Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is bppfvj@sina.com.
The latest stored availability evidence still shows the domain reachable; 7 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
hll-whatsapp[.]com[.]cn
“WhatsApp Web - 免費即時通訊工具”
hll-whatsapp.com.cn — Неперевірений. Уособлення бренду: Facebook; Тип шахрайства: Social Media Phishing. Зведення доказів: VirusTotal 20/93 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CRDF); URLQuery 3 alerts; Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 95/100. Реєстратор: 厦门三五互联信息有限公司.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain hll-whatsapp.com.cn is involved in brand impersonation, specifically targeting Facebook. The domain is currently offline and has been flagged as a threat. The page title found is 'WhatsApp Web - 免費即時通訊工具', which suggests an attempt to deceive users into believing they are interacting with a legitimate WhatsApp service.
Analysis indicates that hll-whatsapp.com.cn has been flagged by 20 out of 95 VirusTotal vendors, indicating a significant level of detection and concern among security professionals. The domain is registered through 厦门三五互联信息有限公司 and resolves to the IP address 156.252.42.3, which is located in HK (AS9294 GNET INC.). The domain was created on January 03, 2026, and appears on 1 security blocklist. The absence of an SSL certificate further lowers the trustworthiness of the domain.
Given the current status of the domain as offline, it is recommended that organizations and individuals remain vigilant for any signs of the domain coming back online. Security teams should monitor for any new registrations or variations of this domain and ensure that network defenses are updated to block access to similar malicious sites. Additionally, users should be educated on the importance of verifying the legitimacy of domain names and URLs, particularly those purporting to offer services from well-known brands like Facebook or WhatsApp.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
PD-20260105-ABA84D Recipient: bppfvj@sina.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога