zh1478.craftum.io
Category: Information Technology
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of zh1478.craftum.io
zh1478.craftum.io appears to be a subdomain hosted on Craftum, a website-building platform. The visible page is branded as Craftum and displays a Russian-language notice stating that the site is temporarily unavailable, likely because the subscription has ended and needs renewal through the Craftum control panel.
Based on the domain structure and page content, this does not currently appear to function as a full standalone website. Instead, it looks like an inactive or disabled site instance on a hosted site-builder service. Category data associated with the domain points to technology or information-technology themes, although some classification sources also associate it with phishing-related activity.
The underlying operator of the currently visible page appears to be the Craftum platform rather than an active end-user business site. Because this is a hosted subdomain, the subdomain itself may previously have been used for other content, and the present landing page may not reflect its earlier use.
Safety Assessment for zh1478.craftum.io
Scan results indicate elevated risk signals at the time of this scan. The domain was flagged by 10 out of 91 security engines, with multiple detections describing phishing or malicious behavior. In addition, a malware scan reported 2 flagged items on the page and identified suspicious external resources loaded from third-party storage domains. Those combined findings suggest the subdomain may previously have hosted or referenced harmful content.
At the same time, major threat-database checks shown in the scan were clean, and the current screenshot displays a temporary unavailability notice rather than an active login form, storefront, or download page. This may mean the harmful content is no longer live, the page has been disabled, or the detections relate to earlier content or embedded resources rather than the current visible screen.
Even so, the multi-engine phishing consensus is a strong cautionary signal, especially given the very low trust score and the phishing-related categorization from one web-classification source. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The subdomain uses a valid SSL/TLS certificate issued by a commercial certificate authority, with expiry listed in December 2026. It resolves to an nginx web server hosted by JSC "TIMEWEB" in St Petersburg, Russia. The domain has been registered for several years and is set to expire in 2027, which suggests it is not a newly created domain.
DNSSEC appears to be unsigned, which is common but provides less DNS integrity protection than a signed configuration. The most notable technical concern in this scan is not the certificate or hosting setup, but the reported loading of flagged external resources from separate storage domains and the presence of page elements identified as malicious by the malware scan.
Share your experience with this website. Was it safe? Did you encounter any issues?