MALICIOUS — CRITICAL
moonpayventures[.]cc
This domain is flagged as an elevated-risk brand impersonation threat targeting Ethereum cryptocurrency users.
- VirusTotal
- 6/91
- Blocklists
- No stored match
- Disponibilità
- Ammantato · raggiungibile · HTTP 302
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
moonpayventures.cc — Ammantato · raggiungibile (HTTP 302). Simulazione del marchio: Ethereum; Tipo di truffa: Brand Impersonation. Riepilogo delle prove: VirusTotal 6/91 (alphaMountain.ai, Chong Lua Dao, CRDF, Forcepoint ThreatSeeker, Gridinsoft); cloaking observed; PhishDestroy score 93/100. Registrar: Cloudflare.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
This domain is flagged as an elevated-risk brand impersonation threat targeting Ethereum cryptocurrency users. Analysis indicates the site mimics the legitimate MoonPay exchange, presenting itself as a platform for buying and selling Bitcoin, Ethereum, and other cryptocurrencies. The objective appears to be credential harvesting or fraudulent transaction processing under the guise of a trusted service. Infrastructure analysis reveals the domain moonpayventures.cc resolves to the IP address 188.114.97.3 and is registered through Cloudflare, Inc., with a creation date of April 02, 2024. It appears on two security blocklists, including PhishDestroy and OISD, and is flagged by 7 out of 95 security vendors on VirusTotal. The SSL certificate is issued by Google Trust Services, which, while providing encryption, does not validate the site's legitimacy. Additionally, the domain holds a Gridinsoft trust score of 0/100, further confirming its malicious classification. Mitigation against this threat involves verifying the authenticity of cryptocurrency exchange platforms before conducting transactions. Users should cross-reference domain names with official sources and avoid interacting with sites flagged by security vendors. Enabling multi-factor authentication on legitimate exchange accounts and monitoring for unauthorized transactions can reduce the risk of financial loss. If credentials were entered on this domain, immediate password resets and account reviews on legitimate platforms are recommended.
Copertura dei dati12 recorded checks
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Informazioni forensi
Analisi di VirusTotal
Dati e relazioni esterneIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.