b4pj-f4yx-2vn7.mark-mxzeilbeck-com-s-account.workers.dev
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of b4pj-f4yx-2vn7.mark-mxzeilbeck-com-s-account.workers.dev
This domain is a subdomain hosted on the workers.dev platform, which is commonly used to deploy serverless web applications and temporary web endpoints through Cloudflare infrastructure. The hostname structure is unusually long and machine-generated in appearance, which may indicate a custom or disposable deployment rather than a conventional branded website.
Based on the available scan context, the page does not appear to represent a typical business, media, or consumer-facing website with established branding or content categories. Instead, it appears to be an endpoint served through Cloudflare's edge network, potentially used for application delivery, redirects, or access-controlled content. The domain itself is not independently branded in a way that clearly identifies an operator.
Safety Assessment for b4pj-f4yx-2vn7.mark-mxzeilbeck-com-s-account.workers.dev
Multiple security engines flagged this URL at the time of the scan, with 17 out of 91 detections and most of those labels indicating phishing-related concerns. That level of cross-engine agreement is a meaningful warning sign, especially for a workers.dev subdomain with no established traffic ranking and an opaque, auto-generated-looking hostname. Although the malware scan did not identify malicious files on the page itself, phishing pages often rely on deceptive forms or redirects rather than downloadable malware, so a clean file scan does not remove that concern.
Blacklist and threat-database results were mixed. Major content-focused threat databases shown here did not detect the URL at the time of the scan, but the domain's IP address was listed on one mail-reputation blocklist, which is a weaker secondary signal and does not by itself prove harmful website activity. Even so, the broader pattern here is driven mainly by the relatively high number of phishing detections from security engines rather than by the DNS-based listing.
The published trust score provided with this scan is 5/100 and labels the page as phishing, which aligns with the multi-engine detection pattern. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid SSL certificate issued by Google Trust Services, with certificate expiry shown as 2026-11-02. It is hosted behind Cloudflare infrastructure on IP address 104.21.73.113, with Cloudflare listed as both hosting provider and web server layer. The domain uses Cloudflare nameservers and DNSSEC appears to be unsigned.
From a technical standpoint, the presence of HTTPS is positive for transport encryption, but it should not be treated as evidence of legitimacy. The scan context suggests a Cloudflare-hosted endpoint with minimal visible infrastructure details, which is common for both legitimate serverless deployments and short-lived abuse pages. No flagged files or iframes were reported in the page scan, so the main concern appears to be reputation and phishing-related classification rather than overt malware delivery.
Share your experience with this website. Was it safe? Did you encounter any issues?