ricedsol[.]cfd
“The Capital Market For Every Asset on Earth”
ricedsol.cfd — Conteúdo indisponível. Representação da marca: Across; Tipo de golpe: Crypto Scam. Resumo das evidências: VirusTotal 7/94 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CRDF, Forcepoint ThreatSeeker); URLQuery 1 alert; Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 75/100. Registrador: Web Commerce Communica….
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, ricedsol.cfd, presents a targeted cryptocurrency investment scam designed to deceive users into disclosing wallet credentials and transferring digital assets. The site mimics a legitimate asset trading platform, using the page title 'The Capital Market For Every Asset on Earth' to create a false sense of legitimacy. Infrastructure analysis reveals the use of modern JavaScript frameworks including Vue.js, React, and Next.js, suggesting a sophisticated frontend designed to evade basic detection and enhance user engagement. The presence of analytics and marketing tools such as MailChimp and HubSpot indicates an intent to capture and exploit user data beyond initial credential theft. Evidence supporting the malicious classification includes detection by 7 out of 95 security vendors on VirusTotal, and inclusion on three independent security blocklists. The domain was registered on March 24, 2026, through Web Commerce Communications Ltd, and currently resolves to the IP address 172.67.135.154, a host commonly associated with content delivery networks that may obscure true origin. A trust score of 0/100 from Gridinsoft further corroborates the domain’s fraudulent nature. Notably, the domain is actively blocked by cryptocurrency security tools including MetaMask and PhishDestroy, as well as the SEAL anti-phishing initiative, confirming its role in credential and financial theft operations. Users who have visited ricedsol.cfd or interacted with its content are advised to immediately revoke any connected wallet permissions and transfer assets to a new, secure wallet. All credentials entered on the site should be considered compromised and changed across all platforms where reused. Monitor financial and digital asset accounts for unauthorized transactions, and report the incident to relevant security teams or fraud reporting portals. The domain has been taken offline, but related infrastructure may persist under different names—vigilance is recommended when engaging with unsolicited investment opportunities.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | app.meteora.ag |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ZONA SHORTDOT · EVIDÊNCIAS PÚBLICAS
.cfd
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologias · 11 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
Progressive JavaScript framework for building user interfaces.
JavaScript library for building user interfaces with component-based architecture.
Cloud platform for frontend deployment, optimized for Next.js.
Hybrid Vue framework for server-side rendering and static sites.
React framework for production with hybrid static and server rendering.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Tag management system for deploying marketing and analytics tags.
tagmanager.google.comModule bundler for modern JavaScript applications.
Análise do VirusTotal
Evidências e relatórios externos
PD-20260324-8F12E7 Recipient: compliance_abuse@webnic.cc Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo