vaultlybank[.]com
“VaultlyBank | Smart investing”
ملخص الأدلة
Analysis of vaultlybank.com shows a newly registered site created on February 21, 2026 and hosted on a Namecheap-owned address (AS22612) in the United States. The domain resolves to IP 66.29.148.152 and presents an HTTPS certificate issued by Let’s Encrypt (R13), indicating the use of a free SSL service. Registration was performed through Spaceship, Inc., and the domain appears on a single security blocklist, while PhishDestroy has already blocked it. VirusTotal scans report that three of ninety‑three antivirus engines flag the site, providing modest but corroborating evidence of malicious intent.
The page title retrieved from the live host reads "VaultlyBank | Smart investing," matching the declared investment‑scam classification. Infrastructure fingerprints reveal the use of Bootstrap, LiteSpeed, Swiper, Select2, jQuery, jQuery Migrate and HTTP Strict Transport Security, a stack commonly observed in fraudulent financial pages. MX records point to mx1.spacemail.com and mx2.spacemail.com, and the domain is delegated to Cloudflare name servers princess.ns.cloudflare.com and rocky.ns.cloudflare.com. The site is currently taken offline, limiting immediate exposure, but the underlying hosting and certificate remain active and could be reused.
Defenders should add vaultlybank.com to local blocklists, monitor the associated IP address for future activity, and enforce email filtering on the listed MX hosts. Security teams are advised to update intrusion detection signatures to flag the observed technology stack when combined with the VaultlyBank branding, and to warn users that any unsolicited communications referencing "VaultlyBank" or "smart investing" are likely fraudulent. Continuous observation of the registrar and any newly registered variants that reuse the same registrar or hosting profile is recommended to pre‑empt re‑deployment of the campaign.
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-20260219-8EC6A8- عنوان الصفحة الملتقطة
- VaultlyBank | Smart investing
- ملف PDF
- دليل PDF
النص الكامل للدليل
Acceptable Use Policy (AUP): The domain vaultlybank.com is engaged in phishing activities, which directly contravenes the AUP by facilitating fraud and deception.
Terms of Service (TOS): The registrar reserves the right to suspend or terminate services for violations, and the ongoing use of this domain for illegal activities warrants immediate action.
Applicable Laws (IS):
Act on Electronic Communications (No. 81/2003): Prohibits the use of electronic communications for fraudulent purposes, including phishing.
Criminal Code of Iceland (No. 19/1940): Specifically addresses computer fraud and outlines penalties for those engaging in phishing schemes.
Regulatory Note: Failure to comply with these policies and applicable laws may result in legal repercussions for your organization, including potential liability for facilitating fraudulent activities. Immediate action is required to mitigate risks associated with this domain.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
المخطط الزمني للاكتشاف
-
Cloudflare Radar
تم حفظ فحص Cloudflare Radar · فتح الفحص
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of vaultlybank.com · checked Mar 2, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب