6bf50c04bdd64f3c[.]raydiumpro-web[.]shop
“Raydium Pro”
6bf50c04bdd64f3c.raydiumpro-web.shop — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: Raydium; نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 8/95 (CRDF, CyRadar, Emsisoft, Fortinet, Netcraft); PhishDestroy score 74/100. مسجّل النطاق: Gname.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
The domain 6bf50c04bdd64f3c.raydiumpro-web.shop was registered on 15 October 2025 through Gname.com Pte. Ltd. and is currently taken offline. Infrastructure analysis shows the domain resolves to the IPv6 address 2606:4700:3031::ac43:d75b, which belongs to AS13335 operated by Cloudflare, Inc., and is geolocated to the United States. The authoritative nameservers alaric.ns.cloudflare.com and brynne.ns.cloudflare.com further confirm the use of Cloudflare's DNS services. No SSL certificate is associated with the host, indicating the site was served over plain HTTP when active.
VirusTotal reports eight detections out of ninety‑five scanners, reflecting moderate malicious profiling by security vendors. The domain appears on a single external blocklist and has been explicitly blocked by the PhishDestroy feed, suggesting that at least one community‑maintained blocklist has catalogued the indicator. The page title captured from the site reads "Raydium Pro," aligning with the declared brand target of Raydium and the classification of a crypto‑related scam.
Although the site is no longer reachable, the combination of brand impersonation, the "Crypto Scam" label, and the observed infrastructure points to a campaign designed to lure Raydium users into fraudulent interactions. Defenders should add the domain and its associated IPv6 address to network‑level deny lists, monitor for similarly structured subdomains under the raydiumpro‑web.shop second‑level domain, and consider extending existing Cloudflare‑origin block rules to cover the identified nameserver pair. Continuous re‑evaluation of related threat‑intel feeds is recommended to capture any re‑activation attempts or new variants that reuse the same registrar or hosting provider.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
Registration: raydiumpro-web.shop
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain raydiumpro-web.shop behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب