---
title: "Is 301spa.ca Safe? Risk Report, Score 25/100"
source: TrustSniffer
type: Website trust & fraud report
subject: "301spa.ca"
verdict: "Low Trust"
title: "Is 301spa.ca Safe? Risk Report, Score 25/100"
trust_score: 25
classification_confidence: 70
canonical_url: https://trustsniffer.com/report/301spa.ca
assessed: 2026-08-18
---

# Is 301spa.ca safe? TrustSniffer's low-trust assessment: 25/100

## Verdict


**Verdict: Low Trust, trust score 25/100.** 301spa.ca is low-trust and potentially risky.

Several risk patterns were present. Do not send money or personal details until you have verified this business another way.

Labels: Sensitive Interaction Risk, Governance Risk

Assessed 2026-08-18 by automated analysis. Classification confidence 70%.

| Field | Value |
| --- | --- |
| What this site appears to be | Parked "Coming Soon" page for 301spa.ca showing Bluehost hosting branding and a WordPress login link; no commerce or user onboarding present. |

## Evidence status and limitations


Evidence completeness: UNKNOWN

- The real-world operator identity was not independently verified.
- Module-level completeness metadata is unavailable for this legacy report.

## At a glance

The checks that decide most of this verdict.

| Check | Result | Status |
| --- | --- | --- |
| Malware engines | 5 flagged it (VirusTotal) | Risk |
| Google Safe Browsing | Not listed (Google) | Clear |
| Abuse reports on the host | 0 reports (AbuseIPDB; shared hosting inflates this count) | Noted |
| Domain age | 5.4 years old (Registered history) | Clear |
| Web archive | Archived since 2021 (9 snapshots) | Clear |
| Certificate | Encrypted connection (Issued by YR2) | Noted |

## The page as captured


![Screenshot of the 301spa.ca homepage captured during the TrustSniffer assessment](https://trustsniffer.com/outputs/301spa.ca/screenshots/first.png)

_What 301spa.ca served when TrustSniffer captured it on 2026-08-18. The page may look different now._

## Key findings


- Automated classification: Sensitive Interaction Risk.
- Domain age: 3 to 10 years (registration continuity).
- Public web-archive history exists since 2021.
- At least one reputation service TrustSniffer consulted had flagged this domain at assessment time.

## Full analysis


### Overview

301spa.ca is a parked “Coming Soon” landing page that presents Bluehost hosting promotions, shared/WordPress/VPS/dedicated hosting options, and a WordPress administration login prompt rather than an operating commercial or financial service; its apparent purpose is to reserve or advertise the domain while the website is being developed or offered for sale.


### Scam/Impersonation Risk

The site is assessed as carrying elevated sensitive-interaction risk because external threat intelligence recorded malicious detections and a confirmed blacklist status. The current homepage itself is a passive hosting placeholder: it contains no active commerce, financial solicitation, sensitive form, or detected brand impersonation, so the page does not independently demonstrate an active phishing workflow. Nevertheless, the external contradiction is material, and the unverified connection between the domain and any real-world operator means the site should not be treated as trustworthy for login, credential, or financial activity. No conflicting legal-entity names or direct brand-impersonation content were observed.


Evidence:
- External reputation checks recorded 5 malicious and 2 suspicious detections, with the domain confirmed on a blacklist.
- The homepage is titled “301spa.ca — Coming Soon” and presents a parked WordPress/Bluehost placeholder rather than an operating service.
- The domain was registered on 2021-04-05 and is approximately 5.37 years old.
- Archive records contain 9 snapshots spanning 2021-11-26 through 2025-07-30, covering 5 tracked years.

### Regulatory Verification Notes

The available page does not identify a legal operating entity, regulated activity, licence, registration number, or service-specific terms; because it is only a parked page, its regulatory status is unclear rather than demonstrably non-compliant. Identity verification remains unconfirmed, and the current content provides no basis for attributing the domain to a particular business or person. The confirmed blacklist signal should be handled as a significant reputational warning, not as a licensing determination. The site does use valid transport encryption, but domain-validation TLS establishes encrypted transport, not operator identity or regulatory standing.


Evidence:
- The homepage contains no company, licensing, registration, or regulated-service disclosure.
- The site’s TLS certificate was issued by YR2 at DV validation level and is valid through 2026-11-06.
- The domain is registered through eNom Canada Corp.; the registration record identifies 2027-04-05 as the expiration date.

### What to Verify Next

Before any sensitive interaction, an independent registry search should confirm whether a legally identifiable operator exists and whether any intended service is authorised in the relevant jurisdiction. The official domain and support channels should be confirmed through an independent, offline route rather than relying solely on links presented by the site. Until those checks reconcile the external warning and establish accountable ownership, activity should remain limited to non-sensitive observation.


Evidence:
- The current homepage provides no service-specific regulatory statement against which a licence or registration can be matched.
- The available identity evidence does not independently connect the domain to a verified real-world operator.
- Any future login, payment, or account-onboarding page should be assessed separately from the present parked landing page.

### Summary Verdict

The overall posture is **low trust with elevated sensitive-interaction risk**. The site’s limited content does not itself prove an active scam, but the confirmed external reputation contradiction and unverified operator identity prevent a legitimacy conclusion.


### Infrastructure Integrity

The site is served directly from AS31898, identified as ORACLE-BMC-31898 operated by Oracle Corporation in the United States. No CDN or WAF was detected, and no separate edge or origin-candidate infrastructure was identified; the hosting arrangement is a neutral technical fact and does not establish legitimacy.


### Closing Assessment

Prospective users should refrain from credential submission, account login, payments, or other financial activity unless independent identity, regulatory, and channel checks resolve the outstanding concerns.


_Written analysis generated 2026-08-18 by the TrustSniffer Analysis Engine from the evidence in this report._

## What the analysis found

2 findings contributed to this verdict, raised by registration and ownership, analysis engine, behaviour in a sandbox, external reputation.

### 01 Governance Risk
- Registration details are held behind a privacy service, so no operator is named publicly. This is common and legal, and it also means there is nobody to check. (Registration and ownership `rule:KF_WHOIS_PRIVATE`)
- The public registration record for this domain is incomplete. (Registration and ownership `rule:KF_WHOIS_INCOMPLETE`)
- The registration record withholds contact details for the operator. (Registration and ownership `rule:KF_WHOIS_HIDDEN`)

### 02 Sensitive Interaction Risk
- The analysis matched a pattern TrustSniffer treats as a direct threat to a visitor. (Analysis engine `signal:direct_threat`)
- A large share of what the page loaded came from other domains. (Behaviour in a sandbox `rule:BEHAV_EXTERNAL_RATIO_MODERATE`)
- An external threat feed lists this domain: either Google Safe Browsing marked it malicious, or a significant number of malware engines flagged it. (External reputation `rule:EXT_BLACKLIST_CRITICAL`)

## Identity verification


| Field | Value |
| --- | --- |
| Status | UNVERIFIED |
| Identity score | 30/100 |
| Identity verification confidence | 25% |

- No on-site identity signals detected

_Identity verification measures whether the site can be independently connected to a real-world brand or person. It is separate from the classification confidence._

## What TrustSniffer observed

First-party facts recorded during the assessment of 301spa.ca.

- The request stayed on 301spa.ca. It was not redirected to another domain. (Clear)
- Registration is published under eNom Canada Corp.. (Clear)
- DNS for this domain is served by bluehost.com, across 2 name servers. (Noted)
- The registration is paid up to 2027-04-05. (Noted)
- The earliest public archive of this site is from 2021-11-26. (Clear)
- It is hosted on ORACLE-BMC-31898, from a server in US. (Noted)

## Domain intelligence


| Field | Value |
| --- | --- |
| Registrar | eNom Canada Corp. |
| Hosting | ORACLE-BMC-31898 - Oracle Corporation, US |
| Country | US |
| Server IP | 162.241.225.177 |
| Name servers | ns1.bluehost.com, ns2.bluehost.com |
| SSL issuer | YR2 |
| SSL expiry | 2026-11-06 |
| Domain age | 5.37 years (continuous registration) |
| Domain expiry | 2027-04-05 |
| Archive first seen | 2021-11-26 |
| Archive snapshots | 9 |
| Reputation | VirusTotal: 5 flagged \| AbuseIPDB: 0 reports \| Google Safe Browsing: 0 matches |

## About this assessment


A trust score summarises the evidence TrustSniffer could collect about 301spa.ca at assessment time. It is a starting point for your own judgement, not a guarantee: a high score means the signals were consistent with a legitimately operated site, a low or critical score means several risk patterns were present.

TrustSniffer assesses a website from the evidence it can collect at a point in time: domain registration and age, hosting and certificate, the content the site served, and third-party reputation feeds. A score is a summary of that evidence, not a guarantee and not a legal finding. There is no human rating and no user review in it. A site can change after it is assessed.

## Related on TrustSniffer
- [3rdstreetsville.ca risk report](https://trustsniffer.com/report/3rdstreetsville.ca) (Low Trust, 40/100)
- [lighthousemarketing.ca risk report](https://trustsniffer.com/report/lighthousemarketing.ca) (Low Trust, 40/100)
- [24hourit.ca risk report](https://trustsniffer.com/report/24hourit.ca) (Low Trust, 25/100)
- [delta.exchange risk report](https://trustsniffer.com/report/delta.exchange) (Low Trust, 33/100)
- [wakatvs.co.za risk report](https://trustsniffer.com/report/wakatvs.co.za) (Low Trust, 35/100)
- [xiaomi-store.co.ke risk report](https://trustsniffer.com/report/xiaomi-store.co.ke) (Low Trust, 25/100)
- [yeuthethao.net.vn risk report](https://trustsniffer.com/report/yeuthethao.net.vn) (Low Trust, 46/100)
- [trojansecurity.co.za risk report](https://trustsniffer.com/report/trojansecurity.co.za) (Low Trust, 47/100)
- [cliphotnen.com risk report](https://trustsniffer.com/report/cliphotnen.com) (Low Trust, 35/100)
- [sexviet18.net risk report](https://trustsniffer.com/report/sexviet18.net) (Low Trust, 42/100)
- [Every website and wallet TrustSniffer has assessed](https://trustsniffer.com/directory)
- [Other domains assessed as high-risk or phishing](https://trustsniffer.com/directory/phishing-domains)
- [Check another website](https://trustsniffer.com/web-intelligence)
- [Check a crypto wallet address](https://trustsniffer.com/on-chain-risk)
- [The TrustSniffer Risk Index](https://trustsniffer.com/stats)

## Guides
- [Stablecoin Freezes Sept 23, 2026: 11 Wallets](https://trustsniffer.com/blog/stablecoin-freeze-report-2026-09-23)
- [Stablecoin Freezes, Sep 22, 2026: 60 Wallets](https://trustsniffer.com/blog/stablecoin-freeze-report-2026-09-22)
- [The Malware Hidden Inside Minecraft Mods](https://trustsniffer.com/blog/minecraft-mod-malware)

---
*Source: [TrustSniffer](https://trustsniffer.com/report/301spa.ca) — independent automated trust & fraud analysis. Cite as https://trustsniffer.com/report/301spa.ca · assessed 2026-08-18.*
