MALICIOUS — CRITICAL
whatssfapp[.]com[.]cn
The domain whatssfapp.com.cn hosts a fraudulent webpage titled "WhatsApp网页版 - 跨平台即时通讯解决方案," which is an attempt to impersonate the legitimate WhatsApp Web service.
- VirusTotal
- 16/91
- Blocklists
- No stored match
- 가용성
- 마지막으로 알려진 활성 · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is vbd016@sina.com.
The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
whatssfapp.com.cn — 마지막으로 알려진 활성 (HTTP 200). 브랜드 사칭: WhatsApp; 사기 유형: Impersonation. 증거 요약: VirusTotal 16/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 5 alerts; URLScan malicious verdict; Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 100/100. 등록기관: 成都垦派科技有限公司.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
Evidence Analysis
The domain whatssfapp.com.cn hosts a fraudulent webpage titled "WhatsApp网页版 - 跨平台即时通讯解决方案," which is an attempt to impersonate the legitimate WhatsApp Web service. This site poses a threat by deceiving users into believing it is an official WhatsApp login portal, potentially leading to credential theft or malware distribution.
Technical evidence shows the site was flagged by 9 out of 95 VirusTotal vendors, including ADMINUSLabs, BitDefender, CRDF, ESET, and Fortinet. It appears on 1 blocklist. The domain was registered on 2026-02-26 through registrar 成都垦派科技有限公司. The site resolves to IP 168.76.142.194, hosted in Hong Kong by AS137951 ASLINE LIMITED. It uses a Let's Encrypt SSL certificate (R12) and nameservers ns1.kenpains.com and ns2.kenpains.com.
The site is currently offline (status: DOWN/OFFLINE). The risk level is high due to multiple antivirus detections and the impersonation of a widely-used messaging platform, despite the domain being inaccessible at this time.
데이터 적용 범위12 recorded checks
네트워크 보안 인텔리전스
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | whatssfapp.com.cn |
malicious | Sinkholed |
| OpenDNS | whatssfapp.com.cn |
phishing | Phishing Block |
| CIRA Canadian Shield DNS | whatssfapp.com.cn |
malicious | Sinkholed |
| Quad9 DNS | whatssfapp.com.cn |
malicious | Sinkholed |
| DNS4EU | whatssfapp.com.cn |
malicious | Sinkholed |
위협 대응 Pipeline
공개 차단 목록 상태
VirusTotal 분석
보관된 증거
증거 및 외부 보고서Independent lookups and source reports
PD-20260226-A9597A Recipient: vbd016@sina.com Victim safety and official reportingImmediate actions and verified reporting channels
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.