 100%jQuery CDN is a way to include jQuery in your website without actually downloading and keeping it your website's folder.
code.jquery.com Keyakinan 100%jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com Keyakinan 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Keyakinan 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Keyakinan 100%Analisis VirusTotal
Bukti Terarsip
Analisis Konfigurasi Situs
Bukti & Laporan Eksternal
PD-20260719-8A3A7A Recipient: dxf486@sina.com Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive