moonshot-voting-6ln[.]netlify[.]app
“Vote to List — Powered by Moonshot”
moonshot-voting-6ln.netlify.app — 콘텐츠를 사용할 수 없음. 브랜드 사칭: Moonshot; 사기 유형: Brand Impersonation. 증거 요약: VirusTotal 5/91 (Emsisoft, Fortinet, Kaspersky, Netcraft, Webroot); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. 등록기관: Netlify.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
This domain, moonshot-voting-6ln.netlify.app, is flagged as a high-risk crypto drainer phishing operation. Analysis indicates it impersonates a cryptocurrency voting or governance platform, likely targeting users of decentralized autonomous organizations (DAOs) or token-based communities. The site employs social engineering tactics, such as fake airdrop or voting incentives, to trick victims into connecting their wallets, after which a drainer script executes unauthorized transactions to siphon funds. No specific brand impersonation has been confirmed, but the domain name suggests a thematic link to crypto projects using terms like 'moonshot' to exploit investor interest in high-reward opportunities. Infrastructure analysis reveals the following technical indicators: the domain is hosted on Netlify, a legitimate platform often abused for phishing due to its free tier and ease of deployment. It resolves to IP address 35.157.26.135, located in Germany under AS16509 (Amazon.com, Inc.). As of the latest scan, VirusTotal reports 0 detections out of 95 engines, indicating low initial detection rates despite its presence on three security blocklists. The domain remains unlisted in Google Safe Browsing (GSB) databases, further reducing visibility for end-users. Creation metadata is obscured by Netlify’s hosting model, but passive DNS records suggest the subdomain was deployed recently, aligning with typical phishing campaign timelines. The domain remains active and continues to resolve, posing an ongoing threat to users. It has been blocked by at least three security providers, including wallet-specific protections, which indicates targeted mitigation efforts. However, the lack of detections on VirusTotal and absence from GSB highlight gaps in automated detection coverage. Users are advised to treat any interaction with this domain as malicious, particularly requests to connect wallets or input seed phrases. Wallet software and browser extensions with phishing protection should be updated to include this domain in blocklists. Network-level blocking of the IP 35.157.26.135 is recommended for enterprise environments to prevent access. Given the domain’s persistence and low detection rates, heightened vigilance is required for crypto-related communications, especially those involving voting, airdrops, or governance participation.
위협 대응 Pipeline
공개 차단 목록 상태
VirusTotal 분석
사이트 성능 분석
Google PageSpeed Insights — mobile performance audit of moonshot-voting-6ln.netlify.app · checked Jun 25, 2026
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.