oggelm.mcgo2[.]com
Category: Phishing And Fraud
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of oggelm.mcgo2[.]com
The subdomain oggelm.mcgo2[.]com appears to display a very minimal landing page associated with MaxConv, described on-page as ad tracking and attribution software. The visible content says the custom domain is working and points visitors to maxconv.com, which suggests this host may be a configured tracking, campaign, or traffic-routing endpoint rather than a full public website with standalone content.
Based on the domain structure and page text, this host may be part of an advertising or affiliate-marketing infrastructure using a custom subdomain under mcgo2.com. The page does not show normal business information, user-facing services, or editorial content; instead, it appears to function as a placeholder or operational endpoint for traffic attribution settings.
Safety Assessment for oggelm.mcgo2[.]com
Multiple security signals raise concerns about this host at the time of the scan. It was flagged by 12 out of 92 security engines, with several classifying it as phishing-related, and multiple web-classification sources categorized it under phishing, fraud, or similar risk themes. In addition, blacklist checks showed listings in 2 threat databases, although several other blacklist sources were clean.
At the same time, the page itself is sparse and does not present an obvious login form or storefront in the captured view. A malware scan of the fetched content did not identify flagged files, and only one external domain reference was observed. However, a clean file scan does not outweigh the broader phishing-related consensus from multiple independent security signals.
Because this is a low-content tracking-style page on an unranked subdomain with meaningful multi-engine phishing detections, caution would be warranted. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The host uses a valid Let's Encrypt SSL certificate and is served over HTTPS from an nginx web server on an AWS EC2 instance in London, United Kingdom. The domain is about 2 years old, registered through Amazon Registrar, and uses AWS nameservers. DNSSEC appears to be unsigned at the time of the scan.
From an infrastructure perspective, the setup looks like a standard cloud-hosted deployment, but the page content is only a basic MaxConv confirmation screen rather than a developed site. No malicious files were detected in the limited content fetched, yet the combination of cloud hosting, sparse content, phishing-related detections, and blacklist listings may indicate this endpoint is being used in a way that warrants scrutiny.
Share your experience with this website. Was it safe? Did you encounter any issues?