xg3o-oh5spr-ulb5t4-r4dh8.pages.dev
Category: Phishing And Fraud
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of xg3o-oh5spr-ulb5t4-r4dh8.pages.dev
This domain appears to host a page designed to resemble Facebook's login interface, including Facebook branding, a login form, and Meta-related footer links. The page title is "Facebook," and the screenshot shows a layout that imitates a mainstream social media sign-in page rather than presenting an independent brand or service of its own.
The domain itself is a randomized subdomain under pages.dev, which is a hosting platform commonly used for static web content. Based on the visible content and the linked paths such as appeal-related endpoints and login submission routes, the page may be intended to collect account credentials or other user input while presenting itself as a familiar social media destination.
No clear evidence in the scan data identifies the actual operator of this page. Based on the branding and page structure, it does not appear to be an official Facebook-owned domain.
Safety Assessment for xg3o-oh5spr-ulb5t4-r4dh8.pages.dev
Several security signals indicate elevated risk at the time of this scan. The domain was flagged by 8 out of 91 security engines, with the detections consistently describing phishing-related behavior. In addition, the screenshot shows a login page that closely imitates Facebook while being hosted on an unrelated pages.dev subdomain, which may indicate an attempt to resemble a well-known service and capture user credentials.
Blacklist and threat-database results were mixed. Major content-focused threat databases included in the scan did not report the domain at the time of testing, and the malware scan did not detect malicious files. However, the domain's IP address was listed on one mail-reputation blocklist, which is a weaker signal than direct phishing detections but still adds some caution. The combination of multiple phishing classifications, a non-official hosting domain, and a branded login interface is more concerning than the clean file scan alone.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid SSL/TLS certificate issued by a mainstream certificate authority, with expiry shown as 2026-10-19. It is hosted through Cloudflare infrastructure on IP address 188.114.96.0, with nameservers also pointing to Cloudflare. DNSSEC appears to be unsigned, which is not uncommon but does mean DNS responses do not benefit from that additional authenticity check.
From an infrastructure perspective, the use of HTTPS and a major hosting provider does not by itself establish legitimacy. The domain is about 5 years old, but this is a pages.dev subdomain rather than a standalone brand domain, and the visible content appears to imitate a third-party login page. That mismatch between hosting identity and presented brand is a notable technical concern.
Share your experience with this website. Was it safe? Did you encounter any issues?