Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@globconnex.com.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
slon------4------cc[.]ru
“Slon2 cc: ваш гид в мир аквариумистики, оборудование и экзотические рыбки”
slon------4------cc.ru — Неперевірений. Зведення доказів: VirusTotal 4/91 (alphaMountain.ai, Chong Lua Dao, Gridinsoft, SOCRadar); PhishDestroy score 76/100. Реєстратор: REGRU-RU.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy has assessed the domain slon------4------cc.ru at an elevated risk level, classifying it as a credential phishing threat. This site was designed to deceive users into submitting sensitive login information, a common tactic in targeted phishing campaigns. The domain is now offline, but its infrastructure and indicators provide critical insight into the threat landscape.
Technical analysis reveals that the domain was created on March 28, 2026, through the registrar REGRU-RU, and resolved to IP address 145.249.115.222. VirusTotal flagged it with 2 out of 95 security vendors marking it as malicious, and it appears on 1 security blocklist. AlienVault OTX also detected it in 1 threat intelligence pulse. The site used a Let's Encrypt SSL certificate (E8), which is often abused by phishers due to its free and automated issuance. These data points collectively confirm the domain's malicious intent.
To protect against credential phishing, users should avoid entering login credentials on any site that arrives via unsolicited links, especially those with unusual domain structures like this one. Enable multi-factor authentication on all accounts, use a password manager to detect lookalike domains, and report any similar suspicious domains to security teams. PhishDestroy recommends blocking this domain and its associated IP across networks to prevent future access.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of slon------4------cc.ru · checked Mar 28, 2026
Докази та зовнішні звіти
PD-20260328-75C746 Recipient: abuse@globconnex.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога