VirusTotal
16 / 93
“Vultex: Donald Trump’s Leading Blockchain Crypto Casino”
vultex.network — Контент недоступний. Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 16/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); PhishDestroy score 95/100. Реєстратор: PDR.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
16 / 93
checked — no match recorded
no community references
Повідомитиprovider verdict: clean
Повідомитизбережений звіт
Повідомити Checked; no threat flag recorded
ПовідомитиAnalysis shows that vultex.network was registered on February 21, 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com and is hosted behind Cloudflare infrastructure (ASN 13335). The domain resolves to IP address 104.21.76.38, which GeoIP maps to the United States. DNS resolution uses the Cloudflare nameservers brianna.ns.cloudflare.com and bradley.ns.cloudflare.com, and the site serves traffic over HTTP/3 with an HTTP 200 response. The TLS certificate is issued by Google Trust Services under the WE1 identifier, indicating a valid HTTPS configuration.
The landing page carries the title "Vultex: Donald Trump’s Leading Blockchain Crypto Casino" and explicitly promotes a cryptocurrency gambling service, matching the known "Gambler Scam" phishing kit. This content directly impersonates a crypto‑casino brand, leveraging the high‑profile name to lure victims into a fraudulent investment or betting scheme. The site’s visual and textual elements mirror legitimate gambling platforms, increasing its credibility for unsuspecting users.
Threat intelligence flags the domain as high‑risk. VirusTotal reports that 16 of 95 security vendors have marked the domain as malicious, and it appears on at least one external blocklist. The combined evidence—brand impersonation, use of a reputable TLS certificate, and detection by multiple security vendors—confirms a coordinated campaign targeting cryptocurrency gambling enthusiasts. The site remains active as of the report date, July 12, 2026.
Defenders should add vultex.network to network‑level blocklists and enforce DNS filtering to prevent resolution. Monitoring outbound connections to IP 104.21.76.38 can help detect compromised hosts attempting to reach the infrastructure. Security teams should also audit email and web traffic for similar brand‑impersonation patterns, especially those referencing high‑profile political figures combined with crypto‑gaming terminology, and educate end‑users about the specific lure used in this campaign.
Збережені дані спостережень за взаємодією веб-сканера та браузера для цього хоста, а також перевірка відбитків у режимі реального часу для систем розподілу трафіку типу «Кейтаро».
Примітка щодо сканера: unavailable: raw=connection_error; http=0; via=http_proxy; error=SOCKSHTTPConnectionPool(host='vultex.network', port=80): Max retries exceeded with url: / (Caused by NewConnectionError(
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Репутація Edge-IP не пов’язана з цим доменом.
bradley.ns.cloudflare.comLocation describes the IP network.
636b3fe46c932dfb5ce3f8a21f586ab0cda63e8172ebb1badb2f4bcaa8365ef6Saved certificate metadata. Certificate dates without a timezone are shown as stored. Transport encryption does not establish that the site is trustworthy.
Google PageSpeed Insights — mobile performance audit of vultex.network · checked Mar 2, 2026
12 recorded events. These records describe collected evidence, outgoing notifications and publication; they do not confirm a complete investigation or a takedown.
We scan suspicious URLs, inspect public results and send evidence through the appropriate abuse-reporting channels. The dated events above show what is recorded for this domain. The directory below explains the wider workflow.
Capture the rendered page, requests and visible infrastructure.
Compare the available engine results and retain the analysis timestamp.
Check whether Google currently lists the URL as unsafe.
Inspect a public scan and its recorded network and classification data.
Look for indicator references and related community intelligence.
Compare archived captures and preserve historical context.
Look for matching indicators and associated threat records.
Inspect certificate records and related hostnames.
Compare security resolver responses and record observed blocking.
Inspect the public DNS, TLS, HTTP and technology surface.
Security services used for scanning, reputation checks and reporting are listed below. A service being listed is not evidence that it received, accepted or acted on this particular domain. Recorded submissions appear in the notification history above.
Повідомив 1 учасник спільноти; уперше помічено 07.12.2025
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Template-based draft · optional AI wording assistance requires separate consent
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразДодавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиОстанні звіти про фішинг і помічені зміни доступності
ВідстежуватиСлідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога