verificar--seguridad884.replit.app
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of verificar--seguridad884.replit.app
This domain appears to host a Spanish-language login-themed page on the Replit app platform. The page title is "Iniciar," and the screenshot shows a Microsoft-branded message claiming that terms are being updated, followed by a "Siguiente" button. Based on the visible content, the site appears designed to prompt users into continuing through an account-related flow rather than providing independent informational or business content.
The domain name itself does not appear to match an official Microsoft-owned domain. Instead, it uses a custom subdomain under replit.app, which is a general-purpose hosting platform. The page also references Microsoft branding assets, suggesting it may be attempting to resemble a Microsoft account or service notice rather than operating as a standalone legitimate website.
Safety Assessment for verificar--seguridad884.replit.app
This site was flagged by 20 out of 91 security engines at the time of this scan, with the detections broadly classifying it as phishing or malicious. In addition, one blacklist provider listed the domain with a generic malicious-object label, although major content-malice databases shown here did not report a hit. The screenshot adds further concern because it presents Microsoft branding on a non-Microsoft domain and appears to imitate an account or policy-update prompt.
The combination of a hosted subdomain, lack of meaningful site identity, no traffic ranking, and a login-style interface that resembles a major technology brand may indicate credential-harvesting or look-alike abuse. While the malware file scan did not detect malicious files in the small set examined, phishing pages often rely on deceptive page design rather than downloadable malware.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid TLS certificate issued by a mainstream certificate authority, and it is served through Google Frontend on Google Cloud infrastructure at IP address 34.117.33.233. DNSSEC appears to be unsigned, which is common but means DNS responses do not benefit from DNSSEC validation. The domain is several years old, though in this case it is a hosted subdomain on replit.app rather than a standalone brand domain.
From a security perspective, the main concern is not the TLS setup but the apparent mismatch between the displayed Microsoft branding and the actual hosting domain. The page also loads external assets from common CDN and branding-related domains, which may help it resemble a legitimate sign-in experience.
Share your experience with this website. Was it safe? Did you encounter any issues?