ucrhp.rgva725lyrd.teams-login.xyz
Category: Phishing And Fraud
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of ucrhp.rgva725lyrd.teams-login.xyz
This domain appears to be a subdomain hosted under teams-login.xyz and is likely intended to present a login-related web page. Based on the domain structure and the available classification data, it may be associated with a page imitating a collaboration or account-access service rather than a standalone business, publisher, or consumer website.
Multiple web-classification sources categorize the domain in phishing and fraud-related groups. The hostname uses terms commonly associated with account sign-in workflows, which can be consistent with credential-harvesting pages that attempt to resemble legitimate login portals. Based on available data, this does not appear to be a conventional branded website with clear public-facing ownership information.
Safety Assessment for ucrhp.rgva725lyrd.teams-login.xyz
Scan results indicate substantial risk signals at the time of this scan. The domain was flagged by 18 out of 91 security engines, and multiple web-classification providers categorized it as phishing or fraud-related. In addition, a major threat database listed the URL for social-engineering activity, which is a strong indicator of attempted credential theft or deceptive login behavior.
The domain itself appears crafted to resemble a login-related service, which may increase the likelihood of user confusion. Although one malware scan reported no flagged files and no external links or iframes were observed in that scan, those findings do not outweigh the broader phishing-related detections. The domain's IP address is also listed on one mail-reputation blocklist, though that signal is secondary compared with the phishing classifications and threat-database listing.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site presents a valid TLS certificate, but it appears to be using a default certificate rather than branding tied to a recognizable organization. It is hosted on Microsoft Azure infrastructure in Australia, with DNS hosted via Vultr nameservers. DNSSEC is not enabled, which is common but provides less protection against certain DNS-manipulation scenarios.
From a technical-risk perspective, the strongest concerns are not the hosting stack itself but the reputation signals around the domain and URL. The combination of a generic cloud-hosted setup, unsigned DNSSEC status, login-themed hostname, and broad phishing detections suggests the infrastructure may be disposable or configured for short-term abuse.
Share your experience with this website. Was it safe? Did you encounter any issues?