moonshotpolls[.]com
“Vote to List — Powered by Moonshot”
साक्ष्य सारांश
Analysis of moonshotpolls.com, observed on July 22 2026, indicates an active brand-impersonation campaign targeting the fintech service celer. The domain was registered on 21 February 2026 through Hello Internet Corp and resolves to 172.67.215.253, an address owned by Cloudflare (AS13335) located in the United States. DNS is served by giancarlo.ns.cloudflare.com and surina.ns.cloudflare.com, and the site does not present an SSL certificate, exposing HTTP traffic to potential interception. The landing page returns the title “Vote to List — Powered by Moonshot”, which does not reference the victim brand but aligns with the reported scam type.
Security-vendor scans on VirusTotal show that 2 of 93 engines flagged the domain, and it appears on a single external blocklist. Gridinsoft assigned a trust score of 0 out of 100, reflecting a categorically malicious rating. PhishDestroy has already taken the domain offline, and the current status is reported as offline. Evidence confirms the infrastructure is hosted on a shared Cloudflare front-end, a common choice for rapid deployment of phishing sites.
No TLS certificate is present, and the lack of HTTPS further hampers user trust. The limited detection footprint—only two vendor detections and one blocklist entry—suggests the site was newly created and likely short-lived before takedown. Defenders should update their URL filtering and domain-reputation feeds with the domain name and its resolved IP, enforce blocklisting of the IP range associated with Cloudflare if not already applied, and monitor for any replicas that reuse the same registrant or name-server pattern. Continuous observation of new registrations containing “moonshot” or similar keywords is recommended to pre-empt future impersonation attempts against celer or related brands.
भेजे गए प्रमाण का स्नैपशॉट
- भेजा गया
- लेज़र रिकॉर्ड
- 1
- केस आईडी
PD-20260211-774C1A- कैप्चर किए गए पेज का शीर्षक
- Vote to List — Powered by Moonshot
- PDF दस्तावेज़
- PDF प्रमाण
प्रमाण का पूरा पाठ
Acceptable Use Policy (AUP): The domain moonshotpolls.com is engaged in phishing activities, which directly contravenes the AUP's prohibition against illegal activities and fraud.
Terms of Service (TOS): The ongoing use of this domain for deceptive practices constitutes a violation of the TOS, which reserves the right to suspend or terminate services for such infractions.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. law prohibits unauthorized access to computers and networks, which is applicable if the domain is targeting users to gain unauthorized access to their personal information.
Wire Fraud Statute (18 U.S.C. § 1343): This law addresses schemes to defraud individuals or entities through electronic communications, which is relevant given the phishing nature of the domain.
CAN-SPAM Act (15 U.S.C. § 7701): This act regulates commercial email and prohibits deceptive practices in email marketing, which is applicable to phishing schemes.
Regulatory Note: Failure to take immediate action against this domain may result in regulatory scrutiny and potential liability under applicable laws. Non-compliance could expose your organization to legal consequences and reputational damage.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DigiCert UltraDNS | ipfs.io |
malicious | Sinkholed |
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
पहचान समयरेखा
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
फॉरेंसिक इंटेलिजेंस
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।