MALICIOUS — CRITICAL
slonj6[.]cc
This domain, slonj6.cc, is an active generic phishing site with no specific brand impersonation or drainer kit identified.
- VirusTotal
- 6/91
- Blocklists
- No stored match
- Kullanılabilirlik
- Bilinen son aktif · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@neterra.net.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
slonj6.cc — Bilinen son aktif (HTTP 200). Kanıt özeti: VirusTotal 6/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft); Spamhaus DBL_PHISH; PhishDestroy score 80/100. Kayıt kuruluşu: NiceNIC.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Evidence Analysis
This domain, slonj6.cc, is an active generic phishing site with no specific brand impersonation or drainer kit identified. The threat type is generic phishing, indicating a broad attempt to deceive users into disclosing sensitive information without targeting a particular entity.
Technical indicators: VirusTotal detection score is 2 out of 95 security vendors. The domain is registered through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar often associated with high-risk domains. It resolves to IP address 5.253.59.165 and was created on May 30, 2026. Google Safe Browsing status is not explicitly provided, but the low vendor detection suggests it may not yet be widely blocklisted. The SSL certificate is issued by Let's Encrypt, a free certificate authority frequently used by malicious sites.
Current status remains active, with no reported takedown actions. Infrastructure analysis shows the IP is likely shared among multiple domains. Remaining risk is high due to active status and low detection rate, allowing the site to continue operating undetected by many security tools. Safety guidance: Users should avoid interacting with this domain, do not enter any credentials or personal data, and report the domain to their security team or blocklist providers. Organizations should monitor for any connections to this IP in network logs.
Veri kapsamı12 recorded checks
Ağ Güvenliği İstihbaratı Registrar context
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Latest Classified Outcome 2026-08-09 02:44:53 UTC
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of slonj6.cc · checked Jun 27, 2026
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
PD-20260626-A37308 Recipient: abuse@neterra.net Victim safety and official reportingImmediate actions and verified reporting channels
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.