ogs.secure-nexo.com
Category: Phishing And Fraud
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of ogs.secure-nexo.com
The domain ogs.secure-nexo.com appears to host a web page designed to present account-security alerts and recent activity prompts. Based on the screenshot, the page imitates a familiar account-review workflow, showing items such as a new login, phone number change, and email address change, with buttons asking the visitor to confirm whether the actions were legitimate. This kind of layout is commonly used to pressure users into interacting quickly with security-themed prompts.
The domain structure combines a subdomain with the term "secure" and the name "nexo," which may suggest an attempt to appear related to the Nexo cryptocurrency brand or a security portal associated with it. Available classification data also places the site in phishing-and-fraud related categories rather than as a normal technology or financial service portal. Based on the visible content and naming pattern, the page appears intended to collect user interaction or credentials under the guise of account verification.
Safety Assessment for ogs.secure-nexo.com
Multiple independent security signals indicate elevated risk at the time of this scan. The domain was flagged by 17 out of 91 security engines, and several web-classification providers categorized it as phishing or fraud-related. In addition, a major threat database listed the URL for social-engineering activity. The screenshot itself shows a page styled as an account-activity review notice, which may be intended to create urgency and persuade visitors to click approval or denial buttons tied to account-security claims.
The domain also appears very new, with a registration age of about 62 days and no established traffic ranking, which can increase uncertainty when combined with phishing-related detections. Although the malware file scan did not detect malicious files at the time of analysis, that result does not outweigh the broader phishing indicators, especially for pages that may focus on credential harvesting rather than malware delivery. The domain's IP address is also listed on one mail-reputation blocklist, which is a weaker signal on its own but adds a small amount of caution in context.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid Let's Encrypt SSL certificate that was active at the time of the scan, with an expiry date of 2026-11-08. A valid certificate helps encrypt traffic in transit, but it does not by itself indicate legitimacy. The domain is hosted on IP address 64.89.161.140 through Ghosty Networks LLC in Schieren, Luxembourg. The web server software was not identified from the available data.
WHOIS data indicates the domain was created on 2026-06-22 and is configured with Dynadot nameservers. DNSSEC appears to be unsigned, meaning DNS responses may not benefit from that additional integrity protection. The combination of a very recent registration, phishing-related detections, and account-themed page content may be relevant technical risk factors at the time of this scan.
Share your experience with this website. Was it safe? Did you encounter any issues?