rom2-nine.vercel.app
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of rom2-nine.vercel.app
The domain rom2-nine.vercel.app appears to be a page hosted on Vercel rather than a standalone branded website. Based on the screenshot and page title, it presents itself as a "Zimbra Web Client Sign In" page and displays branding associated with PenTeleData and Synacor's Zimbra interface. Its apparent purpose is to collect user login credentials through a webmail-style sign-in form.
There is no visible company information on the page tying this subdomain to an official PenTeleData or Zimbra-operated property. The use of a generic Vercel subdomain, combined with a login-only interface and no supporting site content, suggests this page may be intended to imitate a legitimate webmail portal rather than serve as a normal public-facing website.
Safety Assessment for rom2-nine.vercel.app
The scan results indicate elevated risk at the time of this scan. The domain was flagged by 14 out of 91 security engines, with most detections classifying it as phishing or malicious. In addition, the page content appears to mimic a branded webmail login experience, which may be consistent with credential-harvesting activity. The screenshot shows a sign-in form using recognizable branding, but the domain itself does not appear to match an official corporate or product domain for that service.
A malware scan also marked both scanned page entries as suspicious, although those findings were generic rather than tied to a named malware family. Blacklist checks were mixed: major content-malice databases shown here did not detect it, but the domain's IP address is listed on one mail-reputation blocklist, which is a weaker signal and does not by itself prove harmful website content.
Taken together, the multi-engine phishing detections, the impersonation-style login page, and the lack of normal site context are meaningful warning signs. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site is hosted on Vercel infrastructure and resolves to IP address 216.198.79.131 in the United States. It uses a valid SSL/TLS certificate issued by Google Trust Services, which means the connection appears encrypted in transit; however, valid HTTPS does not by itself establish legitimacy. The domain uses Vercel nameservers and is configured as a subdomain under vercel.app rather than a dedicated organizational domain.
The registration data provided indicates an age of about 6 years, although that age likely reflects the parent platform domain rather than proving long-term legitimacy of this specific hosted page. DNSSEC is unsigned, and no additional technical trust indicators such as a verified organizational domain identity are evident from the supplied data. The main technical concern is not transport security but the apparent mismatch between the branded login content and the hosting/domain context.
Share your experience with this website. Was it safe? Did you encounter any issues?