safecaptcha[.]click
Category: Spyware And Malware
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of safecaptcha[.]click
The domain safecaptcha[.]click appears to present itself as a Telegram-related landing page. Based on the page title, visual layout, and screenshot, it imitates the look of a Telegram channel or group invitation page and encourages visitors to click a prominent join button. The domain name itself does not appear to match Telegram's official web properties, which suggests it may be functioning as an intermediary landing page rather than an official service page.
The visible content references a channel named "Pervy" and includes subscriber/member counts, along with a download-style button in the header and a join action in the center of the page. The page also loads a resource from a Telegram-associated content delivery domain, which may be intended to reinforce the appearance of legitimacy. Based on available classification data, the site has been associated with phishing, fraud, and malware-related categories at the time of this scan.
Safety Assessment for safecaptcha[.]click
This domain shows several notable risk indicators. It was flagged by 10 out of 91 security engines, and multiple web-classification sources associated it with phishing, fraud, or malware-related activity. In addition, the domain is extremely new at only 4 days old and has no measurable popularity ranking, which can be consistent with short-lived abuse infrastructure. While one malware scan reported no flagged files at the time of inspection, that result does not outweigh the broader pattern of phishing-related detections and suspicious categorization.
The page also appears to mimic Telegram branding while using a different domain, which may indicate a look-alike setup intended to persuade users to trust the page. That kind of presentation can increase the risk of credential theft, deceptive redirects, or unwanted downloads, especially when paired with a newly registered domain and multiple security detections.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid Let's Encrypt SSL certificate and is served through Cloudflare infrastructure, with the resolved IP associated with Cloudflare in Toronto, Canada. Nameservers also point to Cloudflare, and DNSSEC appears to be unsigned. A valid certificate helps encrypt traffic in transit, but it does not by itself indicate legitimacy.
From a technical risk perspective, the strongest concerns are not the TLS setup but the domain's very recent registration, lack of DNSSEC, absence of established reputation, and the mismatch between the domain name and the branded content shown on the page. The scan found only a small number of files and no flagged files at that moment, but the broader detection pattern suggests caution is warranted.
Share your experience with this website. Was it safe? Did you encounter any issues?