multidappsolenodesfix[.]live
“Raydium | Airdrop”
multidappsolenodesfix.live was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED on 23 March 2026. The domain resolves to the Cloudflare‑owned address 188.114.96.3, which belongs to the CA (Cloudflare, Inc.) network and is served by the Cloudflare nameservers terin.ns.cloudflare.com and summer.ns.cloudflare.com. A Let’s Encrypt certificate was observed, indicating TLS termination at Cloudflare. Automated fingerprinting detected a stack of Node.js, Vue.js, Nuxt.js, Cloudflare Browser Insights, and HTTP/3 support, suggesting a modern JavaScript‑driven front‑end hosted behind Cloudflare’s edge. The page title returned by the live endpoint was “Raydium | Airdrop”, and the campaign is classified as a crypto‑related “Airdrop Scam” targeting the Raydium brand.
The domain appears on three public blocklists and has been actively blocked by PhishDestroy, MetaMask, and SEAL filtering services. VirusTotal scans show that seven of ninety‑four antivirus engines flagged the domain as malicious, providing additional corroboration of its illicit nature. The risk rating assigned by the reporting team is elevated, reflecting the potential financial impact of successful credential or token theft. As of the report date (25 July 2026) the site is offline, so direct content inspection was not possible; consequently, the exact phishing page layout, credential capture mechanisms, or malicious payloads remain unverified.
However, the combination of brand impersonation, a convincing airdrop‑related title, and the presence of a known phishing kit strongly indicates a credential‑harvesting or token‑theft operation. Defenders should continue to block the domain at DNS and proxy layers, incorporate the observed IP and nameserver identifiers into threat‑intel feeds, and monitor for newly registered domains that use the same registrar or similar naming patterns.
已发送报告记录
已提交证据快照
- 已发送
- 台账记录
- 1
- 案件 ID
PD-20260323-00A36E- 已捕获页面标题
- Raydium | Airdrop
完整证据文本
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
网络安全情报 Registrar context
威胁响应 Pipeline
阻止列表覆盖
10 个来源 · 于 2026年8月9日 同步
已存储的结果证据
处置结果与下线归因
- 结果
held- 原因
registrar_client_hold- 执行方
- NICENIC INTERNATIONAL GROUP CO., LIMITED
- 机制
client_hold- 置信度
- 95%
注册商操作
NICENIC INTERNATIONAL GROUP CO., LIMITED IANA 3765
归因证据:
检测时间线
按时间顺序显示已存储的观测记录。
-
可用性
可用性:首次观测为 dns_inactive
f93a11f87e4d -
可用性
可用性:dns_inactive → unknown
a6e6e1874378 -
可用性
可用性:unknown → dns_inactive
40b3c1eb2aef -
可用性
可用性:dns_inactive → held
ce4db21e16f3 -
可用性
可用性:held → dns_inactive
f52d526b76a1 -
可用性
可用性:dns_inactive → unknown
bd72dd779b03 -
可用性
可用性:unknown → held
5461ac67f1fc -
可用性
可用性:held → unknown
15e73bdba151 -
可用性
可用性:unknown → dns_inactive
6dfe9145995c -
可用性
可用性:dns_inactive → held
ba2dfde4d89a
显示全部(6)
-
可用性
可用性:held → dns_inactive
641ed81dc4d5 -
可用性
可用性:dns_inactive → unknown
b0f422f41db1 -
可用性
可用性:unknown → held
8e3f1bd9c7c6 -
可用性
可用性:held → unknown
018fdf00e25f -
可用性
可用性:unknown → dns_inactive
d0b7046e8c2f -
可用性
可用性:dns_inactive → held
eac06a92989a
已保存的截图
域名情报
技术详情DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of multidappsolenodesfix.live · checked Mar 23, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控