moonshot-voting-cuq[.]netlify[.]app
“Vote to List — Powered by Moonshot”
moonshot-voting-cuq.netlify.app — 内容不可用. 品牌冒充:Moonshot; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 5/91 (Emsisoft, Fortinet, Kaspersky, Netcraft, Webroot); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. 注册商: Netlify.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, moonshot-voting-cuq.netlify.app, operates as a crypto drainer phishing site designed to exploit users of decentralized finance platforms. Analysis indicates the site is engineered to trick visitors into connecting their cryptocurrency wallets under the guise of a legitimate voting or reward mechanism, likely impersonating a project named 'Moonshot.' Once connected, the site executes unauthorized transactions to siphon funds from the victim’s wallet to an attacker-controlled address, a tactic commonly associated with crypto drainer malware. The domain name includes deceptive keywords ('voting') to lend false credibility and increase the likelihood of user engagement. Infrastructure analysis reveals the domain is hosted on Netlify, a legitimate cloud-based development platform often abused for phishing due to its free hosting services and ease of deployment. As of the latest scan, the domain has 0 detections out of 95 security engines on VirusTotal, indicating it has not yet been widely flagged by automated detection systems. However, it appears on 3 security blocklists, including those maintained by specialized threat intelligence providers. The domain resolves to the IP address 35.157.26.135, located in Germany under Amazon.com, Inc.’s AS16509, a common hosting provider for malicious infrastructure. The lack of prior detections combined with its presence on multiple blocklists suggests the site is either newly deployed or employs evasion techniques to avoid detection. Users who have visited moonshot-voting-cuq.netlify.app or interacted with its content should take immediate action to mitigate potential risks. First, disconnect any cryptocurrency wallets that may have been linked to the site, and revoke any suspicious smart contract approvals using a wallet management tool. Monitor all connected wallets for unauthorized transactions and transfer remaining funds to a new, secure wallet if any suspicious activity is detected. Additionally, scan the device used to access the site for malware, as phishing pages may deploy additional payloads. Report the domain to relevant security communities and blocklist providers to aid in broader threat mitigation efforts. Given the high-risk nature of crypto drainers, affected users should assume their wallet credentials or private keys may have been compromised and act accordingly.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of moonshot-voting-cuq.netlify.app · checked Jun 25, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。