polymarket[.]emanuelelocatelli[.]me
“Login - Polymarket Bot”
polymarket.emanuelelocatelli.me — 未验证. 品牌冒充:Polymarket; 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 5/91 (ChainPatrol, alphaMountain.ai, CRDF, Gridinsoft, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 78/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain polymarket.emanuelelocatelli.me is currently active and presents a login page titled “Login - Polymarket Bot”, indicating an attempt to impersonate the Polymarket platform. The domain was registered on 14 May 2026 and resolves to the IP address 77.42.17.240, which is hosted in Finland under the Cloud Hel1 provider. Network analysis shows the host is covered by a Let’s Encrypt certificate (R13) and returns an HTTP 302 response, a common pattern for credential‑phishing redirects. Reputation services flag the site as high‑risk: Gridinsoft assigns a trust score of 0 / 100, two of ninety‑two VirusTotal scanners have reported detections, and the domain is listed on three public blocklists, including PhishDestroy, MetaMask and SEAL. The combination of a recent registration, low trust score, active blocklist listings, and the presence of a brand‑specific login interface suggests a credential‑phishing campaign targeting Polymarket users. Observers have not disclosed additional infrastructure such as ASN or email infrastructure, leaving the full scope of the operation uncertain. Defenders should block the domain at network perimeter, monitor DNS queries for the host, and enforce multi‑factor authentication for any Polymarket accounts. Users receiving unsolicited login prompts referencing Polymarket should be instructed to verify URLs and avoid entering credentials on this domain.
威胁响应 Pipeline
公共封禁名单状态
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。