Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
moonshot-vote[.]click
“Moonshot vote - All Chains”
Зведення доказів
Analysis of the domain moonshot-vote.click indicates it was registered on February 21, 2026, through Tucows Domains Inc. and is currently offline. Infrastructure review shows the domain resolved to IP 172.67.209.169, hosted on Cloudflare (AS13335), with nameservers carmelo.ns.cloudflare.com and gail.ns.cloudflare.com. The SSL certificate is issued by Google Trust Services (WE1). At the time of assessment, the HTTP status returned a 403 Forbidden error, and the page title was 'Moonshot vote - All Chains,' suggesting an attempt to impersonate the Moonshot brand, likely targeting cryptocurrency users.
Six of 95 security vendors on VirusTotal flagged this domain as malicious, and it appears on one security blocklist, specifically PhishDestroy. The domain is classified as a crypto scam, though no further details about the specific mechanics of the scam (e.g., token drainer, fake airdrop, governance fraud) are available in the provided data. The use of Cloudflare is consistent with phishing infrastructure, as it can obscure hosting origins and complicate takedown efforts. Defenders should treat this domain as elevated risk due to its brand impersonation, detection by multiple security vendors, and classification as a crypto scam.
While the domain is currently offline, historical DNS and WHOIS records should be preserved for further investigation. If this domain resurfaces, defenders should prioritize blocking it at the DNS or network level and monitor for related infrastructure (e.g., similar domains, shared IPs, or reused SSL certificates). Given the targeting of Moonshot, users of the platform should be alerted to potential scams leveraging this or similar domains. No additional evidence links or payload samples are available at this time.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260120-8A151F- Заголовок збереженої сторінки
- Moonshot vote - All Chains
- PDF-файл
- PDF із доказами
Повний текст доказів
Acceptable Use Policy (AUP): The domain moonshot-vote.click is engaged in phishing activities, which directly contravenes your AUP prohibiting illegal activities and fraud.
Terms of Service (TOS): The use of this domain for deceptive practices constitutes a violation of your TOS, which reserves the right to suspend or terminate services for such infractions.
Applicable Laws (KN):
Computer Misuse Act, 2013: This law criminalizes unauthorized access to computer systems and data, which is relevant given the phishing nature of the domain.
Electronic Transactions Act, 2015: This act includes provisions against fraudulent electronic communications, applicable to the phishing schemes associated with this domain.
Regulatory Note: Non-compliance with your AUP and TOS, as well as local laws, may expose your organization to legal liabilities and regulatory scrutiny. Immediate action is recommended to mitigate these risks.
Data Coverage
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | moonshot-vote.click |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
Хронологія виявлення
-
Статус домену
Доступний → Недоступний
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
-
Статус домену
Недоступний → Доступний
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології
Виявлено 1 технологію з високою впевненістю
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога