m9bdlf-ghfi0s-8u3-mx38j-jj2gx.netlify.app
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of m9bdlf-ghfi0s-8u3-mx38j-jj2gx.netlify.app
This domain appears to host a page designed to resemble Facebook's login interface. The page title is "Facebook," the screenshot shows Facebook and Meta branding, and the visible content includes email/phone and password fields along with account-related links intended to mimic a social-media sign-in page.
Despite that presentation, the actual hostname is a randomly generated subdomain under netlify.app rather than an official Facebook or Meta-owned domain. The URL structure and page elements suggest it may be intended to collect user credentials or personal account information by imitating a well-known platform rather than operating as an independent social-media service.
Safety Assessment for m9bdlf-ghfi0s-8u3-mx38j-jj2gx.netlify.app
Multiple security signals indicate elevated risk at the time of this scan. The domain was flagged by 15 out of 91 security engines, and several web-classification providers categorized it as phishing or fraud-related. The screenshot also shows a login page that closely imitates Facebook while being hosted on an unrelated netlify.app subdomain, which may indicate an attempt to mislead visitors into believing they are on an official Meta property.
The malware scan did not detect malicious files, and major blacklist checks were largely clean at the time of review. However, that does not outweigh the stronger phishing indicators here: the page appearance, the misleading branding, the credential-entry form, and the multi-engine phishing consensus are more consistent with credential-harvesting activity than with a legitimate login portal.
The published trust score is very low, which aligns with the observed impersonation pattern and phishing classifications. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid TLS certificate issued by a mainstream certificate authority, with expiry listed in 2027. It appears to be hosted on cloud infrastructure in Frankfurt, Germany, with the backend associated with AWS EC2, while the visible hostname is a netlify.app subdomain. DNSSEC is not enabled for the domain, which is common but means DNS responses do not benefit from that additional integrity layer.
From a technical standpoint, the most notable concern is not the certificate itself but the mismatch between the branded content and the hosting/domain context. A valid HTTPS certificate only confirms encrypted transport to that host; it does not verify that the page is an official Facebook or Meta login service.
Share your experience with this website. Was it safe? Did you encounter any issues?