moonshot-poll[.]app
Проверка домена moonshot-poll.app на фишинг и безопасность
“Vote to List — Powered by Moonshot”
moonshot-poll.app — Контент недоступен (HTTP 502). Олицетворение бренда: Celer; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 3/93 (Fortinet, Gridinsoft, SOCRadar); URLQuery 100 det.; URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 95/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Сводка доказательств
PhishDestroy first observed moonshot-poll.app on Jan 30, 2026. Stored content metadata identifies Celer as the apparent target. The captured page title is “Vote to List — Powered by Moonshot”. Evidence score: 95/100 (critical).
4 independent sources recorded positive findings: VirusTotal, Spamhaus DBL, URLQuery, and URLScan. VirusTotal recorded 3 detections among 93 engines: Fortinet, Gridinsoft, SOCRadar on Feb 25, 2026 at 01:14 UTC. Spamhaus DBL: DBL_PHISH on Jul 14, 2026 at 10:37 UTC. URLQuery recorded 100 detections on Jan 29, 2026 at 23:54 UTC. URLScan returned a malicious verdict with score 100; scan metadata linked the capture to Moonshot and assigned phishing as its category on Jul 29, 2026 at 03:26 UTC.
HTTP 502 was recorded on Aug 9, 2026 at 01:36 UTC; content was unavailable. Latest classified outcome: registration hold observed; cause registrar client hold; mechanism client hold; observed actor NICENIC INTERNATIONAL GROUP CO., LIMITED on Aug 9, 2026 at 02:08 UTC. Registration records for the domain list NiceNIC International Group Co., Limited as the registrar. At collection time, the hostname resolved to 188.114.97.3 on AS13335 (Cloudflare, Inc.). The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and URLQuery.
Охват данных12 recorded checks
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-09 04:08:29 UTC
Криминалистическая аналитика
Анализ VirusTotal
Доказательства и внешние отчетыIndependent lookups and source reports
PD-20260129-8CB458 Recipient: abuse@nicenic.net Victim safety and official reportingImmediate actions and verified reporting channels
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.