meme-vault[.]fun
Проверка домена meme-vault.fun на фишинг и безопасность
meme-vault.fun — Контент недоступен (HTTP 502). Олицетворение бренда: Genericcloudflare; Тип мошенничества: Investment Scam. Сводка доказательств: VirusTotal 3/93 (Seclookup, SOCRadar); URLQuery 100 det.; URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. Регистратор: PDR.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of meme-vault.fun indicates that the domain is associated with an investment‑type phishing campaign and has been taken offline as of the report date, July 22, 2026. The domain was registered on February 24, 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com, and it resolves to the IP address 188.114.96.3, which is hosted by Cloudflare (AS13335) in the United States. No SSL certificate is presented for the site, meaning that any HTTP traffic would be unencrypted. The domain is served by the Cloudflare nameservers bailey.ns.cloudflare.com and nick.ns.cloudflare.com.
Multiple defensive feeds have flagged the domain: PhishDestroy, MetaMask, and SEAL list it as malicious, and it appears on three independent security blocklists. VirusTotal data shows that three of ninety‑three scanned security vendors flagged the domain as suspicious, reinforcing the manual blocklist detections. The identified scam type is an investment scam, though no further details about the fraudulent payload or luring technique have been disclosed. Evidence such as page titles, Safe Browsing status, or Open Threat Exchange (OTX) indicators were not available at the time of analysis, leaving the exact content of the site unknown.
Given the convergence of blocklist entries, the presence of flagged vendors on VirusTotal, and the lack of TLS protection, defenders should treat meme-vault.fun as a high‑confidence threat. Recommended mitigations include adding the domain and its resolved IP address to deny lists on perimeter firewalls, DNS filtering solutions, and endpoint protection suites. Continuous monitoring of the associated IP range for new domains or activity is advised, as Cloudflare infrastructure can be reused by adversaries. Organizations should also audit any internal traffic that may have previously contacted the domain to ensure no credential or financial data was exfiltrated before the takedown.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
PD-20260224-6BBA43 Recipient: abuse@publicdomainregistry.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание