sand1-bnb-bep20.vercel.app
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of sand1-bnb-bep20.vercel.app
This domain appears to host a simple cryptocurrency-themed web page on a Vercel subdomain. Based on the page title, meta description, and screenshot, it presents itself as a tool for sending USDT on Binance Smart Chain, with a form asking for an address or domain name and an amount before proceeding to the next step.
The naming pattern in the subdomain references BNB and BEP20, which are commonly associated with Binance Smart Chain assets and token transfers. The page does not appear to provide clear operator identity, company details, or supporting business information, so ownership and operational legitimacy are not evident from the visible content alone.
Safety Assessment for sand1-bnb-bep20.vercel.app
This site shows multiple risk indicators at the time of this scan. It was flagged by 16 out of 91 security engines, with many of those detections classifying it as phishing or otherwise malicious. The page content also raises concern because it presents a cryptocurrency transfer interface on a generic hosting subdomain, while offering little visible information about who operates the service or why users should trust it.
Additional scan data is mixed but still concerning overall. A malware scan reported no flagged files in the small file set it checked, yet it also associated the domain and several local resources with a generic malicious-object heuristic. Threat-database checks were not fully clean: one blacklist source listed the domain, and the domain's IP address is listed on one mail-reputation blocklist. That DNS-based listing is a weaker signal than direct phishing detections, but it still adds a minor caution.
The domain itself is several years old, which can sometimes reduce concern, but age alone does not outweigh the volume of phishing-related detections and the suspicious transaction-focused page design. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site is hosted on Vercel infrastructure and resolves to an IP address in the United States. It uses a valid SSL/TLS certificate issued by a mainstream certificate authority, which means the connection appears encrypted in transit; however, HTTPS alone does not verify the trustworthiness of the site's purpose or operator. The scan did not specify the negotiated protocol version.
DNSSEC appears to be unsigned, so DNS responses may not benefit from that additional integrity layer. The site uses Vercel-managed nameservers and loads at least one external JavaScript library from a public CDN. From a security-review perspective, the main concerns are reputational rather than transport-level: multiple phishing detections, generic malicious-object heuristics on page resources, and limited transparency about the service behind the page.
Share your experience with this website. Was it safe? Did you encounter any issues?