Security Review

Is cpstru5oamwfebrkoaxzgllq7h6wzxi3nrg25mmgaodbubr66fzn4rqd.onion legit or a scam?

Our verdict:Suspicious· 55/100

An anonymous Tor hidden service with zero public history and a suspicious flag from our antivirus network.

cpstru5oamwfebrkoaxzgllq7h6wzxi3nrg25mmgaodbubr66fzn4rqd.onionScanned 1h ago
0
Trust score
SUSPICIOUS
Heuristics 87·MT 40
Category tags
dark web service85% MT confidence
Warning signals (1)
Positive signals (1)

These checks passed — but they don't clear the site. A clean antivirus result, valid SSL, and a calm server only mean it isn't hosting malware; they say nothing about whether the business is real. This verdict is based on the site's conduct and content, not a malware detection.

View density

Analysis Summary

Threat Intelligence
1/92
Engines flagged this URL
Domain Age
Registration date unknown
MT Intelligence
Suspicious
High likelihood · 85% confidence
SUSPICIOUS

Warning signs detected

An anonymous Tor hidden service with zero public history and a suspicious flag from our antivirus network. Several risk indicators suggest caution. This site might be legitimate — but treat it as unverified until you can independently confirm.

Website Preview

Screenshot of cpstru5oamwfebrkoaxzgllq7h6wzxi3nrg25mmgaodbubr66fzn4rqd.onion
LIVE RENDER
cpstru5oamwfebrkoaxzgllq7h6wzxi3nrg25mmgaodbubr66fzn4rqd.onion

Automated page render — captured in a safe sandbox. What an ordinary visitor would see when loading the site.

MT Intelligence

Advanced threat intelligence
MT Security Analyst
High scam likelihoodengineMT · Guardiantrust40/100
MT AgentLive web researchVisual inspection
0%
Confidence
The site operates on the Tor network using a 56-character v3 onion address, which provides total anonymity for the operator. Our antivirus network includes a suspicious flag from LevelBlue, suggesting the infrastructure has been linked to questionable activity. There is no business registration, contact information, or ownership history available for this domain. Because it is not indexed by standard search engines and has no mentions in security forums, it likely serves a very specific, high-risk purpose. We cannot verify the safety of any content hosted on this hidden service.
Full dossier
Analysis complete

Page Content

The page is hosted on the Tor network, which is frequently used to host services that wish to avoid regulation or identification. Because it is a hidden service, the content is not visible to standard web crawlers or safety filters.

Infrastructure

The site uses a .onion top-level domain, meaning it lacks SSL certificates from traditional authorities and does not have a standard IP address that can be traced. This infrastructure is designed for maximum obfuscation.

Domain History

There is no WHOIS data or registration history available for .onion addresses. The 56-character format indicates it is a modern v3 onion service, but its specific creation date and operator history remain completely anonymous.

Web Reputation

Our research found no mentions of this specific address across security databases, social media, or dark-net indexing sites. While no specific scam reports exist, the total absence of a reputation is a common trait of temporary or malicious hidden services.
Risk Factors
5
  • Anonymous Tor hidden service (.onion) infrastructure
  • Flagged as suspicious by LevelBlue in our antivirus network
  • Zero public reputation or mentions in security databases
  • No verifiable business registration or operator identity
  • High potential for hosting unregulated or malicious content
AI Recommendation
Do not interact with this site or provide any personal data. Tor hidden services with no reputation are frequently used for phishing or distributing malware.
Next-gen fraud intelligence
Evidence-backedCross-checked

Web Research Findings

Our live research agent queries scam-report databases, consumer-review sites, news coverage, and general web search for cpstru5oamwfebrkoaxzgllq7h6wzxi3nrg25mmgaodbubr66fzn4rqd.onion, then cross-checks business-registration records and look-alike domain patterns. Everything below is pulled from what it actually found.

Business registration
No public record found
Could not match the site to a registered company — common for small sites.
Clone check
Not a clone
No well-known site's layout or branding detected here.
Typosquat check
No look-alike match
The domain doesn't resemble any well-known brand's spelling.
Web mentions
No scam reports found
No complaints, no negative coverage turned up in our sweep.
Key findings
6 headline facts from open-web research
  • The domain is a Tor hidden service (.onion) with a 56-character v3 address, typical for anonymous dark web sites.
  • Extensive web searches for the exact .onion address, its partial hash, and combinations with terms like scam, market, drugs, darknet returned zero direct mentions or references.
  • No scam reports, reviews, complaints, news articles, forum discussions (including Reddit), or law enforcement mentions were located.
  • Dark web marketplaces and scams frequently operate on Tor without clearnet indexing, making public visibility low until takedowns or user reports occur.
  • Absence of any online footprint is common for new, low-profile, or invite-only hidden services; it does not confirm legitimacy.
  • No business entity, registration, or operator details exist in public records, as expected for Tor hidden services.
Research summary
Narrative write-up from our AI analyst, grounded on the facts above
Our research into this specific .onion address returned no results across standard search engines, developer platforms, or security forums. There are no documented scam reports, but there are also no positive reviews or indications of legitimate business activity. The site appears to have no public footprint, which is typical for newly created or private dark-web services.

Antivirus Engines

Detection matrix · live
1 engine flagged this URL

We cross-check every URL against our antivirus network of 92 malware and blacklist engines. Each detection is listed below by engine name — even a single hit is a meaningful signal.

0Malicious1Suspicious56Harmless92Engines
0
of 92
LevelBlue
Suspicious· suspicious

1 antivirus engine flagged this URL. Even a single detection is a meaningful signal — treat this site with extra caution and avoid entering credentials, payment info, or downloading any files.

Security Scans

Blacklist Check
Not flagged on major threat lists

Checked against the major public blocklists used by browsers and security tools — no hits.

Proceed with caution

Our automated review flagged enough risk that you should treat this site as unverified.

  • Treat cpstru5oamwfebrkoaxzgllq7h6wzxi3nrg25mmgaodbubr66fzn4rqd.onion as unverified

    Do not enter credentials or send money until you have independently verified the business.

  • Verify the business through independent channels

    Check the company's social profiles, registry records, and search for recent news or reviews that are not hosted on the site itself.

  • Never use irreversible payment methods

    Crypto, gift cards, wire transfers, and cash apps offer zero buyer protection. Use a credit card or PayPal if you must pay.

  • Share your experience

    If you have additional context, drop a comment below or post on the MalwareTips forum.

    Open

Reputation Sources

How this domain rates across independent threat-intelligence and blocklist providers.

Google Safe Browsing
Not listedCheck ↗
VirusTotal
ListedCheck ↗

Safety FAQ

Common questions about this site, answered directly from the scan data above — so the answers always reflect the latest verdict on this page.

  • Our automated security review marked cpstru5oamwfebrkoaxzgllq7h6wzxi3nrg25mmgaodbubr66fzn4rqd.onion as suspicious. Several warning signs were detected; it may still turn out legitimate, but you should verify it through independent channels before trusting it with money or credentials.
  • cpstru5oamwfebrkoaxzgllq7h6wzxi3nrg25mmgaodbubr66fzn4rqd.onion currently scores 55/100 on our trust scale. We found enough warning signals to recommend caution. Verify the site through independent channels before entering credentials or money.
  • 1 out of 92 antivirus engines in our malware network flagged cpstru5oamwfebrkoaxzgllq7h6wzxi3nrg25mmgaodbubr66fzn4rqd.onion as malicious or suspicious. Even one detection is a meaningful signal.
  • No. cpstru5oamwfebrkoaxzgllq7h6wzxi3nrg25mmgaodbubr66fzn4rqd.onion is not currently listed on the major browser blocklist feeds that modern browsers use.
  • This is a permanent record of the scan run on June 28, 2026. The verdict and evidence above reflect that scan and do not change on their own. If circumstances around cpstru5oamwfebrkoaxzgllq7h6wzxi3nrg25mmgaodbubr66fzn4rqd.onion have changed, MalwareTips staff can run a fresh scan, which re-runs every check from scratch and publishes an updated report.

Final Verdict

0
Trust / 100
Final Verdict·cpstru5oamwfebrkoaxzgllq7h6wzxi3nrg25mmgaodbubr66fzn4rqd.onion
SUSPICIOUS

This is a Tor hidden service with no public reputation or verifiable identity. The lack of any online footprint for such a long address is a significant risk factor. You should avoid entering any sensitive information or downloading files from this page.

Do not interact with this site or provide any personal data. Tor hidden services with no reputation are frequently used for phishing or distributing malware.

AV engines
92
MT passes
2
Net signals
0
Scan another URL
Security review completemalwaretips.com/url-scan
Recently scanned

Other Suspicious reports

Browse all reports
Community review

User reviews & comments(0)

Share your experience — "Lost $200 on a fake checkout" is more useful than "Scam". Your review helps others avoid traps.

Loading…
Loading comments…
This report is generated automatically by combining threat intelligence, domain signals, and an AI security analyst. It is informational, not legal advice. Always use your own judgement before sharing personal information or money online.