moonshot-voting-ho7[.]netlify[.]app
“Vote to List — Powered by Moonshot”
moonshot-voting-ho7.netlify.app — Contenuto non disponibile. Simulazione del marchio: Moonshot; Tipo di truffa: Brand Impersonation. Riepilogo delle prove: VirusTotal 13/91 (alphaMountain.ai, BitDefender, CyRadar, ESET, Emsisoft); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 89/100. Registrar: Netlify.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
This domain, moonshot-voting-ho7.netlify.app, is identified as a high-risk phishing infrastructure targeting cryptocurrency users. The page masquerades as a token voting platform under the 'Moonshot' branding, enticing victims to submit their tokens under the pretense of securing a listing. Analysis indicates the site employs a generic phishing framework, likely designed to harvest wallet credentials or drain assets upon interaction. No specific drainer kit signatures have been confirmed, but the social engineering tactics align with known cryptocurrency scams. Infrastructure analysis reveals the domain is hosted on Netlify’s platform, resolving to the IP address 35.157.26.135. VirusTotal detection rates show only 1 out of 95 security vendors currently flag the domain, suggesting limited visibility or evasion techniques. The domain’s registration details are obscured by the hosting provider, and no creation date is publicly available. Google Safe Browsing (GSB) status remains unlisted, and no additional blocklist entries were identified at the time of analysis. The page title, 'Moonshot – Vote your token to get listed!', directly correlates with the phishing lure. The domain remains active, posing an ongoing threat to users unaware of the fraudulent token voting scheme. No takedown actions have been observed, and the infrastructure persists without disruption. Remaining risk is classified as high due to the targeted nature of the scam and the potential for financial loss. Users are advised to verify token voting platforms through official project channels and avoid interacting with unsolicited links. Wallet interactions with this domain should be treated as compromised, and affected parties are urged to revoke any connected smart contract approvals immediately.
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 2 identified
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com Confidenza al 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confidenza al 100%Analisi di VirusTotal
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo