Is 05599.vip a scam? TrustSniffer's high-risk assessment: 0/100

05599.vip
Download PDF Check another site How we score

Verdict

0 OUT OF 100
Critical Risk

05599.vip shows high-risk / scam indicators.

This assessment found strong scam indicators. Do not pay, sign in, or share personal details with this site.

Sensitive Interaction Risk Governance Risk

Assessed 2026-08-18 by automated analysis. Classification confidence 70%.

What this site appears to beSingle-line page saying 'Security' and 'Redirecting to 05599.vip ...' — functions as a redirect/landing with no additional context or trust signals.

Evidence status and limitations

Evidence completeness: UNKNOWN

  • The real-world operator identity was not independently verified.
  • Module-level completeness metadata is unavailable for this legacy report.

At a glance

The checks that decide most of this verdict.

Malware engines17 flagged itVirusTotalRisk
Google Safe BrowsingNot listedGoogleClear
Abuse reports on the host0 reportsAbuseIPDB; shared hosting inflates this countNoted
Domain age4.4 years oldRegistered historyClear
Web archiveArchived since 201815 snapshotsClear
CertificateEncrypted connectionIssued by YE2Noted

The page as captured

https://05599.vip/
Screenshot of the 05599.vip homepage captured during the TrustSniffer assessment
What 05599.vip served when TrustSniffer captured it on 2026-08-18. The page may look different now.

Key findings

  • Automated classification: Sensitive Interaction Risk.
  • Domain age: 3 to 10 years (registration continuity).
  • Public web-archive history exists since 2018.
  • At least one reputation service TrustSniffer consulted had flagged this domain at assessment time.

Full analysis

Security Alert

Fortinet, Kaspersky, Sophos flagged this site in external intelligence checks, indicating elevated compromise/scam exposure that requires immediate caution.

This website is a minimal landing page titled “Security” whose apparent function is to redirect visitors to the external domain 05599.vip; it presents no identifiable product, pricing, operator, or substantive business purpose.

Scam/Impersonation Risk

The site presents a confirmed blacklist signal, with malicious detections from multiple security providers. This is reinforced by the page’s automatic external redirection, suspicious inline scripts, and near-total absence of context about where visitors are being sent or what service is offered. No brand impersonation or conflicting legal identity was observed, but the confirmed blacklist status and the site’s redirect-only behavior create a material risk for sensitive interaction. The available evidence does not establish that the destination is legitimate or that any deposit-before-service flow is safe.

Evidence
  • External reputation checks recorded 17 malicious detections, with Fortinet, Kaspersky, and Sophos among the flagged providers; the domain was also identified on external blacklists.
  • The homepage contains approximately 37 characters of visible text and automatically redirects visitors to 05599.vip; browser analysis recorded 2 suspicious inline scripts.
  • The domain was registered in 2022 and is approximately 4.43 years old.
  • Web-archive records contain 15 snapshots spanning 2018–2026, with 9 years tracked.

Regulatory Verification Notes

The available page does not provide an operator identity, legal entity, licensing authority, registration number, terms, pricing, or contact information. Because the site is only a redirecting landing page, its business model and any regulated activity cannot be assessed from on-page disclosures. This is a significant verification gap rather than an independent determination of regulatory status; the real-world operator also remains unverified. A valid transport certificate confirms encrypted delivery, but it does not validate the business or its regulatory standing.

Evidence
  • The site is hosted on AS35251 (ANTI-DDOS - NetLab Global, US).
  • The site’s TLS certificate is issued by YE2, uses DV validation, and is valid to 2026-11-13.
  • The available page supplies no licensing authority or license number for independent regulatory confirmation.

What to Verify Next

Before any sensitive interaction, an institution should identify the legal operator through an independent corporate or regulatory registry and confirm that the intended destination is officially associated with that entity. Any proposed financial activity should be checked through independently sourced payment, complaints, and recovery channels rather than links supplied by the landing page. Credentials, wallet access, or deposits should not be provided unless those checks establish a legitimate operator and an independently verifiable service.

Evidence
  • Independent registry confirmation is required because the landing page provides no verifiable operator or licensing details.
  • Destination validation should be performed independently because the observed navigation leaves the original page for an external domain.
  • Sensitive interaction should remain suspended pending confirmation of the operator, destination, and transaction safeguards.

Summary Verdict

The overall posture is critical risk, with the site failing the standard required for trusted sensitive interaction. Its identity and business purpose are not independently verified, while the convergence of external threat detections and redirect-oriented behavior materially outweighs the limited evidence of normal technical availability.

Infrastructure Integrity

A CDN/WAF layer is present, with observed edge servers on AS16509; the resolved service infrastructure is separately associated with AS35251 and ANTI-DDOS - NetLab Global, US. This protective architecture may mitigate some direct exposure, but infrastructure protection is only a compensating control and does not establish legitimacy or offset the external reputation findings.

Closing Assessment

The appropriate institutional posture is to block or isolate sensitive interaction and permit only controlled, read-only investigation until independent identity, destination, and transaction assurance have been established.

Written analysis generated 2026-08-18 by the TrustSniffer Analysis Engine from the evidence in this report.

What the analysis found

2 findings contributed to this verdict, raised by registration and ownership, analysis engine, behaviour in a sandbox, external reputation.

01 Governance Risk

  • The registration record withholds contact details for the operator.Registration and ownership rule:KF_WHOIS_HIDDEN
  • Registration details are held behind a privacy service, so no operator is named publicly. This is common and legal, and it also means there is nobody to check.Registration and ownership rule:KF_WHOIS_PRIVATE

02 Sensitive Interaction Risk

  • The analysis matched a pattern TrustSniffer treats as a direct threat to a visitor.Analysis engine signal:direct_threat
  • A large share of what the page loaded came from other domains.Behaviour in a sandbox rule:BEHAV_EXTERNAL_RATIO_MODERATE
  • The page carried inline scripts written in a style TrustSniffer treats as suspicious.Behaviour in a sandbox rule:BEHAV_SUSPICIOUS_INLINE_SCRIPTS
  • An external threat feed lists this domain: either Google Safe Browsing marked it malicious, or a significant number of malware engines flagged it.External reputation rule:EXT_BLACKLIST_CRITICAL

Identity verification

StatusUNVERIFIED
Identity score30/100
Identity verification confidence25%
  • No on-site identity signals detected

Identity verification measures whether the site can be independently connected to a real-world brand or person. It is separate from the classification confidence.

What TrustSniffer observed

First-party facts recorded during the assessment of 05599.vip.

  • The request stayed on 05599.vip. It was not redirected to another domain. Clear
  • Registration is published under DYNADOT LLC. Clear
  • DNS for this domain is served by xundns.com, across 2 name servers. Noted
  • The registration is paid up to 2028-03-14. Clear
  • The earliest public archive of this site is from 2018-08-12. Clear
  • It is hosted on ANTI-DDOS, from a server in HK. Noted

Domain intelligence

RegistrarDYNADOT LLC
HostingANTI-DDOS - NetLab Global, US
CountryHK
Server IP45.138.71.205
Name serversn1.xundns.com, n2.xundns.com
SSL issuerYE2
SSL expiry2026-11-13
Domain age4.43 years (continuous registration)
Domain expiry2028-03-14
Archive first seen2018-08-12
Archive snapshots15
ReputationVirusTotal: 17 flagged | AbuseIPDB: 0 reports | Google Safe Browsing: 0 matches

About this assessment

A trust score summarises the evidence TrustSniffer could collect about 05599.vip at assessment time. It is a starting point for your own judgement, not a guarantee: a high score means the signals were consistent with a legitimately operated site, a low or critical score means several risk patterns were present.

TrustSniffer assesses a website from the evidence it can collect at a point in time: domain registration and age, hosting and certificate, the content the site served, and third-party reputation feeds. A score is a summary of that evidence, not a guarantee and not a legal finding. There is no human rating and no user review in it. A site can change after it is assessed.

Common questions about 05599.vip

Is 05599.vip a scam?

TrustSniffer's assessment of 05599.vip found strong scam indicators. It scored 0 out of 100 on 2026-08-18, which is the critical-risk band. The specific signals are listed in the evidence above.

Is 05599.vip safe to use?

This assessment found strong scam indicators. Do not pay, sign in, or share personal details with this site.

What is the trust score of 05599.vip?

05599.vip scored 0 out of 100 on 2026-08-18, which places it in the critical-risk band. The score is built from the domain's age and registration history, its hosting and certificate, the content of the site itself, and third-party reputation data. There is no human rating and no user review in it.

Download this report as PDF Free, no account needed. Create one to keep a history of the sites you check.
By AminRez, Founder & Lead Security Researcher, TrustSniffer
Produced by the TrustSniffer Analysis Engine · assessed 2026-08-18 · how we assess · report a mistake