radyum[.]se[.]net
“radyum.se.net | 522: Connection timed out”
radyum.se.net — असत्यापित. साक्ष्य सारांश: VirusTotal 10/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, ESET); URLQuery 100 det.; 1 external blocklist match (ScamSniffer); PhishDestroy score 95/100.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Analysis of the domain radyum.se.net, observed on July 24 2026, indicates that it was being used for a generic phishing operation before being taken offline. The domain resolves to the IP address 104.21.48.1, which is hosted by Cloudflare (ASN 13335) and geolocated to the United States. Both authoritative nameservers—alaric.ns.cloudflare.com and kira.ns.cloudflare.com—are Cloudflare‑managed, confirming the use of a reputable CDN for rapid deployment and potential concealment of the underlying infrastructure. The site presented the HTTP status “522: Connection timed out” in its page title, and no TLS certificate was observed, suggesting that the service was either mis‑configured or deliberately left without encryption to simplify traffic interception.
Reputation data is extremely poor: Gridinsoft assigned a trust score of 0 / 100, and the domain appears on two independent blocklists, specifically PhishDestroy and ScamSniffer. VirusTotal scanned the host and recorded nine positive detections out of ninety‑five antivirus engines, reinforcing the malicious classification. The combination of low trust scoring, blocklist presence, and multi‑vendor detections aligns with the elevated risk rating assigned by the analyst. Because the domain is currently offline, active probing is not possible, and no further content analysis (e.g., login pages, credential‑stealing forms) is available.
Consequently, the exact phishing template, targeted brand, or victim demographic remain unknown. Defenders should continue to block any DNS resolution to 104.21.48.1 that originates from radyum.se.net, enforce outbound filtering for HTTP traffic to the domain, and monitor for similar Cloudflare‑hosted sub‑domains that exhibit the same 522 status pattern. Adding the domain to internal blocklists and sharing the indicator set with upstream threat‑sharing platforms will help prevent re‑use of the same infrastructure in future campaigns.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
वायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।