Phishing detection: sec-whatsapp.com

WhatsApp
https://sec-whatsapp.com Access site
Screenshot
Screenshot of sec-whatsapp.com
Phishunt analysis Beta
23 low suspicionheuristic risk score · not a probability
Why?
  • +6.1 Google Safe Browsing
  • +5.3 Keyword match
  • +4.0 Young domain
  • +1.1 ASN reputation
  • +1.1 No CSP header
  • +0.9 Young certificate
  • +0.9 No registrar lock
  • +0.7 Brand in cert SAN
  • +0.7 Brand typo
  • +0.6 Final host mismatch
  • +0.6 Registrar reputation
  • +0.3 Free CA
  • +0.3 Long domain
  • +0.2 Suspicious TLD
  • +0.1 Hyphens
18 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting

Impersonates WhatsApp on a 1-day-old domain registered via a Chinese registrar and hosted in Hong Kong. Google Safe Browsing flags it as social engineering, and it presents an anomalous redirect chain, consistent with account credential harvesting targeting WhatsApp users.

Google Safe BrowsingYoung domainFinal host mismatch
AI-generated from stored detector signals - the AI never visited the site. · 2026-09-01 · confidence 70%
Domain & Network
Whois
Network
Country Hong KongHong Kong
Hosting Yancy Limited
ASN AS138415
TLS Cert YR2
External detection Google Safe Browsing
GSB category: SOCIAL_ENGINEERING
CleanOpenPhish · PhishTank · TweetFeed · urlscan.io · SANS ISC
Report this phishing

Tracked from 2026-09-01 17:24 UTC  ·  Last refreshed 2026-09-04 03:30 UTC