radyum[.]se[.]net
“radyum.se.net | 522: Connection timed out”
Kanıt özeti
Analysis of the domain radyum.se.net, observed on July 24 2026, indicates that it was being used for a generic phishing operation before being taken offline. The domain resolves to the IP address 104.21.48.1, which is hosted by Cloudflare (ASN 13335) and geolocated to the United States. Both authoritative nameservers—alaric.ns.cloudflare.com and kira.ns.cloudflare.com—are Cloudflare‑managed, confirming the use of a reputable CDN for rapid deployment and potential concealment of the underlying infrastructure. The site presented the HTTP status “522: Connection timed out” in its page title, and no TLS certificate was observed, suggesting that the service was either mis‑configured or deliberately left without encryption to simplify traffic interception.
Reputation data is extremely poor: Gridinsoft assigned a trust score of 0 / 100, and the domain appears on two independent blocklists, specifically PhishDestroy and ScamSniffer. VirusTotal scanned the host and recorded nine positive detections out of ninety‑five antivirus engines, reinforcing the malicious classification. The combination of low trust scoring, blocklist presence, and multi‑vendor detections aligns with the elevated risk rating assigned by the analyst. Because the domain is currently offline, active probing is not possible, and no further content analysis (e.g., login pages, credential‑stealing forms) is available.
Consequently, the exact phishing template, targeted brand, or victim demographic remain unknown. Defenders should continue to block any DNS resolution to 104.21.48.1 that originates from radyum.se.net, enforce outbound filtering for HTTP traffic to the domain, and monitor for similar Cloudflare‑hosted sub‑domains that exhibit the same 522 status pattern. Adding the domain to internal blocklists and sharing the indicator set with upstream threat‑sharing platforms will help prevent re‑use of the same infrastructure in future campaigns.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 13.08.2026
Tespit zaman çizelgesi
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin