ghanapoest.eu.cc
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of ghanapoest.eu.cc
The domain ghanapoest.eu.cc appears to be a low-content website or endpoint rather than a fully developed public-facing service. Based on the domain string, it may be attempting to resemble a postal or delivery-related name associated with Ghana, but the captured page at the time of this scan showed only a minimal "Not Found" response with no visible branding, navigation, or business information.
Available classification data associates the domain with phishing-related categories from multiple web-classification providers, although one provider labeled it more generically as a business site. No operator identity, company details, or clear service purpose were visible in the scan results, so the actual party behind the domain could not be verified from the page content alone.
The domain itself is old at the registry level, but that does not necessarily indicate long-term legitimate use of the current hostname or content. In this case, the lack of substantive website content and the suspicious naming pattern make the site appear more like a transient or repurposed web endpoint than an established organization website.
Safety Assessment for ghanapoest.eu.cc
This domain was flagged by 12 out of 91 security engines at the time of this scan, with multiple detections describing it as phishing or fraud-related. In addition, several web-classification sources categorized it as phishing or other fraudulent activity. Those are stronger warning signals than a single heuristic alert and suggest that the domain may have been associated with credential theft, impersonation, or deceptive traffic handling.
The screenshot showed only a sparse "Not Found" page, which can happen when a suspicious URL path has been removed, the site is intermittently active, or the server is configured to return minimal content outside a targeted campaign. A malware scan did not identify malicious files on the fetched page, but that result is limited because no files, links, or embedded resources were present in the scan sample. The domain's IP address is also listed on one mail-reputation blocklist, which is a minor cautionary signal but not, by itself, proof of harmful web content.
Taken together, the multi-engine phishing detections, phishing-oriented categorization, lack of transparent site identity, and very low trust context outweigh the clean file scan. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid Let's Encrypt certificate that, at the time of this scan, was set to expire on 2026-09-06. It resolved to IP address 119.28.30.187 and appeared to be hosted by Tencent cloud infrastructure in Hong Kong, using GoFrame HTTP Server. DNSSEC was not enabled, as the domain was unsigned.
From a technical standpoint, the visible page was extremely minimal and returned a "Not Found" response, offering little content for deeper page-level inspection. The combination of an active TLS setup, cloud hosting, unsigned DNS, and sparse content is not unusual on its own, but in this case it provides limited reassurance because the stronger signals come from phishing-related reputation findings rather than from obvious malware embedded in the page.
Share your experience with this website. Was it safe? Did you encounter any issues?