intranet-works.club
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of intranet-works.club
The domain intranet-works.club appears to present itself as an internal corporate login portal rather than a public-facing business website. Based on the page title, visual branding, and login form shown in the screenshot, it is attempting to resemble an employee sign-in page associated with The Walt Disney Company, including a company email or ID prompt and branding elements that suggest a staff access portal.
However, the domain name itself does not appear to match an official Disney-owned corporate domain, and the page references a Disney-related resource while being hosted on a separate .club domain. That combination may indicate the site is imitating a corporate authentication page rather than operating as an independently branded service. Based on the available content, this would most appropriately be described as a login-themed site that may be targeting employee credentials.
Safety Assessment for intranet-works.club
The scan results show mixed signals at the time of this scan. Only 1 out of 92 security engines flagged the domain, while blacklist databases and malware scanners did not detect active malware or blacklist listings. That said, the visible page content raises more significant concerns than the raw malware results alone: the site displays a sign-in page styled as "The Walt Dlsney Company - Sign In," uses branding associated with Disney, and links to a Disney-related SAP resource despite being hosted on an unrelated domain.
The domain is also very new, at 76 days old, has no established popularity ranking, and appears designed to collect a company email or ID. The use of a look-alike corporate login page on a non-official domain may be consistent with credential harvesting or brand impersonation. Even though broad blacklist coverage was clean at the time of this scan, newly created phishing pages can sometimes remain unlisted for a period.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was using a valid Let's Encrypt SSL certificate at the time of this scan and was served over HTTPS via an nginx web server. It resolved to IP address 2.24.194.1, hosted by EE Limited in the United Kingdom. The certificate presence indicates encrypted transport, but HTTPS alone does not verify that the operator or brand presentation is legitimate.
DNSSEC appears to be unsigned, which means DNS responses may not benefit from that additional integrity layer. The domain is recently registered, uses Google Domains nameservers, and the observed page structure includes a /verify/ path and Okta-style CSS assets, which may suggest an attempt to mimic a corporate identity platform. No malicious files or flagged outbound links were detected in the provided scan data.
Share your experience with this website. Was it safe? Did you encounter any issues?