esign.social-statements.com
Category: Spam
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of esign.social-statements.com
The domain esign.social-statements.com appears to present itself as an electronic-signature or document-delivery page themed around DocuSign branding. The page title is "DocuSign," and the screenshot shows a minimal "Download Complete" message with DocuSign logos and footer styling, suggesting that it is attempting to resemble a document-signing or file-delivery workflow rather than a full standalone business website.
Based on the domain structure, this is not an official DocuSign-owned domain. Instead, it is a subdomain under social-statements.com, which may indicate a third-party host or a domain being used to imitate a known e-signature service. The page also references DocuSign brand assets while offering a downloadable executable file, which is not typical of ordinary document-signing pages and may indicate deceptive distribution behavior at the time of this scan.
Safety Assessment for esign.social-statements.com
Multiple security signals raise concern here. At the time of this scan, 16 out of 91 security engines flagged the URL, with several classifying it as phishing, fraud, or malicious. In addition, multiple web-classification providers categorized the site as phishing/fraud-related. The page visually resembles DocuSign, but it is hosted on a different domain, which may indicate a look-alike page intended to exploit trust in a well-known brand.
The observed behavior also appears risky: the page advertises a completed download and links directly to an executable file named "My_DocuSign_10229302930.exe." While the page malware scan did not flag embedded files during this specific crawl, executable downloads delivered through a brand-themed page on an unrelated domain are commonly associated with phishing or malware delivery campaigns. The domain's IP address is also listed on one mail-reputation blocklist, which is a weaker signal than content-malice detections but still adds some caution.
The domain is relatively new, not ranked for notable traffic, and uses branding that may mislead visitors into believing they are interacting with the legitimate e-signature provider. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid Let's Encrypt SSL certificate that was current at the time of the scan, and it is served through Cloudflare infrastructure on IP address 172.67.166.194. Nameservers also point to Cloudflare, suggesting the domain is using a CDN/proxy layer that can obscure origin hosting details. SSL presence indicates encrypted transport, but it should not be treated as evidence of legitimacy on its own.
DNSSEC appears to be unsigned, and the domain is relatively new at 326 days old. The page references external assets from legitimate third-party content sources while also exposing a direct HTTP link to an executable download on the same host. That combination, together with the phishing-related detections, may indicate a lightweight impersonation page rather than a normal enterprise document-signing deployment.
Share your experience with this website. Was it safe? Did you encounter any issues?