pedagio-cobr.centralrelacionamentocliente.biz.ua
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of pedagio-cobr.centralrelacionamentocliente.biz.ua
The domain pedagio-cobr.centralrelacionamentocliente.biz.ua appears to be a Portuguese-language web address, and its naming suggests a page related to toll payment or charge collection. The terms "pedagio" and "cobr" may refer to tolls and billing, while "centralrelacionamentocliente" translates roughly to a customer relationship or customer service center. Based on the domain structure alone, it may be presenting itself as a customer-facing payment or account-support page.
This is a subdomain under biz.ua, which is commonly used for business-oriented registrations. There is no evidence in the provided scan data of a broader established web presence, and the domain is not ranked in major traffic measurements. Based on the available information, it appears more likely to be a narrowly targeted transactional or login-style page rather than a full corporate website.
Safety Assessment for pedagio-cobr.centralrelacionamentocliente.biz.ua
The scan results indicate multiple risk signals at the time of this scan. The domain was flagged by 6 out of 91 security engines, with several of those detections specifically classifying it as phishing. In addition, one threat database listed the domain, and the malware scan marked both scanned page entries as suspicious. These findings do not prove intent on their own, but they are consistent with a website that may be attempting to collect sensitive information under misleading pretenses.
There are also supporting technical concerns. The site was reported without a valid SSL/TLS configuration, which is unusual for any page that may request personal or payment information. The domain's IP address is also listed on mail-reputation blocklists, which is a weaker signal than direct phishing detections but still adds caution. Although the parent domain is old, that age alone does not offset the phishing-related detections on this specific subdomain, especially given the lack of traffic reputation and the payment-themed naming pattern.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The scan indicates that the site did not present a valid or detectable SSL/TLS configuration at the time of testing, with certificate details and protocol information unavailable. For a page that appears related to billing or customer account activity, missing or invalid HTTPS is a notable concern because it can reduce confidence in the authenticity and confidentiality of user interactions.
The domain resolves to IP address 79.124.60.167 and appears to be hosted by Tamatiya EOOD in Sopot, Bulgaria. DNSSEC status was reported as unknown, and the web server software was not identified. The domain uses uadns.com nameservers. No external links, referenced domains, or iframes were observed in the provided scan output, suggesting either a very minimal page or limited page complexity at the time of analysis.
Share your experience with this website. Was it safe? Did you encounter any issues?