polymarketallocation[.]net
Verificação de phishing e segurança de polymarketallocation.net
“Polymarket Wallet — Presale”
polymarketallocation.net — Conteúdo indisponível (HTTP 502). Representação da marca: Across; Tipo de golpe: Fake Airdrop. Resumo das evidências: VirusTotal 6/91 (ChainPatrol, alphaMountain.ai, CRDF, Fortinet, Gridinsoft); URLQuery 1 alert; Spamhaus DBL_SPAM; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 73/100. Registrador: PDR.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis of polymarketallocation.net shows a newly registered domain (creation date 23 July 2026) owned through PublicDomainRegistry.com (operated by PDR Ltd.). The domain resolves to the IPv4 address 78.40.194.144 and is served by three orderbox‑dns.com nameservers (fdomain.earth.orderbox-dns.com, fdomain.mars.orderbox-dns.com, fdomain.mercury.ord). The domain appears on a single security blocklist and has been actively blocked by the PhishDestroy feed, indicating that at least one security vendor has observed malicious use. VirusTotal reports that the domain was scanned by 91 detection engines at the time of analysis; none of the engines flagged the host, but the lack of detections does not imply benign behavior.
No SSL/TLS certificate information, HTTP status codes, page title, or Safe Browsing/OTX entries are available in the current intelligence set, leaving the content and exact phishing vector unverified. The limited evidence points to a generic phishing operation, but the absence of detailed payload or landing‑page data creates uncertainty about the targeted brand or credential‑harvesting technique. Defenders should proactively deny or sandbox traffic to 78.40.194.144, add polymarketallocation.net to URL‑filtering deny lists, and continue to monitor the domain for changes in DNS resolution or new blocklist entries.
Re‑scanning the domain with multi‑engine services and requesting a content snapshot from a sandbox environment are recommended to confirm the malicious payload and to enrich detection signatures. Additionally, organizations should verify outbound connections from internal hosts to the address and consider implementing egress filtering to prevent data exfiltration if the site is used for credential capture. Continuous threat‑intel feeds should be consulted for any future attribution to known phishing kits.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | polymarketallocation.net |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologias · 6 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org 100% de confiançaUbuntu is a free and open-source operating system on Linux for the enterprise server, desktop, cloud, and IoT.
www.ubuntu.com 100% de confiançaReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% de confiançaNginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% de confiançaNext.js is a React framework for developing single page Javascript applications.
nextjs.org 100% de confiançaAnálise do VirusTotal
Evidências arquivadas
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of polymarketallocation.net · checked Jul 30, 2026
Evidências e relatórios externos
PD-20260730-E7705A Recipient: abuse@vdsina.com Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo