whatsappclone-inky.vercel.app
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of whatsappclone-inky.vercel.app
This domain appears to host a web page styled to resemble WhatsApp, showing the WhatsApp name and logo along with a "Login with Google" prompt. The subdomain name "whatsappclone-inky" suggests it may be a cloned or imitation interface rather than an official service page. It is hosted on a cloud deployment platform under a vercel.app subdomain, which commonly indicates a user-deployed application rather than a primary brand-owned website.
Based on the page title, screenshot, and domain naming, the site appears to present itself as a messaging-related login page associated with WhatsApp. However, there is no indication in the provided data that it is operated by WhatsApp or its parent company. The combination of a brand-referencing subdomain and a third-party hosting platform may indicate an unofficial project, demo, or a page intended to collect credentials.
Safety Assessment for whatsappclone-inky.vercel.app
The scan results indicate substantial risk signals at the time of this scan. The domain was flagged by 20 out of 91 security engines, with many of those detections classifying it as phishing or malicious. In addition, the page visually resembles WhatsApp while being hosted on an unrelated vercel.app subdomain, and it presents a Google login prompt that could be used to solicit account credentials. That combination may indicate a look-alike login page rather than a legitimate authentication flow.
Other signals are mixed but do not outweigh the stronger phishing indicators. A malware scan reported no flagged files, although it also applied a generic malicious label to the domain and linked resources. Threat-database checks were not uniformly negative: one content-related blacklist entry was present, and the domain's IP address is also listed on one mail-reputation blocklist, which is a weaker signal on its own but still worth noting. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid SSL/TLS certificate issued by a mainstream certificate authority, expiring in July 2026. It is hosted by Vercel and resolves to an IP address in the United States. The page appears to be built with a Next.js-style frontend, as suggested by the _next static asset paths and JavaScript bundle structure.
DNSSEC is unsigned, which is common but means DNS responses do not appear to have DNSSEC validation protection. The infrastructure itself looks like standard cloud-hosted web deployment, but valid HTTPS and mainstream hosting should not be treated as proof of legitimacy. In this case, the more significant concern is the apparent brand imitation and the multi-engine phishing detections rather than the server configuration alone.
Share your experience with this website. Was it safe? Did you encounter any issues?