moonbirds[.]run
“Moonbirds Mint | New Soulbound Token (SBT) for Solana Users”
Сводка доказательств
On July 23, 2026, the domain moonbirds.run was identified as a high-risk brand impersonation domain targeting the brand 'across'. The domain, which was created on February 21, 2026, currently appears to be offline. The page title associated with the domain is 'Moonbirds Mint | New Soulbound Token (SBT) for Solana Users', indicating an attempt to lure Solana users into a crypto scam. Infrastructure analysis reveals that the domain resolves to the IP address 188.114.97.3, which is hosted by Cloudflare, Inc. in the United States.
The domain is registered through PDR Ltd. d/b/a PublicDomainRegistry.com and is currently using Cloudflare's nameservers jermaine.ns.cloudflare.com and laila.ns.cloudflare.com. The domain has been flagged by 16 of 93 security vendors, and it appears on four security blocklists: PhishDestroy, MetaMask, ScamSniffer, and SEAL. Additionally, the domain has a Gridinsoft trust score of 0/100, reflecting a very poor reputation. Despite the domain being offline, defenders should remain vigilant as the domain could be reactivated at any time.
It is recommended to block this domain at the network level and educate users about the risks associated with similar brand impersonation scams. The exact content and design of the page are not yet analyzed, but the page title suggests a specific focus on Solana users and the use of Soulbound Tokens (SBT). Defenders should monitor for any related malicious activity and ensure that users are cautious when interacting with any links or emails related to this domain.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260124-EFE9CF- PDF-файл
- PDF с доказательствами
Полный текст доказательств
Policy Violations: Explicit policy to immediately suspend domains used for phishing, 419 scams, identity fraud, malware distribution without prior notice
Applicable Laws: IT Act 2000 §§66C–66D (identity theft, cheating by personation), Indian Penal Code §420 / Bharatiya Nyaya Sanhita §318 (fraud)
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
9 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание