raydiumio[.]to
“Raydium | Solana Dex”
Kanıt özeti
Analysis of raydiumio.to indicates this domain is an active phishing site targeting cryptocurrency users. Registered on June 22, 2026, through the Government of the Kingdom of Tonga, the domain resolves to IP address 130.12.180.128 and uses nameservers a.dnspod.com, b.dnspod.com, and c.dnspod.com, a pattern commonly associated with malicious infrastructure. As of July 27, 2026, the domain remains active and is flagged by three security blocklists, including PhishDestroy, MetaMask, and SEAL, which suggests it is being used in ongoing phishing campaigns.
VirusTotal detections show 6 of 91 security vendors marking the domain as malicious, though this does not represent a full consensus and further analysis is recommended. The domain name mimics Raydium, a legitimate decentralized finance platform, but no direct evidence confirms the exact content or functionality of the site. Defenders should treat this domain as high-risk based on its registration details, hosting infrastructure, and blocklist status.
Recommended actions include blocking the domain at the DNS or proxy level, monitoring for connections to 130.12.180.128, and alerting users who may attempt to access it. Additional investigation into the site's content and associated wallet addresses is advised to determine the scope of the phishing operation. No SSL certificate or HTTP response data is currently available for further assessment.
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260727-DEB79F- PDF belgesi
- PDF kanıtı
Hukuki dayanak
Kanıtın tam metni
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | raydiumio.to |
malicious | Sinkholed |
| Quad9 DNS | raydiumio.to |
malicious | Sinkholed |
| Hagezi Threat Feed | raydiumio.to |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
Tespit zaman çizelgesi
-
İlk kayıt
İlk kayıtlı değer: Erişilebilir
-
Alan adı durumu
Erişilebilir → Erişilemiyor
Teknolojiler
2 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Arşivlenmiş Kanıtlar
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of raydiumio.to · checked Jul 27, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin