raydiumpro-webs[.]com
“Raydium Pro”
Riepilogo delle prove
Analysis of the domain raydiumpro-webs.com confirms its classification as a crypto scam impersonating the Raydium brand. The domain was registered on October 24, 2025, through Global Domain Group LLC and currently resolves to the IP address 188.114.96.3, which is associated with Cloudflare, Inc. (AS13335) in the United States. Infrastructure analysis reveals the use of Cloudflare nameservers (alaric.ns.cloudflare.com and brynne.ns.cloudflare.com), alongside detected technologies including HSTS and HTTP/3, which are consistent with modern phishing infrastructure designed to evade basic detection mechanisms. The domain appears on three security blocklists and is actively blocked by PhishDestroy, MetaMask, and SEAL, indicating prior identification as malicious.
The page title 'Raydium Pro' directly aligns with the targeted brand, Raydium, a known decentralized finance (DeFi) platform, suggesting an intent to deceive users into believing the site is an official or affiliated service. Gridinsoft assigns the domain a trust score of 0/100, further corroborating its malicious nature. Notably, the domain lacks an SSL certificate, which is atypical for legitimate financial or crypto-related services but common in hastily deployed phishing campaigns. As of the report date, the domain is offline, though its infrastructure remains intact.
Three of 95 security vendors on VirusTotal flagged the domain as malicious at the time of scanning. Defenders are advised to treat this domain as a confirmed threat, block it at the network and endpoint levels, and monitor for any re-emergence or related domains registered through the same registrar. Given the use of Cloudflare and the absence of SSL, additional scrutiny of domains sharing these characteristics is recommended. The exact content and functionality of the site remain unanalyzed, but the available evidence supports its classification as a crypto scam targeting Raydium users.
Data Coverage
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 13/08/2026
8 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
Stato del dominio
Raggiungibile → Non raggiungibile
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Informazioni forensi
Analisi di VirusTotal
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo