raydium-dashboard[.]pages[.]dev
فحص التصيد والأمان للنطاق raydium-dashboard.pages.dev
“1 new message”
raydium-dashboard.pages.dev — يمكن الوصول إليها · الوصول مقيد (HTTP 403). انتحال العلامة التجارية: Raydium; نوع الاحتيال: Crypto Drainer. ملخص الأدلة: VirusTotal 8/93 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, Fortinet, G-Data); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 74/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
This domain, raydium-dashboard.pages.dev, is flagged as a brand impersonation threat targeting Raydium, a decentralized finance platform. Infrastructure analysis reveals the domain was registered on February 21, 2026, through Cloudflare, Inc., and is currently offline with an HTTP 403 status. It resolves to IP 188.114.96.3, hosted on Cloudflare's network (AS13335) in the US. The SSL certificate is issued by Google Trust Services (WE1), and nameservers are Cloudflare-operated (hugh.ns.cloudflare.com, gwen.ns.cloudflare.com). Technologies detected include HSTS, Cloudflare proxying, and HTTP/3, which are consistent with modern phishing infrastructure leveraging CDN obfuscation.
The scam type is classified as wallet/seed phishing, based on available intelligence. The page title '1 new message' suggests an attempt to lure victims with a fabricated notification, though the exact content of the page remains unanalyzed. Security vendors have flagged this domain: 8 of 93 engines on VirusTotal detected malicious activity, and it appears on three security blocklists, including PhishDestroy, MetaMask, and SEAL. Gridinsoft assigns a trust score of 0/100, indicating high confidence in its malicious nature. Defenders should treat this domain as a confirmed phishing threat.
While the domain is currently offline, historical DNS and WHOIS records should be preserved for forensic analysis. Blocklisting at the network level is recommended, particularly for endpoints interacting with cryptocurrency wallets or decentralized applications. Monitoring for re-emergence under similar subdomains (e.g., *.pages.dev) or IP ranges associated with Cloudflare may help preempt future campaigns. No evidence of a specific phishing kit is present in the available data, so further investigation into payload delivery mechanisms is advised if the domain reactivates.
نطاق تغطية البيانات12 recorded checks
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of raydium-dashboard.pages.dev · checked Apr 13, 2026
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.