test2.c3rberus.at
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of test2.c3rberus.at
The domain test2.c3rberus.at appears to host a login page styled to resemble the Steam gaming platform. The visible page title is "Sign In," and the screenshot shows Steam branding elements, a username/password form, and a QR-code login prompt intended to look like an account access page for Valve's gaming ecosystem.
Based on the domain structure, this does not appear to be an official Steam or Valve-owned web address. Instead, it appears to be a subdomain under c3rberus.at that is presenting third-party branding. In practical terms, the page seems designed to collect account credentials or session access details from users who may believe they are interacting with the legitimate Steam sign-in experience.
Safety Assessment for test2.c3rberus.at
Multiple warning signals were present at the time of this scan. The domain was flagged by 17 out of 91 security engines, with many classifying it as phishing or otherwise malicious. The page content also closely imitates the Steam login experience while using a non-official domain, which may indicate an attempt to capture user credentials through brand impersonation. In addition, a malware scan marked the single scanned file as malicious, and one threat database listing was present.
Blacklist results were mixed rather than uniformly clean: major content-malice databases shown here did not report a listing at the time of this scan, but the domain's IP address was listed on one mail-reputation blocklist, which is a weaker signal and does not by itself prove harmful website content. Even so, the combination of broad multi-engine phishing detections, a credential-harvesting style login page, and visible imitation of a well-known gaming brand materially increases concern.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid Let's Encrypt certificate that was set to expire in late 2026. It appears to be served by openresty from an IP hosted by Femo IT Solutions Limited in Frankfurt am Main, Germany. The domain uses Cloudflare nameservers, while DNSSEC appears to be unsigned.
From a security posture perspective, the presence of TLS only indicates encrypted transport and should not be treated as proof of legitimacy. The more notable concerns at the time of this scan were reputational and content-based: multi-engine phishing detections, a malicious file verdict on the landing page, and a login interface that appears to mimic a major third-party service on an unrelated domain.
Share your experience with this website. Was it safe? Did you encounter any issues?