moonshot-listing-slg.netlify.app
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of moonshot-listing-slg.netlify.app
This domain appears to host a cryptocurrency-themed landing page titled "Vote to List — Powered by Moonshot." Based on the page title, screenshot, and on-page text, it presents a token voting interface for a project called "nunu" on Solana, encouraging visitors to vote on whether the token should be listed and suggesting that connected-wallet participation may be required.
The site appears to be deployed as a subdomain on Netlify rather than on a dedicated primary brand domain. Its design imitates a polished crypto campaign or token-listing portal, with live vote counts, wallet-style addresses, and references to rewards such as "Moonshot XP." Based on available data, the operator is not clearly identified in the scan details, so ownership and official affiliation with any broader Moonshot-branded service cannot be independently confirmed from this scan alone.
Safety Assessment for moonshot-listing-slg.netlify.app
Multiple security signals indicate elevated risk at the time of this scan. The domain was flagged by 15 out of 91 security engines, with many of those detections classifying it as phishing or otherwise malicious. In addition, one threat database listing was present, and the domain's IP address was listed on one mail-reputation blocklist. While the malware scan did not report flagged files, it did attach a generic malicious heuristic to the domain and linked resources, which may reflect suspicious patterns rather than confirmed malware payloads.
The page content itself also raises concern because it appears to solicit user interaction around a cryptocurrency token vote and states that a connected wallet is required to cast a vote. Crypto-themed wallet-connection flows are commonly abused in phishing campaigns, especially when hosted on disposable or third-party subdomains rather than a clearly verifiable official domain. The domain is also not ranked in major traffic data, which may be consistent with a low-visibility or short-lived campaign page.
Taken together, these findings suggest that visitors should exercise a high degree of caution, particularly before connecting a wallet, approving transactions, or entering credentials. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was served over HTTPS with a valid TLS certificate issued by DigiCert, and the hosting environment appears to be Netlify backed by AWS infrastructure in Frankfurt, Germany. The domain uses Netlify's application delivery setup and resolves to an AWS EC2 IP address. The certificate validity is a positive transport-security sign, but it does not by itself verify the trustworthiness of the page content or operator.
WHOIS data indicates the parent domain has existed for several years, although this is a Netlify subdomain and the age of the subdomain deployment itself may differ from the base registration age. DNSSEC appears to be unsigned. No obvious server-side malware files were reported in the file scan, but numerous internal resources were generically flagged by heuristic analysis, and the broader reputation data showed substantial phishing-related detections at the time of this scan.
Share your experience with this website. Was it safe? Did you encounter any issues?