Analysis of moonshot-listing-4s.netlify.app indicates that the domain is currently active and resolves to the IPv4 address 63.176.8.218. The domain is hosted on Netlify, as evidenced by the registration information, which points to the use of Netlify's shared hosting infrastructure for static web content. DNS queries return no identifiable nameserver records, reported as NS_NOT_FOUND, suggesting that the authoritative nameserver data is either obscured or not publicly resolvable.
VirusTotal has recorded six positive detections out of ninety‑one submitted security vendors, confirming that multiple independent scanners have flagged the domain as malicious. The domain is listed on at least one public phishing blocklist and is specifically blocked by the PhishDestroy service, reinforcing its classification as a phishing threat. No additional data such as SSL certificate details, HTTP response codes, page title, or explicit brand impersonation has been disclosed, leaving those aspects of the payload unknown.
Defenders should add the domain and its resolving IP address to network‑level deny lists, enforce URL filtering policies that block access to the domain, and monitor Netlify‑hosted assets for similar patterns. Continuous re‑scanning of the domain on multi‑vendor platforms is advised to capture any changes in detection status, and security teams should remain alert for potential credential‑stealing campaigns that may leverage this infrastructure.