moonshot-listing-ab0[.]vercel[.]app
“Vote to List — Powered by Moonshot”
moonshot-listing-ab0.vercel.app — Gizlenmiş · ulaşılabilir. Marka kimliğine bürünme: Moonshot; Dolandırıcılık türü: Brand Impersonation. Kanıt özeti: VirusTotal 11/91 (BitDefender, CyRadar, ESET, Emsisoft, Forcepoint ThreatSeeker); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; cloaking observed; PhishDestroy score 83/100. Kayıt kuruluşu: Vercel.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
This domain, moonshot-listing-ab0.vercel.app, operates as a brand impersonation scheme targeting users of the Moonshot cryptocurrency platform. Analysis indicates the site presents a fraudulent 'Vote to List' interface, falsely claiming affiliation with Moonshot to deceive visitors into engaging with malicious content. The page title 'Vote to List — Powered by Moonshot' directly mimics legitimate platform branding, increasing the likelihood of user compromise through social engineering tactics. Given the domain's focus on cryptocurrency users, the primary threat involves potential asset theft or unauthorized transactions if victims interact with embedded controls. Infrastructure analysis reveals multiple high-confidence indicators of malicious activity. The domain is flagged by 11 of 95 security engines on VirusTotal, with additional detections across three independent blocklists. It resolves to IP address 64.29.17.67, hosted on infrastructure belonging to Amazon.com, Inc. (AS16509) in the United States. The domain is registered through Vercel Inc., utilizing an SSL certificate issued by Google Trust Services (WR1). While the exact registration date remains unconfirmed, the combination of brand impersonation elements and security vendor detections establishes a clear pattern of malicious intent. Users who have visited moonshot-listing-ab0.vercel.app should immediately cease all interaction and take corrective measures. Any credentials or cryptocurrency wallet information entered on the site should be considered compromised. Affected parties should revoke active sessions, rotate passwords for associated accounts, and monitor wallet addresses for unauthorized transactions. Cryptocurrency users should verify all platform URLs against official sources before interaction, particularly when prompted for voting or listing activities. The domain remains active as of analysis, necessitating continued vigilance from both individual users and organizational security teams.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenVirusTotal Analizi
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin