st7708.craftum.io
Category: Information Technology
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCRisk.com may earn a referral commission when users sign up through this link.
Description of st7708.craftum.io
st7708.craftum.io appears to be a subdomain hosted on the Craftum website-building platform. Based on the page title and screenshot, the site presents a generic sign-in form requesting an email address and password, with very limited branding or contextual information about the service being accessed.
The domain itself does not appear to represent a well-known standalone organization or business. Instead, it looks like a custom page deployed under a shared site-builder infrastructure, which may be used for legitimate landing pages but can also be used for temporary or disposable login pages. The available metadata and visual content suggest this page is intended to collect user credentials rather than provide broader informational or commercial content.
Safety Assessment for st7708.craftum.io
This website shows multiple risk indicators at the time of this scan. It was flagged by 9 out of 92 security engines, with several classifying it as phishing or otherwise malicious, and one web-classification source categorized it under phishing and fraud. The screenshot also shows a bare login page asking for email and password without clear organizational identity, which is a common pattern seen on credential-harvesting pages.
The malware scan also reported suspicious or malicious findings tied to external resources loaded from third-party storage domains, and two referenced domains were flagged during that scan. Although major blacklist databases and browser-protection lists were clean at the time of this scan, blacklist status can lag behind newly deployed or short-lived phishing pages.
Taken together, the multi-engine detections, phishing-oriented categorization, and the minimal sign-in page design suggest this site may be intended to capture credentials. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid TLS certificate issued by a recognized certificate authority, expiring in December 2026. It resolves to IP address 92.255.111.71, appears to run on an nginx web server, and is hosted by JSC "TIMEWEB" in St Petersburg, Russia. The domain is about five years old, uses Craftum nameservers, and DNSSEC appears to be unsigned.
From a security perspective, the presence of valid HTTPS should not be treated as evidence of legitimacy, since phishing pages commonly use valid certificates as well. Additional concerns include suspicious external resources referenced from separate storage domains and the use of a generic hosted subdomain structure, which may make attribution more difficult.
Share your experience with this website. Was it safe? Did you encounter any issues?