moonsnot-live[.]top
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCRisk.com may earn a referral commission when users sign up through this link.
Description of moonsnot-live[.]top
The website appears to present itself as a cryptocurrency-related promotional or voting page tied to a token called “Key Opinion Lobster (KOL)” and a platform branded as “Moonshot.” Based on the page title, meta description, and screenshot, it invites visitors to vote for a token listing and promises rewards such as XP for participation. The visual design is polished and themed around crypto-style token promotion, with calls to action centered on voting and potential listing access.
The domain name, however, does not appear to match an obvious official brand domain for the service shown in the page branding. That mismatch, combined with the site’s very recent registration and phishing-related categorizations from multiple web-classification sources, suggests the page may be attempting to imitate or unofficially leverage an existing crypto brand or campaign. Based on available data, the operator is not clearly identified in the provided scan information.
Safety Assessment for moonsnot-live[.]top
This domain was flagged by 8 out of 94 security engines at the time of the scan, with multiple sources classifying it as phishing, fraud-related, or otherwise malicious. In addition, the malware scan indicated suspicious or malicious content in 2 of 39 scanned files, including a flagged external script reference from another suspicious domain. Those findings increase concern that the page may be used for credential harvesting, deceptive wallet interactions, or other social-engineering activity.
Several contextual indicators also raise risk. The domain was only 1 day old at the time of the scan, had no established popularity ranking, and used branding that appears associated with a crypto platform while operating from a different domain. In plain terms, the site appears to resemble a branded token-listing or voting experience, but the domain itself may be a look-alike rather than an official destination. Although some blacklist databases did not list it at the time of this scan, newly created phishing pages often appear before broader blocklists are updated.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was served over HTTPS with a valid Let's Encrypt certificate expiring on 2026-07-21, and it was fronted by Cloudflare infrastructure with nameservers on Cloudflare and an observed server IP in Toronto, Canada. DNSSEC was not enabled, and the reported web server was Cloudflare. A valid certificate helps encrypt traffic in transit, but it does not by itself establish legitimacy.
From a security perspective, the most notable technical concern is that the malware scan flagged both on-site content and an externally referenced script/domain as suspicious or malicious. The domain’s extremely recent creation date and unsigned DNSSEC status add to uncertainty, though they are not conclusive on their own. At the time of the scan, the combination of fresh registration, phishing detections, and flagged external resources suggested elevated technical risk.
Share your experience with this website. Was it safe? Did you encounter any issues?