Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
moonshot-vote[.]click
“Moonshot vote - All Chains”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
Analysis of the domain moonshot-vote.click indicates it was registered on February 21, 2026, through Tucows Domains Inc. and is currently offline. Infrastructure review shows the domain resolved to IP 172.67.209.169, hosted on Cloudflare (AS13335), with nameservers carmelo.ns.cloudflare.com and gail.ns.cloudflare.com. The SSL certificate is issued by Google Trust Services (WE1). At the time of assessment, the HTTP status returned a 403 Forbidden error, and the page title was 'Moonshot vote - All Chains,' suggesting an attempt to impersonate the Moonshot brand, likely targeting cryptocurrency users.
Six of 95 security vendors on VirusTotal flagged this domain as malicious, and it appears on one security blocklist, specifically PhishDestroy. The domain is classified as a crypto scam, though no further details about the specific mechanics of the scam (e.g., token drainer, fake airdrop, governance fraud) are available in the provided data. The use of Cloudflare is consistent with phishing infrastructure, as it can obscure hosting origins and complicate takedown efforts. Defenders should treat this domain as elevated risk due to its brand impersonation, detection by multiple security vendors, and classification as a crypto scam.
While the domain is currently offline, historical DNS and WHOIS records should be preserved for further investigation. If this domain resurfaces, defenders should prioritize blocking it at the DNS or network level and monitor for related infrastructure (e.g., similar domains, shared IPs, or reused SSL certificates). Given the targeting of Moonshot, users of the platform should be alerted to potential scams leveraging this or similar domains. No additional evidence links or payload samples are available at this time.
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-20260120-8A151F- عنوان الصفحة الملتقطة
- Moonshot vote - All Chains
- ملف PDF
- دليل PDF
النص الكامل للدليل
Acceptable Use Policy (AUP): The domain moonshot-vote.click is engaged in phishing activities, which directly contravenes your AUP prohibiting illegal activities and fraud.
Terms of Service (TOS): The use of this domain for deceptive practices constitutes a violation of your TOS, which reserves the right to suspend or terminate services for such infractions.
Applicable Laws (KN):
Computer Misuse Act, 2013: This law criminalizes unauthorized access to computer systems and data, which is relevant given the phishing nature of the domain.
Electronic Transactions Act, 2015: This act includes provisions against fraudulent electronic communications, applicable to the phishing schemes associated with this domain.
Regulatory Note: Non-compliance with your AUP and TOS, as well as local laws, may expose your organization to legal liabilities and regulatory scrutiny. Immediate action is recommended to mitigate these risks.
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | moonshot-vote.click |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
المخطط الزمني للاكتشاف
-
حالة النطاق
يمكن الوصول إليه ← يتعذر الوصول إليه
-
Cloudflare Radar
تم حفظ فحص Cloudflare Radar · فتح الفحص
-
حالة النطاق
يتعذر الوصول إليه ← يمكن الوصول إليه
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات
حُدّدت تقنية واحدة عالية الثقة
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب