---
title: "Is 13355.vip a Scam? Trust Score 0/100"
source: TrustSniffer
type: Website trust & fraud report
subject: "13355.vip"
verdict: "Critical Risk"
title: "Is 13355.vip a Scam? Trust Score 0/100"
trust_score: 0
classification_confidence: 70
canonical_url: https://trustsniffer.com/report/13355.vip
assessed: 2026-08-18
---

# Is 13355.vip a scam? TrustSniffer's high-risk assessment: 0/100

## Verdict


**Verdict: Critical Risk, trust score 0/100.** 13355.vip shows high-risk / scam indicators.

This assessment found strong scam indicators. Do not pay, sign in, or share personal details with this site.

Labels: Sensitive Interaction Risk, Governance Risk

Assessed 2026-08-18 by automated analysis. Classification confidence 70%.

| Field | Value |
| --- | --- |
| What this site appears to be | Very short page that reads 'Security Redirecting to 13355.vip ...' and performs a redirect. No explanatory content, contact details, or verifiable business info. |

## Evidence status and limitations


Evidence completeness: UNKNOWN

- The real-world operator identity was not independently verified.
- Module-level completeness metadata is unavailable for this legacy report.

## At a glance

The checks that decide most of this verdict.

| Check | Result | Status |
| --- | --- | --- |
| Malware engines | 20 flagged it (VirusTotal) | Risk |
| Google Safe Browsing | Not listed (Google) | Clear |
| Abuse reports on the host | 0 reports (AbuseIPDB; shared hosting inflates this count) | Noted |
| Domain age | 4.4 years old (Registered history) | Clear |
| Web archive | Archived since 2023 (9 snapshots) | Clear |
| Certificate | Encrypted connection (Issued by YE1) | Noted |

## The page as captured


![Screenshot of the 13355.vip homepage captured during the TrustSniffer assessment](https://trustsniffer.com/outputs/13355.vip/screenshots/first.png)

_What 13355.vip served when TrustSniffer captured it on 2026-08-18. The page may look different now._

## Key findings


- Automated classification: Sensitive Interaction Risk.
- Domain age: 3 to 10 years (registration continuity).
- Public web-archive history exists since 2023.
- At least one reputation service TrustSniffer consulted had flagged this domain at assessment time.

## Full analysis


### Security Alert

Fortinet, Kaspersky, Sophos flagged this site in external intelligence checks, indicating elevated compromise/scam exposure that requires immediate caution.

13355.vip is a minimal redirector that displays “Security Redirecting to 13355.vip ...” and sends visitors to a third-party destination. Its apparent purpose is traffic routing or affiliate monetization rather than delivery of an identifiable service, and it presents no substantive business model, product, pricing, or operator information.


### Scam/Impersonation Risk

**Confirmed blacklist indicators create a severe risk for interaction with this site.** External analysis recorded 20 malicious detections, including detections from Fortinet, Kaspersky, and Sophos, and the domain is blacklisted by the cited external sources. The homepage is also a doorway page with an opaque value flow, no clear service, and no verifiable contact or address; browser analysis confirmed a client-side redirect to an external domain and identified two suspicious inline scripts. These signals establish a reputation-based contradiction even though the available evidence does not establish a named-brand impersonation. No suspicious contact-email anomaly was identified in the supplied page findings.


Evidence:
- Homepage: displays only “Security” and “Redirecting to 13355.vip ...” before redirecting externally.
- External reputation telemetry: 20 malicious detections; Fortinet, Kaspersky, and Sophos were among the flagged vendors; blacklist status was confirmed.
- Domain registration: registered 2022-03-14 (~4.43 years old) through DYNADOT LLC.
- Web archive: 9 snapshots from 2023-03-19 through 2026-01-06, spanning 4 years tracked.

### Regulatory Verification Notes

The available site content does not provide a legal entity, business address, licensing authority, registration number, terms, or other operator disclosures. The absence of these disclosures is a material verification gap, particularly because the site functions only as a redirect and does not explain what regulated or commercial activity, if any, is being offered. A valid domain-level TLS certificate confirms encrypted transport, but it does not validate the operator, destination, or legal status. The available broker-reputation dataset did not identify a matching broker record; this is contextual only and is not evidence of authorization.


Evidence:
- Site content: no explanatory business information, contact details, product description, or verifiable operator information was present.
- Site licensing posture: no license claim, licensing authority, or license number was disclosed.
- Hosting telemetry: served from AS35251, ANTI-DDOS - NetLab Global, US, with the resolved infrastructure located in HK.
- TLS telemetry: DV certificate issued by YE1, valid to 2026-11-13T04:03:40+00:00.

### What to Verify Next

Any prospective engagement should first identify the final destination and independently establish the legal operator behind it. Where the destination proposes financial, credentialed, or otherwise sensitive activity, authorization should be confirmed directly with the relevant regulator or corporate registry, using independently sourced contact details rather than information supplied through the redirect chain. Technical review should be conducted in an isolated environment, with no credential submission, payment, download, or account creation during initial assessment.


Evidence:
- The homepage provides no operator or service information against which a merchant or regulatory identity can be matched.
- The observed navigation terminates at a third-party destination rather than an explained first-party service.
- The site contains no login form or sensitive form in the captured page, but this does not establish the safety of the redirected destination.

### Summary Verdict

The overall posture is **critically unsafe for sensitive interaction**. The available evidence does not support treating 13355.vip as a legitimate service endpoint, and its real-world operator identity is not independently verified.


### Infrastructure Integrity

The domain resolves directly to one likely origin IP, 45.138.71.205, on AS35251 operated by ANTI-DDOS - NetLab Global, US; no CDN or WAF provider was identified. This direct hosting arrangement provides no meaningful protective infrastructure signal to offset the reputation findings.


### Closing Assessment

The appropriate posture is to avoid login, credential, financial, or other sensitive interaction and restrict any necessary examination to isolated, read-only analysis.


_Written analysis generated 2026-08-18 by the TrustSniffer Analysis Engine from the evidence in this report._

## What the analysis found

2 findings contributed to this verdict, raised by registration and ownership, analysis engine, behaviour in a sandbox, external reputation.

### 01 Governance Risk
- Registration details are held behind a privacy service, so no operator is named publicly. This is common and legal, and it also means there is nobody to check. (Registration and ownership `rule:KF_WHOIS_PRIVATE`)
- The registration record withholds contact details for the operator. (Registration and ownership `rule:KF_WHOIS_HIDDEN`)

### 02 Sensitive Interaction Risk
- The analysis matched a pattern TrustSniffer treats as a direct threat to a visitor. (Analysis engine `signal:direct_threat`)
- The page carried inline scripts written in a style TrustSniffer treats as suspicious. (Behaviour in a sandbox `rule:BEHAV_SUSPICIOUS_INLINE_SCRIPTS`)
- An external threat feed lists this domain: either Google Safe Browsing marked it malicious, or a significant number of malware engines flagged it. (External reputation `rule:EXT_BLACKLIST_CRITICAL`)

## Identity verification


| Field | Value |
| --- | --- |
| Status | UNVERIFIED |
| Identity score | 30/100 |
| Identity verification confidence | 25% |

- No on-site identity signals detected

_Identity verification measures whether the site can be independently connected to a real-world brand or person. It is separate from the classification confidence._

## What TrustSniffer observed

First-party facts recorded during the assessment of 13355.vip.

- The request stayed on 13355.vip. It was not redirected to another domain. (Clear)
- Registration is published under DYNADOT LLC. (Clear)
- DNS for this domain is served by xundns.com, across 2 name servers. (Noted)
- The registration is paid up to 2028-03-14. (Clear)
- The earliest public archive of this site is from 2023-03-19. (Clear)
- It is hosted on ANTI-DDOS, from a server in HK. (Noted)

## Domain intelligence


| Field | Value |
| --- | --- |
| Registrar | DYNADOT LLC |
| Hosting | ANTI-DDOS - NetLab Global, US |
| Country | HK |
| Server IP | 45.138.71.205 |
| Name servers | n1.xundns.com, n2.xundns.com |
| SSL issuer | YE1 |
| SSL expiry | 2026-11-13 |
| Domain age | 4.43 years (continuous registration) |
| Domain expiry | 2028-03-14 |
| Archive first seen | 2023-03-19 |
| Archive snapshots | 9 |
| Reputation | VirusTotal: 20 flagged \| AbuseIPDB: 0 reports \| Google Safe Browsing: 0 matches |

## About this assessment


A trust score summarises the evidence TrustSniffer could collect about 13355.vip at assessment time. It is a starting point for your own judgement, not a guarantee: a high score means the signals were consistent with a legitimately operated site, a low or critical score means several risk patterns were present.

TrustSniffer assesses a website from the evidence it can collect at a point in time: domain registration and age, hosting and certificate, the content the site served, and third-party reputation feeds. A score is a summary of that evidence, not a guarantee and not a legal finding. There is no human rating and no user review in it. A site can change after it is assessed.

## Related on TrustSniffer
- [17000.vip risk report](https://trustsniffer.com/report/17000.vip) (Critical Risk, 0/100)
- [15005.vip risk report](https://trustsniffer.com/report/15005.vip) (Critical Risk, 0/100)
- [135538.vip risk report](https://trustsniffer.com/report/135538.vip) (Critical Risk, 0/100)
- [1111365.vip risk report](https://trustsniffer.com/report/1111365.vip) (Critical Risk, 0/100)
- [05599.vip risk report](https://trustsniffer.com/report/05599.vip) (Critical Risk, 0/100)
- [00808.vip risk report](https://trustsniffer.com/report/00808.vip) (Critical Risk, 0/100)
- [00800.vip risk report](https://trustsniffer.com/report/00800.vip) (Critical Risk, 0/100)
- [togetherefwuko.org risk report](https://trustsniffer.com/report/togetherefwuko.org) (Critical Risk, 0/100)
- [coinclix.co risk report](https://trustsniffer.com/report/coinclix.co) (Critical Risk, 13/100)
- [cricstake.co risk report](https://trustsniffer.com/report/cricstake.co) (Critical Risk, 0/100)
- [Every website and wallet TrustSniffer has assessed](https://trustsniffer.com/directory)
- [Other domains assessed as high-risk or phishing](https://trustsniffer.com/directory/phishing-domains)
- [Check another website](https://trustsniffer.com/web-intelligence)
- [Check a crypto wallet address](https://trustsniffer.com/on-chain-risk)
- [The TrustSniffer Risk Index](https://trustsniffer.com/stats)

## Guides
- [Stablecoin Freezes, Sep 28, 2026: 24 Wallets](https://trustsniffer.com/blog/stablecoin-freeze-report-2026-09-28)
- [Stablecoin Freezes, Sep 27, 2026: 3 Wallets](https://trustsniffer.com/blog/stablecoin-freeze-report-2026-09-27)
- [How We See USDT Wallet Freezes Coming](https://trustsniffer.com/blog/how-trustsniffer-sees-usdt-wallet-freezes-coming)

---
*Source: [TrustSniffer](https://trustsniffer.com/report/13355.vip) — independent automated trust & fraud analysis. Cite as https://trustsniffer.com/report/13355.vip · assessed 2026-08-18.*
