Highscore 55 · flagged Monday, September 28, 2026

viewview-whatsapp.com

Appeared in the .com zone on Monday, September 28, 2026; by the end of that day the census found redirects elsewhere. Full domain report

Signals, not verdicts. A domain appears here because heuristics matched its name, its infrastructure or the page it served on its first day. Where a model has looked at it, that is shown as an opinion with a confidence, not as a finding. Nothing on this page says a site is malicious. Read the evidence and decide for yourself.

Own one of these names and think the listing is wrong? Tell us and a person will look.

What matched

brand in the name
matched: whatsapp
+30
brand name behind Cloudflare
matched: cloudflare.com
+6
form on a brand-styled page
matched: has_form
+18
brand name redirects elsewhere
matched: yahoo.com
+8
Registrar
—
Nameserver provider
Nameservers
hal.ns.cloudflare.com, wanda.ns.cloudflare.com
First-day state
redirects elsewhere
HTTP status
200
Page title
Your privacy choices
Has a form
yes
Brand echoed
whatsapp

Model opinions

Second opinionlooks like abusetarget: WhatsAppconfidence 65%· claude-opus-5-5

The name is built on the distinctive WhatsApp brand, with 'viewview-' hinting at the common 'who viewed your WhatsApp' lure, and the domain has no WhatsApp content of its own. The form is only Yahoo's cookie-consent page on the redirect target, not credential capture, so this is a brand-squat rather than active phishing.

First passsuspiciousconfidence 53%· typesafe/jev-latest

typesafe first pass (gate 0.4): p=suspicious:0.61 abuse:0.19 benign:0.17 | impersonates=0.32 credential=0.43 parked=0.50 evidence=1.2 | target=whatsapp:0.81

A model looked at the screenshot and page text and wrote what it thought. It can be wrong, and it is not a finding.

Same data as JSON: /api/zone/domain/viewview-whatsapp.com. This page is not indexed by search engines and does not link to the site it describes.