ScamLens
Cached < 6hAnonymous (3/day)

Security Report for what-im-whatapp.hl.cn

ScamLens analyzed what-im-whatapp.hl.cn using 90+ threat intelligence sources and assigned a trust score of 50/100, classifying it as moderate risk.

Trust Score: 50/100

Risk Level: Caution

This domain already shows strong risk signals. Stop interacting, preserve the page, chat, phone, and payment evidence, and move into response or reporting immediately.

Site Title
WhatsApp网页版|联系从来不只是一条消息
Site Description
从“联系从来不只是一条消息”出发介绍网页版交流的基本方式、适合场景与操作提醒,内容侧重真实体验和隐私保护,不使用夸张宣传或未经证实的功能承诺。
zh-CNHTTPS ✓WhatsApp网页版联系从来不只是一条消息内容侧重真实体验和隐私保护
1
Checked 1 times

Quick Answer

This domain already shows strong risk signals. Stop interacting, preserve the page, chat, phone, and payment evidence, and move into response or reporting immediately.

Positive Signals

  • +Google Safe Browsing: Safe
  • +Valid SSL certificate
  • +HTTPS encryption supported
  • +Security headers configured (HSTS + CSP)

Concerns

  • -3 security sources flagged as suspicious

Score Breakdown

Domain Reputation50
Threat Intelligence87
10/13 safeSafeBrowsing OK
Technical Security90
Valid SSLHTTPSHSTSCSP
Community Reputation50
No community data yet

Was this assessment accurate?

0 say Safe0 say Suspicious
What do you think?
What to do next

Mixed signals on what-im-whatapp.hl.cn

We did not find direct threat-feed hits, but coverage is thin or other signals warrant care.

Confidence:High
  1. Verify the company exists offline
    Search the registered company name + 'reviews' or 'scam'. Real businesses leave a long trail of independent mentions.
  2. Pay only via reversible methods
    Use credit cards or PayPal Goods & Services. Avoid wire transfers, crypto, gift cards — those are non-reversible.
  3. Confirm the contact details
    Look up the phone number and email address separately. Free webmail addresses or VoIP numbers are a red flag.
Cross-check with independent scanners

Trust but verify — open this domain on unrelated security services and compare the verdict.

Sign in to run the AI risk analysis

The threat-intelligence signals below are available to everyone. The plain-language AI risk summary is generated on demand for signed-in users — sign in (free) to run it for this domain.

Threat-intelligence sources

Checked across 27 sources — 3 flagged this domain

Show source breakdown
  • safe_browsingclean
  • urlhausclean
  • cloudflare_radarclean
  • cert_transparencyclean
  • alienvault_otxclean
  • phishstatsclean
  • virustotalclean
  • ipqsclean
  • abuseipdbclean
  • securitytrailsclean
  • phishdestroyflagged
  • threatfoxclean
  • shodan_internetdbclean
  • phishtankclean
  • urlscanclean
  • rdapclean
  • maltiverseclean
  • dns_securityflagged
  • wanted_domainsclean
  • darkwebclean
  • openphishflagged
  • scam_blocklistclean
  • maltrailclean
  • crypto_scam_feedclean
  • phishing_armyclean
  • hagezi_tifclean
  • red_flag_domainsclean

ScamLens aggregates real-time signals from 90+ commercial and open-source threat-intelligence providers including Google Safe Browsing, VirusTotal, PhishTank, URLhaus, ThreatFox, Cloudflare Radar, OTX, IPQS, GoPlus, Honeypot.is, and more. A flagged signal is evidence; the absence of flags is not proof of safety. Use the signals below alongside community reports to decide.

Advanced Scan

Comprehensive data lookup across premium sources

$2.99one-time payment
  • Website history verification
  • Detailed WHOIS information
  • Reverse WHOIS association
  • Traffic rank analysis
  • Company registration check
Recommended

AI Deep Investigation

Cross-check the story, claims, and supporting evidence before you decide

$4.99one-time payment
  • Everything in Advanced Scan
  • AI website content analysis
  • AI cross-reference verification
  • Claim authenticity validation
  • Detailed report with evidence
Most Thorough

Comprehensive Investigation

Full-spectrum investigation with company deep search & social intelligence

$14.99one-time payment
  • Everything in Deep Investigation
  • AI company background search
  • Social media intelligence
  • Detailed suspicious point analysis
  • Event timeline & entity connections

This analysis is for informational purposes only and does not constitute a legal determination.

Security Sources

Google Safe Browsing
Safe
Cloudflare Radar
Safe
URLhaus (abuse.ch)Confidence: Medium
Not Listed
Certificate TransparencyConfidence: Low
Not Listed
AlienVault OTXConfidence: Low
Not Listed
PhishStatsConfidence: Low
Not Listed
VirusTotalConfidence: Low
Not Listed
IPQualityScoreConfidence: Low
Not Listed
AbuseIPDBConfidence: Low
Not Listed
SecurityTrailsConfidence: Low
Not Listed
PhishDestroyConfidence: Medium
Unsafe
ThreatFox (abuse.ch)Confidence: Low
Not Listed
Shodan InternetDBConfidence: Low
Not Listed
PhishTankConfidence: Low
Not Listed
URLScan.ioConfidence: Low
Not Listed
RDAP Domain RegistrationConfidence: Low
Not Listed
MaltiverseConfidence: Low
Not Listed
DNS SecurityConfidence: High
Unsafe
Law EnforcementConfidence: Low
Not Listed
darkwebConfidence: Low
Not Listed
OpenPhishConfidence: Medium
Unsafe
Scam Blocklist (Jarelllama)Confidence: Low
Not Listed
Maltrail (stamparm)Confidence: Low
Not Listed
Crypto Scam FeedConfidence: Low
Not Listed
Phishing ArmyConfidence: Low
Not Listed
HaGeZi Threat IntelligenceConfidence: Low
Not Listed
Red Flag DomainsConfidence: Low
Not Listed

Domain Information

DNSSEC
Disabled

SSL/TLS Certificate

Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
July 11, 2026
Valid To
October 9, 2026
Status
Valid
SAN List
what-im-whatapp.hl.cn

Server Information

IP Address
104.21.38.33
Hosting Provider
Cloudflare, Inc.
ASN
AS13335 Cloudflare, Inc.
Server Location
Toronto, Canada
Organization
Cloudflare, Inc.

Related Intelligence

Technical Details (DNS / Headers / Subdomains)

DNS Records

Email Security

SPF Not ConfiguredDMARC Not Configured
TypeValue
A104.21.38.33
A172.67.218.77
AAAA2606:4700:3034::ac43:da4d
AAAA2606:4700:3037::6815:2621
NSmallory.ns.cloudflare.com
NSryan.ns.cloudflare.com

HTTP Security Headers

6/6
Strict-Transport-SecurityPresent

max-age=31536000; includeSubDomains; preload, max-age=31536000

Content-Security-PolicyPresent

default-src 'self'; base-uri 'self'; object-src 'none'; frame-ancestors 'self'; ...

X-Frame-OptionsPresent

SAMEORIGIN

X-Content-Type-OptionsPresent

nosniff

Referrer-PolicyPresent

strict-origin-when-cross-origin

Permissions-PolicyPresent

accelerometer=(), autoplay=(), camera=(), geolocation=(), gyroscope=(), magnetom...

Channels / Subdomains

No data available

Community Reports

Log in to report and share your experience

...

Report & Take Down This Website

The results are based on multiple third-party data sources and AI models. False positives or negatives may occur. This report should not be used as the sole basis for any decision. Please verify with additional sources.

If a loss already happened, move into the response flow now

Delay is the main risk with high-risk domains. Prioritize freezes, credential resets, reporting, and evidence preservation now.

Start the response

If no loss happened yet, continue with the website-reporting and official-agency paths next.

Related Security Guides

Learn more about how to protect yourself from this type of threat.

Understanding this threat

FAQ

Is what-im-whatapp.hl.cn safe to visit?

what-im-whatapp.hl.cn received a trust score of 50/100 from ScamLens. Some minor concerns were identified but no critical threats were found. Exercise normal caution.

Was what-im-whatapp.hl.cn flagged by any threat databases?

what-im-whatapp.hl.cn was flagged by 3 out of 30+ threat intelligence sources. Specifically flagged by: phishdestroy, dns_security, openphish. The detected threat categories include: general threat.

How old is what-im-whatapp.hl.cn?

Registration date information for what-im-whatapp.hl.cn is not publicly available through WHOIS records, which can itself be a risk indicator.

Does what-im-whatapp.hl.cn use HTTPS and have a valid SSL certificate?

what-im-whatapp.hl.cn uses an SSL certificate issued by C=US, O=Let's Encrypt, CN=YR2, valid until October 9, 2026. The certificate is from a free provider (Let's Encrypt/ZeroSSL), which is common but does not validate the organization's identity.

What security headers does what-im-whatapp.hl.cn implement?

what-im-whatapp.hl.cn is missing important security headers: Content-Security-Policy, X-Frame-Options, X-Content-Type-Options, Strict-Transport-Security, Referrer-Policy, Permissions-Policy. Missing security headers can leave visitors vulnerable to cross-site scripting (XSS) and other web-based attacks.

What does the ScamLens community think about what-im-whatapp.hl.cn?

No community votes or reports have been submitted for what-im-whatapp.hl.cn yet. You can be the first to share your experience.

Where is what-im-whatapp.hl.cn hosted?

what-im-whatapp.hl.cn is hosted by Cloudflare, Inc. in Toronto, Canada (ASN: ASAS13335 Cloudflare, Inc.).

Is this report useful?

Use this report to tell others to stop interacting now and move straight into containment, evidence preservation, and reporting.

Forward to your parents — they deserve to browse safely too.

About this analysis

This report is generated from real-time data across 90+ threat intelligence sources, combined with AI analysis and community feedback.

Learn about our scoring methodology | Last analyzed: July 23, 2026

All Cloudflare, Inc. domains