sub.justborrow[.]co
Category: Finance & Banking
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCRisk.com may earn a referral commission when users sign up through this link.
Description of sub.justborrow[.]co
The subdomain sub.justborrow[.]co appears to host a login portal branded as "Justborrow." Based on the visible page elements, it seems intended for returning users to access an application or account using a phone number and the last four digits of a Social Security number. The footer references privacy, terms, SMS terms, and unsubscribe links, which suggests a customer-facing service workflow rather than a generic placeholder page.
Based on the domain name and the account-access form shown in the screenshot, the site likely relates to consumer lending, borrowing, or loan-servicing activity. It appears to be operated under the broader justborrow.co domain, although the scan data provided does not independently confirm the legal entity behind the service or whether this specific subdomain is an official production environment.
Safety Assessment for sub.justborrow[.]co
At the time of this scan, no malware detections were reported by 0 out of 92 security engines, and the domain was not listed by the checked blacklist and threat-database sources. External-link analysis also did not identify suspicious outbound links, referenced domains, or iframe activity. These are favorable indicators based on available scan data.
There are still some cautionary factors. The domain is relatively new at 123 days old, has no established popularity ranking, and one malware scanner produced a generic "suspicious" result on the index page without naming a specific threat family. In addition, the page requests sensitive personal information for login, including a phone number and the last four digits of an SSN, so visitors should exercise normal caution and verify they intended to access this service through an official channel.
Based on available data, no threats were detected at the time of this scan, but the site presents a modest risk profile due to its young age, limited reputation history, and the collection of sensitive login information.
Technical Description
The site uses a valid Let's Encrypt SSL certificate that was active at the time of scanning, which indicates that traffic to the page is encrypted in transit. It appears to be served through Vercel infrastructure, with the resolved IP hosted in an Ashburn, United States data center associated with HETZNER-DC. The nameservers are standard registrar-provided servers from Namecheap.
DNSSEC is not enabled, which is common but means DNS responses do not benefit from that additional authenticity control. No malicious external resources or iframe injections were identified in the provided scan results. The main technical concern is not the transport setup, but rather the limited reputation history of this young subdomain and the generic suspicious heuristic raised on the main page.
Share your experience with this website. Was it safe? Did you encounter any issues?