moonreels[.]one
“Moon Reels”
证据摘要
This domain, moonreels.one, is currently flagged as a generic phishing threat and is under active investigation as of August 06, 2026. The domain remains active and resolves to IP address 172.67.158.196, which is associated with Cloudflare infrastructure, as indicated by its nameservers gwen.ns.cloudflare.com and kip.ns.cloudflare.com. The domain is listed on one security blocklist and is blocked by the PhishDestroy service, confirming that at least one independent security source has identified it as a potential threat.
VirusTotal has scanned the domain with 91 vendors, and none currently flag it as malicious. This absence of detections should not be interpreted as proof that the domain is safe, as phishing domains often evade detection until they are actively used in campaigns. The low blocklist presence and lack of vendor flags may indicate that the domain is either newly registered, not yet widely distributed, or cleverly disguised.
The exact nature of the phishing campaign remains unclear. The domain is classified as generic phishing, but no specific brand, page title, or scam kit has been identified in the available intelligence. Analysts have not yet been able to view the live content of the site, so the precise lure or impersonated service is unknown. This lack of detail is common in early-stage investigations, and further analysis is required to determine the targeting strategy.
Defenders should treat moonreels.one as a potential threat and monitor any traffic to it. Organizations should block the domain at the DNS and proxy levels, and users should be warned against clicking links from unknown sources that direct to this domain. Given the domain's active status and Cloudflare hosting, which can obscure the origin server, investigators should continue to monitor for changes in DNS records, SSL certificate issuance, and any updates to the page content.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月13日
检测时间线
-
首次记录
首次存储值:可访问
已保存的截图
域名情报
技术详情DNS、TLS 名称和时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
技术
识别出 3 项高置信度技术
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of moonreels.one · checked Aug 6, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控