sp23ct-qelun-biz-varek-morik.pages.dev
Category: Phishing And Fraud
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of sp23ct-qelun-biz-varek-morik.pages.dev
This domain appears to host a page designed to resemble Facebook's login interface, including Facebook branding, a Meta footer, and a sign-in form requesting an email/mobile number and password. The page title is "Facebook," and the visible content suggests it is presenting itself as an account access or account-recovery related page rather than an independent website with its own brand identity.
Based on the domain structure, the site is hosted on a pages.dev subdomain associated with Cloudflare's static hosting platform rather than on Facebook's official domain infrastructure. The included URL paths referencing appeal submission and login-related actions may indicate an attempt to collect account credentials or other sensitive information under the appearance of a familiar social-media service.
There is no clear indication from the provided data that this page is operated by Meta or Facebook. Instead, the mismatch between the domain name and the branding shown on the page strongly suggests it may be an unofficial page imitating a well-known platform.
Safety Assessment for sp23ct-qelun-biz-varek-morik.pages.dev
Multiple security signals indicate elevated risk at the time of this scan. The domain was flagged by 10 out of 91 security engines, and multiple web-classification providers categorized it as phishing or fraud-related content. In addition, the screenshot shows a login page branded as Facebook even though the site is hosted on an unrelated pages.dev subdomain, which is a common pattern associated with credential-harvesting pages.
The malware scan did not identify malicious files, and several content-focused blacklist databases were clean at the time of the scan. However, that does not outweigh the stronger phishing indicators from the multi-engine detections, the deceptive branding pattern, and the presence of a mail-reputation blocklist listing on the domain's IP address. A clean file scan can occur on phishing pages because such pages may rely on social engineering rather than malware delivery.
Following a manual review by the PCRisk team, the published trust score has been adjusted to reflect a high-risk assessment. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The domain uses a valid SSL/TLS certificate issued by a mainstream certificate authority, with expiry listed in November 2026. It is hosted behind Cloudflare infrastructure on IP address 172.66.44.145, with Cloudflare nameservers and a registrar record through CloudFlare, Inc. DNSSEC appears to be unsigned.
From a technical standpoint, the presence of HTTPS should not be treated as proof of legitimacy, since phishing pages commonly use valid certificates as well. The hosting setup appears consistent with a static or lightweight web application deployment, and the main concern is not transport security but the apparent mismatch between the domain identity and the branded login content presented to users.
Share your experience with this website. Was it safe? Did you encounter any issues?