hally[.]ws
Category: Suspicious
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCRisk.com may earn a referral commission when users sign up through this link.
Description of hally[.]ws
The website hally[.]ws appears to present itself as "Hidesploits," a downloadable "next generation script" or game-enhancement addon. Based on the page title, meta description, and screenshot, it seems to promote software for Windows and mobile devices, with marketing language focused on execution speed, customization, and user counts. The site includes a download path and embedded media, suggesting it is intended to distribute or promote a software tool rather than provide editorial or informational content.
The operator is not clearly identified from the available page content. The domain itself does not match the displayed "Hidesploits" branding, which may indicate a temporary or secondary distribution domain. The site appears to be newly established, with a very recent registration date and no meaningful popularity ranking, so there is limited historical context available about its ownership or reputation.
Safety Assessment for hally[.]ws
Several risk indicators are present at the time of this scan. The domain was flagged by 2 out of 91 security engines, and the malware scan marked the site as suspicious while identifying one flagged object and one flagged outbound link to an external domain associated with a generic suspicious object. In addition, the domain is only 2 days old, has no established traffic ranking, and the overall trust score provided in the scan context is very low.
A notable concern is that the domain closely resembles ally.com in spelling, which may indicate a look-alike domain. That resemblance does not match the visible "Hidesploits" branding shown on the page, making the naming pattern harder to justify as a normal brand choice. Combined with the young registration age, lack of established reputation, and suspicious external reference, this raises the possibility that the domain may be used in a misleading or abusive way.
Based on these findings, this website may pose potential risks to visitors at the time of this scan.
Technical Description
The site uses a valid Let's Encrypt SSL certificate expiring in late July 2026 and is served over nginx/1.28.3 from an IP hosted by Aeza International LTD in Stockholm, Sweden. Nameservers are provided through Cloudflare, while DNSSEC status is unknown. Basic HTTPS availability is present, but a valid certificate alone does not establish trustworthiness.
From a security perspective, the more relevant concerns are the domain's extremely recent registration, the absence of a traffic ranking, the reported lack of MX records in the similarity analysis, and the presence of a flagged outbound link to an external suspicious domain. These factors may be consistent with short-lived or disposable infrastructure.
Share your experience with this website. Was it safe? Did you encounter any issues?