slon-4---at[.]ru
“Программа тренировок для марафона от slon: бегайте быстрее и дальше at”
slon-4---at.ru — 内容不可用 (HTTP 502). 证据摘要: VirusTotal 2/94 (alphaMountain.ai, Gridinsoft); PhishDestroy score 56/100. 注册商: REGRU-RU.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy assesses this domain as an elevated risk, specifically a generic phishing threat targeting individuals interested in marathon training programs. The site posed as a legitimate training resource but was designed to steal personal information from unsuspecting visitors. Although it has been taken offline, the domain remains a concern due to its sophisticated appearance and low detection rate.
VirusTotal flagged this domain with only 2 out of 95 security vendors, indicating a low initial detection rate that allowed it to operate under the radar. The domain was registered through REGRU-RU on March 28, 2026, and resolved to IP address 145.249.115.222. It appeared on one security blocklist and was found in one AlienVault OTX threat intelligence pulse. The SSL certificate was issued by Let's Encrypt (E7), which added a veneer of legitimacy. The page title, "Программа тренировок для марафона от slon: бегайте быстрее и дальше at," suggests it targeted Russian-speaking users seeking marathon training plans.
Users who may have interacted with this site should change any passwords entered there immediately and monitor financial accounts for suspicious activity. Enable two-factor authentication on all important accounts. Since the domain is now offline, the immediate threat is contained, but similar phishing sites may emerge. Always verify URLs before entering personal data, and avoid clicking links in unsolicited messages offering training programs or other too-good-to-be-true deals.
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 4 identified
HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of slon-4---at.ru · checked Mar 28, 2026
证据与外部报告
PD-20260328-818A2A Recipient: abuse@globconnex.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。