Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 9 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
glory[.]ring-whatapp[.]com[.]cn
“WhatsApp网页版-WhatsApp Web 网页版-账号隔离防连坐”
Riepilogo delle prove
On 2026-08-04 the domain glory.ring-whatapp.com.cn was observed as active infrastructure supporting a generic phishing campaign. VirusTotal scans returned 14 positive detections out of 91 participating security vendors, indicating that multiple AV engines have identified malicious behavior associated with the host. The domain is listed on a single public security blocklist and is actively blocked by the PhishDestroy mitigation service, demonstrating that at least one external sinkhole has recognized it as hostile.
No additional public data such as registrar information, ASN, hosting IP, SSL certificate details, or HTTP response codes were supplied, limiting the depth of the current technical profile. The absence of further telemetry means that the exact payload delivery method, target brand, or credential‑stealing kit cannot be confirmed at this time. Analysts should treat the domain as a confirmed phishing vector given the vendor detections and blocklist presence, and should incorporate it into network‑level deny lists, DNS sinkhole configurations, and endpoint protection rule sets.
Continuous monitoring of VirusTotal, passive DNS, and reputation feeds is advised to capture any changes in detection rate or the emergence of new infrastructure tied to the same seed. Defensive teams are encouraged to quarantine any internal traffic to the domain and to educate users about unsolicited communications that reference the “ring‑whatapp” naming pattern, as this appears to be the lure employed by the campaign.
Istantanea delle prove inviate
- Inviato
- Voci del registro
- 1
- ID del caso
PD-20260804-FA3AC3- Titolo della pagina acquisita
- WhatsApp网页版-WhatsApp Web 网页版-账号隔离防连坐
- Artefatto PDF
- Prova in PDF
Base giuridica
Testo completo delle prove
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Informazioni sulla sicurezza di rete
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | glory.ring-whatapp.com.cn |
malicious | Sinkholed |
| OpenDNS | glory.ring-whatapp.com.cn |
phishing | Phishing Block |
| Cloudflare DNS | glory.ring-whatapp.com.cn |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 13/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Tecnologie
1 tecnologia identificata con alta affidabilità
Analisi di VirusTotal
Prove archiviate
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of glory.ring-whatapp.com.cn · checked Aug 4, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo