online-appweb-whatsapp.com.cn
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of online-appweb-whatsapp.com.cn
This domain appears to present itself as a WhatsApp Web-related landing page in Traditional Chinese, promoting browser-based messaging access for users in Hong Kong, Macau, Taiwan, and overseas travel scenarios. The page title and visible content suggest a service that claims users can scan a code and connect quickly from a laptop to handle customer replies, contracts, PDFs, and cross-device communication.
Based on the domain name and page branding, the site appears to reference the well-known WhatsApp messaging platform rather than an independently branded service. However, the domain itself is not an obvious official WhatsApp domain, and the page content appears focused on encouraging users to connect through a web interface. That combination may indicate an unofficial page attempting to attract users seeking WhatsApp Web access.
Safety Assessment for online-appweb-whatsapp.com.cn
Multiple security signals indicate elevated risk at the time of this scan. The domain was flagged by 23 out of 91 security engines, and several web-classification providers categorized it as phishing or fraud-related. In addition, the domain name closely resembles a WhatsApp-related service and may be a look-alike intended to benefit from user trust in that brand.
Although the malware scan did not identify malicious files on the page during this specific check, that does not offset the broader reputation data. Clean blacklist results from several threat databases and a valid HTTPS certificate also do not by themselves establish legitimacy, since phishing pages often use standard TLS certificates and may avoid malware payloads entirely.
The very low trust score, lack of ranking, unknown domain age, and strong multi-engine phishing consensus are notable warning signs. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid Let's Encrypt certificate expiring on 2026-08-24. It appears to be served by nginx from IP address 45.202.5.4, with hosting attributed to Bunny Communications in Las Vegas, United States. The domain uses Dynadot name servers and DNSSEC appears to be unsigned.
From a purely infrastructure perspective, the setup looks fairly standard and does not by itself confirm abuse. However, the combination of unsigned DNSSEC, unknown registration dates, minimal observable external resources, and strong phishing-related reputation signals may warrant caution at the time of this scan.
Share your experience with this website. Was it safe? Did you encounter any issues?