MALICIOUS — CRITICAL
Analyse phishing et sécurité de slion4.cc
slion4[.]
Analysis indicates slion4.cc is an active high-risk domain associated with a generic phishing operation designed to deceive visitors into interacting with fraudulent web content.
- VirusTotal
- 6/91
- Blocklists
- No stored match
- Disponibilité
- Dernier actif connu · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
slion4.cc — Dernier actif connu (HTTP 200). Type d'arnaque : Credential Phishing. Résumé des preuves: VirusTotal 6/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft); Spamhaus DBL_PHISH; PhishDestroy score 88/100. Bureau d’enregistrement: NiceNIC.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Evidence Analysis
Analysis indicates slion4.cc is an active high-risk domain associated with a generic phishing operation designed to deceive visitors into interacting with fraudulent web content. The observed page title, "Captcha," suggests the infrastructure may be leveraging fake verification prompts to lower user suspicion, potentially preceding credential harvesting, malicious redirects, or additional staged social engineering workflows targeting sensitive user information.
Infrastructure analysis reveals the domain was created on June 08, 2026, indicating recently deployed attack infrastructure commonly associated with short-lifecycle malicious campaigns. Security telemetry shows detection by 8 out of 95 scanning engines, reflecting active but not yet universally recognized malicious classification. Registration records indicate the domain was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED. Current monitoring confirms the domain remains active and has been identified on 1 independent security blocklist, supporting assessment of ongoing malicious operational status.
Users who accessed slion4.cc should immediately assume possible exposure to phishing infrastructure. Recommended response includes clearing browser session data, changing credentials entered during the visit, enabling multi-factor authentication on affected accounts, and monitoring for unauthorized login attempts. Systems used to access the domain should undergo endpoint security scanning to detect secondary payload delivery, browser persistence mechanisms, or credential theft artifacts potentially introduced during interaction with the malicious infrastructure.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Couverture des données12 recorded checks
Renseignements sur la sécurité réseau Registrar context
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
Latest Classified Outcome 2026-08-09 02:45:57 UTC
Technologies · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confiance à 100 %HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confiance à 100 %Analyse VirusTotal
Données factuelles et rapports externesIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.