Verdict
laufwerk-verschwunden.de shows high-risk / scam indicators.
This assessment found strong scam indicators. Do not pay, sign in, or share personal details with this site.
| What this site appears to be | Marketplace-styled product page advertising 'YUPITOTO' as a login hub for toto/slot/gambling sites. The page mixes marketplace listing metadata (price, shipping, seller info) with promotional copy for a gambling login aggregator. No clear regulatory, licensing, or contact verification for gambling activity is presented. |
|---|
Evidence status and limitations
Evidence completeness: UNKNOWN
- The real-world operator identity was not independently verified.
- Module-level completeness metadata is unavailable for this legacy report.
At a glance
The checks that decide most of this verdict.
| Malware engines | 4 flagged itVirusTotal | Risk |
|---|---|---|
| Google Safe Browsing | Not listedGoogle | Clear |
| Abuse reports on the host | 0 reportsAbuseIPDB; shared hosting inflates this count | Noted |
| Domain age | 13 years oldRegistered history | Clear |
| Web archive | Archived since 2014Public history exists | Clear |
| Certificate | Encrypted connectionIssued by WE1 | Noted |
The page as captured
Key findings
- Automated classification: Sensitive Interaction Risk.
- Domain age: more than 10 years (registration continuity).
- Public web-archive history exists since 2014.
- At least one reputation service TrustSniffer consulted had flagged this domain at assessment time.
Full analysis
Security Alert
Fortinet flagged this site in external intelligence checks, indicating elevated compromise/scam exposure that requires immediate caution.
The website is a marketplace-styled product page promoting “YUPITOTO” as a login hub for toto, slot, and other online gambling services. Its presentation combines retail-listing elements such as price, shipping, seller information, and shopping navigation with promotional gambling-access content, suggesting an affiliate, referral, or transaction-based model rather than a clearly defined conventional product.
Scam/Impersonation Risk
Contradictory risk signals are present. External security intelligence records a confirmed blacklist and multiple malicious detections, while the homepage combines marketplace presentation with gambling-access promotion and does not clearly explain the product, beneficiary, or flow of deposited funds. The page-level findings identify no clear product, opaque value flow, deposit-before-service behavior, and a mismatch between promotional claims and supporting evidence. These signals warrant a security-forward posture for credentials, payments, and any other sensitive interaction. No separate brand-impersonation or conflicting legal-entity finding was identified in the supplied analysis. Evidence:
- External reputation telemetry recorded 4 malicious detections and a confirmed blacklist hit.
- The homepage is classified as a product-listing or marketplace page with gambling-related content, including “YUPITOTO,” “SITUS TOTO,” “SLOT ONLINE,” and related gambling-access terms.
- The homepage was assessed with four content red flags: no clear product, opaque value flow, deposit before service, and claim-evidence dissonance.
- Recorded archive telemetry shows 105 snapshots spanning 2014–2026, with 13 years tracked; this historical footprint does not offset the current security detections.
Regulatory Verification Notes
The gambling-related page does not present a clear licensing authority, license number, regulatory disclosure, or contact-verification mechanism. The real-world operator identity remains unverified and governance disclosures are unclear, so the site's commercial and regulatory status cannot be independently established from the supplied content. The absence of a matched third-party broker profile is contextual only and does not establish authorization. Evidence:
- The homepage provides no clear gambling license, licensing authority, or contact-verification information.
- Domain registration continuity records an age of 12.506502395619439 years.
- The site is served through AS13335, CLOUDFLARENET – Cloudflare, Inc., US.
- The transport certificate is issued by WE1, uses Domain Validation (DV), and is valid to 2026-11-06T10:10:25+00:00.
What to Verify Next
Before any sensitive interaction, an organization should independently confirm the operator's legal name, beneficiary of payments, and authorization with the gambling regulator applicable to the intended jurisdiction. Contact channels should be validated through an independently sourced route, and any proposed payment destination should be checked against the verified operator rather than relying on the page's marketplace presentation. Until those checks are completed, activity should remain limited to non-interactive review. Evidence:
- The homepage lacks a clearly identified licensing authority and license number, making an independent registry check necessary.
- The page combines seller, shipping, and price metadata with gambling promotion, requiring separate confirmation of the actual merchant and payment beneficiary.
- The operator identity is unverified in the available evidence, requiring independent entity validation before engagement.
Summary Verdict
The website has a critical trust posture and should be treated as unsuitable for sensitive interaction. The confirmed external security detections, blacklist status, unclear operating model, and unverified identity outweigh the limited technical indicators of a functioning web service.
Infrastructure Integrity
Cloudflare CDN/WAF protection is present, and all observed addresses were Cloudflare edge infrastructure; an origin server was not observable in this analysis. This provides an infrastructure-layer mitigation against direct origin exposure, but it is not evidence that the site's operator or business model is legitimate.
Closing Assessment
Enterprise controls should block or isolate sensitive interaction with the site, prevent credential and payment submission, and require documented legal, regulatory, and beneficiary verification before any reconsideration.
Written analysis generated 2026-08-19 by the TrustSniffer Analysis Engine from the evidence in this report.
What the analysis found
2 findings contributed to this verdict, raised by registration and ownership, analysis engine, behaviour in a sandbox, external reputation.
01 Governance Risk
- The public registration record for this domain is incomplete.Registration and ownership
rule:KF_WHOIS_INCOMPLETE
02 Sensitive Interaction Risk
- The analysis matched a pattern TrustSniffer treats as a direct threat to a visitor.Analysis engine
signal:direct_threat - The page rewrote itself after it was interacted with, so what a visitor first sees is not what they end up on.Behaviour in a sandbox
rule:BEHAV_DOM_DIFF_AFTER_INTERACTION - Most of what the page loaded came from other domains rather than from this one.Behaviour in a sandbox
rule:BEHAV_EXTERNAL_RATIO_HIGH - The structure of the page changed sharply while it was loading.Behaviour in a sandbox
rule:BEHAV_DOM_DENSITY_SPIKE - An external threat feed lists this domain: either Google Safe Browsing marked it malicious, or a significant number of malware engines flagged it.External reputation
rule:EXT_BLACKLIST_CRITICAL
Identity verification
| Status | UNVERIFIED |
|---|---|
| Identity score | 30/100 |
| Identity verification confidence | 50% |
- No on-site identity signals detected
Identity verification measures whether the site can be independently connected to a real-world brand or person. It is separate from the classification confidence.
What TrustSniffer observed
First-party facts recorded during the assessment of laufwerk-verschwunden.de.
- The request stayed on laufwerk-verschwunden.de. It was not redirected to another domain. Clear
- DNS for this domain is served by cloudflare.com, across 2 name servers. Noted
- The earliest public archive of this site is from 2014-02-15. Clear
- It is hosted on CLOUDFLARENET, from a server in US. Noted
Domain intelligence
| Registrar | Not available |
|---|---|
| Hosting | CLOUDFLARENET - Cloudflare, Inc., US |
| Country | US |
| Server IP | 2606:4700:3037::6815:4a87 |
| Name servers | harlee.ns.cloudflare.com, rory.ns.cloudflare.com |
| SSL issuer | WE1 |
| SSL expiry | 2026-11-06 |
| Domain age | 12.51 years (continuous registration) |
| Domain expiry | Not available |
| Archive first seen | 2014-02-15 |
| Archive snapshots | Not counted (archive lookup incomplete) |
| Reputation | VirusTotal: 4 flagged | AbuseIPDB: 0 reports | Google Safe Browsing: 0 matches |
About this assessment
A trust score summarises the evidence TrustSniffer could collect about laufwerk-verschwunden.de at assessment time. It is a starting point for your own judgement, not a guarantee: a high score means the signals were consistent with a legitimately operated site, a low or critical score means several risk patterns were present.
TrustSniffer assesses a website from the evidence it can collect at a point in time: domain registration and age, hosting and certificate, the content the site served, and third-party reputation feeds. A score is a summary of that evidence, not a guarantee and not a legal finding. There is no human rating and no user review in it. A site can change after it is assessed.