---
title: "Is makemewin.club a Scam? Trust Score 10/100"
source: TrustSniffer
type: Website trust & fraud report
subject: "makemewin.club"
verdict: "Critical Risk"
title: "Is makemewin.club a Scam? Trust Score 10/100"
trust_score: 10
classification_confidence: 55
canonical_url: https://trustsniffer.com/report/makemewin.club
assessed: 2026-09-23
---

# Is makemewin.club a scam? TrustSniffer's high-risk assessment: 10/100

## Verdict


**Verdict: Critical Risk, trust score 10/100.** makemewin.club shows high-risk / scam indicators.

This assessment found strong scam indicators. Do not pay, sign in, or share personal details with this site.

Labels: Sensitive Interaction Risk, Governance Risk

Assessed 2026-09-23 by automated analysis. Classification confidence 55%.

| Field | Value |
| --- | --- |
| What this site appears to be | Vendor-supplied default installation page for CyberPanel. Instructs the administrator to remove the page and upload site content; contains links to control panel resources but no forms or monetization. |

## Evidence status and limitations


Evidence completeness: UNKNOWN

- The real-world operator identity was not independently verified.
- Module-level completeness metadata is unavailable for this legacy report.

## At a glance

The checks that decide most of this verdict.

| Check | Result | Status |
| --- | --- | --- |
| Malware engines | 1 flagged it (VirusTotal) | Risk |
| Google Safe Browsing | Not listed (Google) | Clear |
| Abuse reports on the host | 0 reports (AbuseIPDB; shared hosting inflates this count) | Noted |
| Domain age | 6 months old (Most scam domains are under a year old) | Watch |
| Web archive | Never archived (No public history of this site) | Watch |
| Certificate | Encrypted connection (Issued by YR1) | Noted |

## The page as captured


![Screenshot of the makemewin.club homepage captured during the TrustSniffer assessment](https://trustsniffer.com/outputs/makemewin.club/screenshots/first.png)

_What makemewin.club served when TrustSniffer captured it on 2026-09-23. The page may look different now._

## Key findings


- Automated classification: Sensitive Interaction Risk.
- Domain age: less than 1 year (registration continuity).
- At least one reputation service TrustSniffer consulted had flagged this domain at assessment time.
- The operator behind the site could not be independently connected to a real-world brand or person.

## Full analysis


### Security Alert

Fortinet, Kaspersky flagged this site in external intelligence checks, indicating elevated compromise/scam exposure that requires immediate caution.

The website currently presents a vendor-supplied CyberPanel installation placeholder rather than an operating business site. Visitors see a notice that CyberPanel has been installed, instructions to remove the page and upload site content, and links to hosting-panel forums and documentation; no end-user service, commercial offering, or operator identity is presented.


### Scam/Impersonation Risk

**The site carries a confirmed blacklist signal**, supported by additional external security detections, creating a material risk for sensitive interaction despite the absence of malicious forms or deceptive content on the page currently served. The observed homepage is only a generic CyberPanel installation page, so it does not itself demonstrate impersonation or solicit credentials, money, or other sensitive information; however, that benign placeholder content does not resolve the external reputation contradiction or establish that future content served from the domain would be safe. No separate identity contradiction or page-level brand impersonation was observed.


Evidence:
- External reputation assessment recorded a confirmed blacklist hit and additional detections, including 1 malicious and 2 suspicious results.
- The homepage is titled “CyberPanel Installed” and contains 159 characters of installation text, with no login form, sensitive form, or payment mechanism.
- Behavioral testing recorded 2 successful runs, with no wallet activity, clipboard hijacking, hidden forms, or password submission to external forms.

### Regulatory Verification Notes

The observed content does not establish a real-world operator, legal entity, regulated status, or applicable license. No license claim or registration number appears on the available homepage, which is a material disclosure gap for any later financial, investment, trading, or payment-related use. The domain is newly registered and ownership details are privacy-protected, but the decisive concern is the confirmed external reputation signal rather than registration privacy alone. No matching third-party broker profile was identified, which provides no affirmative regulatory validation.


Evidence:
- The domain was created on 2026-03-17 and is 0.52 years old; the registrar is DYNADOT LLC.
- The site is served from AS36352, identified as AS-COLOCROSSING - HostPapa, US.
- The transport certificate is issued by YR1 with DV validation and is valid to 2026-10-07T03:03:43+00:00.
- The available homepage contains no operator name, license claim, registration number, or regulated-entity disclosure.

### What to Verify Next

Before any sensitive interaction, an independent party should identify the actual operator through a corporate registry and confirm any claimed authorization directly with the relevant financial or payments regulator. Any future business content should be assessed separately from the current placeholder, with particular attention to whether the operator, terms, complaints process, and payment protections are independently verifiable. Security teams should also review the domain and associated infrastructure against internal blocklists before permitting access.


Evidence:
- Behavioral testing observed 9 external XHR requests and 7 external POST requests across the evaluated sessions.
- The maximum recorded external activity ratio was 98%.
- Two console errors were recorded during behavioral testing, while no non-whitelisted external XHR destinations were identified.

### Summary Verdict

The website has a **critical trust posture** because a confirmed blacklist signal and supporting external detections outweigh the limited benign characteristics of the placeholder page and its valid transport encryption. Real-world operator identity remains unverified, and the available evidence does not support treating the domain as suitable for sensitive interaction.


### Infrastructure Integrity

Cloudflare CDN/WAF protection is present and is a mitigating infrastructure control, not proof of legitimacy. The observed address was 107.172.138.79 on the CDN edge, and the origin server was not observable in this analysis; this architecture can limit direct origin exposure but also restrict independent verification of the underlying host.


### Closing Assessment

Sensitive activity should not proceed unless the operator, authorization, and future site content are independently validated and the domain is cleared by the relevant security controls.


_Written analysis generated 2026-09-23 by the TrustSniffer Analysis Engine from the evidence in this report._

## What the analysis found

2 findings contributed to this verdict, raised by registration and ownership, analysis engine, behaviour in a sandbox.

### 01 Governance Risk
- The registration record withholds contact details for the operator. (Registration and ownership `rule:KF_WHOIS_HIDDEN`)
- Registration details are held behind a privacy service, so no operator is named publicly. This is common and legal, and it also means there is nobody to check. (Registration and ownership `rule:KF_WHOIS_PRIVATE`)

### 02 Sensitive Interaction Risk
- The analysis matched a pattern TrustSniffer treats as a direct threat to a visitor. (Analysis engine `signal:direct_threat`)
- Most of what the page loaded came from other domains rather than from this one. (Behaviour in a sandbox `rule:BEHAV_EXTERNAL_RATIO_HIGH`)

## Identity verification


| Field | Value |
| --- | --- |
| Status | UNVERIFIED |
| Identity score | 30/100 |
| Identity verification confidence | 25% |

- No on-site identity signals detected

_Identity verification measures whether the site can be independently connected to a real-world brand or person. It is separate from the classification confidence._

## What TrustSniffer observed

First-party facts recorded during the assessment of makemewin.club.

- The request stayed on makemewin.club. It was not redirected to another domain. (Clear)
- Registration is published under DYNADOT LLC. (Clear)
- DNS for this domain is served by cloudflare.com, across 2 name servers. (Noted)
- The registration is paid up to 2027-03-17. (Noted)
- It is hosted on AS-COLOCROSSING, from a server in US. (Noted)

## Domain intelligence


| Field | Value |
| --- | --- |
| Registrar | DYNADOT LLC |
| Hosting | AS-COLOCROSSING - HostPapa, US |
| Country | US |
| Server IP | 107.172.138.79 |
| Name servers | zoe.ns.cloudflare.com, bryce.ns.cloudflare.com |
| SSL issuer | YR1 |
| SSL expiry | 2026-10-07 |
| Domain age | 0.52 years (continuous registration) |
| Domain expiry | 2027-03-17 |
| Archive first seen | Not available |
| Archive snapshots | 0 |
| Reputation | VirusTotal: 1 flagged \| AbuseIPDB: 0 reports \| Google Safe Browsing: 0 matches |

## About this assessment


A trust score summarises the evidence TrustSniffer could collect about makemewin.club at assessment time. It is a starting point for your own judgement, not a guarantee: a high score means the signals were consistent with a legitimately operated site, a low or critical score means several risk patterns were present.

TrustSniffer assesses a website from the evidence it can collect at a point in time: domain registration and age, hosting and certificate, the content the site served, and third-party reputation feeds. A score is a summary of that evidence, not a guarantee and not a legal finding. There is no human rating and no user review in it. A site can change after it is assessed.

## Related on TrustSniffer
- [neje.club risk report](https://trustsniffer.com/report/neje.club) (Critical Risk, 0/100)
- [3158-zs.com risk report](https://trustsniffer.com/report/3158-zs.com) (Critical Risk, 0/100)
- [313ltd.com risk report](https://trustsniffer.com/report/313ltd.com) (Critical Risk, 0/100)
- [313456.xyz risk report](https://trustsniffer.com/report/313456.xyz) (Critical Risk, 0/100)
- [312northwood.com risk report](https://trustsniffer.com/report/312northwood.com) (Critical Risk, 0/100)
- [3115kk.top risk report](https://trustsniffer.com/report/3115kk.top) (Critical Risk, 0/100)
- [3115f.top risk report](https://trustsniffer.com/report/3115f.top) (Critical Risk, 0/100)
- [3115ff.me risk report](https://trustsniffer.com/report/3115ff.me) (Critical Risk, 0/100)
- [3115ee.top risk report](https://trustsniffer.com/report/3115ee.top) (Critical Risk, 0/100)
- [3115aa.top risk report](https://trustsniffer.com/report/3115aa.top) (Critical Risk, 0/100)
- [Every website and wallet TrustSniffer has assessed](https://trustsniffer.com/directory)
- [Other domains assessed as high-risk or phishing](https://trustsniffer.com/directory/phishing-domains)
- [Check another website](https://trustsniffer.com/web-intelligence)
- [Check a crypto wallet address](https://trustsniffer.com/on-chain-risk)
- [The TrustSniffer Risk Index](https://trustsniffer.com/stats)

## Guides
- [Stablecoin Freezes Sept 23, 2026: 11 Wallets](https://trustsniffer.com/blog/stablecoin-freeze-report-2026-09-23)
- [Stablecoin Freezes, Sep 22, 2026: 60 Wallets](https://trustsniffer.com/blog/stablecoin-freeze-report-2026-09-22)
- [The Malware Hidden Inside Minecraft Mods](https://trustsniffer.com/blog/minecraft-mod-malware)

---
*Source: [TrustSniffer](https://trustsniffer.com/report/makemewin.club) — independent automated trust & fraud analysis. Cite as https://trustsniffer.com/report/makemewin.club · assessed 2026-09-23.*
