Phishing detection: whatsapp11-cnj.pages.dev

WhatsApp
https://whatsapp11-cnj.pages.dev Access site
Screenshot
Screenshot of whatsapp11-cnj.pages.dev
Investigate
Domain whatsapp11-cnj.pages.dev1 CT host on apex
URL https://whatsapp11-cnj.pages.dev
Phishunt analysis Beta
35 medium suspicion suspiciousheuristic risk score · not a probability
Why?
  • +6.1 Google Safe Browsing
  • +5.3 Keyword match
  • +5.1 Site cluster
  • +4.5 Brand in title
  • +4.1 Brand in screenshot
  • +3.7 Brand in domain label
  • +1.1 ASN reputation
  • +1.1 No CSP header
  • +1.1 No HSTS header
  • +0.7 Brand in cert SAN
  • +0.6 Suspicious TLD
  • +0.5 Young certificate
  • +0.5 Long domain
  • +0.3 Free CA
  • +0.1 Hyphens
  • +0.1 Deep subdomain
19 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting

WhatsApp-branded page on a Cloudflare Pages subdomain with WhatsApp in the title, impersonating the messaging service to harvest account details. Flagged by Google Safe Browsing as social engineering.

Google Safe BrowsingBrand in titlePaaS host
AI-generated from stored detector signals - the AI never visited the site. · 2026-09-30 · confidence 75%
Domain & Network
Whois
Registrar CloudFlare, Inc.
Network
Country United StatesUnited States
ASN AS13335
TLS Cert YE2
External detection Google Safe Browsing
GSB category: SOCIAL_ENGINEERING
CleanOpenPhish · PhishTank · TweetFeed · urlscan.io
Report this phishing
PaaS platform Cloudflare Pages
Registrar CloudFlare, Inc.

Tracked from 2026-09-29 23:25 UTC  ·  Last refreshed 2026-09-30 03:30 UTC