Перейти до звіту про безпеку
Checked 09.08.2026 Ref 6C9AF88E

MALICIOUS — CRITICAL

Перевірка домену app.polymarketgrp.com на фішинг і безпеку

app[.]polymarketgrp[.]com

The domain app.polymarketgrp.com has been identified as a high-risk phishing threat and remains active as of July 12, 2026.

72/100 evidence score · Critical
VirusTotal
6/91
Blocklists
2 · MetaMask, SEAL
Доступність
Контент недоступний · HTTP 502
Report / Add Evidence Appeal this listing
2026-03-12 17:11 UTCКонтент недоступний · HTTP 502

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Цей домен було позначено як шкідливий
Системи безпеки повідомляють про виявлення: 6. Публічні списки блокувань, які повідомляють про збіг: 2. Будьте дуже обережні — не вводьте облікові дані чи особисту інформацію.
Jump to section
Огляд звіту

app.polymarketgrp.com — Контент недоступний (HTTP 502). Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 6/91 (ChainPatrol, alphaMountain.ai, CRDF, Gridinsoft, SOCRadar); URLQuery 1 alert; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 72/100. Реєстратор: Tucows.

Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.

Evidence Analysis

Ref 6C9AF88E

The domain app.polymarketgrp.com has been identified as a high-risk phishing threat and remains active as of July 12, 2026. This domain, which was created on March 12, 2026, has a page title of 'Polymarketclub', suggesting a potential attempt to impersonate a legitimate service to deceive users. It is currently registered through Tucows Domains Inc. and resolves to the IP address 104.21.76.233. The domain has been flagged on four security blocklists, indicating a consensus among security vendors regarding its malicious nature. Notably, Gridinsoft has assigned a trust score of 0 out of 100, reinforcing the high-risk classification of this domain.

Further analysis reveals that the domain has been blocked by various security solutions, including SEAL, MetaMask, PhishDestroy, and BLP-Malware. These blocks are indicative of recognized threats associated with the domain, emphasizing the need for caution when encountering it. VirusTotal reports that 6 out of 95 security vendors have flagged the domain, which contributes to its characterization as a phishing threat. The technologies detected on the site include Highcharts, Vue.js, and Cloudflare, with the use of HTTP/3 being noteworthy but not inherently indicative of malicious intent on its own.

Given the current indicators, defenders should implement measures to block access to this domain across their networks. Users should be advised to remain vigilant against potential phishing attempts that may originate from this domain. It is crucial to monitor for updates from security vendors regarding the status of this domain and enforce security protocols to safeguard against the risks posed by phishing threats.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
6 det.
URLQuery
URLQuery
1 threat alert
URLScan
URLScan
Сертифікат TLS
Прострочений або неперевірений
Вік
5 mo
Зафіксований статус
Контент недоступний 502
PhishDestroy
DestroyList
У списку
Reports Sent
1
Обсяг даних12 recorded checks
VirusTotal 6 / 91 URLQuery 1 threat-system alert PhishStats checked — no match recorded OTX no community references CF Radar scan completed URLScan capture збережений звіт URLScan verdict Аналіз завершено Блокування DNS 14 перевірено — блокувань немає TLS Прострочений або неперевірений WHOIS 5 mo old Знімок екрана 3 captures · 3 sources Ланцюжок перенаправлень не досліджено
Розвіддані з мережевої безпеки
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
DNS4EU app.polymarketgrp.com malicious Sinkholed
SSL Certificate Invalid
SSL certificate is invalid or expired. Issuer:

Процес реагування на загрози Pipeline

Відкриття
Checks
Reports
Доступність
14/14
Загроза виявлена
app.polymarketgrp.com виявлено та додано до черги для повного аналізу
12.03.2026
URLScan.io Capture
Stored URLScan report with capture artifacts
URLScan Verdict
Аналіз URLScan завершено; цей результат веб-захоплення не змінює вердикт про загрозу сторінці · score 0
29.07.2026
Cloudflare Radar Report
A stored Cloudflare Radar report is available. The report link alone is not a malicious verdict and does not prove that every network field was captured.
VirusTotal
6/91 recorded on VirusTotal
12.07.2026
Google Safe Browsing
12.03.2026
Виявлення списків блокування
Знайдено в 2 blocklists: MetaMask, SEAL
09.08.2026
Forensic Evidence Collected
Stored evidence from URLScan.io, URLQuery, stored screenshot
Technical Analysis Recorded
Звіт містить збережені результати технологічного або криміналістичного аналізу.
09.08.2026
VT detections increased by 3
+3 new detections (0 → 3): ADMINUSLabs, Kaspersky, desenmascara.me
12.03.2026
Sent Report Recorded
Stored sent-report record for registrar Tucows Domains Inc., hosting provider, 1 abuse contact
domainabuse@tucows.com
12.03.2026
Опубліковано список «DestroyList»
12.03.2026
Content Observed Unavailable
Останні збережені перевірки вказують на те, що повідомлений вміст недоступний; це не встановлює, хто або що спричинило зміну.
15.03.2026
Час до першої недоступності
Від виявлення до першого недоступного спостереження минуло 60 годин.

Статус у публічних блоклистах

Збережений знімок

Заголовок сторінки
Polymarketclub
Сертифікат TLS
Прострочений або неперевірений · Виданий Google Trust Services / WE1

Аналітика доменів

Домен
URLScan Verdict Аналіз завершено score 0 report ↗
Сервер / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden Репутація Edge-IP не пов’язана з цим доменом.
Registrar (base domain) Tucows CA(CA)
Контакт для скаргdomainabuse@tucows.com
IP-адреса 104.21.76.233 CDN
ГеолокаціяUS San Francisco, US
МережаAS13335 · Cloudflare, Inc.
Зворотний пошук IPviewdns.info → rapiddns.io →
Початкова IP-адреса прихована за проксі CDN. Результати зворотного IP для крайової адреси містять непов’язаних орендарів; для пошуку джерела потрібен пасивний DNS або дані прозорості сертифіката.
Registration (base domain)polymarketgrp.com · Створено 12.03.2026 (149d)
Статус HTTP502 Error
Час до першої недоступності 3 days
Що ми враховуємо Час, що минув від першого збереженого звіту про порушення до першого спостереження, що вміст був недоступний. Це не встановлює причину.
Що містить кожен звіт Збережені записи вихідних звітів можуть посилатися на докази, доступні на той час, наприклад вердикти постачальників, реєстраційні дані, деталі хостингу, класифікації або знімки екрана. Ця сторінка не визначає точного доставленого корисного навантаження, квитанції, підтвердження чи дії одержувача.
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Вперше виявлено12.03.2026
DOM Analysisanalyzed 11.07.2026score 63/100
IoC Extractionscanned 01.08.20260 wallet · 0 Telegram IoCs
Submitted URLhttp://app.polymarketgrp.com/
Сервери іменalbert.ns.cloudflare.comsimone.ns.cloudflare.com
TLS Observationvalid from 29.01.2026scanned 15.03.2026
Case ID
ICANN OVERSIGHT Registration: polymarketgrp.com

Акредитація та контекст RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain polymarketgrp.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Нічого не надсилається автоматично.
Технології · 4 identified
Highcharts
V
Vue.js
JavaScript frameworks

Progressive JavaScript framework for building user interfaces.

Cloudflare
CDN

Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.

www.cloudflare.com
HTTP/3
Miscellaneous

Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.

Detected via Cloudflare Radar · Wappalyzer engine
Поскаржитися на цей домен Надішліть докази та допоможіть захистити інших

Аналіз VirusTotal

6 / 91 постачальників безпеки позначили цей домен
View on VT
Last analyzed Previous stored snapshot: 3 detections
ChainPatrol
alphaMountain.ai
CRDF
Gridinsoft
SOCRadar
desenmascara.me
Аналіз продуктивності сайту

Google PageSpeed Insights — mobile performance audit of app.polymarketgrp.com · checked Jul 12, 2026

34
Poor
Performance
FCP
8.55s
First Contentful Paint
LCP
28.92s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
1069ms
Total Blocking Time
SI
8.55s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.

Європол
Знайдіть офіційний канал звітності для вашої країни ЄС
National police directory
Остерігайтеся шахраїв, які обіцяють повернути втрачені кошти! Злочинці можуть знову зв’язатися з жертвами, видаючи себе за слідчих, адвокатів або агентів із відновлення. Не сплачуйте авансових зборів і не діліться обліковими даними. Дізнайтеся більше про шахрайство у сфері відшкодування збитків →

Зверніться до місцевих органів влади

Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.

Довідник 97 країн
Чернетка за допомогою штучного інтелекту — деталі інциденту обробляються постачальником штучного інтелекту Перегляньте та подайте його самостійно
Вбудувати цей звітRead-only HTML widget
HTML · IFRAME

Вбудувати цей звіт

Поділіться цією інформацією про загрози на своєму веб-сайті або в блозі

embed.html
<iframe
  src="https://phishdestroy.io/uk/embed/domain/app.polymarketgrp.com"
  title="PhishDestroy threat report for app.polymarketgrp.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Дуже щирий лист-подяка

Генератор сатиричних чернеток

Одержувач
Контекст зборів

Це сатирична чернетка. Суми зборів є оцінками; ми не стверджуємо, що вони точно стосуються цього домену.