ghotkshop[.]com
Category: Phishing, Spam
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of ghotkshop[.]com
ghotkshop[.]com appears to be a recently registered website presenting a mobile-oriented login page rather than a fully developed public storefront or informational site. The visible interface asks for a mobile number and password, includes a language selector, and shows branding that appears to read "OTKTA" or similar, but the page provides little contextual information about the organization behind it, its services, or its ownership.
Based on the domain name and the screenshot, the site may be attempting to collect account credentials or direct users into a gated area without first establishing a clear business identity. The lack of descriptive page metadata, the absence of visible company details, and the mismatch between the domain name and the on-page branding may indicate that this is not a conventional retail website despite the "shop" wording in the domain.
Safety Assessment for ghotkshop[.]com
This domain shows multiple risk indicators at the time of this scan. It was flagged by 16 out of 92 security engines, and several web-classification sources categorized it as phishing, fraud, spam, or malware-related. In addition, one major blacklist source listed the domain for social-engineering activity. These are stronger warning signals than a single heuristic alert because they reflect broader detection consensus across independent security systems.
The site is also very new, with a registration age of only 43 days, and it is not ranked among widely visited domains. The screenshot shows a credential-entry page requesting a mobile number and password, but it does not clearly identify the operator or explain the purpose of the login. That combination of a newly registered domain, limited transparency, and a login-focused landing page may be consistent with credential-harvesting behavior.
A separate malware scan did not detect malicious files on the sampled page resources, which suggests the page may not currently be serving obvious malware payloads. However, phishing pages often rely on deceptive forms rather than downloadable malware, so a clean file scan does not outweigh the broader phishing-related detections. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The domain uses a valid Let's Encrypt SSL certificate and is routed through Cloudflare infrastructure, with hosting resolved to an IP in Cloudflare's network. The nameservers are also on Cloudflare, which may help with availability and traffic shielding, but this setup does not by itself indicate legitimacy. DNSSEC appears to be unsigned, so there is no additional DNS integrity protection visible from the provided data.
From a security-review perspective, the main concerns are not the TLS certificate but the domain's recent creation date, lack of established reputation, blacklist listing for social engineering, and the concentration of phishing-related detections across security engines. The page also exposes only a small set of static assets and a login form, with no visible organizational details or trust signals.
Share your experience with this website. Was it safe? Did you encounter any issues?