max-solantesting-z1[.]com
“Raydium”
Зведення доказів
Analysis of the domain max-solantesting-z1.com indicates a high-risk crypto scam operation targeting users of the Celer brand. The domain was registered on February 21, 2026, through MAT BAO CORPORATION and is currently offline. Infrastructure analysis reveals it was hosted on Cloudflare IP 172.67.167.39 (AS13335, United States) with nameservers janet.ns.cloudflare.com and memphis.ns.cloudflare.com. No SSL certificate was detected, increasing the likelihood of unencrypted user interactions.
The page title, Raydium, does not align with the known brand target, Celer, suggesting either a misdirection tactic or a generic template used across multiple scam campaigns. Google Safe Browsing flags the domain for social engineering, while 14 of 93 security vendors on VirusTotal classify it as malicious. The domain appears on three security blocklists, including PhishDestroy, MetaMask, and SEAL, and is referenced in one AlienVault OTX threat intelligence pulse. The absence of an SSL certificate, combined with Cloudflare hosting, is a common pattern in transient scam domains designed to evade takedowns.
While the exact content of the site remains unconfirmed due to its offline status, the available evidence—including the brand impersonation, crypto scam classification, and detection by multiple security vendors—supports a high-risk assessment. Defenders should treat this domain as compromised and block it at the network level. Given its presence on multiple blocklists and association with known scam infrastructure, organizations should also monitor for related domains using similar naming patterns or Cloudflare-hosted IPs. The registration date suggests the domain was active for approximately five months before being taken offline, indicating a potential window of exposure for users who may have interacted with it during that period.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260130-A7DB7C- PDF-файл
- PDF із доказами
Правова підстава
Повний текст доказів
Acceptable Use Policy (AUP): The domain max-solantesting-z1.com is engaged in phishing activities, which constitute a clear violation of the AUP prohibiting illegal activities and fraud.
Terms of Service (TOS): The registrar reserves the right to suspend or terminate services for violations, and the ongoing phishing operations of this domain warrant immediate action under this provision.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. federal law prohibits unauthorized access to computers and networks, which is relevant as phishing schemes often involve such unauthorized access.
Wire Fraud Statute (18 U.S.C. § 1343): This law addresses fraudulent schemes that use electronic communications, including phishing, to deceive victims for financial gain.
Anti-Phishing Consumer Protection Act: This act specifically targets phishing schemes and provides for penalties against those who engage in such deceptive practices.
Regulatory Note: Failure to comply with your AUP and TOS by allowing this domain to remain active may expose your organization to legal liability and regulatory scrutiny. Immediate action is recommended to mitigate these risks.
Data Coverage
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | max-solantesting-z1.com |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 10.08.2026
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога