---
title: "Is 17dh03.com a Scam? Trust Score 0/100"
source: TrustSniffer
type: Website trust & fraud report
subject: "17dh03.com"
verdict: "Critical Risk"
title: "Is 17dh03.com a Scam? Trust Score 0/100"
trust_score: 0
classification_confidence: 70
canonical_url: https://trustsniffer.com/report/17dh03.com
assessed: 2026-08-18
---

# Is 17dh03.com a scam? TrustSniffer's high-risk assessment: 0/100

## Verdict


**Verdict: Critical Risk, trust score 0/100.** 17dh03.com shows high-risk / scam indicators.

This assessment found strong scam indicators. Do not pay, sign in, or share personal details with this site.

Labels: Sensitive Interaction Risk, Governance Risk

Assessed 2026-08-18 by automated analysis. Classification confidence 70%.

| Field | Value |
| --- | --- |
| What this site appears to be | 短促着陆页，中文，内容非常有限，显示“继续访问”和两个“推荐线路”，并含版权声明。看起来像流量/通道重定向页，可能用于将访问者引导至第三方（疑似博彩/affiliate）服务，缺乏透明的服务说明或监管信息。 |

## Evidence status and limitations


Evidence completeness: UNKNOWN

- The real-world operator identity was not independently verified.
- Module-level completeness metadata is unavailable for this legacy report.

## At a glance

The checks that decide most of this verdict.

| Check | Result | Status |
| --- | --- | --- |
| Malware engines | 14 flagged it (VirusTotal) | Risk |
| Google Safe Browsing | Not listed (Google) | Clear |
| Abuse reports on the host | 0 reports (AbuseIPDB; shared hosting inflates this count) | Noted |
| Domain age | 2.6 years old (Registered history) | Clear |
| Web archive | Archived since 2024 (17 snapshots) | Clear |
| Certificate | Encrypted connection (Issued by WE1) | Noted |

## The page as captured


![Screenshot of the 17dh03.com homepage captured during the TrustSniffer assessment](https://trustsniffer.com/outputs/17dh03.com/screenshots/first.png)

_What 17dh03.com served when TrustSniffer captured it on 2026-08-18. The page may look different now._

## Key findings


- Automated classification: Sensitive Interaction Risk.
- Domain age: 1 to 3 years (registration continuity).
- Public web-archive history exists since 2024.
- At least one reputation service TrustSniffer consulted had flagged this domain at assessment time.

## Full analysis


### Security Alert

Kaspersky, Sophos flagged this site in external intelligence checks, indicating elevated compromise/scam exposure that requires immediate caution.

17dh03.com presents as a very minimal Chinese-language landing or access-portal page rather than a clearly identified operating business. Visitors see a “continue access” prompt, two “recommended routes,” and a copyright notice associated with “k8,” suggesting a referral or traffic-redirection model toward third-party, potentially gambling-related services without a clearly described product or transparent transaction purpose.


### Scam/Impersonation Risk

**The site presents a material scam and impersonation risk.** External security detections include a confirmed blacklist signal, with 14 malicious and one suspicious determination in the evaluated reputation results; the detections were corroborated by Kaspersky and Sophos. The homepage’s limited content, redirection prompts, opaque value flow, and indication that payment or deposit activity may precede any clearly defined service are consistent with a high-risk referral or gambling-portal pattern. Behavioral testing also recorded two external XHR requests and two non-whitelisted external POST requests, while no login form, hidden form, wallet connection, or clipboard-hijacking behavior was observed. No conflicting legal-entity names, brand impersonation, or phishing form were identified, but those absences do not offset the confirmed external threat signals.


Evidence:
- The homepage contains only 113 characters of visible text, including “continue access,” “recommended route one,” “recommended route two,” and a “k8” copyright notice.
- External reputation testing recorded 14 malicious results and 1 suspicious result; Kaspersky and Sophos were among the flagged vendors, and the domain was marked by external blacklist sources.
- Browser behavior on the homepage recorded 2 external XHR requests and 2 external non-whitelisted POST requests across 2 successful runs.
- Archive records show 17 snapshots from 2024 through 2026, covering 3 years, with the latest snapshot dated 2026-05-17.

