---
title: "Is 38cp666.com a Scam? Trust Score 0/100"
source: TrustSniffer
type: Website trust & fraud report
subject: "38cp666.com"
verdict: "Critical Risk"
title: "Is 38cp666.com a Scam? Trust Score 0/100"
trust_score: 0
classification_confidence: 55
canonical_url: https://trustsniffer.com/report/38cp666.com
assessed: 2026-08-20
---

# Is 38cp666.com a scam? TrustSniffer's high-risk assessment: 0/100

## Verdict


**Verdict: Critical Risk, trust score 0/100.** 38cp666.com shows high-risk / scam indicators.

This assessment found strong scam indicators. Do not pay, sign in, or share personal details with this site.

Labels: Sensitive Interaction Risk

Assessed 2026-08-20 by automated analysis. Classification confidence 55%.

| Field | Value |
| --- | --- |
| What this site appears to be | Chinese-language sports betting and casino site claiming live event streaming, data services, app downloads, and fast multi-currency/crypto payments. Provides marketing copy, performance metrics, version history, and a support email. Limited on-page verifiable licensing or regulatory details. |

## Evidence status and limitations


Evidence completeness: UNKNOWN

- The real-world operator identity was not independently verified.
- Module-level completeness metadata is unavailable for this legacy report.

## At a glance

The checks that decide most of this verdict.

| Check | Result | Status |
| --- | --- | --- |
| Malware engines | 19 flagged it (VirusTotal) | Risk |
| Google Safe Browsing | Not listed (Google) | Clear |
| Abuse reports on the host | 0 reports (AbuseIPDB; shared hosting inflates this count) | Noted |
| Domain age | 2 months old (Most scam domains are under a year old) | Risk |
| Web archive | Archived since 2018 (Public history exists) | Clear |
| Certificate | Encrypted connection (Issued by YR1) | Noted |

## The page as captured


![Screenshot of the 38cp666.com homepage captured during the TrustSniffer assessment](https://trustsniffer.com/outputs/38cp666.com/screenshots/first.png)

_What 38cp666.com served when TrustSniffer captured it on 2026-08-20. The page may look different now._

## Key findings


- Automated classification: Sensitive Interaction Risk.
- Domain age: less than 1 year (registration continuity).
- Public web-archive history exists since 2018.
- At least one reputation service TrustSniffer consulted had flagged this domain at assessment time.

## Full analysis


### Security Alert

Fortinet, Kaspersky, Sophos flagged this site in external intelligence checks, indicating elevated compromise/scam exposure that requires immediate caution.

The website is a Chinese-language sports-betting and casino platform presenting live coverage and data services for events such as the NBA, English Premier League, European Championship, and LPL, alongside app downloads and claims of rapid multi-currency and cryptocurrency deposits and withdrawals. Its apparent business model is to monetize user deposits and betting activity.


### Scam/Impersonation Risk

**The site presents a critical sensitive-interaction risk, with explicit contradictions that outweigh its marketing claims.** External reputation evidence records 19 malicious and one suspicious detections, together with a confirmed blacklist status from multiple sources. The homepage also combines deposit-before-service mechanics, opaque payment flows, unverified cryptocurrency settlement, and unsupported claims including more than one million registered users, coverage across more than ten countries, and highly precise performance and security metrics. These claim-and-evidence inconsistencies materially weaken confidence in the platform’s representations. No distinct conflicting legal-entity names or confirmed brand-impersonation finding were observed, but the confirmed blacklist and malicious detections are sufficient to make login, credential submission, downloads, deposits, and other sensitive interaction inappropriate pending independent resolution.


Evidence:
- Homepage: promotes sports betting, casino activity, app downloads, and rapid multi-currency and cryptocurrency recharge and withdrawal.
- Homepage: claims “100万+” registered users, service coverage in more than ten countries or regions, and security-performance figures such as 99.2% fraud-recognition success without providing substantiating evidence.
- External reputation assessment: 19 malicious detections, one suspicious detection, and a confirmed blacklist status.
- Domain registration record: registered through NameSilo, LLC on 2026-06-30 and approximately 0.14 years old.

### Regulatory Verification Notes

The site’s apparent operator identity remains unverified. Its company-introduction content describes a global platform and refers to compliance standards and “multiple international security certifications,” but the supplied page content does not identify a licensing authority or provide a license number that can be independently checked. The registration record names FAN WENLONG and WENLONGFAN, but that record alone does not establish that the named party operates the betting service. The site’s transport security is technically present, but a valid certificate does not validate gambling authorization or business legitimacy.


Evidence:
- Company-introduction page: describes regional technology and customer-service teams and asserts compliance-oriented operation, without a verifiable licensing authority or license number.
- Registration record: registrar is NameSilo, LLC; registrant name is FAN WENLONG and organization is WENLONGFAN.
- Hosting and certificate telemetry: served from AS9294, GNETINC-AS-AP - GNET INC., US; TLS certificate issued by YR1 at DV validation level, valid to 2026-09-29.

### What to Verify Next

Before any sensitive interaction, an independent check should confirm whether the operator and the specific gambling services are authorized by the relevant jurisdictional regulator, using regulator-controlled records rather than links or claims supplied by the site. The named registrant and any claimed corporate operator should be matched through authoritative corporate records, and payment, withdrawal, dispute, age-verification, and responsible-gambling terms should be obtained and reviewed. Contact channels should be confirmed through an independently sourced route, and any proposed app or payment destination should be technically validated before use.


Evidence:
- Company-introduction page: contains broad statements about international security certifications and compliance but no supplied license authority or number.
- Homepage: directs visitors toward app download and deposit-related activity, making independent validation of download and payment destinations necessary.
- Registration record and page identity: the registrant details are not independently connected to the operating business in the supplied evidence.

### Summary Verdict

The website has a critical trust posture and should be treated as unsuitable for sensitive interaction. The available evidence does not support confidence in its operating identity, service claims, or reputation, and the confirmed external threat findings create a material risk beyond ordinary transparency limitations.


### Infrastructure Integrity

The site resolves to a single likely origin address rather than a detected CDN edge, with no CDN or WAF identified. Its hosting is associated with GNETINC-AS-AP - GNET INC. in the supplied infrastructure evidence; this provides a concrete hosting attribution but no legitimacy assurance, and the absence of an identified protective edge leaves fewer infrastructure-based mitigating signals.


### Closing Assessment

The appropriate enterprise posture is passive review only while independent operator, regulatory, payment, and software-distribution checks remain unresolved; sensitive credentials, deposits, and financial commitments should not be made through the site.


_Written analysis generated 2026-08-20 by the TrustSniffer Analysis Engine from the evidence in this report._

## What the analysis found

1 finding contributed to this verdict, raised by analysis engine, behaviour in a sandbox, external reputation.

### 01 Sensitive Interaction Risk
- The analysis matched a pattern TrustSniffer treats as a direct threat to a visitor. (Analysis engine `signal:direct_threat`)
- The page sent data to a destination TrustSniffer does not recognise. (Behaviour in a sandbox `rule:BEHAV_NONWHITELISTED_POSTS`)
- An external threat feed lists this domain: either Google Safe Browsing marked it malicious, or a significant number of malware engines flagged it. (External reputation `rule:EXT_BLACKLIST_CRITICAL`)

## Identity verification


| Field | Value |
| --- | --- |
| Status | UNVERIFIED |
| Identity score | 30/100 |
| Identity verification confidence | 50% |

- No on-site identity signals detected

_Identity verification measures whether the site can be independently connected to a real-world brand or person. It is separate from the classification confidence._

## What TrustSniffer observed

First-party facts recorded during the assessment of 38cp666.com.

