pending-hotdoc-rf.com
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of pending-hotdoc-rf.com
The domain pending-hotdoc-rf.com appears to be a newly registered website that presents a login page and references branding elements associated with "HotDoc." Based on the domain structure and the limited page assets observed, it may be intended to imitate or relate to an online appointment, healthcare, or account-access service rather than functioning as a broad content website.
The naming pattern is notable because it combines a recognizable brand-like term with extra words and abbreviations, which can sometimes be used for temporary campaign pages, account portals, or look-alike login sites. Based on the available scan context, there is no indication of a substantial standalone business presence, and the site appears to be a narrowly focused web page rather than a full corporate website.
Safety Assessment for pending-hotdoc-rf.com
Multiple security signals indicate elevated risk at the time of this scan. The domain was flagged by 21 out of 91 security engines, and several web-classification providers categorized it as phishing, malware, spyware, or fraud-related content. In addition, the domain is only 1 day old and has no established traffic ranking, which may increase caution because newly created domains are commonly used in short-lived credential-harvesting campaigns.
Although some blacklist databases did not list the domain at the time of this scan and a malware page scan did not identify flagged files, those cleaner signals are outweighed here by the broad multi-engine detection consensus and the page's apparent login-focused behavior. The domain name also closely resembles a known brand and may be a look-alike intended to capture user credentials or impersonate a legitimate service.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid Let's Encrypt SSL certificate expiring on 2026-08-23 and is hosted on an Apache web server at IP address 45.74.61.8 in Montreal, Canada. TLS presence helps encrypt traffic in transit, but it should not be treated as proof of legitimacy. The domain uses nameservers ns1.69host.cc and ns2.69host.cc, and DNSSEC appears to be unsigned.
From a security posture perspective, the most notable concerns are the domain's extremely recent registration, lack of DNSSEC, and the mismatch between a clean file-level malware scan and strong reputation-based phishing detections from many security engines. That pattern can be consistent with credential-harvesting pages that contain little or no conventional malware payload.
Share your experience with this website. Was it safe? Did you encounter any issues?