network.draxioncapital.com
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of network.draxioncapital.com
The subdomain network.draxioncapital.com appears to be presented as part of a financial or investment-branded web property associated with the name “Draxion Capital.” Based on the domain structure and the screenshot, the page is not functioning like a typical public corporate homepage. Instead, it appears to display a document-themed landing page that prompts visitors to sign in before viewing content.
The visible page content imitates a document access workflow and shows a sign-in form styled to resemble a major cloud account login page. This kind of setup is commonly used for gated document delivery, account access prompts, or credential collection pages. Based on the available screenshot alone, there is no clear evidence of legitimate company information, service descriptions, or normal financial-site navigation.
Safety Assessment for network.draxioncapital.com
This domain shows several notable risk indicators at the time of this scan. It was flagged by 17 out of 91 security engines, with many of those detections classifying the page as phishing or malicious. In addition, the screenshot shows a login prompt styled to resemble a well-known account provider, placed over a blurred document background with messaging such as “Document can only be viewed when you sign in,” which is a pattern frequently associated with credential-harvesting pages.
The domain is also relatively new, at about 152 days old, has no visible traffic ranking, and its IP address is listed on one mail-reputation blocklist. While a single DNS-based reputation listing is a weaker signal than direct phishing detections, it still adds some caution. Although one malware scan reported no flagged files and several threat databases were clean at the time of this scan, the multi-engine phishing consensus and the page’s apparent impersonation of a major login brand weigh more heavily.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid Let's Encrypt SSL certificate, which means the connection appears to be encrypted in transit; however, HTTPS alone does not indicate legitimacy. The certificate was valid at the time of the scan, but the server software and protocol details were not identified. The domain resolves to an IP hosted by FranTech Solutions in Luxembourg.
From a domain-security perspective, the registration is recent and DNSSEC is not enabled, so DNS responses are not cryptographically signed. The nameserver setup uses third-party hosting/control-panel infrastructure, which is common, but in combination with the young domain age and phishing-style page behavior, it may warrant additional scrutiny.
Share your experience with this website. Was it safe? Did you encounter any issues?