moonshot-listing-zvy.netlify.app
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of moonshot-listing-zvy.netlify.app
This website appears to present a cryptocurrency token voting page branded as “Vote to List — Powered by Moonshot.” Based on the page title, screenshot, and on-page text, it is designed to encourage users to vote on whether a token called “nunu” should be listed, with references to Solana, token contract details, recent voting activity, and rewards such as “Moonshot XP.” The layout suggests a promotional landing page tied to token discovery or listing activity rather than a broad informational website.
The site is hosted on a Netlify subdomain rather than a dedicated branded domain, which may indicate a quickly deployed campaign page, prototype, or temporary microsite. The operator is not clearly identified in the provided scan data beyond the visible “Moonshot” branding on the page itself, so ownership and official affiliation cannot be independently confirmed from this scan alone.
Safety Assessment for moonshot-listing-zvy.netlify.app
The scan results indicate elevated risk signals at the time of analysis. The domain was flagged by 15 out of 91 security engines, with many of those detections classifying the page as phishing or otherwise malicious. In addition, one major phishing/threat database listing was present, and the domain's IP address was listed on one mail-reputation blocklist. While the malware scan did not identify confirmed malicious files, its generic suspicious-object findings affected multiple page resources and links, which adds caution but is lower-confidence than the broader multi-engine phishing consensus.
Contextually, the page uses cryptocurrency-themed voting and wallet-connection language, including prompts implying that a connected wallet is needed to cast a vote and earn platform rewards. That pattern can be associated with legitimate Web3 promotions, but it is also commonly seen in credential-harvesting and wallet-draining campaigns. The use of a hosted subdomain, lack of traffic ranking, and strong multi-engine phishing agreement further increase uncertainty.
Based on these findings, this website may pose potential risks to visitors at the time of this scan.
Technical Description
The site uses a valid TLS certificate issued by a mainstream certificate authority, with hosting delivered through Netlify infrastructure backed by AWS EC2 in Frankfurt, Germany. The page appears to be built with a modern JavaScript framework, as indicated by multiple _next/static asset paths. SSL validity helps confirm encrypted transport, but it does not by itself verify the legitimacy of the site's purpose.
DNSSEC appears to be unsigned, which is common but means DNS responses do not benefit from that additional integrity layer. No confirmed malicious files were identified in the file scan, though numerous internal assets and generated paths were marked with generic suspicious heuristics. Combined with the phishing detections from multiple security engines, the technical picture suggests a functioning hosted web app that should still be treated cautiously.
Share your experience with this website. Was it safe? Did you encounter any issues?