Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is ali28077778@outlook.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
jb-whatap[.]hk[.]cn
“WhatsApp 网页版:免安装快速入口|稳定掃碼登入,跨境商務聊天解決卡頓問題”
jb-whatap.hk.cn — Chưa được xác minh. Loại lừa đảo: Credential Phishing. Tóm tắt bằng chứng: VirusTotal 18/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25, CRDF); URLQuery 3 alerts; CF Radar malicious; PhishDestroy score 98/100. Nhà đăng ký: 万商云集(成都)科技股份有限公司.
Phân tích chi tiết của PhishDestroy AI bên dưới được giữ bằng tiếng Anh để bảo toàn hồ sơ pháp chứng gốc.
This domain, jb-whatap.hk.cn, is actively flagged as a high-risk credential phishing site targeting WhatsApp users. Analysis indicates the page title explicitly references WhatsApp Web functionality, presenting itself as a "快速入口" (quick entry) for browser-based access with claims of resolving cross-border chat latency issues. The domain was registered on June 24, 2026, through 万商云集(成都)科技股份有限公司 and currently resolves to 65.75.210.122, hosted on Cloudflare's infrastructure (AS13335). SSL certification is provided by Google Trust Services (WE1), and the site returns an HTTP 200 status, suggesting operational availability. Infrastructure analysis reveals Cloudflare nameservers (annabel.ns.cloudflare.com, igor.ns.cloudflare.com) and the use of Cloudflare Browser Insights alongside HTTP/3. The domain appears on one security blocklist and is referenced in a single AlienVault OTX threat intelligence pulse. VirusTotal reports 13 detections from 91 security vendors, confirming its malicious classification. The scam type is explicitly identified as credential phishing, with no evidence of additional payload delivery or secondary exploitation stages at this time. Defenders should prioritize blocking this domain at DNS and proxy levels, particularly in regions where WhatsApp is widely used for business communication. The combination of a recent registration, Cloudflare hosting, and a targeted WhatsApp theme suggests an opportunistic campaign designed to exploit users seeking unofficial or performance-enhanced access methods. No further brand impersonation or technical indicators (e.g., phishing kit fingerprints) are currently available for deeper attribution.
Tình báo an ninh mạng
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | jb-whatap.hk.cn |
malicious | Sinkholed |
| CIRA Canadian Shield DNS | jb-whatap.hk.cn |
malicious | Sinkholed |
| DNS4EU | jb-whatap.hk.cn |
malicious | Sinkholed |
Pipeline ứng phó với các mối đe dọa
Trạng thái trong danh sách chặn công khai
Công nghệ · 3 identified
Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com Độ tin cậy 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Độ tin cậy 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Độ tin cậy 100%Phân tích của VirusTotal
Bằng chứng và các báo cáo bên ngoài
PD-20260625-35D427 Recipient: ali28077778@outlook.com Bạn có bị ảnh hưởng bởi trang web này không?
Nếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Hãy báo cáo với chính quyền địa phương
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.
Kiểm tra bất kỳ tên miền nào
Phân tích mối đe dọa bằng cách sử dụng danh sách chặn được lưu trữ, WHOIS, DNS và bằng chứng quét công khai
Quét ngayBáo cáo lừa đảo qua email
Hãy gửi các tên miền đáng ngờ đến cơ sở dữ liệu mối đe dọa của chúng tôi — để bảo vệ cộng đồng
Báo cáoDòng tin tức về các mối đe dọa thời gian thực
Các báo cáo lừa đảo gần đây và những thay đổi về tính khả dụng được quan sát thấy
Theo dõiLuôn cập nhật thông tin, luôn an toàn
Theo dõi các mối đe dọa đang diễn ra hoặc phản đối danh sách này nếu bạn cho rằng đây là kết quả báo động sai