DANGEROUS

Fake shop — do not order

17 of 92 antivirus engines flag this page as malicious. The site shows patterns common to non-delivery scam shops. Don't submit payment details, and if you already paid by card or PayPal, start a chargeback today.

Security Review

Is multicafeteira3em1.shop legit or a scam?

Our verdict:Dangerous· 1/100

Phishing page impersonating a coffee-maker retailer with 17 antivirus detections and homoglyph domain characteristics.

multicafeteira3em1.shopScanned 1h ago
0
Trust score
DANGEROUS
Heuristics 0·MT 12
Category tags
phishingfake-shop#Phishing#Fake Shop#Clone Site92% MT confidence
Technical red flags (2)
18 of 92 engines flaggedLookalike domain suspected

These checks passed — but they don't clear the site. A clean antivirus result, valid SSL, and a calm server only mean it isn't hosting malware; they say nothing about whether the business is real. This verdict is based on the site's conduct and content, not a malware detection.

View density

Analysis Summary

Threat Intelligence
0/92
Engines flagged this URL
Domain Age
Registration date unknown
MT Intelligence
Dangerous
Critical likelihood · 92% confidence

MT Intelligence

Advanced threat intelligence
MT Security Analyst
Critical scam likelihoodengineMT · Guardiantrust12/100
MT AgentLive web researchVisual inspection
0%
Confidence
This domain triggers phishing alerts from six independent antivirus engines, including BitDefender, Cluster25, and Criminal IP. The page itself contains only a generic error message and zero contact details, business registration, or product information — a hallmark of credential-harvesting infrastructure. The domain exhibits a homoglyph pattern (the .shop TLD combined with the Portuguese product name suggests domain-squatting or brand impersonation). The hosting IP has a clean abuse record, but that does not override the strong antivirus consensus. The SSL certificate is valid and recent, which scammers routinely obtain to bypass browser warnings. No legitimate business would operate a storefront that displays only an error page.
Full dossier
Analysis complete

Page Content

The page displays only a generic error message: 'Error. Page cannot be displayed. Please contact your service provider for more details.' No product listings, pricing, images, or business information are present. The page lacks a title tag, meta description, and any contact email, phone number, or postal address.

Infrastructure

Hosted on IP 69.6.248.137 with a clean abuse record (0 reports). SSL certificate issued by Sectigo Limited is valid for 189 days. The domain uses a homoglyph pattern (Portuguese product name + .shop TLD), a common tactic in phishing and brand-impersonation campaigns.

Domain History

WHOIS data is unavailable, preventing verification of registration date and registrant details. The domain is not indexed in global traffic rankings, indicating minimal legitimate traffic or recent registration.

Web Reputation

Six antivirus engines flag the domain as phishing: ADMINUSLabs (malicious), alphaMountain.ai (phishing), BitDefender (phishing), Cluster25 (phishing), CRDF (malicious), and Criminal IP (phishing). One additional engine flagged it as suspicious. Browser blocklists show no flag, but the antivirus consensus is overwhelming.

Risk Factors
7
  • Six antivirus engines detect phishing; two flag as malicious — strong consensus on malicious intent.
  • Page displays only an error message with no legitimate business, product, or contact information.
  • Homoglyph domain pattern (Portuguese product name + .shop TLD) suggests brand impersonation or credential harvesting.
  • No contact email, phone, or postal address — typical of phishing infrastructure.
  • WHOIS data unavailable, preventing verification of legitimate business registration.
  • Domain not indexed in global traffic rankings, indicating either new registration or minimal legitimate use.
  • Valid SSL certificate obtained by attacker to bypass browser security warnings.
Positive Signals
1
  • Hosting IP has zero abuse reports and a clean reputation score.
AI Recommendation
Do not visit this site or enter any personal or payment information. If you arrived here via a link in an email or message, report it as phishing to your email provider or the platform where you found the link.
Next-gen fraud intelligence
Evidence-backedCross-checked

Website Preview

Screenshot of multicafeteira3em1.shop
LIVE RENDER
multicafeteira3em1.shop

Automated page render — captured in a safe sandbox. What an ordinary visitor would see when loading the site.

Web Research Findings

Our live research agent queries scam-report databases, consumer-review sites, news coverage, and general web search for multicafeteira3em1.shop, then cross-checks business-registration records and look-alike domain patterns. Everything below is pulled from what it actually found.

Web mentions
No scam reports found
No complaints, no negative coverage turned up in our sweep.
Research summary
Narrative write-up from our AI analyst

No independent review aggregators returned data for this domain.

Antivirus Engines

Detection matrix · live
18 engines flagged this URL

We cross-check every URL against our antivirus network of 92 malware and blacklist engines. Each detection is listed below by engine name — even a single hit is a meaningful signal.

17Malicious1Suspicious47Harmless92Engines
0
of 92
ADMINUSLabs
Malicious· malicious
alphaMountain.ai
Malicious· phishing
BitDefender
Malicious· phishing
Cluster25
Malicious· phishing
CRDF
Malicious· malicious
Criminal IP
Malicious· phishing
CyRadar
Malicious· phishing
Forcepoint ThreatSeeker
Malicious· phishing
Fortinet
Malicious· phishing
G-Data
Malicious· phishing
Gridinsoft
Malicious· phishing
Kaspersky
Malicious· phishing
Lionic
Malicious· phishing
Rising
Malicious· phishing
SOCRadar
Malicious· malware
Sophos
Malicious· phishing
VIPRE
Malicious· phishing
ESET
Suspicious· suspicious

18 antivirus engines flagged this URL. Even a single detection is a meaningful signal — treat this site with extra caution and avoid entering credentials, payment info, or downloading any files.

Security Scans

Blacklist Check
Not flagged on major threat lists

Checked against the major public blocklists used by browsers and security tools — no hits.

Sandbox Render
Page rendered in a safe sandbox
Requests made0
Unique IPs0
Countries0
Detected brandsNone

Contact Verification

We fetched the page and looked for real-world contact details. Legitimate businesses almost always publish an email on their own domain, a phone number, and a postal address. Scam shops usually don't.

What We Found
No clear contact details on the page
Emails on site's domainNone
Phone numbersNone
Postal addressNot listed
Linked social profiles0
Signal Summary
Several contact red flags
  • No contact email found anywhere on the page.
  • No phone number listed on the page.
  • No postal address visible on the page.

Domain & Encryption

Encryption Certificate
StatusValid
ProtocolTLSv1.3
IssuerSectigo Limited · Sectigo Public Server Authentication CA DV R36
ExpiresDec 13, 2026 (189d)
Self-signedNo
Hosting & Technology
HostingNewfold Digital, Inc.
Server locationBR
Web serverApache

Server Reputation

Hosting
CountryUnknown
NetworkUnknown
IP addressUnknown
Abuse Intelligence
Confidence score0%
Reports on file0
ISPNewfold Digital, Inc.
Usage typeData Center/Web Hosting/Transit

Scam-Type Likelihood

3 scam-type patterns detected
Scam-Type Likelihood

0 of 13 categories showed signals

We check every URL against 13 distinct scam categories so the verdict tells you not just how risky the page is, but what kind of risk it carries. Each meter pulls from page signals, web reports, our AI analyst, vision, and the scam-network cluster — not from raw AV labels.

Top match: Fake Shop
Fake Shop
Moderate likelihood
0/100
  • AI analyst tagged this as a fake shop.
  • No phone number or postal address anywhere on the page.
  • Multiple contact / trust-signal red flags on the page.
Brand Impersonation
Low-level signals
0/100
  • AI analyst tagged this as a brand / clone-site impersonation.
Phishing
Low-level signals
0/100
  • AI analyst tagged this as phishing.

Fake shop — do not order

Signals common to non-delivery scam shops were detected on this site.

  • Do not interact with multicafeteira3em1.shop

    Do not enter credentials, deposit money, download files, or install browser extensions from this site.

  • If you already paid by card or PayPal — start a chargeback

    Contact your bank or card issuer and dispute the charge as "goods not received" or "merchant fraud." PayPal users can open a case in the Resolution Centre. Act within 120 days for card chargebacks in most jurisdictions.

  • Save every piece of evidence

    Screenshots of the checkout, order confirmation emails, any chat transcripts, and the product listing page. Chargeback and fraud reports go faster when you have receipts.

  • Report the shop

    Report to the FTC (reportfraud.ftc.gov), Action Fraud UK, or your local consumer-protection body. Post the URL on the MalwareTips scam forum so other buyers can find it.

    Open

Reputation Sources

How this domain rates across independent threat-intelligence and blocklist providers.

Google Safe Browsing
Not listedCheck ↗
VirusTotal
ListedCheck ↗
AbuseIPDB
Not listedCheck ↗

Safety FAQ

Common questions about this site, answered from the scan data on this page. These are auto-generated — not hand-written — so they always match the underlying report.

  • Our automated security review flags multicafeteira3em1.shop as dangerous. Multiple threat indicators were detected — treat the site as a scam until proven otherwise.

Final Verdict

0
Trust / 100
Final Verdict·multicafeteira3em1.shop
DANGEROUS

A phishing page masquerading as a coffee-maker product site. Six antivirus engines flag it as phishing, the domain shows a homoglyph pattern, and the page displays only an error message with no legitimate business content or contact information.

Do not visit this site or enter any personal or payment information. If you arrived here via a link in an email or message, report it as phishing to your email provider or the platform where you found the link.

AV engines
92
MT passes
2
Net signals
0
Scan another URL
Security review completemalwaretips.com/url-scan
Recently scanned

Other Dangerous reports

Browse all reports
Community review

User reviews & comments(0)

Share your experience — "Lost $200 on a fake checkout" is more useful than "Scam". Your review helps others avoid traps.

Loading…
Loading comments…
This report is generated automatically by combining threat intelligence, domain signals, and an AI security analyst. It is informational, not legal advice. Always use your own judgement before sharing personal information or money online.