polymarket-bot-nextjs[.]vercel[.]app
“Polymarket Liquidity Bot”
اكتشاف محفوظ
تنبيه إخفاء المحتوى
- نوع الإخفاء
status_split- درجة الإخفاء
- 1/6
ملخص الأدلة
This domain, polymarket-bot-nextjs.vercel.app, operates as a fraudulent Polymarket liquidity bot interface designed to deceive cryptocurrency users into disclosing wallet credentials or transferring funds. The site mimics legitimate trading automation tools by presenting a fake dashboard labeled 'Polymarket Liquidity Bot,' a tactic commonly employed in phishing campaigns targeting decentralized finance platforms. Analysis indicates the domain is actively harvesting sensitive information, likely through embedded form fields or malicious JavaScript payloads that intercept user input before submission to attacker-controlled endpoints.
Infrastructure analysis reveals multiple high-confidence indicators of compromise. The domain is registered through Vercel Inc. and resolves to the IP address 64.29.17.131, geolocated to the United States. It appears on three distinct security blocklists, including those maintained by cryptocurrency security providers, and is flagged by 1 of 95 security vendors on VirusTotal. The SSL certificate, issued by Google Trust Services (WR1), provides no inherent legitimacy, as phishing sites frequently abuse free certificate authorities to create a false sense of security. The domain remains active as of this report, with no observed takedown attempts from the hosting provider.
Users who have visited polymarket-bot-nextjs.vercel.app or interacted with its content should immediately revoke any connected wallet permissions and transfer assets to a new, secure wallet address. All credentials entered on the site must be considered compromised and should be changed across all platforms where identical or similar passwords were used. Network-level indicators, including the domain and IP 64.29.17.131, should be added to firewall and intrusion detection systems to prevent further exposure. Organizations should monitor for outbound connections to this infrastructure, particularly from systems that handle cryptocurrency transactions or store sensitive financial data.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
المخطط الزمني للاكتشاف
-
VirusTotal
0 ← 1
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of polymarket-bot-nextjs.vercel.app · checked Mar 21, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب