4slon5-cc[.]ru
“slon5.cc â РеÑÑавÑаÑÐ¸Ñ ÑовеÑÑÐºÐ¸Ñ ÑинÑезаÑоÑов в ÐоÑкве | Ð…”
4slon5-cc.ru — Belum terverifikasi. Jenis penipuan: Generic Phishing. Ringkasan bukti: VirusTotal 5/91 (alphaMountain.ai, CRDF, Fortinet, Gridinsoft, SOCRadar); URLQuery 2 alerts; PhishDestroy score 76/100.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
The domain 4slon5-cc.ru was registered on 12 May 2026 and is presently active. DNS resolution points to IP address 216.203.20.115, which is geolocated to the Netherlands and associated with the BL Networks hosting provider. The site presents a valid TLS certificate issued by Let’s Encrypt (E7), indicating that HTTPS traffic is encrypted. An HTTP request returns status code 200, confirming that the web server is responding. The page title retrieved from the site is "slon5.cc â РеÑÑавÑаÑÐ¸Ñ ÑовеÑÑÐºÐ¸Ñ ÑинÑезаÑоÑов ". No additional content analysis is available. Reputation scoring from Gridinsoft assigns a trust value of 0 out of 100, and the domain appears on a single security blocklist. VirusTotal analysis shows that 1 of 92 scanned security vendors flagged the domain, and AlienVault OTX lists it in one threat pulse. The domain is also listed as blocked by the PhishDestroy feed. The combination of recent registration, low trust score, presence on blocklists, and a single vendor detection suggests a high likelihood of malicious phishing activity, though the limited number of detections leaves some uncertainty about the full scope of the campaign. Defenders should block network traffic to 4slon5-cc.ru, monitor DNS queries for the domain, and consider adding the IP address 216.203.20.115 to deny lists. Continuous monitoring of threat feeds for additional indicators related to this infrastructure is recommended to capture any evolution of the campaign.
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | 4slon5-cc.ru |
malicious | Sinkholed |
| DNS4EU | 4slon5-cc.ru |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive