moonshot-lead[.]com
“Vote to List — Powered by Moonshot”
Résumé des preuves
The domain moonshot-lead.com was first registered on December 20, 2025 through Name.com, Inc. It resolves to the IP address 216.198.79.1, which belongs to the Amazon.com, Inc. network (AS16509) located in the United States. DNS resolution is delegated to ns1.vercel-dns.com and ns2.vercel-dns.com, indicating that the site leveraged Vercel’s hosting platform. The HTTPS endpoint presented a Let’s Encrypt (R12) certificate and advertised HTTP Strict Transport Security (HSTS), suggesting an attempt to convey a legitimate security posture. The page title returned by the server was “Vote to List — Powered by Moonshot,” aligning with the declared brand target of Moonshot and the listed scam type of a crypto‑related fraud.
HTTP responses returned status code 451, which typically signals legal takedown or unavailability, and the current operational status is marked as offline. The domain appears on a single security blocklist and has been explicitly blocked by the PhishDestroy service. VirusTotal scans reported three positive detections out of ninety‑three vendor checks, providing modest corroboration of malicious activity.
No additional intelligence such as Safe Browsing verdicts, OTX indicators, or detailed payload analysis is available at this time. Defenders should add moonshot-lead.com to network‑level deny lists, monitor its associated IP range (216.198.79.0/24) for any residual traffic, and consider applying domain‑based filtering for Vercel‑hosted endpoints that exhibit similar brand‑impersonation cues. Continuous observation of the registrar’s activity and any re‑registration attempts is advised, as threat actors often recycle infrastructure after takedown.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
État du domaine
Accessible → Inaccessible
-
État du domaine
Accessible → Inaccessible
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
-
État du domaine
Inaccessible → Accessible
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif