Verdict
2go-eg.com shows high-risk / scam indicators.
This assessment found strong scam indicators. Do not pay, sign in, or share personal details with this site.
| What this site appears to be | A minimal 'Launching Soon' landing page for 2go-eg.com offering an AI builder promotion and an email signup form. No login, payment, or credential-collection forms visible. |
|---|
Evidence status and limitations
Evidence completeness: UNKNOWN
- The real-world operator identity was not independently verified.
- Module-level completeness metadata is unavailable for this legacy report.
At a glance
The checks that decide most of this verdict.
| Malware engines | 13 flagged itVirusTotal | Risk |
|---|---|---|
| Google Safe Browsing | Not listedGoogle | Clear |
| Abuse reports on the host | 15% confidenceAbuseIPDB, 7 reports; shared hosting inflates reports | Clear |
| Domain age | 4 days oldMost scam domains are under a year old | Risk |
| Web archive | Archived since 201685 snapshots | Clear |
| Certificate | Encrypted connectionIssued by GoDaddy TLS Intermediate CA DV - R1v1 | Noted |
The page as captured
Key findings
- Automated classification: Sensitive Interaction Risk.
- Domain age: less than 1 year (registration continuity).
- Public web-archive history exists since 2016.
- At least one reputation service TrustSniffer consulted had flagged this domain at assessment time.
Full analysis
Security Alert
Fortinet, Sophos flagged this site in external intelligence checks, indicating elevated compromise/scam exposure that requires immediate caution.
2go-eg.com is a minimal “Launching Soon” promotional website for an AI site-building service, presenting the “Airo AI Builder,” a claim that users can go from idea to live site in minutes, and an offer of 50 free credits; its apparent business model is to attract future product or paid-credit signups.
Scam/Impersonation Risk
Confirmed external threat signals make this unsuitable for sensitive interaction. External reputation checks recorded a confirmed blacklist status, multiple malicious detections, and a further suspicious detection. These findings outweigh the otherwise limited page-level indicators: the landing page showed no login, payment, or credential-collection workflow, and no confirmed identity contradiction, phishing interface, or impersonation was observed in the page content. A domain-name resemblance signal involving “go.com” was not corroborated as a confirmed impersonation by the site itself. Abuse reports associated with the observed Amazon shared-infrastructure address are treated as relevant reputational context, but they apply to the shared provider IP rather than proving that the website operator generated the reports.
- External reputation checks recorded 13 malicious detections and 1 suspicious detection for the website.
- The website was recorded as present on an external blacklist; the associated protective kill-switch condition was active.
- Behavioral testing recorded 120 external XHR requests, including 111 non-whitelisted requests, 2 non-whitelisted external POST requests, and 10 console errors across 2 successful runs.
- Seven abuse reports were associated with observed IP address 13.248.243.5; the attribution identified Amazon Technologies Inc. shared infrastructure and a Content Delivery Network usage type.
Regulatory Verification Notes
The available page is promotional rather than a developed legal or corporate presence. It does not disclose an operating company, license, registration number, or licensing authority, so the operator’s identity and regulatory status remain unverified. That omission is a transparency gap rather than independent evidence of a scam, but it is material because the site solicits future product or service engagement. No matching broker-reputation record was identified in the supplied third-party context.
- Historical web records show first seen on 2016-02-03T03:32:39Z and last seen on 2025-03-15T01:49:01Z, with 85 snapshots across 10 tracked years; the reconciled historical domain age is 10.537987679671458 years.
- Registration telemetry lists GoDaddy.com, LLC as registrar, with creation date 2026-08-16T09:40:46Z, expiration date 2027-08-16T09:40:46Z, and age 0.01 years; this conflicts with the documented historical continuity and should not be treated as evidence of a genuinely recent web presence.
- The site is served through AS16509, identified as AMAZON-02 - Amazon.com, Inc., US.
- The transport certificate is DV-validated, issued by GoDaddy TLS Intermediate CA DV - R1v1, and valid until 2027-03-02T09:42:09+00:00.
What to Verify Next
Before any engagement beyond passive viewing, an independent corporate registry and the relevant licensing or consumer-protection registry should be used to confirm the operator and whether the proposed AI service requires authorization. The promotional offer should be corroborated through independently sourced company information, and any future account, payment, or software-download workflow should be assessed separately rather than inferred from the current landing page.
- The homepage contains one contact-email-signup form and no visible login or payment form, limiting what can currently be validated about the eventual service.
- The site’s visible content is limited to a coming-soon promotion, contact prompt, privacy-policy and terms references, and a copyright notice; it does not provide an independently verifiable operator or licensing identifier.
Summary Verdict
The overall posture is critical trust risk with a high likelihood of harm if the website is treated as an approved destination for sensitive interaction. The available evidence does not establish a verified real-world operator, and the confirmed external threat findings require the site to be treated as untrusted despite its currently limited functionality.
Infrastructure Integrity
The website is protected by a CDN/WAF arrangement, with observed edge addresses in AS16509 operated by Amazon Technologies Inc.; no origin candidates were observed. This reduces direct exposure of the underlying host and is a mitigating infrastructure characteristic, but it does not offset the external reputation findings or establish operator legitimacy.
Closing Assessment
Sensitive actions should be deferred; if the site must be accessed for investigation, activity should remain limited to isolated, read-only browsing with no credential, payment, account, or download interaction.
Written analysis generated 2026-08-18 by the TrustSniffer Analysis Engine from the evidence in this report.
What the analysis found
2 findings contributed to this verdict, raised by registration and ownership, analysis engine, behaviour in a sandbox, external reputation.
01 Governance Risk
- Registration details are held behind a privacy service, so no operator is named publicly. This is common and legal, and it also means there is nobody to check.Registration and ownership
rule:KF_WHOIS_PRIVATE - The registration record withholds contact details for the operator.Registration and ownership
rule:KF_WHOIS_HIDDEN
02 Sensitive Interaction Risk
- The analysis matched a pattern TrustSniffer treats as a direct threat to a visitor.Analysis engine
signal:direct_threat - The page made background requests to destinations TrustSniffer does not recognise.Behaviour in a sandbox
rule:BEHAV_NONWHITELISTED_XHR - The page sent data to a destination TrustSniffer does not recognise.Behaviour in a sandbox
rule:BEHAV_NONWHITELISTED_POSTS - The page exchanged network traffic with destinations TrustSniffer does not recognise.Behaviour in a sandbox
rule:BEHAV_NONWHITELISTED_TRAFFIC - Most of what the page loaded came from other domains rather than from this one.Behaviour in a sandbox
rule:BEHAV_EXTERNAL_RATIO_HIGH - An external threat feed lists this domain: either Google Safe Browsing marked it malicious, or a significant number of malware engines flagged it.External reputation
rule:EXT_BLACKLIST_CRITICAL
Signals weighed against the site
- AbuseIPDB: 7 reports on hosting IP 13.248.243.5 (Amazon Technologies Inc., Content Delivery Network), 15% confidence. The reports are attributed to shared infrastructure, not specifically to this website.
Identity verification
| Status | UNVERIFIED |
|---|---|
| Identity score | 30/100 |
| Identity verification confidence | 25% |
- No on-site identity signals detected
Identity verification measures whether the site can be independently connected to a real-world brand or person. It is separate from the classification confidence.
What TrustSniffer observed
First-party facts recorded during the assessment of 2go-eg.com.
- The request stayed on 2go-eg.com. It was not redirected to another domain. Clear
- Registration is published under GoDaddy.com, LLC. Clear
- DNS for this domain is served by domaincontrol.com, across 2 name servers. Noted
- The registration is paid up to 2027-08-16. Noted
- The earliest public archive of this site is from 2016-02-03. Clear
- It is hosted on AMAZON-02, from a server in US. Noted
Domain intelligence
| Registrar | GoDaddy.com, LLC |
|---|---|
| Hosting | AMAZON-02 - Amazon.com, Inc., US |
| Country | US |
| Server IP | 13.248.243.5 |
| Name servers | NS71.DOMAINCONTROL.COM, NS72.DOMAINCONTROL.COM |
| SSL issuer | GoDaddy TLS Intermediate CA DV - R1v1 |
| SSL expiry | 2027-03-02 |
| Domain age | 0.01 years (continuous registration) |
| Domain expiry | 2027-08-16 |
| Archive first seen | 2016-02-03 |
| Archive snapshots | 85 |
| Reputation | VirusTotal: 13 flagged | AbuseIPDB: 15% confidence, 7 reports | Google Safe Browsing: 0 matches |
About this assessment
A trust score summarises the evidence TrustSniffer could collect about 2go-eg.com at assessment time. It is a starting point for your own judgement, not a guarantee: a high score means the signals were consistent with a legitimately operated site, a low or critical score means several risk patterns were present.
TrustSniffer assesses a website from the evidence it can collect at a point in time: domain registration and age, hosting and certificate, the content the site served, and third-party reputation feeds. A score is a summary of that evidence, not a guarantee and not a legal finding. There is no human rating and no user review in it. A site can change after it is assessed.