raydem[.]cc
“Website Created”
Resumo das evidências
Analysis of the domain raydem.cc indicates it was actively involved in brand impersonation targeting Celer, a known blockchain interoperability platform. The domain was registered on August 23, 2025, through NiceNIC International Group Co., Limited, and resolved to the IP address 172.67.213.219, hosted on Cloudflare's infrastructure (AS13335) in the United States. No SSL certificate was detected, which is atypical for legitimate services and may indicate an attempt to evade encrypted traffic inspection or reduce operational costs. The domain's page title was recorded as 'Website Created,' a generic placeholder that provides limited insight into the specific content hosted. However, the scam type was explicitly classified as brand impersonation, aligning with the identified target, Celer.
At the time of reporting, the domain was flagged by three of 95 security vendors on VirusTotal, though this detection rate alone does not confirm the full scope of malicious activity. It also appeared on one security blocklist, further supporting its classification as suspicious infrastructure. Infrastructure analysis reveals the use of Cloudflare nameservers (athena.ns.cloudflare.com and quinton.ns.cloudflare.com), a common tactic to obscure hosting origins and enhance resilience against takedowns. The domain was blocked by PhishDestroy and assigned a Gridinsoft trust score of 0/100, reinforcing its high-risk status. As of July 24, 2026, raydem.cc is offline, though defenders should monitor for potential reactivation or migration to new domains.
Organizations are advised to review logs for connections to 172.67.213.219 or raydem.cc, particularly from users interacting with Celer-related services. Proactive blocking of the domain and IP at the network level is recommended to mitigate residual risk. Given the use of Cloudflare, defenders should also assess whether additional domains resolving to the same IP or nameservers exhibit similar patterns.
Data Coverage
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 12/08/2026
10 fontes externas monitoradas Sem correspondência
Linha do tempo de detecção
-
Cloudflare Radar
Varredura do Cloudflare Radar armazenada · Abrir varredura
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo