attractive-research-275363.framer.app
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of attractive-research-275363.framer.app
This domain appears to be a page hosted on Framer, a website-building and hosting platform, rather than an official standalone corporate domain. The page metadata is generic ("My Framer Site" / "Made with Framer"), which suggests it may be a quickly published landing page or prototype rather than a formally branded website operated under its own domain name.
Based on the screenshot, the page presents itself as an AT&T sign-in form for access to AT&T Mail and Currently.com. However, the domain name does not appear to be associated with AT&T, and the site is hosted under a Framer subdomain. That combination may indicate the page is attempting to imitate a telecommunications login portal rather than serving as an official customer access page.
The available category data also leans toward phishing and fraud-related classifications rather than a legitimate telecommunications service. Based on the visible content and hosting context, this website appears to function as a credential-collection login page that may be impersonating a known brand.
Safety Assessment for attractive-research-275363.framer.app
Multiple security signals indicate elevated risk at the time of this scan. The domain was flagged by 18 out of 91 security engines, and several web-classification providers categorized it as phishing or fraud-related. In addition, one threat database listing was present, while the screenshot shows a login page using AT&T branding on a Framer-hosted subdomain that does not appear to belong to the brand it references.
The page design and content raise further concerns because it asks for email and password credentials while using a generic hosted domain and generic site metadata. This kind of mismatch between branding and domain identity may be consistent with credential-harvesting activity. Although the malware scan did not report malicious files and only showed a generic heuristic label, that cleaner file-level result does not outweigh the broader phishing indicators from multiple independent security engines and the visible impersonation pattern.
There was also a DNS-based mail-reputation blocklist hit on the domain's IP address, though that signal is weaker than phishing detections and may relate to IP reputation rather than website content directly. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid Let's Encrypt SSL certificate with an expiry date in 2026, which means traffic to the page may be encrypted in transit. However, HTTPS alone does not verify that the site is legitimate. The server appears to be hosted by Framer B.V in Amsterdam and served by a Framer web server, indicating the page is running on a third-party site-building platform rather than on infrastructure clearly associated with the brand shown in the screenshot.
The domain is about 5 years old, uses AWS nameservers, and has DNSSEC disabled (unsigned). No malicious files were flagged in the limited file scan, but the combination of generic Framer metadata, brand-themed login content, multi-engine phishing detections, and a threat-database listing may be more significant than the basic TLS setup. From a technical trust perspective, the hosting and certificate look ordinary, while the content and reputation signals raise the main concerns.
Share your experience with this website. Was it safe? Did you encounter any issues?