सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 4। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
डोमेन सुरक्षा और ख़तरे की आसूचना

slon9[.]icu

“slon9.icu/”

धमकी भरा फैसला ऊँचा 65/100 साक्ष्य स्कोर
उपलब्धता सर्वर त्रुटि नवीनतम संग्रहीत प्रतिक्रिया अनिर्णायक थी
वायरस का कुल पता लगाना: 4/94 Spamhaus DBL: DBL_PHISH घोटाले का प्रकार: Generic Phishing
OTX: 11 refs 13/03/2026 1 Report Sent CDN
रिपोर्ट सारांश

slon9.icu — सर्वर त्रुटि (HTTP 502). घोटाले का प्रकार: Generic Phishing. साक्ष्य सारांश: VirusTotal 4/94 (Fortinet, Gridinsoft, SOCRadar, Webroot); URLQuery 1 det.; Spamhaus DBL_PHISH; PhishDestroy score 65/100. रजिस्ट्रार: NiceNIC.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

साक्ष्य सारांश
उच्च
संदर्भ
74CBF24C
स्कोर
65/100

The domain slon9.icu is identified as posing a generic phishing threat. Phishing sites like this one aim to deceive users into providing sensitive information, such as login credentials or financial details, by impersonating legitimate entities or creating fake login pages. The risk associated with such domains is elevated, as they can lead to identity theft, financial loss, and unauthorized access to personal or organizational data.

The analysis of slon9.icu reveals several technical indicators that contribute to its classification as a phishing threat. Notably, the domain was flagged by 4 out of 95 security vendors on a well-known threat intelligence platform. Despite a seemingly low detection count, the presence on blocklists and a trust score of 0/100 by Gridinsoft reinforce the site's malicious nature. Furthermore, the domain was registered through NiceNIC International Group Co., Limited, and the suspicious registration date of March 13, 2026, suggests potential manipulation or error, as it is a future date. The domain resolves to the IP address 188.114.96.3 and utilizes Cloudflare services, which may obscure its true hosting location.

If you have visited slon9.icu, it is crucial to take immediate action to protect your personal information. Change any passwords that may have been compromised, especially if the same passwords are used across multiple accounts. Monitor your financial statements and online accounts for any unauthorized activity. Consider using additional security measures, such as two-factor authentication, to enhance account security. If you suspect that your personal information has been compromised, report the incident to relevant authorities or security professionals for further assistance. Remaining vigilant and cautious of unsolicited communications or unfamiliar websites is essential in mitigating the risk of phishing attacks.

VirusTotal
VirusTotal
4 det.
URLQuery
यूआरएलक्वेरी
1 det.
OTX references
URLScan
यूआरएलस्कैन
TLS प्रमाणपत्र
समाप्त या असत्यापित
आयु
5 mo
देखी गई स्थिति
सर्वर त्रुटि 502
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1
डेटा कवरेज VirusTotal 4 / 94 यूआरएलक्वेरी 1 det. फ़िशस्टैट्स जाँच नहीं की गई ओटीएक्स 11 community references सीएफ रडार scan completed URLScan capture संग्रहित रिपोर्ट URLScan verdict निष्कर्ष उपलब्ध नहीं डीएनएस ब्लॉक जाँच नहीं की गई TLS समाप्त या असत्यापित कौन है 5 mo old स्क्रीनशॉट 3 captures · 3 sources चेन पुनर्निर्देशित करें जांच नहीं की गई
नेटवर्क सुरक्षा इंटेलिजेंस Registrar context
Registrar context NiceNIC
Stored registration data identifies NICENIC INTERNATIONAL GROUP CO., LIMITED (IANA 3765) as the registrar. PhishDestroy maintains separate NiceNIC abuse-report research; registrar association is contextual and is not an independent detection for this domain.
NiceNIC Verdict Full Investigation
SSL Certificate Invalid
SSL certificate is invalid or expired. Issuer:

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
12/13
Sent Report Recorded
Stored sent-report record for registrar NiceNIC International Group Co., Limited, hosting provider, 1 abuse contact
abuse@nicenic.net
13/03/2026

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

पेज शीर्षक
slon9.icu/
TLS प्रमाणपत्र
समाप्त या असत्यापित · जारीकर्ता Let's Encrypt / E8

डोमेन इंटेलिजेंस

डोमेन
सर्वर / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden एज-आईपी प्रतिष्ठा इस डोमेन के लिए जिम्मेदार नहीं है।
रजिस्ट्रार NiceNIC RU(RU) PhishDestroy Investigation
दुरुपयोग संपर्कabuse@nicenic.net
IP पता 188.114.96.3 CDN
भौगोलिक स्थानUS San Francisco, US
नेटवर्कAS13335 · Cloudflare, Inc.
रिवर्स IPviewdns.info → rapiddns.io →
मूल आईपी सीडीएन प्रॉक्सी के पीछे छिपा हुआ है। किनारे के पते के लिए रिवर्स-आईपी परिणामों में असंबंधित किरायेदार शामिल हैं; मूल का पता लगाने के लिए निष्क्रिय DNS या प्रमाणपत्र-पारदर्शिता डेटा की आवश्यकता होती है।
पंजीकरणनिर्मित 13/03/2026 (154d)
HTTP स्थिति502 Error
Elapsed Since First Report 41 days
हम क्या मापते हैं Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: सर्वर त्रुटि.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला13/03/2026
DOM Analysisanalyzed 24/03/2026score 56/100
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
नेमसर्वरali.ns.cloudflare.comzahir.ns.cloudflare.com
TLS Observationvalid from 09/03/2026scanned 15/03/2026
Case ID
SHORTDOT ज़ोन · सार्वजनिक साक्ष्य .icu

ShortDot zone evidence

The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.

ShortDot SA · Luxembourg 7 ज़ोन · पूरे ज़ोन के साक्ष्य प्रतिदिन अपडेट किए जाते हैं ShortDot साक्ष्य रिपॉज़िटरी खोलें
ICANN OVERSIGHT

प्रत्यायन और आरएए संदर्भ

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

मान्यता एक अनुबंध है, सुरक्षा की मुहर नहीं। ICANN शुल्क सत्यापित करें RAA §3.18 पढ़ें PHISHDESTROY INVESTIGATIONICANN funding, contracts, and DNS abuse oversight
Accountability draft कुछ भी अपने आप नहीं भेजा जाता।

Latest Classified Outcome 2026-08-13 03:22:25 UTC

Primary outcome Registration hold observed reason: Registrar clientHold 95% confidence
Attribution NICENIC INTERNATIONAL GROUP CO., LIMITED mechanism: Registrar clientHold source: Rdap Status Collector
Evidence layers Availability: DNS inactive Content: Unreachable DNS: NXDOMAIN Registration: Registrar and registry holds
Latest HTTP observation अज्ञात Origin unreachable Http 5xx 20% 2026-08-14 02:35:48 UTC
RDAP registration Registrar and registry holds NICENIC INTERNATIONAL GROUP CO., LIMITED · IANA 3765 RDAP HTTP 200 source: Rdap Status Collector clientDeleteProhibitedclientHoldclientTransferProhibitedserverHold expires 2027-03-09 23:59:59 UTC checked 2026-08-13 03:22:25 UTC
Registrar action marker verified clientHold marker NICENIC INTERNATIONAL GROUP CO., LIMITED · IANA 3765 causal link to our report not established
Observed timeline last reachable: 2026-04-22 22:18:17 UTC current episode first observed: 2026-08-05 01:45:38 UTC observed RIP window: 2026-04-22 22:18:17 UTC → 2026-08-05 01:45:38 UTC · 2,499.46h midpoint estimate ≈ 2026-06-14 00:01:57 UTC · precision very low · basis bounded
Availability, content, DNS and registration are independent evidence layers. NXDOMAIN, an unreachable origin or missing content alone does not prove registrar action. A registrar or provider is credited only when a direct technical marker identifies that actor. Report causality is shown separately.
तकनीकें · 3 identified
Cloudflare Browser Insights
Analytics RUM

Performance monitoring tool that measures website speed from real users.

www.cloudflare.com
Cloudflare
CDN

Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.

www.cloudflare.com
HTTP/3
Miscellaneous

Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.

Detected via क्लाउडफ्लेयर रडार · Wappalyzer engine
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

4 / 94 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed
Fortinet
Gridinsoft
SOCRadar
वेबरूट
साइट प्रदर्शन विश्लेषण

Google PageSpeed Insights — mobile performance audit of slon9.icu · checked Jun 26, 2026

89
Needs Work
Performance
FCP
2.96s
First Contentful Paint
LCP
2.96s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
3.2s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

साक्ष्य और बाहरी रिपोर्टें

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260313-A5786A Recipient: abuse@nicenic.net, abuse@gen.xyz, compliance@icann.org
Page title stored with report: slon9.icu/
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 36.9 KB

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/slon9.icu"
  title="PhishDestroy threat report for slon9.icu"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

एक अत्यंत सच्चा धन्यवाद-पत्र

व्यंग्यात्मक मसौदा जनरेटर

प्राप्तकर्ता
शुल्क संदर्भ

यह व्यंग्यात्मक मसौदा है। शुल्क के आंकड़े अनुमान हैं; इन्हें इस डोमेन से ठीक-ठीक जोड़ने का दावा नहीं किया जाता।