votes-moonwell[.]xyz
“Not allowed”
votes-moonwell.xyz — Контент недоступний (HTTP 502). Зведення доказів: VirusTotal 1/91 (Forcepoint ThreatSeeker); URLQuery 3 alerts; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 93/100. Реєстратор: PDR.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
votes-moonwell.xyz was registered on 26 June 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com. The domain resolves to 172.67.221.185, a Cloudflare‑owned address located in Canada, and uses Cloudflare nameservers evangeline.ns.cloudflare.com and gabriel.ns.cloudflare.com. Traffic is served via Cloudflare with HTTP/3 enabled and the TLS certificate is issued by Google Trust Services under the WE1 root. The site’s page title returned “Not allowed”, and no further content has been captured.
The domain appears on three external blocklists and is listed in a single AlienVault OTX pulse. It has been flagged by PhishDestroy, MetaMask and SEAL, and a VirusTotal scan recorded one positive detection out of ninety‑one scanners. Gridinsoft assigned a trust score of 0 out of 100, indicating a high likelihood of malicious intent.
As of the report date 23 July 2026 the domain is offline, but its recent registration and the combination of blocklist presence, low trust score, and a positive detection suggest it was used for a generic phishing campaign. Defenders should add 172.67.221.185 and votes-moonwell.xyz to perimeter deny lists, monitor for re‑registration or similar Cloudflare‑hosted domains, and consider reviewing any outbound traffic that may have contacted the domain before it was taken down. Ongoing vigilance is recommended because the underlying infrastructure (Cloudflare) can be reused for future malicious sites.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | noteworthy-lox.xyz |
malicious | Sinkholed |
| Hagezi Threat Feed | noteworthy-lox.xyz |
malicious | Sinkholed |
| DNS4EU | theajack.github.io |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of votes-moonwell.xyz · checked Jun 27, 2026
Докази та зовнішні звіти
PD-20260627-95FC4F Recipient: abuse@publicdomainregistry.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога