slon3at-at[.]ru
“Slon3.at - это метод автоматизированного контроля 3AT качества процессов обслуживания”
slon3at-at.ru — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: ["telegram"]; نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 4/94 (alphaMountain.ai, G-Data, Gridinsoft, Sophos); PhishDestroy score 65/100. مسجّل النطاق: REGRU-RU.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy identifies slon3at-at.ru as an active credential phishing domain designed to trick users into submitting login details under false pretenses. The site poses as a generic login page to harvest usernames and passwords, potentially enabling account takeovers or unauthorized access to sensitive accounts. Users who enter credentials risk exposing personal data, financial information, or corporate login credentials to threat actors operating this infrastructure. This type of attack is particularly dangerous because it preys on human trust in familiar login interfaces, often leading to immediate compromise of accounts if credentials are reused across services.
This domain was flagged by PhishDestroy for credential harvesting activity, with confirmed details including 0 detections out of 95 VirusTotal scans, a creation date of March 09, 2026, and registration through REGRU-RU. The site resolves to IP 205.185.113.136 and holds a Let's Encrypt SSL certificate, which may lend false legitimacy to the phishing page. These technical indicators highlight the domain's recent establishment and low detection rate, suggesting it may be part of a short-lived campaign or newly deployed infrastructure. Security researchers note that domains registered through REGRU-RU are frequently observed in phishing operations due to the registrar's permissive policies and ease of bulk registration.
If you visited slon3at-at.ru, avoid entering any credentials and immediately check for suspicious activity in your accounts. Change passwords for any services you may have entered, especially if you reused credentials elsewhere. Use a reputable password manager to monitor for exposed credentials and enable two-factor authentication wherever possible. Report the domain to your security team or via PhishDestroy's reporting tools to aid in further investigation. Consider running a malware scan on your device to ensure no additional threats were introduced during the visit. Stay vigilant for follow-up phishing attempts, as threat actors often target compromised accounts with secondary attacks.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 1 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of slon3at-at.ru · checked Mar 28, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب