# polyrun.xyz — SUSPICIOUS > PhishDestroy identifies polyrun.xyz as a generic phishing domain hosted on 104.21.20.58. Check the full report. ## Summary PhishDestroy identifies polyrun.xyz as an active generic phishing domain with an elevated risk level, flagged by security vendors due to deceptive tactics targeting unsuspecting users. This domain was flagged by 1 out of 95 security vendors on VirusTotal, registered through OwnRegistrar, Inc. on March 14, 2026. It resolves to IP address 104.21.20.58 and utilizes a Let’s Encrypt SSL certificate for added legitimacy. Despite its recent creation, the domain has already drawn attention from security tools, indicating potential malicious intent. To mitigate exposure, avoid interacting with polyrun.xyz or any linked content. Report the domain to your IT security team or relevant authorities if encountered. Use browser-based phishing detection tools to verify links before clicking, and ensure all systems are updated with the latest threat intelligence to block known malicious domains like this one. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-03-14 16:39:50 - Registrar: OwnRegistrar, Inc. - IP: 104.21.20.58 ## Detection Status - VirusTotal: 1 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/f160bff7-ea87-470e-b60e-3129b1c13d8a - PhishDestroy: https://phishdestroy.io/domain/polyrun.xyz/ - LLM endpoint: https://phishdestroy.io/domain/polyrun.xyz/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/polyrun.xyz/ Last updated: 2026-03-22