effortless-puffpuff-a0722c.netlify.app
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of effortless-puffpuff-a0722c.netlify.app
This domain appears to host a web page branded as “GreenFlow 綠貸通|BOCHK SME Green Finance,” presented in Chinese and visually styled to resemble a corporate banking or green-finance product experience. The page references business lending, AI-assisted green opportunity identification, and workflow steps related to enterprise loan processing, suggesting that it is intended to simulate or present a financial-services interface for small and medium business customers.
Based on the screenshot and metadata, the site appears to reference Bank of China (Hong Kong) branding and SME green-finance services rather than operating as a generic personal blog or utility page. However, the actual domain is a Netlify subdomain rather than an obvious official banking domain, which creates a mismatch between the displayed branding and the hosting identity. That mismatch is important context when assessing whether the page is an authorized demo, a third-party project, or a look-alike page.
Safety Assessment for effortless-puffpuff-a0722c.netlify.app
This website raises significant concerns based on available scan data at the time of this scan. It was flagged by 12 out of 91 security engines, with multiple detections describing the page as phishing or otherwise malicious. In addition, one threat database listing was present, and the domain’s IP address was listed on one mail-reputation blocklist. While a DNS-based mail-reputation listing is a weaker signal than direct phishing detections, the broader multi-engine consensus here is a stronger indicator of potential risk.
The page also appears to use the branding of a major bank while being hosted on a Netlify subdomain that does not appear to match an official banking web address. In plain terms, the domain closely resembles a third-party hosted project while visually presenting itself as a bank-related finance portal, which may indicate a look-alike or impersonation attempt. Although one malware scan reported no flagged files and only generic suspicious-object heuristics on local assets, that cleaner result does not outweigh the larger number of phishing detections and the branding/domain mismatch.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site is served over HTTPS with a valid TLS certificate issued by a mainstream certificate authority, expiring in March 2027. It is hosted on Netlify infrastructure, with the server IP resolving to AWS EC2 in Frankfurt, Germany. The domain uses Name.com as registrar, has existed for several years, and its DNSSEC status is unsigned.
From a security-review perspective, the main concern is not the basic hosting setup but the combination of third-party static hosting, phishing-related detections, and branding that appears inconsistent with the displayed financial institution identity. The domain age and valid certificate do not by themselves establish legitimacy, especially when the visible content appears to imitate a banking service on an unrelated subdomain.
Share your experience with this website. Was it safe? Did you encounter any issues?