sp15ct-zavven-biz-korun-qelix.pages.dev
Category: Phishing And Fraud
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of sp15ct-zavven-biz-korun-qelix.pages.dev
This domain appears to be a page hosted on the pages.dev platform, which is commonly used for static websites and web app deployments. Based on the page title, screenshot, and visible branding, the site presents itself as a Facebook login page and includes Meta-related visual elements, account sign-in fields, and links styled to resemble the legitimate social media service.
The domain name itself does not appear to be an official Facebook or Meta-owned web address. Instead, it uses a long, random-looking subdomain under pages.dev, which may indicate a temporary or disposable deployment rather than an official consumer-facing service. Based on the available content, the page appears intended to collect login credentials or appeal-related account information while imitating a well-known social media platform.
Safety Assessment for sp15ct-zavven-biz-korun-qelix.pages.dev
Multiple risk indicators were present at the time of this scan. The domain was flagged by 14 out of 91 security engines, and several web-classification sources categorized it as phishing or fraud-related. The screenshot also shows a login page closely imitating Facebook, while the actual domain is an unrelated pages.dev subdomain rather than an official Facebook or Meta domain. That mismatch may indicate a credential-harvesting or account takeover attempt.
Additional context reinforces the concern. Although one malware scan reported no malicious files, file-level cleanliness does not rule out phishing activity, especially on simple credential collection pages. Threat-database results were mixed: some major content-focused blocklists were clean at the time of this scan, but another blacklist source listed the page, and the domain's IP address was also listed on one mail-reputation blocklist. That DNS-based listing is a weaker signal on its own, but in combination with the phishing detections and the impersonation-style page design, it adds caution.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid SSL/TLS certificate issued by Google Trust Services, with certificate validity extending into 2026. It is hosted behind Cloudflare infrastructure on IP address 172.66.47.118, and the domain uses Cloudflare nameservers. A valid certificate helps encrypt traffic in transit, but it does not verify that the site is legitimate or trustworthy.
DNSSEC appears to be unsigned, which means DNS responses may not benefit from that additional integrity layer. The hosting setup and static-site deployment model are consistent with quickly published web pages, which can be used for legitimate purposes but may also be used for short-lived impersonation pages. No malicious files were flagged in the file scan, but the primary concern here appears to be deceptive page content rather than malware delivery.
Share your experience with this website. Was it safe? Did you encounter any issues?