skyren[.]io
Перевірка домену skyren.io на фішинг і безпеку
“Bot Verification”
skyren.io — Помилка сервера (HTTP 502). Зведення доказів: VirusTotal 3/91 (alphaMountain.ai, CRDF, Gridinsoft); PhishDestroy score 76/100. Реєстратор: Hostinger.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain skyren.io was created on September 29, 2024 and is currently listed as offline. Its DNS resolves to the IP address 172.67.140.37, which belongs to AS13335 Cloudflare, Inc. in the United States. The domain is hosted on Cloudflare’s network and uses the nameservers alla.ns.cloudflare.com and alan.ns.cloudflare.com. No SSL certificate is presented for the site, indicating that HTTPS is not configured. The only visible page title retrieved from the site is "Bot Verification," suggesting a verification checkpoint rather than a legitimate service page.
Skyren.io appears on one security blocklist and has been blocked by the PhishDestroy service. It is referenced in a single AlienVault OTX pulse, providing additional corroboration of malicious use. VirusTotal scans show that three of ninety‑five security vendors flagged the domain, confirming that at least a subset of scanners consider it malicious. The registrar is listed as HOSTINGER operations, UAB.
While the domain’s current offline status may limit immediate threat exposure, the combination of blocklist presence, vendor detections, and OTX reporting indicates an elevated risk profile. Defenders should ensure that skyren.io is added to network deny lists, update web filtering rules to block the domain, and monitor for any re‑activation or related infrastructure. Continuous observation of Cloudflare‑hosted IPs associated with the domain is advised, as threat actors often shift hosting while retaining the same IP range. Given the lack of SSL and the generic "Bot Verification" page title, there is limited insight into the exact phishing payload, so further investigative probing should be reserved for controlled environments.
Сигнали безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога