moonshot-listing-vpb.netlify.app
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of moonshot-listing-vpb.netlify.app
This domain appears to host a cryptocurrency-themed voting page branded as "Vote to List — Powered by Moonshot." Based on the page title, screenshot, and visible content, the site presents a token listing vote for a Solana-related asset called "nunu," showing a contract snippet, live-looking vote counts, and prompts encouraging users to participate in a listing decision. The page also mentions rewards such as "Moonshot XP," which suggests it may be designed to drive wallet-connected engagement around token promotion or community voting.
The site is served from a Netlify subdomain rather than a standalone branded domain, which may indicate a lightweight campaign page, temporary microsite, or third-party hosted landing page. No clear operator identity, company details, or formal organizational information are visible in the provided scan data. Based on the available categories and detections, the page may be presenting itself as part of a crypto listing workflow while lacking the stronger trust signals typically associated with established financial or exchange platforms.
Safety Assessment for moonshot-listing-vpb.netlify.app
Multiple independent security signals raise concerns about this domain at the time of the scan. It was flagged by 15 out of 91 security engines, and several web-classification providers categorized it as phishing or fraud-related. In addition, one threat database listing was present, and the domain's IP address was listed on one mail-reputation blocklist. While a DNS-based mail-reputation listing is a weaker signal than direct phishing or malware detections, it still adds a small amount of caution to the overall picture.
The page content itself also appears consistent with a high-risk crypto engagement flow: it promotes token voting, references rewards, and suggests that a connected wallet is needed to participate. That combination can be used legitimately in some Web3 contexts, but it is also commonly seen in phishing campaigns targeting wallet users. The malware scan did not identify flagged files, and its "GenericSuspiciousObject" findings appear to be heuristic rather than confirmed malware, but those cleaner file-scan results are outweighed here by the broader multi-engine phishing consensus.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The domain is hosted on Netlify infrastructure backed by AWS EC2 in Frankfurt, Germany, and it presents a valid TLS certificate issued by DigiCert. The certificate appears current through 2027-03-19, which indicates encrypted HTTPS delivery was available at the time of the scan. The site uses a Netlify subdomain and loads modern static assets from Next.js-style paths, suggesting a JavaScript-driven frontend.
WHOIS data indicates the parent domain registration is several years old, but because this is a hosted subdomain, that age should not be treated as proof that the specific page or campaign is longstanding. DNSSEC appears to be unsigned. No direct server-side malware indicators were reported in the file scan, but the stronger concern here comes from phishing-related reputation signals rather than TLS or hosting misconfiguration.
Share your experience with this website. Was it safe? Did you encounter any issues?