qnkxz7bskra-mtvljwur-6m1j7d-zl399a.pages.dev
Category: Phishing And Fraud
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of qnkxz7bskra-mtvljwur-6m1j7d-zl399a.pages.dev
This domain appears to host a page designed to resemble Facebook's login interface, including Facebook branding, a login form, and Meta references in the page layout. The page title is "Facebook," and the visible content suggests it is presenting itself as a social-media account access page rather than an independent website with its own brand identity.
The domain itself is a long, random-looking subdomain under pages.dev, which is a hosted web platform rather than an official Facebook-owned domain. Based on the screenshot, metadata, and category signals, this page appears to be imitating a social-media login experience, likely to solicit account credentials or appeal-related information from visitors.
Safety Assessment for qnkxz7bskra-mtvljwur-6m1j7d-zl399a.pages.dev
Several security indicators suggest elevated risk at the time of this scan. The domain was flagged by 9 out of 91 security engines, with multiple classifications indicating phishing or fraud-related activity. In addition, multiple web-classification providers categorized the site as phishing, fraud, or social media, and the screenshot shows a login page visually resembling Facebook despite being hosted on an unrelated pages.dev subdomain.
The page structure and URLs add to that concern. One visible path references an appeal submission flow, and the site uses Facebook branding while operating from a random-looking hosted subdomain rather than an official Facebook domain. That kind of mismatch may indicate an attempt to capture login credentials or other sensitive information. Although the malware scan did not detect malicious files at the time of this scan, phishing pages often rely on deceptive forms rather than downloadable malware.
Blacklist checks for major content-malice databases were largely clean at the time of this scan, but the domain's IP address is listed on one mail-reputation blocklist, which is a weaker secondary signal. Taken together with the multi-engine phishing detections and the strong visual impersonation of Facebook, based on these findings, this website may pose potential risks to visitors.
Technical Description
The site is hosted behind Cloudflare infrastructure on IP address 172.66.47.45, with nameservers adi.ns.cloudflare.com and karl.ns.cloudflare.com. It presents a valid SSL/TLS certificate issued by Google Trust Services, expiring on 2026-11-15. A valid certificate indicates encrypted transport, but it does not by itself confirm legitimacy or trustworthiness.
The domain is approximately five years old and uses an unsigned DNSSEC configuration. Hosting on a reputable edge platform is common for both legitimate and abusive content, so infrastructure alone is not a strong trust signal here. The main technical concern is not malware delivery but the apparent use of a hosted subdomain to present a branded login page that may imitate a well-known service.
Share your experience with this website. Was it safe? Did you encounter any issues?