Verdict
communication-hub.vg shows high-risk / scam indicators.
This assessment found strong scam indicators. Do not pay, sign in, or share personal details with this site.
| What this site appears to be | A German-language GMX service error page indicating privacy/settings failed to load; appears to be a standard site error with no signs of phishing or financial solicitation. |
|---|
Evidence status and limitations
Evidence completeness: UNKNOWN
- The real-world operator identity was not independently verified.
- Module-level completeness metadata is unavailable for this legacy report.
At a glance
The checks that decide most of this verdict.
| Malware engines | 16 flagged itVirusTotal | Risk |
|---|---|---|
| Google Safe Browsing | Not listedGoogle | Clear |
| Abuse reports on the host | 0 reportsAbuseIPDB; shared hosting inflates this count | Noted |
| Domain age | 2 months oldMost scam domains are under a year old | Risk |
| Web archive | Never archivedNo public history of this site | Watch |
| Certificate | Encrypted connectionIssued by YE1 | Noted |
The page as captured
Key findings
- Automated classification: Sensitive Interaction Risk.
- Domain age: less than 1 year (registration continuity).
- At least one reputation service TrustSniffer consulted had flagged this domain at assessment time.
- The operator behind the site could not be independently connected to a real-world brand or person.
Full analysis
Security Alert
Fortinet, Kaspersky, Sophos flagged this site in external intelligence checks, indicating elevated compromise/scam exposure that requires immediate caution.
The website at communication-hub.vg presents a German-language GMX-branded service page describing free email, cloud storage, news, and freemail services, but the captured experience is limited to an error message stating that privacy and data-protection settings could not be loaded. Its apparent business model is an advertising-supported consumer email and cloud service with optional premium upgrades, although the domain and the presented service identity do not establish a verified operating relationship.
Scam/Impersonation Risk
Confirmed external reputation contradictions place this site in a clearly cautionary posture. The domain is blacklisted by multiple external sources, with 16 malicious and 3 suspicious detections among the evaluated results; this is materially more significant than the page-level appearance, which contains no login form, financial solicitation, or overt phishing language. The inspected page is a thin service-error presentation associated with GMX wording, while behavioral inspection also identified suspicious inline scripting and extensive external request activity. No separate identity inconsistency or confirmed impersonation signal was observed, but the blacklist and malicious detections are sufficient to make sensitive interaction inappropriate.
- The external reputation assessment recorded 16 malicious detections and 3 suspicious detections, with blacklist status confirmed by two sources.
- The homepage/error page displays “GMX - kostenlose E-Mail, Cloud, Nachrichten & Freemail” and states in German that privacy and data-protection settings could not be loaded.
- Behavioral inspection recorded 1 suspicious inline script, 23 external XHR requests, and 12 external POST requests.
Regulatory Verification Notes
The available material does not independently verify the real-world operator behind the domain. The observed page provides no company identity, licensing statement, registration number, or other accountable legal disclosure; because it is an error page, this is a transparency gap rather than independent proof of fraud. The site uses a newly registered domain through NICENIC INTERNATIONAL GROUP CO., LIMITED, and its transport security is domain-validated rather than organization-validated. No matching broker record was identified, but that third-party result is contextual only and does not establish licensing or regulatory status.
- Domain registration: 2026-08-01; age 0.15 years; registrar NICENIC INTERNATIONAL GROUP CO., LIMITED.
- The site is served from AS56971, identified as CGI GLOBAL LIMITED, HK.
- TLS certificate issuer: YE1; validation level: DV; valid to 2026-12-14T08:38:59+00:00.
- The inspected service-error page contains no visible operator name, license claim, registration number, or accountable legal entity.
What to Verify Next
Sensitive use should not proceed unless the service identity is independently confirmed through an official GMX-controlled channel and the domain relationship is verified without relying on links or contact details presented by the site. Any proposed account creation, credential submission, payment, or recovery action should remain suspended until the relevant provider confirms that this domain is authorized; security teams should also preserve the page and network indicators for screening against organizational controls.
- The observed page is an informational service-error page with no sensitive form and no trusted destination for credential submission.
- The page title and visible text identify GMX services, while the inspected domain is communication-hub.vg.
- Independent confirmation is therefore required to connect the presented service identity with the observed domain.
Summary Verdict
This site has a critical trust posture and presents unacceptable risk for login, credential, payment, or other sensitive interaction. The apparent consumer-service presentation does not offset the confirmed external threat detections, blacklist status, and unresolved operator identity.
Infrastructure Integrity
Cloudflare CDN/WAF protection is present and is a mitigating control against direct exposure of the hosting environment, but it does not establish legitimacy. Observed addresses were CDN edge infrastructure, with no origin candidate identified; the hosting record points to AS56971, CGI GLOBAL LIMITED, HK, and the registered network country is AE.
Closing Assessment
Treat the domain as unsuitable for sensitive interaction and require independent provider confirmation before any operational engagement.
Written analysis generated 2026-09-25 by the TrustSniffer Analysis Engine from the evidence in this report.
What the analysis found
2 findings contributed to this verdict, raised by registration and ownership, analysis engine, behaviour in a sandbox, external reputation.
01 Governance Risk
- The public registration record for this domain is incomplete.Registration and ownership
rule:KF_WHOIS_INCOMPLETE
02 Sensitive Interaction Risk
- The analysis matched a pattern TrustSniffer treats as a direct threat to a visitor.Analysis engine
signal:direct_threat - Most of what the page loaded came from other domains rather than from this one.Behaviour in a sandbox
rule:BEHAV_EXTERNAL_RATIO_HIGH - The page carried inline scripts written in a style TrustSniffer treats as suspicious.Behaviour in a sandbox
rule:BEHAV_SUSPICIOUS_INLINE_SCRIPTS - The structure of the page changed sharply while it was loading.Behaviour in a sandbox
rule:BEHAV_DOM_DENSITY_SPIKE - The page sent data to a destination TrustSniffer does not recognise.Behaviour in a sandbox
rule:BEHAV_NONWHITELISTED_POSTS - The page exchanged network traffic with destinations TrustSniffer does not recognise.Behaviour in a sandbox
rule:BEHAV_NONWHITELISTED_TRAFFIC - The page made background requests to destinations TrustSniffer does not recognise.Behaviour in a sandbox
rule:BEHAV_NONWHITELISTED_XHR - An external threat feed lists this domain: either Google Safe Browsing marked it malicious, or a significant number of malware engines flagged it.External reputation
rule:EXT_BLACKLIST_CRITICAL
Identity verification
| Status | UNVERIFIED |
|---|---|
| Identity score | 30/100 |
| Identity verification confidence | 50% |
- No on-site identity signals detected
Identity verification measures whether the site can be independently connected to a real-world brand or person. It is separate from the classification confidence.
What TrustSniffer observed
First-party facts recorded during the assessment of communication-hub.vg.
- The request for communication-hub.vg ended on www.gmx.net, a different domain. Watch
- Registration is published under NICENIC INTERNATIONAL GROUP CO., LIMITED. Clear
- DNS for this domain is served by cloudflare.com, across 2 name servers. Noted
- The registration is paid up to 2027-08-01. Noted
- It is hosted on AS56971, from a server in AE. Noted
Domain intelligence
| Registrar | NICENIC INTERNATIONAL GROUP CO., LIMITED |
|---|---|
| Hosting | AS56971 - CGI GLOBAL LIMITED, HK |
| Country | AE |
| Server IP | 94.183.177.82 |
| Name servers | MAYA.NS.CLOUDFLARE.COM, RICARDO.NS.CLOUDFLARE.COM |
| SSL issuer | YE1 |
| SSL expiry | 2026-12-14 |
| Domain age | 0.15 years (continuous registration) |
| Domain expiry | 2027-08-01 |
| Archive first seen | Not available |
| Archive snapshots | 0 |
| Reputation | VirusTotal: 16 flagged | AbuseIPDB: 0 reports | Google Safe Browsing: 0 matches |
About this assessment
A trust score summarises the evidence TrustSniffer could collect about communication-hub.vg at assessment time. It is a starting point for your own judgement, not a guarantee: a high score means the signals were consistent with a legitimately operated site, a low or critical score means several risk patterns were present.
TrustSniffer assesses a website from the evidence it can collect at a point in time: domain registration and age, hosting and certificate, the content the site served, and third-party reputation feeds. A score is a summary of that evidence, not a guarantee and not a legal finding. There is no human rating and no user review in it. A site can change after it is assessed.