Phishing detection: sec-whatsapp.com
WhatsApp Investigate
Domain
sec-whatsapp.com30 CT hosts on apex
IP
156.234.67.94
URL
https://sec-whatsapp.com
Cert
YR2
Phishunt analysis Beta
23
low suspicionheuristic risk score · not a probability
Why?
- +6.1 Google Safe Browsing
- +5.3 Keyword match
- +4.0 Young domain
- +1.1 ASN reputation
- +1.1 No CSP header
- +0.9 Young certificate
- +0.9 No registrar lock
- +0.7 Brand in cert SAN
- +0.7 Brand typo
- +0.6 Final host mismatch
- +0.6 Registrar reputation
- +0.3 Free CA
- +0.3 Long domain
- +0.2 Suspicious TLD
- +0.1 Hyphens
18 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting
Impersonates WhatsApp on a 1-day-old domain registered via a Chinese registrar and hosted in Hong Kong. Google Safe Browsing flags it as social engineering, and it presents an anomalous redirect chain, consistent with account credential harvesting targeting WhatsApp users.
Google Safe BrowsingYoung domainFinal host mismatch
AI-generated from stored detector signals - the AI never visited the site. · 2026-09-01 · confidence 70%
External detection
Google Safe Browsing
GSB category: SOCIAL_ENGINEERING
CleanOpenPhish · PhishTank · TweetFeed · urlscan.io · SANS ISC
Requests
Resources
Observables
Related websites
Report this phishing
Submit to blocklists
urlscan
VirusTotal
Whois
ipinfo
Greynoise