raydiumio[.]to
“Raydium | Solana Dex”
raydiumio.to — Conteúdo indisponível. Representação da marca: Raydium; Tipo de golpe: Fake Exchange. Resumo das evidências: VirusTotal 7/91 (ChainPatrol, alphaMountain.ai, CRDF, Fortinet, Gridinsoft); URLQuery 3 alerts; Spamhaus DBL_SPAM; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. Registrador: Government of Kingdom ….
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis of raydiumio.to indicates this domain is an active phishing site targeting cryptocurrency users. Registered on June 22, 2026, through the Government of the Kingdom of Tonga, the domain resolves to IP address 130.12.180.128 and uses nameservers a.dnspod.com, b.dnspod.com, and c.dnspod.com, a pattern commonly associated with malicious infrastructure. As of July 27, 2026, the domain remains active and is flagged by three security blocklists, including PhishDestroy, MetaMask, and SEAL, which suggests it is being used in ongoing phishing campaigns.
VirusTotal detections show 6 of 91 security vendors marking the domain as malicious, though this does not represent a full consensus and further analysis is recommended. The domain name mimics Raydium, a legitimate decentralized finance platform, but no direct evidence confirms the exact content or functionality of the site. Defenders should treat this domain as high-risk based on its registration details, hosting infrastructure, and blocklist status.
Recommended actions include blocking the domain at the DNS or proxy level, monitoring for connections to 130.12.180.128, and alerting users who may attempt to access it. Additional investigation into the site's content and associated wallet addresses is advised to determine the scope of the phishing operation. No SSL certificate or HTTP response data is currently available for further assessment.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | raydiumio.to |
malicious | Sinkholed |
| Quad9 DNS | raydiumio.to |
malicious | Sinkholed |
| Hagezi Threat Feed | raydiumio.to |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 2 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% de confiançaOpenResty is a web platform based on nginx which can run Lua scripts using its LuaJIT engine.
openresty.org 100% de confiançaAnálise do VirusTotal
Evidências arquivadas
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of raydiumio.to · checked Jul 27, 2026
Evidências e relatórios externos
“raydiumio.to https://internetnaming.co/abuse abuse@omegatech.sc abuse@virtualine.org reportphishing@apwg.org report@openphish.com https://safebrowsing.google.com/safebrowsing/report_phish/ https://www.microsoft.com/en-us/wdsi/support/report-unsafe-site-guest https://msrc.microsoft.com/report/abuse?ThreatType=URL&IncidentType=Phishing https://www.microsoft.com/en-us/concern/bing https://www.scam-detector.com/submit-a-scam Malicious Activity – raydiumio[.]to in Bing Search Browser The website ra”
PD-20260727-DEB79F Recipient: abuse@tonic.to Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo