pdf-viewer-five-virid.vercel.app
Category: Phishing
- Don't sign in or pay here. Close it. If you typed a password, change it where you normally use it.
- Already visited? Check your device. A free scan shows whether anything was installed.
- Stop the next one. Combo Cleaner's web protection blocks phishing and scam sites before they load.
Combo Cleaner is PCrisk's own anti-malware tool, owned by RCS LT. Free to scan; removing what it finds needs a licence (7-day free trial).
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of pdf-viewer-five-virid.vercel.app
This domain appears to host a web page presented as a PDF viewing interface. Based on the page title, the screenshot, and the subdomain naming, it seems designed to display a document preview and prompt the visitor to click a "View Files" button, while referencing well-known software and technology brands in page assets.
The site is hosted on a cloud deployment platform under a vercel.app subdomain rather than on a standalone branded domain. No clear information is visible about a legitimate organization operating the page, and the content shown does not resemble a full business website, publisher, or document service with identifiable ownership, contact details, or supporting navigation.
Overall, the page appears to function as a single-purpose document-themed landing page rather than a conventional content site. Its presentation suggests it may be attempting to imitate a PDF or document-access workflow, potentially to encourage user interaction with a download or access prompt.
Safety Assessment for pdf-viewer-five-virid.vercel.app
The scan results indicate elevated risk signals at the time of this scan. The domain was flagged by 15 out of 91 security engines, with many of those detections classifying it as phishing or otherwise malicious. In addition, the malware scan reported suspicious findings on the page and flagged multiple linked resources, including a script path and a configuration-related path. The screenshot also shows a document viewer overlay urging the visitor to click a "View Files" button and download or open a PDF reader, which is a pattern commonly associated with credential harvesting or deceptive download flows.
Blacklist and reputation data were mixed rather than fully clean. Major content-malice databases shown in the scan were largely clear at the time of review, but the domain was listed by one malware-oriented blacklist source, and the domain's IP address was also listed on one mail-reputation blocklist. That DNS-based listing alone would be a weak signal, but in this case it appears alongside substantial multi-engine phishing detections and a page design that may be intended to mimic a trusted document experience.
Based on these findings, this website may pose potential risks to visitors. The combination of broad phishing detections, suspicious linked resources, and a deceptive-looking document prompt suggests caution would be warranted at the time of this scan.
Technical Description
The site uses a valid SSL/TLS certificate issued by a mainstream certificate authority, and it is hosted on Vercel infrastructure with a server IP in the United States. The domain is several years old, but because this is a hosted subdomain on a shared platform, the age of the parent domain does not necessarily indicate long-term legitimacy for the specific page or deployment.
DNSSEC appears to be unsigned, which is common but provides no additional DNS integrity assurance. The page is served from Vercel nameservers and appears to be a lightweight single-page deployment rather than a full application with transparent ownership details. The main technical concerns in this scan are not certificate-related; they stem from the suspicious page behavior, flagged script/resource paths, and the concentration of phishing detections across multiple security engines.
Share your experience with this website. Was it safe? Did you encounter any issues?