polymarket[.]altsportsleagues[.]ai
“Polymarket Trading - AltSportsLeagues.ai”
polymarket.altsportsleagues.ai — 内容不可用 (HTTP 502). 品牌冒充:Chatgpt; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 2/93 (ChainPatrol, SOCRadar); PhishDestroy score 63/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
polymarket.altsportsleagues.ai was registered on February 21 2026 and currently resolves to the Amazon Web Services address 216.150.1.65, ASN 16509. The hosting location is the United States. The site presents the page title “Polymarket Trading – AltSportsLeagues.ai” and claims to impersonate the ChatGPT brand, indicating a brand‑impersonation campaign. The domain is listed on a single public security blocklist and is also flagged by PhishDestroy. VirusTotal analysis shows that two of ninety‑three scanning engines flagged the domain, suggesting the presence of malicious indicators despite the low detection count.
The SSL certificate is identified as an R12 profile, confirming that the site used HTTPS at the time of inspection. A Gridinsoft trust score of 0 out of 100 further confirms a lack of reputation. The domain’s current HTTP status is “taken offline,” which may be a tactic to evade automated crawlers or a temporary takedown. No additional evidence such as malware hashes, phishing page screenshots, or compromised credential dumps is available in the open‑source record.
The uncertainty lies in the exact content that was served before the takedown and whether the site was actively harvesting credentials or delivering payloads. Defenders should continue to block the domain at the DNS and proxy layers, monitor for any resurrection of the host on the same IP address, and add the domain to internal watchlists. Ongoing scrutiny of the associated IP range (216.150.0.0/16) is advisable, as other malicious sites have historically leveraged AWS infrastructure. Because the impersonated brand is ChatGPT, any communications that reference OpenAI services and request user input should be treated with heightened suspicion when originating from this domain or its hosting provider.
威胁响应 Pipeline
公共封禁名单状态
取证情报
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。