MALICIOUS — CRITICAL
Pemeriksaan phishing dan keamanan parimatch.to
parimatch[.]
The domain parimatch.to is currently flagged as an active generic phishing site designed to impersonate legitimate betting platforms.
- VirusTotal
- 7/91
- Blocklists
- 2 · MetaMask, SEAL
- Ketersediaan
- Terakhir diketahui aktif · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@tonic.to.
The latest stored availability evidence still shows the domain reachable; 27 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
parimatch.to — Terakhir diketahui aktif (HTTP 200). Jenis penipuan: Gambling. Ringkasan bukti: VirusTotal 7/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft); URLQuery 4 alerts; Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 85/100. Registrar: Government of Kingdom ….
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
The domain parimatch.to is currently flagged as an active generic phishing site designed to impersonate legitimate betting platforms. Analysis indicates this infrastructure is likely targeting users of the Parimatch brand, a well-known online gambling service, to harvest credentials or financial information. The domain remains operational and poses a high risk to visitors seeking legitimate betting services. Infrastructure analysis reveals the domain was registered on September 17, 2025, through the Government of the Kingdom of Tonga, an uncommon registrar for commercial entities. It resolves to the IP address 158.94.211.126, which has been associated with other suspicious domains in recent months. Detection metrics show that 3 of 95 security vendors on VirusTotal have flagged parimatch.to as malicious, a relatively low but notable detection rate that suggests emerging or evasive phishing tactics. No additional blocklist entries or trust scores from major threat intelligence platforms have been recorded at this time, though the domain's recent creation and limited detection history warrant caution. Current status confirms parimatch.to remains active and accessible, indicating the campaign is ongoing. Users are strongly advised to avoid interacting with this domain, particularly those attempting to access betting or gambling services. Organizations should consider implementing DNS-level blocking for 158.94.211.126 and monitoring for related domains registered through the same registrar. Endpoint protection systems should be updated to include this domain in phishing detection rules, and users should be educated on verifying domain authenticity before entering credentials or financial details.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Cakupan data12 recorded checks
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | parimatch.to |
malicious | Sinkholed |
| Hagezi Threat Feed | parimatch.to |
malicious | Sinkholed |
| DigiCert UltraDNS | parimatch.to |
malicious | Sinkholed |
| CIRA Canadian Shield DNS | parimatch.to |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Casino / Gambling License Verification
Teknologi · 1 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org Keyakinan 100%Analisis VirusTotal
Bukti & Laporan EksternalIndependent lookups and source reports
PD-20260712-CCC2A7 Recipient: abuse@tonic.to Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.