security-indexer--adamlee160686.replit.app
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of security-indexer--adamlee160686.replit.app
This domain appears to be a user-hosted page on the Replit app platform rather than an official standalone corporate website. The page title and screenshot show a "Sign in to your account" interface styled to resemble a Microsoft login prompt, including Microsoft branding elements and links to Microsoft-related resources.
Safety Assessment for security-indexer--adamlee160686.replit.app
Multiple security signals indicate elevated risk at the time of this scan. The domain was flagged by 8 out of 91 security engines, with several classifying it as phishing, and one blacklist database also listed it. In addition, the page content shown in the screenshot appears to imitate a Microsoft password-entry screen while being hosted on a replit.app subdomain rather than an official Microsoft-owned domain, which may indicate credential-harvesting behavior.
Although the malware scan did not detect malicious files and several major threat databases were clean at the time of this scan, those results do not outweigh the phishing-related detections and the strong visual impersonation pattern. The lack of a traffic ranking and the use of a generic app-hosting subdomain further add to the concern. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid SSL/TLS certificate issued by a mainstream certificate authority, hosted behind Google Frontend on Google Cloud infrastructure with an IP address located in Kansas City, United States. Its certificate was valid at the time of scanning, and the domain uses Google-managed nameservers. DNSSEC appears to be unsigned.
From a technical perspective, the presence of HTTPS only indicates encrypted transport and does not validate the legitimacy of the page content. The domain is a subdomain on a shared hosting/application platform, which can be used for legitimate projects but may also be used to quickly deploy impersonation pages. No malicious files or flagged external links were identified by the file-level scan at the time of analysis, but the page presentation itself raises concern.
Share your experience with this website. Was it safe? Did you encounter any issues?