# slon13to.net — SUSPICIOUS > Discover why slon13to.net is flagged for phishing risks. Learn what makes this domain risky and how to stay protected online. ## Summary PhishDestroy identifies slon13to.net as an active medium-risk phishing domain, designed to trick users into revealing sensitive data. Phishing remains a critical threat, exploiting trust to capture personal information. The domain, created in March 2026 and registered via NiceNIC International Group Co., Limited, resolves to IP 188.114.97.3. It appears on one security blocklist and is flagged by a few security vendors, indicating suspicious activity. Users should avoid interacting with slon13to.net, refrain from entering personal details, and ensure up-to-date security software is installed. Reporting suspicious emails or links referencing this domain can help mitigate risks. ## Threat Details - Verdict: SUSPICIOUS - Site status: alive (HTTP 200) - Page title: slon13.to ## Domain Intelligence - Registered: 2026-03-13 03:07:02 - Registrar: NiceNIC International Group Co., Limited - Country: HK - IP: 188.114.97.3 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: blair.ns.cloudflare.com lochlan.ns.cloudflare.com - SSL Issuer: Let's Encrypt / E8 ## Detection Status - VirusTotal: 3 vendors flagged Vendors: ["Fortinet", "Gridinsoft", "SOCRadar"] - Google Safe Browsing: clean - Blocklists: 1 hits Lists: ["PhishDestroy"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019ce540-ecd2-75fa-ac70-1441f5559c85.png - PhishDestroy: https://phishdestroy.io/domain/slon13to.net/ - LLM endpoint: https://phishdestroy.io/domain/slon13to.net/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/slon13to.net/ Last updated: 2026-03-19