Skip to content

Lavandbit (lavandbit.com) Security Report & Trust Score

Online Last scanned: April 30, 2026
1 /100 High Risk

Category Unknown

Site blocked our scanner IP via Cloudflare WAF — content not accessible

About lavandbit.com

lavandbit.com is a website categorized as Unknown. Site blocked our scanner IP via Cloudflare WAF — content not accessible. It was last analyzed on April 30, 2026 and currently scores 1/100, which we rate as High Risk.

The domain was registered 5m ago. It is registered through MainReg Inc.. The registration is set to expire on November 19, 2026. WHOIS privacy protection is not enabled. The domain is not signed with DNSSEC.

The site is hosted by AS206264 Amarutu Technology Ltd in Lelystad, Netherlands. The server runs openresty. It resolves to the IP address 185.191.124.115.

None of the 91 antivirus engines we checked currently flag it. 1 regulator warning has been issued against this domain, including an alert from ASIC.

With a trust score of 1/100, lavandbit.com sits in the highest-risk band of our scale. Multiple independent signals align with patterns commonly seen on fraudulent platforms. Exercise extreme caution before interacting with this website in any way.

Think you've been scammed? Get a free consultation with cyber-intelligence experts

Your information is secure and confidential.

Is Lavandbit safe to use?

Based on our last scan on April 30, 2026, Lavandbit (lavandbit.com) has a trust score of 1/100, which we rate as High Risk. Multiple independent signals match patterns commonly seen on fraudulent platforms, so we advise extreme caution before interacting with it in any way.

1 official regulator warning has been published about Lavandbit, issued by ASIC. A warning like this means a financial authority has publicly flagged the website: it is one of the strongest risk signals that exists, and it is rarely issued without substantial grounds.

Lavandbit was registered only 5m ago. Very young domains deserve extra scrutiny: fraudulent operations typically abandon a burned domain and reappear under a new name within months, whereas established businesses usually build a much longer history on a single address.

Our infrastructure analysis links lavandbit.com to a network of 14 related domains sharing the same technical fingerprints. Domain clusters like this are frequently operated by scam networks that rotate addresses to stay ahead of blacklists. Review the related domains listed on this page before trusting this website.

The typical playbook of these scams

Think of the scam website as the last stage, not the first. What sets it in motion is human contact: an unsolicited message, a new "friend" from a dating app or messaging group, or a warm introduction on social media. That contact is cultivated patiently, often for weeks or months, until an "exclusive" investment tip feels like a natural next step. The industry name for this drawn-out grooming is pig butchering, a grim reference to fattening the target with trust before the payoff is taken.

With trust established, the target is funneled onto a polished platform whose numbers are pure fiction: the balances, the charts and the returns are all manufactured and steered entirely by the operators. A modest early withdrawal is occasionally allowed, a deliberate move to lower the victim's guard and invite a much bigger deposit. Try to cash out a meaningful amount, though, and everything changes: fresh "taxes", "release fees" or "verification charges" are demanded, the funds are held hostage until those are settled, and whatever you send after that vanishes.

Running in parallel is the clone firm, where scammers dress themselves up as a genuinely licensed business, reusing its name, logo and registration number, while quietly operating from a near-identical domain. It is the reason a stated license is only meaningful once you confirm it on the regulator's own website, and the reason the precise domain name carries just as much weight as the familiar brand shown beside it.

Signals that should make you pause

  • A guide you never asked for: a "coach", acquaintance or new online contact keeps steering you to one named site.
  • Risk-free pitch: profits are framed as safe and dependable, locked-in, sky-high, and supposedly free of any real downside.
  • Constant countdown: a relentless rush to commit, with disappearing bonuses or a deadline that always seems to be today.
  • Private-account transfers: they ask to be paid in cryptocurrency or gift cards, or by sending money straight to a private individual's account.
  • Missing from the register: their claimed authorization does not show up on the regulator's own register, assuming any license is mentioned at all.
  • Funds held back: getting your money out proves difficult, with fresh "taxes", "release fees" or repeated checks standing between you and your funds.
  • Straight-line gains: on screen the profits rise in a straight line, entirely detached from how the real market is moving.

Already lost money? Here is what to do next

  1. Break off every line of communication: step away from the platform and from whoever steered you toward it. Staying in touch only hands them fresh chances to take more, often through a fake "account manager" who pretends to be there to help.
  2. Pay nothing to unlock funds: do not send a single "release fee", "tax" or "unlock charge" to set a withdrawal free. Genuine providers subtract their fees from what you already hold; only fraudsters insist on extra money before you see a cent.
  3. Contact your bank without delay: reach out to your bank or card issuer as soon as you can. Because chargebacks and wire recalls have tight deadlines, acting fast is what gives you a realistic chance of getting money back.
  4. Save the proof: capture screenshots of the platform and your conversations, and hold on to emails, transaction references and any wallet addresses you paid into.
  5. Notify the regulators: alert the cybercrime or consumer-protection authority in your country, along with your national financial regulator.
  6. Distrust recovery pitches: treat any "fund recovery" firm that later promises to retrieve your losses for an advance fee with deep suspicion. Lists of victims are traded around, and this pitch is commonly the same scam coming back for more.

Threats

0 / 91 engines flagged

Regulator warnings

1
Regulator Country Date Source
ASIC AU January 22, 2026 ASIC warning

Blacklists

1 provider, all clear
  • google_safe_browsing community

Identity

WHOIS

RegistrarMMainReg Inc. (IANA #1917)
CreatedNovember 19, 2025
UpdatedNovember 19, 2025
ExpiresNovember 19, 2026
Domain age5m
DNSSECNot signed
Privacy protectionNo
Nameservers
  • ns01.ralvora.com
  • ns02.ralvora.com
Status
  • active

SSL

CertificateValid
IssuerLet's Encrypt
Subjectlavandbit.com
Valid fromMarch 20, 2026
Valid untilJune 18, 2026
Expires inExpired 74 days ago
ProtocolTLSv1.3
CipherTLS_AES_256_GCM_SHA384
SAN
  • *.lavandbit.com
  • lavandbit.com

Server

IP address185.191.124.115
IPv6
ASNAS206264
ProviderAAS206264 Amarutu Technology Ltd
CountryNetherlands (NL)
CityLelystad
Server softwareOopenresty

Extracted contacts

Contact details found on the site and in regulator warnings, shown for identification only. Do not contact them.

Emails

1
  • support@lavandbit.com

Screenshot

Screenshot of lavandbit.com captured at the last scan
Captured at last scan

Forensics

Page timing

DNS lookup 1 ms
TCP connection 73 ms
TLS handshake 43 ms
Time to first byte 40 ms
Content download 2 ms
DOM content loaded 227 ms
Load complete 227 ms

Network & resources

Total requests 2
Unique domains 2
Total size 0.0 B
HTTPS 100.0%

Technologies

1
  • Tailwind CSS css-framework