multidappsolenodesfix[.]live
“Raydium | Airdrop”
multidappsolenodesfix.live was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED on 23 March 2026. The domain resolves to the Cloudflare‑owned address 188.114.96.3, which belongs to the CA (Cloudflare, Inc.) network and is served by the Cloudflare nameservers terin.ns.cloudflare.com and summer.ns.cloudflare.com. A Let’s Encrypt certificate was observed, indicating TLS termination at Cloudflare. Automated fingerprinting detected a stack of Node.js, Vue.js, Nuxt.js, Cloudflare Browser Insights, and HTTP/3 support, suggesting a modern JavaScript‑driven front‑end hosted behind Cloudflare’s edge. The page title returned by the live endpoint was “Raydium | Airdrop”, and the campaign is classified as a crypto‑related “Airdrop Scam” targeting the Raydium brand.
The domain appears on three public blocklists and has been actively blocked by PhishDestroy, MetaMask, and SEAL filtering services. VirusTotal scans show that seven of ninety‑four antivirus engines flagged the domain as malicious, providing additional corroboration of its illicit nature. The risk rating assigned by the reporting team is elevated, reflecting the potential financial impact of successful credential or token theft. As of the report date (25 July 2026) the site is offline, so direct content inspection was not possible; consequently, the exact phishing page layout, credential capture mechanisms, or malicious payloads remain unverified.
However, the combination of brand impersonation, a convincing airdrop‑related title, and the presence of a known phishing kit strongly indicates a credential‑harvesting or token‑theft operation. Defenders should continue to block the domain at DNS and proxy layers, incorporate the observed IP and nameserver identifiers into threat‑intel feeds, and monitor for newly registered domains that use the same registrar or similar naming patterns.
Enregistrement du signalement transmis
Instantané des preuves transmises
- Envoyé
- Entrées du registre
- 1
- ID du dossier
PD-20260323-00A36E- Titre de la page capturée
- Raydium | Airdrop
Fondement juridique
Texte intégral des preuves
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Renseignements sur la sécurité réseau Registrar context
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources · synchronisé le 09/08/2026
Chronologie de détection
Observations enregistrées par ordre chronologique.
-
Disponibilité
Disponibilité : observé pour la première fois comme dns_inactive
f93a11f87e4d -
Disponibilité
Disponibilité : dns_inactive → unknown
a6e6e1874378 -
Disponibilité
Disponibilité : unknown → dns_inactive
40b3c1eb2aef -
Disponibilité
Disponibilité : dns_inactive → held
ce4db21e16f3 -
Disponibilité
Disponibilité : held → dns_inactive
f52d526b76a1 -
Disponibilité
Disponibilité : dns_inactive → unknown
bd72dd779b03 -
Disponibilité
Disponibilité : unknown → held
5461ac67f1fc -
Disponibilité
Disponibilité : held → unknown
15e73bdba151 -
Disponibilité
Disponibilité : unknown → dns_inactive
6dfe9145995c -
Disponibilité
Disponibilité : dns_inactive → held
ba2dfde4d89a
Tout afficher (6)
-
Disponibilité
Disponibilité : held → dns_inactive
641ed81dc4d5 -
Disponibilité
Disponibilité : dns_inactive → unknown
b0f422f41db1 -
Disponibilité
Disponibilité : unknown → held
8e3f1bd9c7c6 -
Disponibilité
Disponibilité : held → unknown
018fdf00e25f -
Disponibilité
Disponibilité : unknown → dns_inactive
d0b7046e8c2f -
Disponibilité
Disponibilité : dns_inactive → held
eac06a92989a
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of multidappsolenodesfix.live · checked Mar 23, 2026
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif