# slon15cc.net — SUSPICIOUS > Analyze the safety of slon15cc.net, an active phishing domain with medium risk. Learn about its status, threats, and mitigation tips here. ## Summary PhishDestroy identifies slon15cc.net as an active phishing domain presenting a medium risk level. Classified under generic phishing threats, this domain potentially aims to deceive users into providing sensitive information by impersonating legitimate services. The medium risk rating indicates a tangible threat that requires attention but is not currently among the most severe or widespread phishing campaigns. Supporting this assessment, slon15cc.net was registered recently on March 13, 2026, through NiceNIC International Group Co., Limited, a registrar occasionally associated with suspicious domains. The domain resolves to the IP address 172.67.170.166 and has been listed on one security blocklist. VirusTotal analysis shows that 3 out of 95 security vendors flag this domain, which, combined with its recent creation date and domain registration details, reinforces concerns about its authenticity and intent. The page title detected, "slon15.cc," suggests possible attempts at brand impersonation or phishing through a deceptive domain name. Currently active and under observation, slon15cc.net requires caution from users and network defenders. PhishDestroy recommends avoiding interaction with this domain and monitoring any suspicious communications referencing it. Organizations should update their internal blocklists and educate users about the risks of phishing attempts linked to newly registered or flagged domains. Continuous monitoring and timely response remain crucial in mitigating the potential impact posed by slon15cc.net and similar emerging threats. ## Threat Details - Verdict: SUSPICIOUS - Site status: alive (HTTP 200) - Page title: slon15.cc ## Domain Intelligence - Registered: 2026-03-13 03:07:02 - Registrar: NiceNIC International Group Co., Limited - Country: HK - IP: 172.67.170.166 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: blair.ns.cloudflare.com lochlan.ns.cloudflare.com - SSL Issuer: Let's Encrypt / E7 ## Detection Status - VirusTotal: 3 vendors flagged Vendors: ["Fortinet", "Gridinsoft", "SOCRadar"] - Google Safe Browsing: clean - Blocklists: 1 hits Lists: ["PhishDestroy"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019ce541-627d-76cb-bb08-f5bd14c9c845.png - PhishDestroy: https://phishdestroy.io/domain/slon15cc.net/ - LLM endpoint: https://phishdestroy.io/domain/slon15cc.net/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/slon15cc.net/ Last updated: 2026-03-19