whatsapp-iamsuyash.vercel.app
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of whatsapp-iamsuyash.vercel.app
This domain appears to be a small web application hosted on Vercel rather than an official corporate website. The subdomain name includes the word "whatsapp" alongside a personal-looking identifier ("iamsuyash"), and the page title is simply "Login," which suggests a narrowly focused sign-in page rather than a full public-facing service.
Based on the screenshot and linked assets, the site appears to use a modern JavaScript framework and loads a WhatsApp logo image from a public media source. The visible page content is minimal and shows a centered login-style card with a "SIGN IN WITH GOOGLE" prompt. No clear operator identity, company details, or supporting site content are visible from the scan data.
Because the domain is a subdomain on vercel.app, it is likely operated by an individual developer or project owner using Vercel's hosting platform, not by the WhatsApp brand itself. The naming and presentation may indicate an attempt to resemble a messaging-related login experience, but the available data does not show evidence of a legitimate official affiliation.
Safety Assessment for whatsapp-iamsuyash.vercel.app
The scan results indicate elevated risk signals at the time of this scan. The domain was flagged by 20 out of 91 security engines, and a major threat database listed it for social-engineering activity. In addition, the domain's IP address appears on one mail-reputation blocklist, which is a weaker signal than direct phishing detections but still worth noting.
The page itself shows a sparse login interface with a WhatsApp-related domain name and a "SIGN IN WITH GOOGLE" prompt, while the site is hosted on a third-party subdomain rather than an official brand-owned domain. That combination may be consistent with credential-harvesting or impersonation-style behavior. Although the malware scan did not detect malicious files at the time of analysis, phishing pages often contain little or no malware and instead rely on deceptive branding or login prompts.
Based on these findings, this website may pose potential risks to visitors. The published trust score is very low, and the concentration of phishing-related detections across multiple security engines materially increases concern at the time of this scan.
Technical Description
The site uses a valid SSL/TLS certificate issued by a mainstream certificate authority, with expiry shown as 2026-11-26. A valid certificate helps encrypt traffic in transit, but it does not by itself indicate legitimacy. The site is hosted on Vercel infrastructure and resolves to an IP address in the United States. The page appears to be built with a Next.js-style asset structure under /_next/static/.
DNSSEC is unsigned, which is common but means DNS responses do not appear to have DNSSEC validation protection. No malicious files were flagged in the file scan, and no suspicious external links or iframes were identified in the provided crawl data. The primary technical concern here is not malware delivery but the apparent use of a branded login-style page on a third-party-hosted subdomain alongside strong phishing-related reputation signals.
Share your experience with this website. Was it safe? Did you encounter any issues?