whatsapp.ospexit.com - suspicious URL scan, 22 Aug 2026

MalwareAnalyzer by Cyble scanned whatsapp.ospexit.com and returned a suspicious verdict (score 22), categorised as credential-harvest, impersonating binance. The page resolved to 68.178.168.110 on GoDaddy.com, LLC in SG. The domain was registered 19 days ago through GoDaddy.com, LLC. 2 domains and 2 IPs were contacted, over 6 HTTP requests. This is a point-in-time observation from 22 Aug 2026; the page may have changed since.

Scan result

Antivirus & YARA (0 of 48 engines)

No engine flagged this page's content.

Categories

Why this verdict

Detected technologies

Contacted infrastructure

Observed indicators

Questions about whatsapp.ospexit.com

Is whatsapp.ospexit.com safe?
No. MalwareAnalyzer scanned whatsapp.ospexit.com on 22 Aug 2026 and returned a suspicious verdict with a score of 22 out of 100, categorised as credential-harvest. Treat it as hostile until it is re-checked.
Does whatsapp.ospexit.com belong to binance?
No. This page claims the identity of binance but nothing establishes that binance operates it, which is what impersonation means here. Compare the certificate organisation and the registrant against the brand's real properties.
How was whatsapp.ospexit.com checked?
A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the standard tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.

Scanned at the standard tier - see how URL scanning works.

Scan another URL · Latest analyzed threats · All scans of whatsapp.ospexit.com · Other binance phishing domains

Scanned on MalwareAnalyzer by Cyble · Open interactive scan