Verdict
odinclient.st is low-trust and potentially risky.
Several risk patterns were present. Do not send money or personal details until you have verified this business another way.
| What this site appears to be | Official-looking landing page for Odin Client, a free Fabric mod for Hypixel Skyblock. Describes features (61+ modules), provides downloads for Fabric 26.3 and 26.2, and includes installation steps and FAQ. No payment, login, or credential collection is visible. |
|---|
Evidence status and limitations
Evidence completeness: UNKNOWN
- The real-world operator identity was not independently verified.
- Module-level completeness metadata is unavailable for this legacy report.
At a glance
The checks that decide most of this verdict.
| Malware engines | None flagged itVirusTotal | Clear |
|---|---|---|
| Google Safe Browsing | Not listedGoogle | Clear |
| Abuse reports on the host | 0 reportsAbuseIPDB; shared hosting inflates this count | Noted |
| Domain age | 1 months oldMost scam domains are under a year old | Risk |
| Web archive | Never archivedNo public history of this site | Watch |
| Certificate | Encrypted connectionIssued by YR2 | Noted |
The page as captured
Key findings
- Automated classification: Governance Risk.
- Domain age: less than 1 year (registration continuity).
- No flags from the reputation services TrustSniffer consulted at assessment time.
- The operator behind the site could not be independently connected to a real-world brand or person.
Full analysis
Security Alert
Fortinet flagged this site in external intelligence checks, indicating elevated compromise/scam exposure that requires immediate caution.
Odinclient.st presents itself as the official-looking website for Odin Client, a free Fabric modification for Minecraft Hypixel Skyblock, offering downloadable builds, installation guidance, an FAQ, and a catalogue of more than 61 in-game modules without advertising payment, subscription, or account requirements.
Scam/Impersonation Risk
No confirmed blacklist, phishing, impersonation, or conflicting legal identities were observed. The site’s stated purpose is a downloadable single-jar Minecraft modification, and its homepage describes specific functionality including dungeon helpers, Floor 7 solvers, render tools, keybinds, and Kuudra utilities. The absence of payment, login, credential collection, or wallet functionality reduces the immediately visible fraud surface, but the site remains a low-trust download source because an external security assessment recorded a threat detection from Fortinet and the operator identity is not independently verified. The detection is a material reputational warning, not proof that the site is malicious.
- The homepage describes Odin Client as a free Fabric 26.3 and 26.2 mod with 61+ modules and directs visitors to download a single mod file.
- The homepage and FAQ provide installation and compatibility information but show no login form, payment flow, credential request, or wallet connection.
- The external assessment recorded one suspicious result and a Fortinet threat detection, while malicious classification by the broader evaluated checks was false.
- Domain registration records show creation on 2026-08-23 and expiry on 2027-08-23; the domain age is recorded as 0.1 years.
Regulatory Verification Notes
The available pages describe a software utility rather than a financial, brokerage, or payment service, so no financial authorization claim is apparent from the observed business model. However, the supplied site content does not identify a verifiable legal operator, maintainer, or software licensing basis, leaving governance and provenance unclear. This is a transparency and provenance gap rather than evidence of a scam. The available evidence supports treating the site as an unverified software publisher, not as an established entity whose operator identity has been independently confirmed.
- The homepage identifies the product as “Odin Client” but does not provide a named legal entity or independently verifiable maintainer identity in the captured content.
- The software presentation does not state a license authority or license number.
- The site’s transport certificate is DV-validated, issued by YR2, and valid through 2026-12-20.
- Hosting is attributed to AS214351, FEMOIT - FEMO IT SOLUTIONS LIMITED, GB.
What to Verify Next
Before executing the downloaded mod, the prospective user should obtain the file through an independently confirmed project channel, compare its cryptographic hash with a trusted release record, and scan it with current endpoint security and malware-analysis tools. The file should first be tested in an isolated Minecraft profile or sandbox without sensitive browser sessions, stored credentials, or unrelated personal files. The project maintainer, source code, release history, and software license should also be confirmed through an independent channel rather than relying solely on the website.
- The site provides downloadable executable mod content in single-jar form, making file provenance and integrity the primary verification concern.
- The captured behavior showed no external network requests, hidden forms, clipboard activity, wallet activity, or suspicious inline scripts during two successful runs; this supports controlled testing but does not establish the safety of the downloadable file itself.
- The site provides installation instructions and compatibility information that can be compared against an independently obtained release package.
Summary Verdict
The website has a low-trust posture with no confirmed impersonation or blacklist contradiction, but its unverified operator identity and external threat detection prevent it from being treated as an established or independently validated software source. The available evidence is consistent with a genuine-looking project presentation, yet not sufficient to establish dependable provenance or safe execution.
Infrastructure Integrity
Cloudflare CDN/WAF protection is present, and the observed address was an edge address rather than a directly exposed origin. This reduces direct infrastructure exposure but is only a mitigating control; it does not validate the publisher, the downloaded file, or the site’s underlying content.
- The site is protected by Cloudflare CDN/WAF infrastructure.
- One observed IP address, 196.251.107.204, was identified as a CDN edge address, with no origin candidate observed.
- The hosting environment is associated with Seychelles network geography and edge-only visibility in the collected infrastructure view.
Closing Assessment
Interaction should remain limited to cautious inspection and controlled file analysis until the project’s publisher, release provenance, and executable integrity have been independently established.
Written analysis generated 2026-09-27 by the TrustSniffer Analysis Engine from the evidence in this report.
What the analysis found
1 finding contributed to this verdict, raised by registration and ownership.
01 Governance Risk
- The public registration record for this domain is incomplete.Registration and ownership
rule:KF_WHOIS_INCOMPLETE
Identity verification
| Status | UNVERIFIED |
|---|---|
| Identity score | 30/100 |
| Identity verification confidence | 50% |
- No on-site identity signals detected
Identity verification measures whether the site can be independently connected to a real-world brand or person. It is separate from the classification confidence.
What TrustSniffer observed
First-party facts recorded during the assessment of odinclient.st.
- The request stayed on odinclient.st. It was not redirected to another domain. Clear
- Registration is published under ST Registry. Clear
- DNS for this domain is served by cloudflare.com, across 2 name servers. Noted
- The registration is paid up to 2027-08-23. Noted
- It is hosted on FEMOIT, from a server in SC. Noted
Domain intelligence
| Registrar | ST Registry |
|---|---|
| Hosting | FEMOIT - FEMO IT SOLUTIONS LIMITED, GB |
| Country | SC |
| Server IP | 196.251.107.204 |
| Name servers | clint.ns.cloudflare.com, miki.ns.cloudflare.com |
| SSL issuer | YR2 |
| SSL expiry | 2026-12-20 |
| Domain age | 0.10 years (continuous registration) |
| Domain expiry | 2027-08-23 |
| Archive first seen | Not available |
| Archive snapshots | 0 |
| Reputation | VirusTotal: 0 flagged | AbuseIPDB: 0 reports | Google Safe Browsing: 0 matches |
About this assessment
A trust score summarises the evidence TrustSniffer could collect about odinclient.st at assessment time. It is a starting point for your own judgement, not a guarantee: a high score means the signals were consistent with a legitimately operated site, a low or critical score means several risk patterns were present.
TrustSniffer assesses a website from the evidence it can collect at a point in time: domain registration and age, hosting and certificate, the content the site served, and third-party reputation feeds. A score is a summary of that evidence, not a guarantee and not a legal finding. There is no human rating and no user review in it. A site can change after it is assessed.