klelnanzeigen-deutch.eingang-status.info
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of klelnanzeigen-deutch.eingang-status.info
The domain klelnanzeigen-deutch.eingang-status.info appears to be a newly created subdomain that may have been intended to reference a German-language classifieds or account-access theme. The wording in the hostname combines terms resembling "Kleinanzeigen" and "deutsch," alongside "eingang-status," which could suggest a login, inbox, delivery, or account-status related purpose rather than a standalone business website.
At the time of this scan, the visible page content was minimal and showed only an error page with the title "Error" and the message "Cannot GET /." That suggests the site may be inactive, misconfigured, temporarily unavailable, or used only on specific paths rather than as a normal homepage. No clear operator identity, company details, or legitimate site purpose were visible from the page itself.
Based on the domain structure and the lack of normal website content, this does not appear to be an established public-facing service. The hostname pattern may be consistent with disposable or campaign-style infrastructure, although that cannot be confirmed from the screenshot alone.
Safety Assessment for klelnanzeigen-deutch.eingang-status.info
Several risk indicators were present at the time of this scan. The domain was flagged by 6 out of 91 security engines, and one phishing-focused threat database also listed it. In addition, the domain's IP address was listed on one mail-reputation blocklist, which is a weaker signal on its own but still worth noting. The domain is also extremely new at just 2 days old, has no measurable traffic ranking, and does not present normal website content on its homepage.
The domain name itself closely resembles a well-known German classifieds brand while using altered spelling and extra wording, which may indicate a look-alike setup intended to appear familiar to users. That kind of naming pattern can be associated with credential-harvesting or social-engineering campaigns, especially when paired with a very recent registration and limited site content. Although the malware scan did not detect malicious files on the single scanned page, that result does not outweigh the broader phishing-related signals.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid TLS certificate issued by a mainstream certificate authority, and it appears to be served through Cloudflare infrastructure on IP address 188.114.97.2. The nameservers also point to Cloudflare, which may provide CDN and reverse-proxy services. DNSSEC was not enabled at the time of this scan.
From a technical perspective, the homepage returned a sparse error-style response ("Cannot GET /") rather than a complete website, which may indicate incomplete deployment, path-specific content, or temporary configuration issues. While the certificate itself appears valid, valid HTTPS alone does not establish legitimacy, particularly for very new domains with phishing-related detections.
Share your experience with this website. Was it safe? Did you encounter any issues?