### Regulatory Verification Notes

The available material does not establish an independently verified operator identity or a regulated business status. The landing page supplies no clear company description, service terms, licensing authority, registration number, or regulatory disclosure; this is a substantive transparency gap for a page that appears to direct visitors toward potentially financial or gambling-related third-party services. The published “k8” branding is not, by itself, evidence of a legal entity or authorized affiliation. The current registration record identifies NameMart Pte. Ltd. as registrar and records creation on 2026-02-05, while archived material predates that record, creating a provenance issue that should be resolved before the site is treated as an established operator. A valid transport certificate and mainstream hosting arrangement confirm technical deployment, not licensing or legitimacy.


Evidence:
- The registration record lists NameMart Pte. Ltd.; creation date 2026-02-05T19:04:00Z, age 0.53 years, and expiration date 2027-02-05T19:04:00Z.
- Archive intelligence records a domain age of 2.5817932922655715 years and 17 snapshots spanning 2024–2026, which conflicts with the current registration record’s stated creation date.
- The site’s TLS certificate is issued by WE1, uses DV validation, and is valid to 2026-11-03T15:41:24+00:00.
- The site resolves through AS13335, identified as CLOUDFLARENET - Cloudflare, Inc., US.

### What to Verify Next

Before any sensitive interaction, an institution should independently identify the operator behind the “k8” reference and confirm whether the destination services are legally authorized in the relevant jurisdiction. Any claimed gambling, payment, investment, or referral activity should be matched to the responsible regulator’s public register, including the exact legal entity and license scope. The recommended routes should also be inspected in an isolated environment and validated through an independently sourced contact channel; credentials, payment details, deposits, and account recovery information should not be submitted unless those checks produce a consistent, verifiable operator identity.


Evidence:
- The homepage provides no company name beyond the “k8” branding and no visible service description.
- The page contains no stated licensing authority, registration number, terms of service, or regulatory disclosure.
- The page’s two recommended routes are presented without destination context or an explanation of the underlying service.
- The site has no login or sensitive form in the captured page, but its behavior includes redirect prompts and external non-whitelisted requests.

### Summary Verdict

The overall posture is **critical and unsuitable for trusted sensitive interaction**. The combination of confirmed external threat detections, weak operator transparency, provenance inconsistency, and a redirection-oriented page model means the site should not be treated as a legitimate service endpoint for credentials, payments, deposits, or other consequential activity.


### Infrastructure Integrity

The website is protected by Cloudflare’s CDN/WAF and all observed addresses are CDN edge infrastructure; no origin candidate was identified. This provides a meaningful exposure-mitigation layer, but it also limits independent assessment of the underlying host and cannot counteract the site’s reputation and content risks.


### Closing Assessment

The appropriate enterprise action is to block or closely restrict access, prevent sensitive interaction, and require independent operator, destination, and licensing validation before any business engagement is considered.


_Written analysis generated 2026-08-18 by the TrustSniffer Analysis Engine from the evidence in this report._

## What the analysis found

2 findings contributed to this verdict, raised by registration and ownership, analysis engine, behaviour in a sandbox, external reputation.

### 01 Governance Risk
- The public registration record for this domain is incomplete. (Registration and ownership `rule:KF_WHOIS_INCOMPLETE`)

### 02 Sensitive Interaction Risk
- The analysis matched a pattern TrustSniffer treats as a direct threat to a visitor. (Analysis engine `signal:direct_threat`)
- A large share of what the page loaded came from other domains. (Behaviour in a sandbox `rule:BEHAV_EXTERNAL_RATIO_MODERATE`)
- The page sent data to a destination TrustSniffer does not recognise. (Behaviour in a sandbox `rule:BEHAV_NONWHITELISTED_POSTS`)
- An external threat feed lists this domain: either Google Safe Browsing marked it malicious, or a significant number of malware engines flagged it. (External reputation `rule:EXT_BLACKLIST_CRITICAL`)

## Identity verification


| Field | Value |
| --- | --- |
| Status | UNVERIFIED |
| Identity score | 30/100 |
| Identity verification confidence | 50% |

- No on-site identity signals detected

_Identity verification measures whether the site can be independently connected to a real-world brand or person. It is separate from the classification confidence._

## What TrustSniffer observed

First-party facts recorded during the assessment of 17dh03.com.

- The request stayed on 17dh03.com. It was not redirected to another domain. (Clear)
- Registration is published under NameMart Pte. Ltd.. (Clear)
- DNS for this domain is served by cloudflare.com, across 2 name servers. (Noted)
- The registration is paid up to 2027-02-05. (Noted)
- The earliest public archive of this site is from 2024-01-17. (Clear)
- It is hosted on CLOUDFLARENET, from a server in US. (Noted)

## Domain intelligence


| Field | Value |
| --- | --- |
| Registrar | NameMart Pte. Ltd. |
| Hosting | CLOUDFLARENET - Cloudflare, Inc., US |
| Country | US |
| Server IP | 2606:4700:3034::6815:b16 |
| Name servers | APOLLO.NS.CLOUDFLARE.COM, STEPHANE.NS.CLOUDFLARE.COM |
| SSL issuer | WE1 |
| SSL expiry | 2026-11-03 |
| Domain age | 2.58 years (continuous registration) |
| Domain expiry | 2027-02-05 |
| Archive first seen | 2024-01-17 |
| Archive snapshots | 17 |
| Reputation | VirusTotal: 14 flagged \| AbuseIPDB: 0 reports \| Google Safe Browsing: 0 matches |

## About this assessment


A trust score summarises the evidence TrustSniffer could collect about 17dh03.com at assessment time. It is a starting point for your own judgement, not a guarantee: a high score means the signals were consistent with a legitimately operated site, a low or critical score means several risk patterns were present.

TrustSniffer assesses a website from the evidence it can collect at a point in time: domain registration and age, hosting and certificate, the content the site served, and third-party reputation feeds. A score is a summary of that evidence, not a guarantee and not a legal finding. There is no human rating and no user review in it. A site can change after it is assessed.

## Related on TrustSniffer
- [1stlearntodrive.com risk report](https://trustsniffer.com/report/1stlearntodrive.com) (Critical Risk, 0/100)
- [1obmen.com risk report](https://trustsniffer.com/report/1obmen.com) (Critical Risk, 0/100)
- [1h16.com risk report](https://trustsniffer.com/report/1h16.com) (Critical Risk, 0/100)
- [19981201.com risk report](https://trustsniffer.com/report/19981201.com) (Critical Risk, 0/100)
- [1970sblackandwhite.com risk report](https://trustsniffer.com/report/1970sblackandwhite.com) (Critical Risk, 0/100)
- [18suite.com risk report](https://trustsniffer.com/report/18suite.com) (Critical Risk, 0/100)
- [188bet20.com risk report](https://trustsniffer.com/report/188bet20.com) (Critical Risk, 0/100)
- [247azimi.com risk report](https://trustsniffer.com/report/247azimi.com) (Critical Risk, 5/100)
- [246bdb.org risk report](https://trustsniffer.com/report/246bdb.org) (Critical Risk, 0/100)
- [23paskal.id risk report](https://trustsniffer.com/report/23paskal.id) (Critical Risk, 1/100)
- [Every website and wallet TrustSniffer has assessed](https://trustsniffer.com/directory)
- [Other domains assessed as high-risk or phishing](https://trustsniffer.com/directory/phishing-domains)
- [Check another website](https://trustsniffer.com/web-intelligence)
- [Check a crypto wallet address](https://trustsniffer.com/on-chain-risk)
- [The TrustSniffer Risk Index](https://trustsniffer.com/stats)

## Guides
- [How We See USDT Wallet Freezes Coming](https://trustsniffer.com/blog/how-trustsniffer-sees-usdt-wallet-freezes-coming)
- [Stablecoin Freezes, Sep 26, 2026: 1 Wallet](https://trustsniffer.com/blog/stablecoin-freeze-report-2026-09-26)
- [Stablecoin Freezes Sep 25, 2026: 8 Wallets](https://trustsniffer.com/blog/stablecoin-freeze-report-2026-09-25)

---
*Source: [TrustSniffer](https://trustsniffer.com/report/17dh03.com) — independent automated trust & fraud analysis. Cite as https://trustsniffer.com/report/17dh03.com · assessed 2026-08-18.*
