moonshot-voting-pi2szc[.]netlify[.]app
“Vote to List — Powered by Moonshot”
moonshot-voting-pi2szc.netlify.app — İçerik kullanılamıyor. Marka kimliğine bürünme: Moonshot; Dolandırıcılık türü: Brand Impersonation. Kanıt özeti: VirusTotal 3/91 (alphaMountain.ai, ESET, Kaspersky); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Kayıt kuruluşu: Netlify.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
moonshot-voting-pi2szc.netlify.app is a fresh phishing domain targeting the cryptocurrency community by impersonating Moonshot. The site claims to offer a voting mechanism for token listings but is designed to deceive users into divulging sensitive information. Despite having no detections on VirusTotal, the domain is already on three public blocklists, including PhishDestroy, MetaMask, and SEAL, highlighting its potential threat.
The domain is hosted on Netlify and uses an IP address associated with Amazon's infrastructure in Germany. The SSL certificate is issued by DigiCert, adding a layer of legitimacy to the site. However, the early detection by PhishDestroy underscores the importance of identifying threats before they propagate through antivirus databases. This domain exploits the typical 24-72 hour gap between registration and AV detection, capturing users who may be unaware of its malicious intent.
By impersonating Moonshot, the domain aims to lure users with promises of token listing votes, a common tactic in cryptocurrency scams. The site's active status and lack of VirusTotal detections suggest it is newly operational, making it crucial for potential victims to be aware of its existence. PhishDestroy's proactive measures have ensured its inclusion in blocklists, providing a critical defense against this emerging threat.
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 2 identified
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com %100 güvenHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenVirusTotal Analizi
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin