MALICIOUS — CRITICAL
asteroidshiba-allocation[.]com
18 of 91 security engines flagged the domain; 2 public blocklists listed it (MetaMask, SEAL); the latest stored check returned HTTP 200.
- VirusTotal
- 18/91
- Blocklists
- 2 · MetaMask, SEAL
- Доступність
- Останній відомий активний · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is gdpr-masking@gdpr-masked.com.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
asteroidshiba-allocation.com — Останній відомий активний (HTTP 200). Уособлення бренду: Moonshot; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 18/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 1 alert; URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. Реєстратор: PDR.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Digest
asteroidshiba-allocation.com is classified critical with an evidence score of 100/100. 18 of 91 security engines flagged the domain; 2 public blocklists listed it (MetaMask, SEAL). Registered 20 Apr 2026 via PDR Ltd. d/b/a PublicDomainRegistry.com, hosted on 188.114.97.3 (Cloudflare, Inc., CA). The latest stored check on 9 Aug 2026 returned HTTP 200 and includes a capture. 1 outgoing abuse report is recorded, most recently on 20 Apr 2026.
Stored generated summary (templated)mistral · 26.06.2026
Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.
This domain, asteroidshiba-allocation.com, is classified as a high-risk brand impersonation phishing site. Analysis indicates it specifically targets users of the Moonshot platform by mimicking legitimate allocation or voting pages, as evidenced by the page title 'Vote to List — Powered by Moonshot.' The threat type involves fraudulent credential harvesting or token theft under the guise of a trusted brand, a tactic commonly employed to exploit user trust in decentralized platforms.
Infrastructure analysis reveals multiple indicators of malicious activity. The domain resolves to the IP address 188.114.97.3 and was registered on April 20, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com. It is flagged by 16 out of 95 security vendors on VirusTotal, with a Gridinsoft trust score of 0/100. The domain appears on three security blocklists and is actively blocked by multiple threat intelligence feeds. Detected technologies include Unpkg, Cloudflare Browser Insights, Cloudflare, and HTTP/3, while the SSL certificate is issued by Google Trust Services. The domain has since been taken offline, though its prior operational status poses residual risks to users who may have interacted with it.
Mitigation measures for this threat type include immediate domain blacklisting across enterprise and consumer security tools. Organizations should monitor for unauthorized access attempts linked to this domain or its associated IP address. Users who engaged with the site are advised to revoke any connected wallet permissions, reset credentials, and audit transaction histories for anomalous activity. Security teams should prioritize awareness campaigns highlighting the risks of brand impersonation in decentralized ecosystems, particularly those involving fake voting or allocation pages.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DigiCert UltraDNS | ipfs.io |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 4 identified
Fast CDN for everything on npm — serves raw files from npm packages.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of asteroidshiba-allocation.com · checked Jun 26, 2026
Аналіз конфігурації сайту
Докази та зовнішні звітиIndependent lookups and source reports
PD-20260420-7325DF Recipient: gdpr-masking@gdpr-masked.com Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.