skinhouses[.]com
“Игровая платформа - Открытие ящиков”
skinhouses.com — Помилка сервера (HTTP 502). Уособлення бренду: ["steam"]. Зведення доказів: VirusTotal 13/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLQuery 1 alert; PhishDestroy score 93/100. Реєстратор: NiceNIC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, skinhouses.com, is flagged as an active fake login phishing portal designed to harvest user credentials. Analysis indicates the threat type aligns with credential theft campaigns, where victims are lured into entering sensitive login details on fraudulent pages mimicking legitimate services. The elevated risk level stems from confirmed malicious activity and infrastructure associated with phishing operations. Infrastructure analysis reveals the domain resolves to the IP address 172.67.197.200 and was registered on March 27, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED. Security vendor detections on VirusTotal report 13 out of 95 engines flagging the domain as malicious. The domain appears on one security blocklist and is referenced in a single threat intelligence pulse on AlienVault OTX. While the detection count remains moderate, the domain's recent registration and association with known phishing infrastructure warrant heightened scrutiny. Mitigation steps specific to fake login phishing threats include immediate cessation of interaction with the domain. Users who may have entered credentials on this site should reset passwords for all associated accounts, prioritizing those linked to financial or sensitive services. Organizations should update web filtering policies to block the domain and its resolving IP address. Network administrators are advised to monitor for traffic to 172.67.197.200 and review logs for potential credential exposure. Multi-factor authentication should be enforced to mitigate the impact of stolen credentials.
Розвіддані з мережевої безпеки Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | skinhouses.com |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-15 03:21:59 UTC
Аналіз VirusTotal
Докази та зовнішні звіти
PD-20260327-ABF2B3 Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога