slon4-------at[.]ru
“Эпоксидные столешницы на заказ в Москве — slon4.at”
slon4-------at.ru — Konten tidak tersedia. Ringkasan bukti: VirusTotal 12/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); PhishDestroy score 86/100. Registrar: REGRU-RU.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
This domain, slon4-------at.ru, was registered on March 20, 2026 through the REGRU-RU registrar and is currently delegated to the Cloudflare name servers courtney.ns.cloudflare.com (twice listed) and nikon.ns.cloudflare.com. The authoritative DNS records resolve the A‑record to 198.251.84.254, an address that is hosted on Cloudflare's network. VirusTotal has recorded 12 detections out of 91 scanning engines, indicating that a non‑trivial portion of security products consider the domain malicious. The domain is listed on a single public blocklist and is actively blocked by the PhishDestroy feed, further confirming its use in phishing campaigns.
No public SSL certificate details, HTTP status codes, page title, or content analysis have been released, leaving the exact phishing payload and target brand undefined. The limited visibility into the web content means threat analysts cannot confirm whether credential‑stealing pages are hosted or if the domain is used as a redirect hub. Nonetheless, the combination of registrar information, Cloudflare DNS configuration, multiple vendor detections, and blocklist presence provides sufficient confidence to classify the infrastructure as an elevated‑risk phishing vector.
Defenders should add 198.251.84.254 and the domain slon4-------at.ru to their deny lists, enforce outbound DNS filtering, and monitor for any traffic anomalies associated with Cloudflare‑served addresses. Continuous re‑scanning with multi‑engine services is advised to capture potential changes in the payload or additional detections. Because the site’s page title and SSL characteristics are not yet publicly documented, further passive DNS and TLS fingerprinting should be pursued to improve attribution and detection fidelity.
Intelijen Keamanan Jaringan
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive