slon7-cc[.]ru
“slon7-cc.ru”
slon7-cc.ru — 内容不可用 (HTTP 502). 证据摘要: VirusTotal 3/94 (alphaMountain.ai, Gridinsoft, SOCRadar); PhishDestroy score 65/100. 注册商: REGRU-RU.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, slon7-cc.ru, is identified as a phishing infrastructure designed to harvest user credentials, such as login details for financial services, email accounts, or other sensitive platforms. Phishing sites of this nature typically mimic legitimate login pages to deceive visitors into entering their usernames and passwords, which are then captured by threat actors for unauthorized access or financial fraud. The domain’s design and content likely resemble trusted entities, increasing the risk of successful deception for unsuspecting users. Analysis indicates that slon7-cc.ru is flagged by 3 out of 95 security vendors on VirusTotal, a relatively low but notable detection rate that suggests its malicious nature. The domain was registered on March 28, 2026, through REGRU-RU, a registrar frequently associated with abusive domains. Infrastructure analysis reveals it resolves to the IP address 95.163.244.138, which has been linked to other phishing campaigns. Additionally, the domain appears on one security blocklist and is referenced in a threat intelligence pulse on AlienVault OTX, further corroborating its malicious classification. If a user has visited slon7-cc.ru or entered any credentials on the site, immediate action is required. First, change passwords for any accounts that may have been exposed, prioritizing financial services, email, and other high-value platforms. Enable multi-factor authentication (MFA) where available to add an additional layer of security. Monitor accounts for unauthorized activity, such as unfamiliar transactions or login attempts. If financial information was entered, contact the relevant institution to report potential fraud. Finally, scan the device used to access the site for malware, as phishing pages may also distribute malicious payloads.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
取证情报
VirusTotal 分析
证据与外部报告
PD-20260328-88D9A2 Recipient: abuse@reg.ru 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。