whats-zvz[.]vip
“whats-zvz.vip”
whats-zvz.vip — 콘텐츠를 사용할 수 없음 (HTTP 502). 증거 요약: VirusTotal 18/93 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CyRadar); Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 95/100. 등록기관: Gname.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
This domain, whats-zvz.vip, is flagged as a high-risk phishing site specifically targeting WhatsApp user credentials. Analysis indicates the site employs social engineering tactics to harvest login details, posing significant risks to user privacy and account integrity. The domain's infrastructure and rapid detection by security mechanisms suggest a deliberate and malicious operation. Infrastructure analysis reveals the domain was registered on February 21, 2026, through Gname.com Pte. Ltd., a registrar frequently associated with malicious domains. The site is hosted on an IP address that remains undisclosed in public records, but its detection metrics are alarming: 18 out of 95 security vendors on VirusTotal flagged the domain as malicious. Additionally, the domain appears on two security blocklists and is actively blocked by PhishDestroy and PhishingDB. Google Safe Browsing has also classified this domain as a phishing threat, further corroborating its malicious nature. To mitigate risks associated with this phishing campaign, users are advised to avoid interacting with the domain or any associated links. Organizations should implement email and web filtering solutions to block access to known phishing domains, particularly those impersonating messaging platforms. End-users should enable multi-factor authentication on all accounts to add an additional layer of security against credential theft. Security teams are encouraged to monitor for indicators of compromise, such as unusual login attempts or unauthorized access, and to report any suspicious activity to relevant threat intelligence platforms.
네트워크 보안 인텔리전스
위협 대응 Pipeline
공개 차단 목록 상태
저장된 캡처
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
ICANN OVERSIGHT
인증 및 RAA 상황
인증 및 RAA 상황
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 분석
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.