weaponswh.run
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of weaponswh.run
weaponswh.run currently appears to display a seizure notice rather than an active public-facing service. The page states that the domain has been seized by Microsoft and references anti-cybercrime action, with logos from several security and legal organizations shown on the landing page. Based on the visible content, the domain does not appear to be operating as a normal consumer website at the time of this scan.
The domain name itself does not clearly indicate a legitimate brand or business purpose, and the available classification data associates it with phishing and malicious activity rather than a standard commercial or informational use. The current page suggests the domain may previously have been involved in abusive activity and is now being used as a takedown or sinkhole notice page.
Safety Assessment for weaponswh.run
Scan results indicate substantial risk signals associated with this domain. It was flagged by 16 out of 91 security engines, and multiple web-classification sources associated it with phishing, fraud, malware, or other malicious activity. The visible page also states that the domain has been seized in connection with cybercrime-related enforcement activity, which materially increases concern beyond a routine heuristic alert.
Additional checks show mixed supporting evidence. A malware scan marked the page as suspicious and flagged the main index resource and several image URLs, although those detections appear to be generic rather than family-specific. Threat-database results were otherwise mostly clean at the time of this scan, but the domain's IP address was listed on one mail-reputation blocklist, which is a weaker signal and does not by itself prove harmful web content.
Taken together, the multi-engine detections, phishing-related categorization, and the seizure notice strongly suggest this domain may pose significant risks or may have been used for abusive purposes. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The domain resolves to infrastructure hosted on Microsoft Azure in the United States, using IP address 40.91.108.115. Its certificate appears valid and was issued to Microsoft Corporation, with expiry in October 2026. The nameservers also point to Microsoft-operated internet safety infrastructure, which is consistent with the seizure or sinkhole notice shown in the screenshot.
DNSSEC appears to be unsigned, and the web server software was not identified in the provided scan data. The combination of Microsoft-managed nameservers, Microsoft-issued TLS, and a seizure banner suggests the domain may currently be under defensive control rather than operating on its original infrastructure.
Share your experience with this website. Was it safe? Did you encounter any issues?