w-p-whatsapp[.]com[.]cn
“WhatsApp网页版”
w-p-whatsapp.com.cn — Non verificato. Simulazione del marchio: WhatsApp; Tipo di truffa: Social Media Phishing. Riepilogo delle prove: VirusTotal 19/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 95/100. Registrar: 成都西维数码科技有限公司.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Analysis of w-p-whatsapp.com.cn indicates a high‑risk brand‑impersonation campaign targeting WhatsApp users. The domain was registered on 21 Feb 2026 by 成都西维数码科技有限公司 and resolves to 154.221.8.155, an address announced as belonging to ASLINE LIMITED in Hong Kong (AS137951). Nameservers ns1.363.hk and ns2.363.hk are consistent with other malicious infrastructure observed in the region. The web server reports Nginx with HSTS and HTTP/3 enabled, but returns HTTP 403 for the tested request and presents an unknown SSL certificate. The page title “WhatsApp网页版” aligns with the declared brand target “whatsapp” and the scam type “Social Media Phishing”. VirusTotal scans have identified the domain as malicious in 23 of 93 security engines, and the site is already listed on PhishDestroy and a single additional blocklist. AlienVault OTX references the domain in two threat‑intel pulses. Gridinsoft assigns a trust score of 0 / 100, confirming its malicious reputation. Defenders should block both the domain and its resolved IP at perimeter firewalls, add the nameservers to DNS‑based deny lists, and monitor for any new sub‑domains registered by the same registrar. Continuous threat‑intel feeds should be consulted for updates, and incident response teams should treat any credential submissions to this site as compromised.
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 3 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analisi di VirusTotal
Prove archiviate
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo