# polymarket-issuer.air3.com — SUSPICIOUS > polymarket-issuer.air3.com is a known crypto drainer site with 3/95 VirusTotal detections. Avoid clicking links. ## Summary polymarket-issuer.air3.com is an active crypto drainer domain posing as a legitimate Polymarket issuer. This site attempts to trick users into connecting crypto wallets under the guise of token issuance, then drains funds after approval. Reports show it has already targeted victims, making it a high-risk threat to cryptocurrency holders. This domain was flagged by multiple security systems. PhishDestroy identifies it as resolving to 63.176.8.218, registered via Amazon Registrar in 2009, and currently blocked by MetaMask and SEAL. VirusTotal analysis reveals 3 out of 95 security vendors detect this site as malicious. It also appears on three independent threat blocklists, including malware and phishing feeds, confirming its malicious intent. If you visited polymarket-issuer.air3.com, disconnect your wallet immediately and revoke any unauthorized permissions using tools like revoke.cash or your wallet’s interface. Do not approve any pending transactions. Clear your browser cache and run a scan with reputable antivirus software. Report the domain to your wallet provider and consider rotating sensitive keys if any transaction was confirmed. Always verify URLs manually and use up-to-date security extensions to prevent future exposure. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2009-05-22 18:14:58 - Registrar: Amazon Registrar, Inc. - IP: 63.176.8.218 ## Detection Status - VirusTotal: 3 vendors flagged - Google Safe Browsing: clean - Blocklists: 2 hits Lists: ["MetaMask", "SEAL"] ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/c8756512-25d3-4169-a5ae-4671306f6088 - PhishDestroy: https://phishdestroy.io/domain/polymarket-issuer.air3.com/ - LLM endpoint: https://phishdestroy.io/domain/polymarket-issuer.air3.com/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/polymarket-issuer.air3.com/ Last updated: 2026-03-27