moonshot-voting-f1r[.]netlify[.]app
“Vote to List — Powered by Moonshot”
moonshot-voting-f1r.netlify.app — Conteúdo indisponível. Representação da marca: Moonshot; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 11/91 (BitDefender, CyRadar, ESET, Emsisoft, Fortinet); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 83/100. Registrador: Netlify.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, moonshot-voting-f1r.netlify.app, is flagged as an active crypto drainer scam targeting cryptocurrency wallet users. Crypto drainers are malicious scripts designed to automatically transfer digital assets from connected wallets to attacker-controlled addresses without user consent. The site likely presents itself as a legitimate voting or rewards platform related to cryptocurrency projects, tricking users into connecting their wallets to purportedly participate in events or claim tokens. Once connected, the embedded malicious JavaScript executes unauthorized transactions, draining funds from the victim’s wallet. This type of threat is particularly dangerous due to its automation and the irreversible nature of blockchain transactions. Analysis indicates the domain is hosted on Netlify’s infrastructure and resolves to the IP address 35.157.26.135, located in Germany under Amazon.com, Inc.’s AS16509. Despite its recent deployment, the domain has already been blocked by three security blocklists, including MetaMask and SEAL, which are known for flagging crypto-related threats. VirusTotal currently shows 0 detections out of 95 security engines, suggesting the threat is either new or employs evasion techniques to avoid automated detection. The lack of detections does not imply safety; rather, it highlights the domain’s ability to bypass initial scans, a common trait among sophisticated crypto drainers. The domain’s registration through Netlify, a legitimate hosting provider, further complicates detection, as attackers often abuse trusted platforms to lend credibility to their schemes. If you have visited moonshot-voting-f1r.netlify.app or connected a wallet to it, immediate action is required. First, disconnect the wallet from the site using the wallet’s interface or revoke any suspicious permissions granted to the domain. Next, transfer all remaining assets to a new, secure wallet address that has never been exposed to the malicious site. Monitor the compromised wallet for any unauthorized transactions and report the incident to relevant blockchain explorers or security communities for further tracking. Users should also scan their devices for malware, as crypto drainers may be bundled with other malicious payloads. To prevent future incidents, avoid connecting wallets to unfamiliar or unverified platforms, and verify the legitimacy of any site claiming to offer cryptocurrency rewards or voting mechanisms. Always cross-reference domain names and project details with official sources before interacting with them.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 2 identified
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com 100% de confiançaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaAnálise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of moonshot-voting-f1r.netlify.app · checked Jun 25, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo