moonshot-voting-vul[.]netlify[.]app
“Vote to List — Powered by Moonshot”
moonshot-voting-vul.netlify.app — सामग्री अनुपलब्ध. ब्रांड प्रतिरूपण: Moonshot; घोटाले का प्रकार: Brand Impersonation. साक्ष्य सारांश: VirusTotal 2/91 (ESET, Kaspersky); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. रजिस्ट्रार: Netlify.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
moonshot-voting-vul.netlify.app has been flagged as an active phishing site designed to mimic legitimate voting portals and trick users into surrendering sensitive credentials. The domain leverages Netlify’s infrastructure to appear credible while hosting a spoofed interface that closely resembles a real voting platform. Initial telemetry indicates redirection to external data collection endpoints, suggesting a coordinated attempt to harvest login details and personal information under the guise of an official voting process. Given its current active status and lack of detection coverage, this domain poses a tangible risk to users who may believe they are interacting with a legitimate election-related service.
This domain was identified through automated monitoring and flagged for hosting a fake voting portal. PhishDestroy’s analysis reveals that it resolves to IP address 35.157.26.135 and is currently served via Netlify’s hosting platform. VirusTotal currently reports 0 detections out of 95 engines, indicating it remains undetected by most antivirus and security vendors. The domain remains active and has not yet been listed on major threat intelligence blocklists or reputation databases. Given its recent creation and active deployment, there is a high likelihood of continued operation until flagged by security researchers or automated systems.
To mitigate exposure to this threat, users should immediately block moonshot-voting-vul.netlify.app at the network and endpoint levels. Organizations are advised to update firewall rules and DNS blocklists to include the domain and its resolving IP (35.157.26.135). Security teams should also deploy content filtering rules to prevent access to Netlify-hosted subdomains that mimic official services. Employees and the public should be alerted through security awareness training to recognize suspicious domain patterns and avoid entering credentials on non-official voting websites. In the event of suspected interaction, users must reset passwords immediately and monitor accounts for signs of credential stuffing or unauthorized access.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 2 identified
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com 100% विश्वासHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% विश्वासवायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।