static[.]raydiumpro[.]vip
“Raydium Pro”
Resumen de las pruebas
The domain static.raydiumpro.vip was registered on 2025-10-04 through Gname.com Pte. Ltd. and currently resolves to 188.114.96.3, an address owned by AS13335 Cloudflare, Inc. The site is fronted by Cloudflare’s network and supports HTTP/3, delivering a TLS certificate issued by Google Trust Services under the WE1 profile. The page title returned by the server is "Raydium Pro", and the domain is explicitly marked as impersonating the Raydium brand.
Infrastructure analysis shows the authoritative nameservers are langston.ns.cloudflare.com and zelda.ns.cloudflare.com, both part of Cloudflare’s DNS service. An HTTP 526 error indicates an invalid SSL certificate configuration despite the presence of a valid Google‑issued certificate, a pattern often observed in rapidly deployed fraud sites. The Gridinsoft trust score of 0/100 and the presence on a single security blocklist further underscore the malicious intent.
Threat intelligence feeds have flagged the domain as a cryptocurrency‑related impersonation campaign. VirusTotal records show that 6 out of 95 scanned security vendors have flagged the domain, and PhishDestroy has already added it to its blocklist. The combination of a brand‑specific page title, a low trust score, and the use of a reputable CDN to hide origin points to a high‑risk operation targeting users of the Raydium platform.
Defenders should immediately block static.raydiumpro.vip at DNS and network perimeter layers, and add the IP address 188.114.96.3 to reputation‑based deny lists. Continuous monitoring of Cloudflare‑associated subnets is advisable, as the adversary may shift to alternate IPs within the same AS. Security teams should also alert end‑users of Raydium to the existence of a "Raydium Pro" site that is not affiliated with the official service, and encourage verification of TLS certificates and domain ownership before any credential or wallet interactions.
Data Coverage
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 13/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
Cloudflare Radar
Análisis de Cloudflare Radar almacenado · Abrir análisis
-
Estado del dominio
Accesible → Inaccesible
-
Cloudflare Radar
Análisis de Cloudflare Radar almacenado · Abrir análisis
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, nombres TLS y marcas de tiempo
ICANN OVERSIGHT
Registration: raydiumpro.vip
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain raydiumpro.vip behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análisis de VirusTotal
Análisis de la configuración del sitio
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.