- The request stayed on 38cp666.com. It was not redirected to another domain. (Clear)
- Registration is published under NameSilo, LLC. (Clear)
- DNS for this domain is served by domainnamedns.com, across 2 name servers. (Noted)
- The registration is paid up to 2027-06-30. (Noted)
- The earliest public archive of this site is from 2018-08-08. (Clear)
- It is hosted on GNETINC-AS-AP, from a server in SC. (Noted)

## Domain intelligence


| Field | Value |
| --- | --- |
| Registrar | NameSilo, LLC |
| Hosting | GNETINC-AS-AP - GNET INC., US |
| Country | SC |
| Server IP | 156.239.68.43 |
| Name servers | NS1.DOMAINNAMEDNS.COM, NS2.DOMAINNAMEDNS.COM |
| SSL issuer | YR1 |
| SSL expiry | 2026-09-29 |
| Domain age | 0.14 years (continuous registration) |
| Domain expiry | 2027-06-30 |
| Archive first seen | 2018-08-08 |
| Archive snapshots | Not counted (archive lookup incomplete) |
| Reputation | VirusTotal: 19 flagged \| AbuseIPDB: 0 reports \| Google Safe Browsing: 0 matches |

## About this assessment


A trust score summarises the evidence TrustSniffer could collect about 38cp666.com at assessment time. It is a starting point for your own judgement, not a guarantee: a high score means the signals were consistent with a legitimately operated site, a low or critical score means several risk patterns were present.

TrustSniffer assesses a website from the evidence it can collect at a point in time: domain registration and age, hosting and certificate, the content the site served, and third-party reputation feeds. A score is a summary of that evidence, not a guarantee and not a legal finding. There is no human rating and no user review in it. A site can change after it is assessed.

## Related on TrustSniffer
- [rollercoin.com risk report](https://trustsniffer.com/report/rollercoin.com) (Critical Risk, 0/100)
- [sexfortokens.com risk report](https://trustsniffer.com/report/sexfortokens.com) (Critical Risk, 0/100)
- [cliphotnhat.com risk report](https://trustsniffer.com/report/cliphotnhat.com) (Critical Risk, 0/100)
- [marketbhai.com risk report](https://trustsniffer.com/report/marketbhai.com) (Critical Risk, 0/100)
- [m.gfdfx.com risk report](https://trustsniffer.com/report/m.gfdfx.com) (Critical Risk, 0/100)
- [gxmcoinqp.com risk report](https://trustsniffer.com/report/gxmcoinqp.com) (Critical Risk, 0/100)
- [fortanexcapital.com risk report](https://trustsniffer.com/report/fortanexcapital.com) (Critical Risk, 0/100)
- [arcdmarc.com risk report](https://trustsniffer.com/report/arcdmarc.com) (Critical Risk, 0/100)
- [diwa.tg risk report](https://trustsniffer.com/report/diwa.tg) (Critical Risk, 0/100)
- [hordelo.kz risk report](https://trustsniffer.com/report/hordelo.kz) (Critical Risk, 0/100)
- [Every website and wallet TrustSniffer has assessed](https://trustsniffer.com/directory)
- [Other domains assessed as high-risk or phishing](https://trustsniffer.com/directory/phishing-domains)
- [Check another website](https://trustsniffer.com/web-intelligence)
- [Check a crypto wallet address](https://trustsniffer.com/on-chain-risk)
- [The TrustSniffer Risk Index](https://trustsniffer.com/stats)

## Guides
- [VietinBank Phishing: Spotting Domain Impersonation](https://trustsniffer.com/blog/vietinbank-phishing-domain-impersonation)
- [Stablecoin Freezes, Sep 24, 2026: 26 Wallets](https://trustsniffer.com/blog/stablecoin-freeze-report-2026-09-24)
- [Script Droppers: How This Download Scam Works](https://trustsniffer.com/blog/script-droppers-how-this-download-scam-works)

---
*Source: [TrustSniffer](https://trustsniffer.com/report/38cp666.com) — independent automated trust & fraud analysis. Cite as https://trustsniffer.com/report/38cp666.com · assessed 2026-08-20.*
