Phishing detection: photo.comm-whatsapp.com

WhatsApp
https://photo.comm-whatsapp.com Access site
Screenshot
Screenshot of photo.comm-whatsapp.com
Investigate
Domain photo.comm-whatsapp.com40 CT hosts on apex
URL https://photo.comm-whatsapp.com
Phishunt analysis Beta
37 medium suspicion suspiciousheuristic risk score · not a probability
Why?
  • +6.1 Google Safe Browsing
  • +5.3 Keyword match
  • +5.1 Site cluster
  • +4.0 Young domain
  • +3.5 ASN reputation
  • +3.4 Cert reuse
  • +3.4 Shared IP cluster
  • +1.1 No CSP header
  • +0.9 Young certificate
  • +0.9 No registrar lock
  • +0.7 Brand in cert SAN
  • +0.7 Bulletproof DNS
  • +0.6 Final host mismatch
  • +0.6 Registrar reputation
  • +0.5 Long domain
  • +0.3 Free CA
  • +0.2 Suspicious TLD
  • +0.1 Hyphens
  • +0.1 Deep subdomain
22 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting

Site impersonates WhatsApp on the subdomain photo.comm-whatsapp.com, registered 4 days ago and sharing the same IP and certificate cluster as related phishing infrastructure hosted by Yancy Limited in Hong Kong. Google Safe Browsing flags it as social engineering.

Google Safe BrowsingCert reuseYoung domain
AI-generated from stored detector signals - the AI never visited the site. · 2026-09-04 · confidence 80%
Domain & Network
Whois
Network
Country Hong KongHong Kong
Hosting Yancy Limited
ASN AS138415
TLS Cert YR1
External detection Google Safe Browsing
GSB category: SOCIAL_ENGINEERING
CleanOpenPhish · PhishTank · TweetFeed · urlscan.io
Campaign
Report this phishing

Tracked from 2026-09-04 17:24 UTC  ·  Last refreshed 2026-09-05 03:30 UTC