polymarket[.]airdropalert[.]us
“Google”
polymarket.airdropalert.us — 内容不可用 (HTTP 502). 品牌冒充:Google; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 10/93 (ChainPatrol, alphaMountain.ai, BitDefender, CyRadar, Fortinet); PhishDestroy score 80/100. 注册商: Dynadot.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain polymarket.airdropalert.us was created on October 19, 2025 via Dynadot LLC and resolves to the IPv4 address 192.178.155.106, which is geolocated in the United States and attributed to AS15169 Google LLC. The domain employs Cloudflare DNS, using the nameservers brenna.ns.cloudflare.com and hassan.ns.cloudflare.com. No TLS certificate is presented, indicating the site is served over plain HTTP. The page title returned by the host is "Google," matching the reported brand target and confirming a brand‑impersonation attempt.
Gridinsoft assigns the domain a trust score of 0 / 100, and it appears on a single security blocklist. Detection services on VirusTotal flagged the domain in 10 of 93 vendor scans, reinforcing the suspicion of malicious activity. PhishDestroy has already blocked the domain, and the overall risk level is listed as elevated.
The intelligence categorizes the operation as a crypto scam, though the exact payload or payment mechanism is not disclosed. Defenders should immediately add polymarket.airdropalert.us to network and endpoint blocklists, enforce DNS sinkholing for the resolved IP, and monitor for any resurgence of the domain or associated infrastructure. Ongoing observation of the Cloudflare nameservers and the registration record is advised, as changes may indicate re‑activation attempts.
威胁响应 Pipeline
公共封禁名单状态
取证情报
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。