panel-sigma-two.vercel.app
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of panel-sigma-two.vercel.app
This domain appears to host a webmail-style login page presented under the title "Webmail Login." Based on the screenshot, the page asks for an email address and password and includes multilingual locale options, suggesting it is intended to collect mailbox credentials from users in multiple regions. The page also visually references cPanel-style webmail branding elements, which may make it appear related to a hosting control panel or email service.
The site is served from a subdomain on Vercel, a cloud hosting platform commonly used for static and application deployments. The domain name itself does not clearly identify a legitimate business, organization, or mail provider, and the page content appears narrowly focused on authentication rather than providing broader website functionality or company information.
Available data does not indicate a normal public-facing business website, store, or content portal. Instead, it appears to be a single-purpose login interface that may be attempting to imitate a familiar webmail environment.
Safety Assessment for panel-sigma-two.vercel.app
Multiple security signals raise concern about this domain at the time of this scan. It was flagged by 11 out of 91 security engines, with many of those detections classifying it as phishing or otherwise malicious. In addition, the screenshot shows a credential-entry page branded as "Webmail" on a generic Vercel subdomain rather than on a clearly attributable mail provider or company domain, which may indicate an attempt to capture email login details.
The malware scan did not report infected files, but it did apply a generic malicious-object label to the domain and to numerous localized URL variants. That kind of heuristic finding is less specific than a named malware family, yet in this case it is accompanied by broader reputation concerns. Blacklist data was mixed: major content-threat databases shown here were not flagging the site, but the domain was listed by one additional threat database, and the server IP was also listed on one mail-reputation blocklist. That DNS-based listing is a weaker signal than phishing detections, but it still adds minor caution.
Taken together, the combination of multi-engine phishing detections, a credential-harvesting style page, lack of clear operator identity, and suspicious hosting context suggests elevated risk. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid SSL/TLS certificate issued by a mainstream certificate authority, with expiry shown in September 2026. HTTPS availability indicates encrypted transport, but this should not be interpreted as proof of legitimacy. The site is hosted on Vercel infrastructure and resolves to an IP address in the United States. DNSSEC appears to be unsigned.
From an infrastructure perspective, the use of a reputable hosting platform is neutral rather than reassuring, since legitimate and abusive pages can both be deployed on shared cloud services. The page appears lightweight and focused on a login form, with numerous locale-specific URL variants detected during scanning. No malicious files were identified in the file scan, but the broader reputation data and page behavior remain the more significant technical concerns at the time of analysis.
Share your experience with this website. Was it safe? Did you encounter any issues?