Verdict
bratarfood.com shows high-risk / scam indicators.
This assessment found strong scam indicators. Do not pay, sign in, or share personal details with this site.
| What this site appears to be | A directory index (Index of /) listing a few folders and the server signature 'Proudly Served by LiteSpeed Web Server at bratarfood.com Port 443'. No forms, scripts, or monetization elements visible. |
|---|
Evidence status and limitations
Evidence completeness: UNKNOWN
- The real-world operator identity was not independently verified.
- Module-level completeness metadata is unavailable for this legacy report.
At a glance
The checks that decide most of this verdict.
| Malware engines | 6 flagged itVirusTotal | Risk |
|---|---|---|
| Google Safe Browsing | Not listedGoogle | Clear |
| Abuse reports on the host | 0 reportsAbuseIPDB; shared hosting inflates this count | Noted |
| Domain age | 2 months oldMost scam domains are under a year old | Risk |
| Web archive | Never archivedNo public history of this site | Watch |
| Certificate | Encrypted connectionIssued by YR1 | Noted |
The page as captured
Key findings
- Automated classification: Sensitive Interaction Risk.
- Domain age: less than 1 year (registration continuity).
- At least one reputation service TrustSniffer consulted had flagged this domain at assessment time.
- The operator behind the site could not be independently connected to a real-world brand or person.
Full analysis
Security Alert
Fortinet, Kaspersky, Sophos flagged this site in external intelligence checks, indicating elevated compromise/scam exposure that requires immediate caution.
bratarfood.com currently presents a bare server directory index rather than a developed public-facing business website. Visitors see folders and file entries, together with a LiteSpeed Web Server signature, but no visible company profile, service description, commerce flow, authentication interface, or other clear explanation of the site’s intended business purpose.
Scam/Impersonation Risk
The site carries a critical interaction risk because external threat intelligence produced multiple malicious and suspicious detections and a confirmed blacklist result. This is materially more significant than the otherwise minimal homepage presentation: the directory page itself contains no visible login form, payment flow, scripts, or explicit phishing content, but its benign appearance does not offset the independent reputation findings. No conflicting legal identities or direct brand-impersonation indicators were observed; the principal concern is the confirmed external threat status combined with the domain’s very recent registration. The domain’s registration record identifies NAMECHEAP INC as registrar, with creation on 2026-07-31 and an age of approximately 0.15 years.
- The homepage is an “Index of /” directory listing with folders named `cgi-bin`, `new`, and `rfq_products_inquiry`, rather than a substantive business interface.
- External reputation checks recorded 6 malicious and 3 suspicious detections among 14 evaluated results, including detections from Fortinet, Kaspersky, and Sophos.
- A confirmed blacklist result was recorded by more than one external source.
- WHOIS records show registration on 2026-07-31 and an age of approximately 0.15 years.
Regulatory Verification Notes
The available page does not provide a clear operator identity, legal-entity presentation, licensing statement, registration number, or regulatory status. Because the observed content is only a directory index, this is a transparency and verification gap rather than evidence of a particular regulated activity. The real-world operator remains independently unverified. Transport security is present, but the certificate is domain-validated and therefore does not establish the operator’s legal identity or authorization.
- The homepage contains no visible company name, registered address, terms, privacy notice, licensing disclosure, or regulator reference.
- The site’s TLS certificate is issued by YR1, uses DV validation, and is valid to 2026-12-12T03:14:37+00:00.
- The observed homepage presents no identifiable commercial, financial, or regulated service offering whose authorization can be assessed from the page.
What to Verify Next
Before any interaction beyond passive viewing, an organization should establish the site’s operator through an independently sourced business record and confirm any claimed authorization with the relevant official registry. Contact channels should be validated through an offline or independently obtained route, and any files exposed by the directory should be treated as untrusted until scanned and attributed. Credentials, financial information, and account creation should not be used while those checks remain unresolved.
- The homepage exposes a directory index rather than an identifiable business or customer-service workflow.
- The page contains no forms, authentication elements, or stated transaction process against which an operator or payment flow can be validated.
- The available content includes exposed folder names, making independent file-safety and ownership validation appropriate before any download or execution.
Summary Verdict
The overall posture is critical and unsuitable for sensitive interaction. The available evidence does not establish a trustworthy operator or a legitimate business purpose, while the confirmed external threat and blacklist findings create a decisive basis for withholding trust.
Infrastructure Integrity
The site resolves directly to a single likely origin with no detected CDN or WAF layer. It is hosted by YOTTASRC - YottaSrc, SA on AS213535, registered through RIPE NCC in GB; this confirms an identifiable hosting path but provides no legitimacy assurance and offers no protective infrastructure mitigation.
- Hosting provider: YOTTASRC - YottaSrc, SA.
- Network: AS213535, RIPE NCC registry, GB; one unique resolved IP and one likely origin IP were observed.
- No CDN or WAF vendor was detected.
Closing Assessment
The appropriate enterprise disposition is to block sensitive interaction and require independent operator, authorization, and file-safety validation before any exception is considered.
Written analysis generated 2026-09-23 by the TrustSniffer Analysis Engine from the evidence in this report.
What the analysis found
2 findings contributed to this verdict, raised by registration and ownership, analysis engine, external reputation.
01 Governance Risk
- Registration details are held behind a privacy service, so no operator is named publicly. This is common and legal, and it also means there is nobody to check.Registration and ownership
rule:KF_WHOIS_PRIVATE - The registration record withholds contact details for the operator.Registration and ownership
rule:KF_WHOIS_HIDDEN
02 Sensitive Interaction Risk
- The analysis matched a pattern TrustSniffer treats as a direct threat to a visitor.Analysis engine
signal:direct_threat - An external threat feed lists this domain: either Google Safe Browsing marked it malicious, or a significant number of malware engines flagged it.External reputation
rule:EXT_BLACKLIST_CRITICAL
Identity verification
| Status | UNVERIFIED |
|---|---|
| Identity score | 30/100 |
| Identity verification confidence | 25% |
- No on-site identity signals detected
Identity verification measures whether the site can be independently connected to a real-world brand or person. It is separate from the classification confidence.
What TrustSniffer observed
First-party facts recorded during the assessment of bratarfood.com.
- The request stayed on bratarfood.com. It was not redirected to another domain. Clear
- Registration is published under NAMECHEAP INC. Clear
- DNS for this domain is served by srv-console.com, across 4 name servers. Noted
- The registration is paid up to 2027-07-31. Noted
- It is hosted on YOTTASRC, from a server in GB. Noted
Domain intelligence
| Registrar | NAMECHEAP INC |
|---|---|
| Hosting | YOTTASRC - YottaSrc, SA |
| Country | GB |
| Server IP | 107.161.174.10 |
| Name servers | NS1.SRV-CONSOLE.COM, NS2.SRV-CONSOLE.COM, NS3.SRV-CONSOLE.COM, NS4.SRV-CONSOLE.COM |
| SSL issuer | YR1 |
| SSL expiry | 2026-12-12 |
| Domain age | 0.15 years (continuous registration) |
| Domain expiry | 2027-07-31 |
| Archive first seen | Not available |
| Archive snapshots | 0 |
| Reputation | VirusTotal: 6 flagged | AbuseIPDB: 0 reports | Google Safe Browsing: 0 matches |
About this assessment
A trust score summarises the evidence TrustSniffer could collect about bratarfood.com at assessment time. It is a starting point for your own judgement, not a guarantee: a high score means the signals were consistent with a legitimately operated site, a low or critical score means several risk patterns were present.
TrustSniffer assesses a website from the evidence it can collect at a point in time: domain registration and age, hosting and certificate, the content the site served, and third-party reputation feeds. A score is a summary of that evidence, not a guarantee and not a legal finding. There is no human rating and no user review in it. A site can change after it is assessed.