aa-careers.com
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of aa-careers.com
The domain aa-careers.com appears to present itself as a recruitment or job-scheduling page related to American Airlines. Its page title and visible branding reference "Jobs at American Airlines," and the screenshot shows a meeting-booking style interface with a named talent acquisition contact and a prompt to continue with a Google sign-in flow.
Based on the domain name and page content, the site appears to be designed to attract job seekers or applicants looking for airline employment opportunities. However, the domain itself is not an obvious official American Airlines web property, and the use of a brand-like abbreviation combined with "careers" may indicate an attempt to resemble a legitimate recruitment portal.
The page also references external resources associated with analytics and content delivery, which is common on modern web pages. Even so, the overall presentation suggests the site may be focused less on general company information and more on directing visitors into a sign-in or scheduling workflow.
Safety Assessment for aa-careers.com
Several scan signals indicate elevated risk at the time of this scan. The domain was flagged by 11 out of 91 security engines, with multiple detections describing phishing or malicious behavior. In addition, a major threat database listed the site for social-engineering activity, which is a stronger warning sign than a generic heuristic alert.
The page content also raises concern because it closely resembles an American Airlines recruitment page while using a separate, recently registered domain that is only 12 days old. The screenshot shows American Airlines branding and a "Continue with Google" prompt tied to a meeting workflow, which may be consistent with credential-harvesting or impersonation tactics. Although one malware scan reported no flagged files and several other threat databases were clean, those findings do not outweigh the multi-engine phishing detections and the social-engineering listing.
The domain's IP address is also listed on one mail-reputation blocklist, which is a secondary cautionary signal rather than direct proof of harmful web content. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid Let's Encrypt SSL certificate expiring on 2026-09-23 and is hosted behind Netlify infrastructure on an AWS EC2 IP in Frankfurt, Germany. The nameservers are provided by NS1, and the domain is very newly registered through Name.com, Inc. DNSSEC appears to be unsigned at the time of this scan.
From a technical standpoint, the presence of HTTPS is normal and does not by itself indicate legitimacy. The combination of a very recent registration date, cloud-hosted deployment, unsigned DNSSEC, and a branded login-style page on a non-obvious corporate domain may be considered cautionary in context, especially alongside the phishing-related detections.
Share your experience with this website. Was it safe? Did you encounter any issues?