slon-8-cc[.]info
“slon10.cc”
Analysis of slon-8-cc.info indicates that the domain was registered on June 23, 2026 through Dynadot Inc and is currently active. The authoritative name servers are amos.ns.cloudflare.com and kay.ns.cloudflare.com, pointing to Cloudflare’s DNS infrastructure. The domain resolves to IP address 104.21.96.52, which is associated with Cloudflare’s edge network and does not reveal the underlying hosting provider. The TLS certificate presented is issued by Google Trust Services under the WE1 root, confirming that HTTPS connections are terminated by Cloudflare’s edge. No public threat intelligence beyond the generic phishing classification is available; the specific brand or service being spoofed has not been identified. VirusTotal has recorded 91 vendor scans but no detections, although the absence of detections does not constitute a safety assurance. Given the recent creation date, the use of reputable DNS and TLS services, and the lack of content analysis, the infrastructure appears to be a typical short‑lived phishing deployment. Defenders should consider adding the domain to blocklists, monitoring DNS queries for the associated IP, and employing sinkholing where feasible. Continuous re‑evaluation is recommended as additional artifacts such as landing page content or phishing kits become available.
Network Security Intelligence
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | slon-8-cc.info |
malicious | Sinkholed |
| DNS4EU | slon-8-cc.info |
malicious | Sinkholed |
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 3 identified
Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% confidenceCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% confidenceHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% confidenceVirusTotal Analysis
Evidence & External Reports
PD-20260717-6275DA Recipient: abuse@dynadot.com Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive