moonshot-voting-fu[.]netlify[.]app
“Moonshot – Vote your token to get listed!”
moonshot-voting-fu.netlify.app — Контент недоступний (HTTP 404). Уособлення бренду: Moonshot; Тип шахрайства: Impersonation. Зведення доказів: VirusTotal 1/91 (Forcepoint ThreatSeeker); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 83/100. Реєстратор: Netlify.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis conducted on 7 August 2026 indicates that the host moonshot-voting-fu.netlify.app is currently active and associated with a high‑risk generic phishing campaign. The domain is hosted on Netlify’s infrastructure, as indicated by the registrar information, and resolves to the IPv4 address 35.157.26.135, which belongs to Netlify’s shared hosting pool. The domain appears on three independent security blocklists; it is explicitly blocked by the PhishDestroy, MetaMask, and SEAL blocklist providers. This multi‑vendor presence suggests that the site has been observed delivering malicious content or phishing pages. VirusTotal scanning recorded a single detection out of ninety‑one submitted security engines, confirming at least one vendor’s classification of the domain as malicious.
No DNS NS records were returned, as indicated by the “NS_NOT_FOUND” flag, which may reflect a misconfiguration or intentional obfuscation of name‑server information. The available evidence does not include a retrieved page title, SSL certificate details, HTTP response codes, or any content‑level analysis, leaving the exact phishing vector undefined. The lack of additional telemetry such as URL paths or payload samples limits the ability to attribute a specific campaign or to map the full attack surface. Nevertheless, the convergence of blocklist listings, the Netlify hosting context, and the single VirusTotal flag constitute sufficient indicators for defensive operators to treat the domain as malicious.
Defenders are advised to immediately block outbound connections to 35.157.26.135 and to add moonshot-voting-fu.netlify.app to local allow‑list exclusions. Email gateways, web proxies, and endpoint security solutions should enforce the blocklists that already flag this domain. Continuous monitoring of Netlify‑hosted subdomains for similar patterns is recommended, as the provider’s shared infrastructure can be leveraged for rapid redeployment of phishing sites.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 2 identified
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіАналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of moonshot-voting-fu.netlify.app · checked Aug 7, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога