verify-auth30-cookies[.]info
Category: Phishing, Newly Registered
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of verify-auth30-cookies[.]info
The domain verify-auth30-cookies[.]info appears to host a credential-verification style page that presents itself as a Microsoft identity check. The page title and visible content reference "Microsoft Security" and instruct visitors, in French, to verify their identity to access a document by copying and using a short code. This suggests the site is designed to imitate an account-access or document-sharing workflow rather than provide independent content or services of its own.
Based on the domain name, page metadata, and screenshot, the site does not appear to be an official Microsoft-owned property. Instead, it appears to use a generic, newly registered .info domain with wording such as "verify," "auth," and "cookies," which may have been chosen to resemble an authentication or session-related service. No legitimate operator identity is visible in the provided scan data, and the domain does not show signs of being a normal corporate or consumer website.
Safety Assessment for verify-auth30-cookies[.]info
Multiple risk indicators were present at the time of this scan. The domain was categorized by several web-classification providers as phishing or fraud-related, and 11 out of 92 security engines flagged it, with several specifically identifying phishing-related behavior. The screenshot also shows branding and wording that closely resemble Microsoft's identity-verification experience, while the actual domain is unrelated to Microsoft's official web properties. That mismatch may indicate an attempt to collect credentials or redirect users into an unauthorized sign-in flow.
Additional context increases concern: the domain is only 3 days old, has no established popularity ranking, and uses a generic .info address rather than a recognizable official brand domain. Although the malware scan did not detect malicious files and blacklist databases were largely clean at the time of this scan, that does not outweigh the combination of multi-engine phishing detections, newly registered status, and apparent brand imitation shown on the page.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid Let's Encrypt certificate, and it appears to be served through Cloudflare infrastructure on IP space associated with that provider. Nameservers also point to Cloudflare, suggesting the operator is using a CDN or reverse-proxy layer to front the origin server. The certificate being valid only indicates encrypted transport to the presented endpoint; it does not verify that the site is legitimately affiliated with the brand shown on the page.
From a domain-security perspective, the domain is extremely new and DNSSEC is unsigned. The combination of recent registration, Cloudflare-fronted hosting, and a branded login-style page on an unrelated domain may be consistent with short-lived phishing infrastructure. No flagged files or iframes were identified in the limited file scan, but the overall technical profile still presents notable trust concerns at the time of this scan.
Share your experience with this website. Was it safe? Did you encounter any issues?