moonshot-listing-xz[.]netlify[.]app
“Moonshot – Vote your token to get listed!”
Analysis of moonshot-listing-xz.netlify.app indicates this domain is under investigation for generic phishing activity as of August 4, 2026. The domain is hosted on Netlify's infrastructure, a platform commonly used for both legitimate and malicious deployments. It appears on one security blocklist and has been flagged by PhishDestroy, though no additional public threat feeds or vendor detections currently confirm its status. VirusTotal reports that 0 out of 91 security vendors have flagged the domain at the time of scanning, though this absence of detections does not confirm safety and may reflect a lack of visibility or delayed analysis.
Infrastructure details reveal the domain is a subdomain of netlify.app, a service that allows rapid deployment of web content without traditional registrar involvement, complicating attribution. No registrar, ASN, or geolocation data is available for this specific subdomain, and SSL certificate details have not been provided in the available intelligence. HTTP status and page content remain unanalyzed, leaving the exact nature of the phishing attempt—such as targeted brands or specific credential-harvesting techniques—unknown.
Defenders should treat this domain as potentially malicious based on its presence on a security blocklist and the PhishDestroy flag. Network-level blocking or monitoring of connections to moonshot-listing-xz.netlify.app is recommended until further analysis confirms its status. Given the lack of additional detections, security teams may prioritize this domain for deeper inspection, including sandboxed visits to capture payloads or redirect chains, while avoiding direct interaction from production environments.
Network Security Intelligence
Threat Response Pipeline
Public Blocklist Status
Technologies · 2 identified
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com 100% confidenceHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% confidenceVirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of moonshot-listing-xz.netlify.app · checked Aug 4, 2026
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive