# moonshot-rank.net — SUSPICIOUS > moonshot-rank.net impersonates Moonshot brand to steal credentials. Resolves to 172.67.170.234, flagged by 1/95 VirusTotal scanners. Avoid this site immediately. ## Summary PhishDestroy identifies moonshot-rank.net as an active brand impersonation domain targeting Moonshot, a legitimate service. This domain was flagged by 1 out of 95 security vendors on VirusTotal, indicating low but present detection across industry tools. The domain resolves to IP address 172.67.170.234 and operates under a Let's Encrypt SSL certificate, creating a false sense of legitimacy. Registered through PDR Ltd. d/b/a PublicDomainRegistry.com on March 05, 2026, this domain is extremely new, which often correlates with malicious intent as threat actors leverage fresh domains to avoid established blocklists. This domain poses a specific threat through brand impersonation, attempting to deceive users into believing they are interacting with an official Moonshot service. The tactics employed include mimicking the trusted brand’s name and using a recently issued SSL certificate to appear legitimate. The low detection rate (1/95) suggests this domain may be newly operational or using evasion techniques to bypass initial scrutiny. The registration through a bulk domain registrar (PDR Ltd.) is common among malicious actors due to lax oversight and high turnover of suspicious domains. Users who encounter this domain should exercise extreme caution, as it is likely designed to harvest sensitive information such as login credentials or payment details under the guise of a legitimate service. If you have visited moonshot-rank.net, immediately cease any interaction with the site and avoid entering any personal or financial information. Check your accounts for unauthorized access, especially those linked to Moonshot services. Run a malware scan on your device using reputable antivirus software and consider changing passwords for critical accounts, particularly if you reused credentials. Report this domain to Moonshot’s official support channels and file a complaint with your local cybercrime unit or organizations like the FBI’s IC3 or your country’s equivalent. For future protection, enable multi-factor authentication on all critical accounts and verify website URLs through official channels before interacting. Stay vigilant, as impersonation domains often exploit urgency or fear to manipulate users into taking hasty actions. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) - Target brand: Moonshot ## Domain Intelligence - Registered: 2026-03-05 11:18:12 - Registrar: PDR Ltd. d/b/a PublicDomainRegistry.com - IP: 172.67.170.234 ## Detection Status - VirusTotal: 1 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/b1cf4dfc-da2d-43c4-8c44-a20f63ca0719 - PhishDestroy: https://phishdestroy.io/domain/moonshot-rank.net/ - LLM endpoint: https://phishdestroy.io/domain/moonshot-rank.net/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/moonshot-rank.net/ Last updated: 2026-03-21