slon3cc-3[.]ru
“Slon3cc система мониторинга состояния мостовых конструкций”
slon3cc-3.ru — 内容不可用 (HTTP 502). 品牌冒充:["telegram"]; 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 4/94 (alphaMountain.ai, G-Data, Gridinsoft, Sophos); PhishDestroy score 65/100. 注册商: REGRU-RU.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies slon3cc-3.ru as an active credential harvesting phishing site targeting unsuspecting users. The domain is currently under investigation but remains operational, posing an immediate threat to anyone who accesses it. This site mimics legitimate login portals to steal credentials, banking details, or personal data under false pretenses. This domain was flagged by 4 of 95 VirusTotal vendors despite hosting malicious content. It was registered through REGRU-RU on March 13, 2026, resolving to IP address 205.185.113.136. The site utilizes a Let's Encrypt SSL certificate, which may falsely imply legitimacy to users. At the time of analysis, the domain is not listed on major blocklists, and trust scores remain critically low due to its recent creation and lack of established reputation. The current status of slon3cc-3.ru is active and dangerous. Users are strongly advised to avoid this domain entirely, report it to their security teams or browser vendors, and warn others. Organizations should update firewall rules and DNS blocklists to prevent access. If credentials were accidentally entered, users must change passwords immediately and monitor accounts for unauthorized activity. Security teams should investigate any logs for connections to this IP or domain, as it may indicate compromised systems within their network.
威胁响应 Pipeline
公共封禁名单状态
取证情报
所用技术 · 1 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of slon3cc-3.ru · checked Mar 28, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。