slon-4-at[.]ru
“Slon4 at — изготовление пакетов для инструмента, доставка по РФ”
slon-4-at.ru — المحتوى غير متوفر. ملخص الأدلة: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, Bfore.Ai PreCrime, BitDefender, Chong Lua Dao); PhishDestroy score 95/100. مسجّل النطاق: REGRU-RU.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
The domain slon-4-at.ru was registered on March 20, 2026 through the REGRU-RU registrar and is currently hosted on the IPv4 address 188.114.96.3. DNS resolution is delegated to Cloudflare name servers sureena.ns.cloudflare.com and woz.ns.cloudflare.com, indicating the use of Cloudflare's edge infrastructure for traffic forwarding and potential abuse of its CDN services. VirusTotal reports that fifteen of ninety‑one scanning engines have flagged the domain, providing a moderate detection ratio that aligns with its classification as a generic phishing site.
The domain is listed on at least one public security blocklist and has been explicitly blocked by the PhishDestroy mitigation service, demonstrating that multiple threat‑intelligence feeds have recognized malicious activity associated with it. No public SSL certificate details, HTTP status codes, or page title information are available in the current intelligence set, leaving the exact content and landing page behavior unverified. However, the combination of recent registration, Cloudflare‑based hosting, and multiple vendor detections suggests a purposeful infrastructure setup designed to host phishing payloads.
Defenders should add slon-4-at.ru to outbound filtering rules, enforce DNS sink‑hole controls for the domain, and monitor traffic to the associated IP address for anomalous HTTP requests. Continuous re‑scanning with multi‑engine services is recommended to capture any evolution in the payload or additional detections. Organizations that rely on email or web gateways should ensure that the domain is included in URL reputation lists and that any credential‑harvesting attempts targeting the domain are logged for incident response.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب