captcha-whatsapp.com
Appeared in the .com zone on Sunday, September 6, 2026; by the end of that day the census found redirects elsewhere. Full domain report
Signals, not verdicts. A domain appears here because heuristics matched its name, its infrastructure or the page it served on its first day. Where a model has looked at it, that is shown as an opinion with a confidence, not as a finding. Nothing on this page says a site is malicious. Read the evidence and decide for yourself.
Own one of these names and think the listing is wrong? Tell us and a person will look.
What matched
Model opinions
captcha-whatsapp.com combines a captcha/verification lure with the WhatsApp brand — the exact naming shape of fake WhatsApp verification pages used for account/device hijacking — yet serves no content of its own, cloaking behind a redirect to yahoo.com on custom nameservers (ns1/ns2.kenpains.com). The form and Yahoo branding belong to the redirect destination, not this domain, so there is no live deception yet: this is a brand-squat staged for later abuse.
The domain captcha-whatsapp.com combines 'captcha' and 'whatsapp' in a typosquat pattern designed to deceive users seeking WhatsApp verification or login, but immediately redirects to Yahoo's legitimate homepage. The nameservers (kenpains.com) are unrelated to either WhatsApp or Yahoo, indicating the domain is controlled by a third party for misdirection or SEO manipulation rather than legitimate purposes. This is a brand-squat redirect abuse pattern, not phishing, since no credentials or data a
A model looked at the screenshot and page text and wrote what it thought. It can be wrong, and it is not a finding.
What the page looked like on Sunday, September 6, 2026

Same data as JSON: /api/zone/domain/captcha-whatsapp.com. This page is not indexed by search engines and does not link to the site it describes.