Verdict
trenuleteturda.ro shows high-risk / scam indicators.
This assessment found strong scam indicators. Do not pay, sign in, or share personal details with this site.
| What this site appears to be | Local museum site (Muzeul Trenulețelor) describing a large permanent diorama exhibit, visitor info, gallery and contact details for Turda, Romania. |
|---|
Evidence status and limitations
Evidence completeness: UNKNOWN
- The real-world operator identity was not independently verified.
- Module-level completeness metadata is unavailable for this legacy report.
At a glance
The checks that decide most of this verdict.
| Malware engines | None flagged itVirusTotal | Clear |
|---|---|---|
| Google Safe Browsing | Listed as unsafeGoogle | Risk |
| Abuse reports on the host | 0 reportsAbuseIPDB; shared hosting inflates this count | Noted |
| Domain age | 2.9 years oldRegistered history | Clear |
| Web archive | Archived since 2024Public history exists | Clear |
| Certificate | Encrypted connectionIssued by YR2 | Noted |
The page as captured
Key findings
- Automated classification: Sensitive Interaction Risk.
- Domain age: 1 to 3 years (registration continuity).
- Public web-archive history exists since 2024.
- At least one reputation service TrustSniffer consulted had flagged this domain at assessment time.
Full analysis
Overview
The website is an informational Romanian museum site for Muzeul Trenulețelor in Turda, presenting a permanent model-train diorama, gallery material, visitor directions, opening hours, tariffs, and contact information; its apparent purpose is to support museum visits and related ticket or donation activity.
Scam/Impersonation Risk
The site’s visible content is consistent with a local museum and contains no observed login form, credential-collection mechanism, wallet connection, or other sensitive submission surface. However, this benign presentation is outweighed by confirmed external threat detections: the domain is reported as malicious by Google Safe Browsing and appears in an external blacklist, with social-engineering activity indicated in the associated detection. These are direct contradictions to the otherwise ordinary museum presentation, so sensitive interaction with the domain should be treated as unsafe. No separate identity contradiction or brand-impersonation finding was observed.
- The homepage presents museum exhibition content, visitor information, social links, and a Turda location; its page analysis recorded no login form, hidden form, or sensitive form.
- External reputation telemetry records `gsb_malicious: true` and `external_blacklist: true`; the associated threat type is social engineering.
- The domain was registered on 2023-09-20 and is approximately 2.92 years old.
- Archive records show 21 snapshots from 2024-07-14 through 2026-05-12, spanning 3 tracked years, with no detected suspicious repurposing.
Regulatory Verification Notes
The pages provide practical visitor information and identify a physical museum location, but they do not present a licensing or registration claim that can be assessed as independently verified. For a museum site, this is primarily a disclosure and operator-confirmation gap rather than a regulatory finding by itself. The apparent association with the museum is supported by links to Facebook, Instagram, YouTube, and TikTok, but the operator’s real-world identity remains likely rather than independently verified. The external blacklist findings remain the principal trust concern and are not offset by the site’s informational business model.
- The homepage identifies “MUZEUL TRENULEȚELOR,” describes the permanent diorama, and provides visitor categories including gallery, directions, schedule, tariffs, and contact information.
- Hosting is on AS34304, TeenTelecom – Teen Telecom SRL, RO.
- The site uses a DV TLS certificate issued by YR2, valid through 2026-11-15T10:42:08+00:00.
- No license authority or license number is claimed in the supplied site content.
What to Verify Next
Before any payment, donation, account creation, or submission of personal information, independently confirm that the Turda venue and its official communication channels correspond to the website, using an offline or independently sourced route rather than relying solely on the site. Any ticket or donation transaction should be completed only through a payment channel confirmed by the venue and protected by applicable payment-dispute controls. If the site is expected to represent a formal association or institution, obtain the operator’s legal name and confirm it through the relevant Romanian public registry.
- The homepage supplies a physical venue reference in Turda and links to four social-media platforms that can be cross-checked independently.
- The site’s page analysis recorded no sensitive form and no untrusted submission destination.
- The visible navigation includes separate programme, tariff, directions, gallery, and contact functions suitable for independent comparison with venue information.
Summary Verdict
The overall posture is critical trust risk. The website’s ordinary museum presentation and limited interaction surface do not overcome the confirmed external threat detections, and the available evidence does not support treating sensitive interaction as appropriate.
Infrastructure Integrity
The site resolves directly to a single likely origin address, with no detected CDN, edge layer, or WAF vendor. This provides no meaningful protective infrastructure mitigation against the reputation-based risk identified above.
Closing Assessment
Restrict use to passive, read-only information gathering and avoid login, credential submission, payments, donations, or other financial interaction unless the venue and transaction channel have first been independently confirmed.
Written analysis generated 2026-08-21 by the TrustSniffer Analysis Engine from the evidence in this report.
What the analysis found
2 findings contributed to this verdict, raised by registration and ownership, analysis engine, external reputation.
01 Governance Risk
- The public registration record for this domain is incomplete.Registration and ownership
rule:KF_WHOIS_INCOMPLETE
02 Sensitive Interaction Risk
- The analysis matched a pattern TrustSniffer treats as a direct threat to a visitor.Analysis engine
signal:direct_threat - An external threat feed lists this domain: either Google Safe Browsing marked it malicious, or a significant number of malware engines flagged it.External reputation
rule:EXT_BLACKLIST_CRITICAL
Identity verification
| Status | LIKELY |
|---|---|
| Identity score | 79/100 |
| Identity verification confidence | 78% |
- Trusted social count=3
Identity verification measures whether the site can be independently connected to a real-world brand or person. It is separate from the classification confidence.
What TrustSniffer observed
First-party facts recorded during the assessment of trenuleteturda.ro.
- The request stayed on trenuleteturda.ro. It was not redirected to another domain. Clear
- Registration is published under ICI - Registrar. Clear
- DNS for this domain is served by smartvps.ro, across 3 name servers. Noted
- The earliest public archive of this site is from 2024-07-14. Clear
- It is hosted on TeenTelecom, from a server in RO. Noted
Domain intelligence
| Registrar | ICI - Registrar |
|---|---|
| Hosting | TeenTelecom - Teen Telecom SRL, RO |
| Country | RO |
| Server IP | 81.180.138.230 |
| Name servers | cloudns1.smartvps.ro, cloudns2.smartvps.ro, cloudns3.smartvps.ro |
| SSL issuer | YR2 |
| SSL expiry | 2026-11-15 |
| Domain age | 2.92 years (continuous registration) |
| Domain expiry | Not available |
| Archive first seen | 2024-07-14 |
| Archive snapshots | Not counted (archive lookup incomplete) |
| Reputation | VirusTotal: 0 flagged | AbuseIPDB: 0 reports | Google Safe Browsing: 1 match |
About this assessment
A trust score summarises the evidence TrustSniffer could collect about trenuleteturda.ro at assessment time. It is a starting point for your own judgement, not a guarantee: a high score means the signals were consistent with a legitimately operated site, a low or critical score means several risk patterns were present.
TrustSniffer assesses a website from the evidence it can collect at a point in time: domain registration and age, hosting and certificate, the content the site served, and third-party reputation feeds. A score is a summary of that evidence, not a guarantee and not a legal finding. There is no human rating and no user review in it. A site can change after it is assessed.