acceess-rayidium-swap[.]pages[.]dev
“Suspected phishing site | Cloudflare”
acceess-rayidium-swap.pages.dev — 可达 · 访问受限 (HTTP 403). 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 1/94 (LevelBlue); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 71/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, acceess-rayidium-swap.pages.dev, is identified as a high-risk cryptocurrency wallet phishing site targeting users of the Raydium decentralized exchange. Analysis indicates the site was designed to mimic legitimate Raydium swap interfaces, tricking victims into entering wallet credentials or approving malicious smart contracts. The domain specifically harvests private keys, seed phrases, or transaction signatures, enabling attackers to drain funds from connected cryptocurrency wallets. The threat extends to users of browser-based and hardware wallets, with evidence suggesting the site employs Web3 injection techniques to bypass security warnings. Infrastructure analysis reveals multiple high-confidence threat indicators. The domain was registered on April 08, 2026, through Cloudflare, Inc., and resolves to the IP address 172.66.47.127. It is currently flagged by 12 out of 95 security vendors on VirusTotal, including detections for generic phishing and cryptocurrency fraud. The domain appears on three independent security blocklists and is actively blocked by wallet security extensions and transaction monitoring tools. The SSL certificate, issued by Google Trust Services, does not mitigate the risk, as phishing sites commonly use valid certificates to appear legitimate. The page title, 'Suspected phishing site | Cloudflare,' further confirms its malicious classification by the hosting provider. Users who visited acceess-rayidium-swap.pages.dev should assume their wallet credentials or transaction data may have been compromised. Immediate actions include revoking all active smart contract approvals via a blockchain explorer, transferring funds to a new wallet address, and monitoring transaction histories for unauthorized activity. If private keys or seed phrases were entered, the compromised wallet should be considered permanently exposed, and all associated assets should be moved to a new, secure wallet. Users are advised to scan their devices for malware, as phishing sites may deploy additional payloads. Future interactions with decentralized finance platforms should be conducted only after verifying domain authenticity and using hardware-based wallet protections.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
取证情报
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of acceess-rayidium-swap.pages.dev · checked Jun 26, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。