moonshot-listing-s2x[.]vercel[.]app
“Vote to List — Powered by Moonshot”
moonshot-listing-s2x.vercel.app — 隐形 · 可达. 品牌冒充:Moonshot; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 9/91 (CyRadar, ESET, Emsisoft, Fortinet, G-Data); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; cloaking observed; PhishDestroy score 77/100. 注册商: Vercel.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain operates as a fraudulent token voting platform under the guise of the Moonshot cryptocurrency brand. The site displays a page titled 'Vote to List — Powered by Moonshot,' designed to deceive users into participating in a fake listing process. Victims are likely prompted to connect cryptocurrency wallets or submit sensitive credentials, risking unauthorized access to funds or personal data. Analysis indicates this infrastructure is actively malicious, with 9 out of 95 security vendors on VirusTotal flagging the domain. The site is hosted on Vercel Inc. infrastructure, resolving to IP address 216.198.79.67 (AS16509, Amazon.com, Inc.). The SSL certificate is issued by Google Trust Services (WR1), a common feature in both legitimate and malicious sites. The domain appears on three security blocklists, including detection by major threat intelligence feeds. If this site was visited, immediate action is required. Disconnect any linked wallets and revoke permissions using official blockchain explorers. Scan devices for malware using updated security tools. Monitor financial accounts and cryptocurrency wallets for unauthorized transactions. Change credentials for any accounts accessed while the site was open, prioritizing email and crypto-related services. Report the incident to relevant financial institutions and cryptocurrency platforms to assist in tracking fraudulent activity.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。