vaultlybank[.]com
“VaultlyBank | Smart investing”
Résumé des preuves
Analysis of vaultlybank.com shows a newly registered site created on February 21, 2026 and hosted on a Namecheap-owned address (AS22612) in the United States. The domain resolves to IP 66.29.148.152 and presents an HTTPS certificate issued by Let’s Encrypt (R13), indicating the use of a free SSL service. Registration was performed through Spaceship, Inc., and the domain appears on a single security blocklist, while PhishDestroy has already blocked it. VirusTotal scans report that three of ninety‑three antivirus engines flag the site, providing modest but corroborating evidence of malicious intent.
The page title retrieved from the live host reads "VaultlyBank | Smart investing," matching the declared investment‑scam classification. Infrastructure fingerprints reveal the use of Bootstrap, LiteSpeed, Swiper, Select2, jQuery, jQuery Migrate and HTTP Strict Transport Security, a stack commonly observed in fraudulent financial pages. MX records point to mx1.spacemail.com and mx2.spacemail.com, and the domain is delegated to Cloudflare name servers princess.ns.cloudflare.com and rocky.ns.cloudflare.com. The site is currently taken offline, limiting immediate exposure, but the underlying hosting and certificate remain active and could be reused.
Defenders should add vaultlybank.com to local blocklists, monitor the associated IP address for future activity, and enforce email filtering on the listed MX hosts. Security teams are advised to update intrusion detection signatures to flag the observed technology stack when combined with the VaultlyBank branding, and to warn users that any unsolicited communications referencing "VaultlyBank" or "smart investing" are likely fraudulent. Continuous observation of the registrar and any newly registered variants that reuse the same registrar or hosting profile is recommended to pre‑empt re‑deployment of the campaign.
Instantané des preuves transmises
- Envoyé
- Entrées du registre
- 1
- ID du dossier
PD-20260219-8EC6A8- Titre de la page capturée
- VaultlyBank | Smart investing
- Artefact PDF
- Preuve PDF
Texte intégral des preuves
Acceptable Use Policy (AUP): The domain vaultlybank.com is engaged in phishing activities, which directly contravenes the AUP by facilitating fraud and deception.
Terms of Service (TOS): The registrar reserves the right to suspend or terminate services for violations, and the ongoing use of this domain for illegal activities warrants immediate action.
Applicable Laws (IS):
Act on Electronic Communications (No. 81/2003): Prohibits the use of electronic communications for fraudulent purposes, including phishing.
Criminal Code of Iceland (No. 19/1940): Specifically addresses computer fraud and outlines penalties for those engaging in phishing schemes.
Regulatory Note: Failure to comply with these policies and applicable laws may result in legal repercussions for your organization, including potential liability for facilitating fraudulent activities. Immediate action is required to mitigate risks associated with this domain.
Data Coverage
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of vaultlybank.com · checked Mar 2, 2026
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif